Назад
Company hidden
5 часов назад

Directory Services Leader (Microsoft Identity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Directory Services Leader (Microsoft Identity): Leading and operating enterprise directory and identity services across Active Directory, Entra ID, hybrid identity, privileged access, and Saviynt integrations with an accent on security, resilience, governance, and hands-on engineering. Focus on designing identity architecture, troubleshooting complex authentication and synchronization issues, leading incident response, and driving least-privilege and privileged-access controls.

Location: Wilmington, Delaware, United States; hybrid work arrangement

Company

hirify.global develops materials and solutions for advanced electronics and high-tech industries.

What you will do

  • Own the operation, security, resilience, lifecycle, and continuous improvement of enterprise directory and identity services.
  • Lead the architecture, administration, and support of Microsoft Active Directory, Microsoft Entra ID, and hybrid identity services.
  • Manage identity engineers, administrators, contractors, and service providers while remaining involved in engineering and technical reviews.
  • Govern privileged access, administrative roles, service accounts, application identities, synchronization, authentication, and identity lifecycle processes.
  • Integrate Active Directory and Entra ID with Saviynt IGA and PAM, including connectors, reconciliation, provisioning, and access-removal processes.
  • Lead troubleshooting, incident response, recovery, audits, documentation, risk remediation, and collaboration with infrastructure, cloud, application, ERP, compliance, and manufacturing technology teams.

Requirements

  • Bachelor’s or Master’s degree in Computer Science or a related field.
  • 8+ years of relevant IT experience designing, operating, and securing enterprise Microsoft identity environments.
  • Deep hands-on expertise with Active Directory domains, forests, trusts, organizational units, group policy, replication, authentication, privileged groups, service accounts, and recovery.
  • Strong hands-on expertise with Entra ID, Privileged Identity Management, enterprise applications, application registrations, service principals, access reviews, and hybrid identity.
  • Experience leading technical teams while remaining directly engaged in engineering, operations, major incidents, root-cause analysis, and corrective-action planning.
  • Strong knowledge of least privilege, role-based access control, privileged-access management, administrative tiering, segregation of duties, Kerberos, LDAP, SAML, OAuth 2.0, OpenID Connect, and certificate-based authentication.

Nice to have

  • Hands-on experience with Saviynt IGA, Saviynt PAM, or a comparable enterprise identity platform.
  • Experience integrating identity platforms with SAP, cloud services, databases, infrastructure systems, and enterprise applications.
  • Experience in global manufacturing, industrial, semiconductor, chemical, or regulated enterprises.
  • Experience with PowerShell, Microsoft Graph, REST APIs, Microsoft Sentinel, Defender, Intune, Purview, or related Microsoft security technologies.
  • Experience with mergers, divestitures, directory separations, tenant migrations, large-scale identity transformations, or relevant certifications.

Culture & Benefits

  • Hands-on working manager role balancing security, reliability, usability, and business delivery.
  • Opportunity to build a capable identity team with clear accountability, repeatable processes, and strong documentation.
  • Comprehensive pay and benefits package.
  • hirify.global uses artificial intelligence to enhance its recruitment process.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →