Who Can Apply
- Candidates must be legally authorized to work in Canada
Job Description
The Senior Active Directory Engineer will be supporting a large-scale infrastructure transformation initiative. This role will focus on designing, building, migrating, and decommissioning Active Directory environments, with a strong emphasis on modernization and integration with Azure-based infrastructure.
The ideal candidate brings deep hands-on Active Directory (AD) expertise, proven experience in domain architecture, and the ability to operate in complex, enterprise-scale environments involving migration, troubleshooting, and cross-functional coordination.
Roles/Responsibilities:
- Lead and execute Active Directory domain lifecycle activities, including:
- Standing up new AD domains
- Promoting and demoting domain controllers
- Decommissioning legacy domains (~30+ environments)
- Support large-scale AD migration initiatives, including:
- Coordinating ~80+ domain controller builds
- Transitioning workloads from on-premises to Azure-based environments
- Design and implement Active Directory architecture and domain strategies, ensuring scalability, security, and performance
- Collaborate on Azure Landing Zone deployments, including:
- Network and IP addressing planning
- Security policy implementation
- Integration with enterprise identity frameworks
- Execute and support domain controller migrations from on-prem to hardened Azure environments
- Perform advanced troubleshooting across infrastructure layers, including: DNS resolution issues, Authentication and domain connectivity challenges, Firewall configurations and rule updates, Work cross-functionally with application teams and infrastructure teams to:
- Identify and remediate hard-coded dependencies
- Support migration readiness and cutover activities
- Develop and maintain automation scripts (PowerShell preferred) to streamline AD operations and migration processes
- Ensure adherence to enterprise security standards, identity governance, and compliance requirements
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.
Required Skills & Experience
- 5+ years of hands-on experience as an Active Directory Engineer / AD Specialist
- Strong expertise in Active Directory Domain Services (AD DS), including:
- Domain controller build, promotion/demotion
- Forest/domain design and administration
- Group Policy management
- Proven experience with large-scale AD migrations and domain transformations
- Hands-on experience with Microsoft Azure infrastructure, including:
- Azure Landing Zones
- Hybrid identity environments
- Migration of on-prem AD to Azure-hosted environments
- Strong understanding of DNS, networking concepts, and security policies within AD environments
- Experience troubleshooting complex, multi-layer infrastructure issues
Nice to Have Skills & Experience
- Strong PowerShell scripting and automation capabilities
- Experience with identity modernization initiatives (e.g., hybrid or cloud-first AD strategies)
- Exposure to enterprise-scale transformation programs
- Familiarity with firewall configurations and network security tooling
- Experience working with distributed/offshore teams
Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.