IAM Engineer
Teknik, data och digitalt · Mjukvaru- och webbutveckling · Mjukvaruutveckling · Cybersäkerhet · DevOps
I korthet
We are looking for an IAM Active Directory Engineer responsible for 24x7 support and management of Active Directory infrastructure on Hyper-V, Azure, and AWS. This role involves incident management, patch management, and proactive maintenance to ensure service availability and performance.
Ansvarsområden
- 24x7 support and management of Active Directory infrastructure hosted on Hyper-V, HPE Hyper Converged Solution, Azure and AWS.
- Execution of reactive maintenance activities to ensure services are continuously available and performing to Service Level Agreement (SLA) performance levels.
- Support core IAM – Active Directory Operations Team 24*7 Shift.
- Incident Management.
- Patch Management & Vulnerability Management.
- Reporting and review of all connectivity, synchronization, replication within Active Directory.
- Monitoring/reporting/reviewing all metrics and changes around netlogon, NTDS Database partitions, DNS settings, SRV records, Trust relationships.
- Perform capacity planning, upgrades and expansion of Active Directory environment.
- Creation and Modification of PowerShell scripting related to Active directory.
- Review of domain controllers, application, and security events to find any issues or trends.
- Work with security teams to respond to emergency or critical vulnerabilities, patching or changes as required.
- Participate in the identification of vulnerabilities and their mitigation.
- Support analysis of IAM configuration and policies to identify security and operational gaps.
- Review and govern the services-based Integration of role-based access control, Active Directory, LDAP, Single Sign-On, End-User provisioning, identity and access governance, and identity data synchronization services with existing applications and systems.
- Support security related assessments and configurations for IAM & PAM platforms, adaptive risk configurations and Multifactor authentications.
Krav
- Experience in core MS Active Directory in multi domain environment.
- DNS, GPO management, knowledge of FSMO roles, Replication Issues, AD ports requirement for replication, SYSVOL architecture, Fine Grained Password Policies, Domain Controllers Promotion / Demotion.
- Demonstrated experience with High Availability, Disaster Recovery, and Service Continuity process and planning.
- Good understanding of Identity Access Management solutions / Privileged Access Management solutions.
- Hands on experience on AWS/Azure/GCP IaaS.
- Exposure on Hyper-V Converged solution running on VMWare Platform.
- Knowledge and hands on experience on Azure Log Analytics, Azure Threat Protection, Cloud App Security, Azure Arc, Azure Data Explorer, Microsoft Entra Privileged Identity Management, Azure SSPR, Azure Password Protection.
- Must have hands-on experience on managing Azure AD connect server synchronization.
- Experience on handling synchronization issues on Azure AD Connect and troubleshoot.
- BMC Remedy Monitoring/Ticketing tool.
- Experience in monitoring tools like MS SCOM, HPE OneView.
- Categorization of the vulnerabilities of legacy protocols like SSL/TLS and fixing them and also fixing the vulnerabilities for RC4, DES, 3DES, SSL, TLS, Diffie-Hellman etc.
Önskade kvalifikationer
- Graduate in Computer Science or similar.
- Minimum 7+ years of experience in handling core IAM AD Operations stuff.
Förmåner
- Outstanding opportunity to use skills and imagination to push the boundaries of what's possible.
- Chance to build solutions never seen before to some of the world's toughest problems.
- Challenging work environment with a diverse team of innovators.
- Encouraging a diverse and inclusive organization is core to our values.
- Championing diversity and inclusion in everything we do.
- Belief that collaborating with people with different experiences drives innovation.
- Encouragement for people from all backgrounds to apply and realize their full potential.
- Ericsson is proud to be an Equal Opportunity Employer.
#IAM#Active Directory#Engineer