Job Title: Active Directory (AD) Architect
Location: Greenville, TX (Hybrid)
Duration: 12 Months
Clearance Requirement: Active TS/SCI
Position Overview:
We are seeking an experienced Active Directory (AD) Architect to lead the design, implementation, and ongoing maintenance of enterprise-scale AD environments. This critical role supports secure, high-availability IT infrastructure in a hybrid on-prem and cloud environment, ensuring access, identity, and policy enforcement across a distributed network.
Key Responsibilities:
AD Architecture & Design:
Design scalable, secure AD environments including forests, domains, OUs, and trust models
Plan enterprise-wide deployments and multi-site replication strategies
Security & Access Management:
Implement and manage Group Policies (GPOs) for system configuration and compliance
Design role-based access controls and secure authentication methods
Systems Integration & Interoperability:
Integrate AD with Azure AD, M365, third-party identity providers, and legacy systems
Ensure seamless operation in hybrid environments (cloud/on-prem)
Directory Services & Network Planning:
Coordinate DNS, DHCP, and name resolution services in alignment with AD requirements
Design and manage replication and domain controller placement for optimal performance
Disaster Recovery & Resiliency:
Develop and implement AD backup, restore, and business continuity strategies
Performance Monitoring & Troubleshooting:
Monitor AD health and performance metrics
Troubleshoot and resolve complex issues such as replication failures and authentication errors
Documentation & Compliance:
Maintain accurate documentation of system architecture, configurations, and changes
Ensure compliance with organizational policies, government regulations, and frameworks (e.g., DISA STIG, ATO processes)
Required Skills & Tools:
Expert-level knowledge of Windows Server, PowerShell scripting, DNS/DHCP, Kerberos, LDAP, PKI
Experience with tools including:
Group Policy Management Console
ADSI Edit
Azure AD Connect
Microsoft Identity Manager
Familiarity with compliance and security frameworks for classified environments