Active Directory Architect / Engineer

Leidos Holding$131K — $237K *
Information Technology
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Information Technology, Engineering, OR equivalent experience
  • 12+ years hands-on experience in Active Directory management
  • Deep expertise in Microsoft Active Directory Domain Services (AD DS) and multi-domain architectures
  • Strong background with hybrid identity solutions and Microsoft Entra ID
  • Experience troubleshooting complex Active Directory issues
  • Solid understanding of disaster recovery and backup/restore procedures
  • Experience implementing Privileged Access Management and security best practices
  • Proficiency in automation and scripting (PowerShell, Python)
  • U.S. Citizenship required
  • Ability to obtain and maintain a Public Trust security clearance

Responsibilities

  • Design and deploy Active Directory Domain Services, including domain controllers and security baselines
  • Implement and maintain Microsoft Entra ID and hybrid identity models
  • Engineer security best practices compliant with federal standards
  • Collaborate with various teams on identity-related projects
  • Automate tasks using scripting languages and Infrastructure as Code

Benefits

  • Comprehensive health insurance options
  • 401(k) retirement plan with company match
  • Paid time off and holiday leave
  • Opportunities for professional development and training
  • Flexible work environment with emphasis on work-life balance
Full Job Description
Leidos is seeking a highly skilled Active Directory Architect / Engineer to review and re-architect ATR's Microsoft Active Directory and hybrid identity environments. The candidate will be responsible for overseeing the implementation, optimization, and ongoing management of the updated architecture and will play a key role in maintaining integrity, availability, and security of identity and access management systems that support the entire ATR organization. This position focuses on both the on-premises Active Directory Domain Services (AD DS) and integration with Microsoft Entra ID (formerly Azure AD).

Please Note: This work is located onsite in the DC area.

Key Responsibilities:
  • Design, deploy, upgrade, and administer Active Directory Domain Services, including domain controllers, forests, domains, trusts, and replication topologies (i.e. Manage and optimize Group Policy Objects (GPOs), OU structures, and security baselines; including object management through bulk operations and automation, Troubleshoot and resolve complex AD-related issues, including authentication failures, replication problems, DNS issues, and Kerberos/NTLM problems, Plan and execute Active Directory migrations, consolidations, and upgrades (of both underlying server infrastructure and overall forest/domain functional levels), Develop and maintain disaster recovery, backup, and restore procedures for AD environments (including AD Recycle Bin and authoritative restores), Monitor AD health and performance using tools such as Microsoft System Center, Azure Monitor, or third-party solutions).
  • Implement and maintain Advanced Microsoft Entra ID (Azure AD), Okta, hybrid identity models, Privileged Access Management (PAM), and Public Key Infrastructure services in compliance with federal standards (e.g. NIST and DISA STIG).
  • Engineer and implement security best practices including: (i.e. Privileged Access Management (PAM), Just-In-Time (JIT) access, tiered administration, and Least Privilege principles, Zero Trust network access (ZTNA), secure enclave integration, and defense-in-depth methodologies, Compliance with security standards, regulatory requirements (SOC 2, ISO 27001, HIPAA, CMMC, etc.), and internal policies.
  • Collaborate with Security, Endpoint, Cloud, and Application teams on identity-related projects and incident response.
  • Automate repetitive tasks using PowerShell, Microsoft Graph, Python, and Infrastructure as Code (leveraging Ansible) where applicable.


Required Qualifications:
  • Bachelor's degree in Computer Science, Information Technology, Engineering, OR in a related field and 12+ years of relevant experience OR Masters degree with 10+ years of relevant experience . Additional years of experience will be considered/accepted in lieu of a degree.
  • 12+ years of hands-on experience as an Active Directory Architect, Engineer, OR Senior Administrator in complex enterprise environments.
  • Deep expertise in designing, deploying, upgrading, and administering Microsoft Active Directory Domain Services (AD DS), including domain controllers, multi-domain/forest architectures, trusts, replication topologies, Group Policy Objects (GPOs), OU design, and security baselines.
  • Strong experience with hybrid identity solutions, including synchronization and integration between on-premises AD DS and Microsoft Entra ID (formerly Azure AD).
  • Proven track record in troubleshooting and resolving complex AD issues (authentication failures, replication, DNS, Kerberos/NTLM, etc.).
  • Experience with Active Directory migrations, consolidations, forest/domain functional level upgrades, and infrastructure modernization.
  • Solid understanding of disaster recovery, backup/restore procedures for AD (including AD Recycle Bin and authoritative restores).
  • Experience implementing and managing Privileged Access Management (PAM), Just-In-Time (JIT) access, tiered administration models, and Least Privilege principles.
  • Working knowledge of Public Key Infrastructure (PKI), Zero Trust Network Access (ZTNA), secure enclaves, and defense-in-depth security strategies.
  • Familiarity with compliance frameworks and federal standards such as NIST, DISA STIGs, SOC 2, ISO 27001, HIPAA, and CMMC.
  • Proficiency in automation and scripting using PowerShell, Microsoft Graph, Python, and Infrastructure as Code tools (e.g., Ansible).
  • Experience collaborating with Security, Cloud, Endpoint, and Application teams on identity-related initiatives and incident response.
  • Strong communication skills and ability to work independently as a contractor in a dynamic environment.
  • U.S. Citizenship required.
  • Ability to obtain and maintain a Public Trust security clearance.


Preferred Qualifications:
  • Experience with Okta for identity management and federation.
  • Background supporting federal or regulated industries with strict compliance requirements.
  • Experience using monitoring tools such as Microsoft System Center, Azure Monitor, or third-party AD health solutions.
  • Knowledge of modern identity security practices and integration with cloud platforms.


Desired Certifications (one or more of the following):
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300).
  • Microsoft Certified: Windows Server Hybrid Administrator Associate (AZ-800 + AZ-801).
  • Microsoft Certified: Azure Administrator Associate (AZ-104).
  • Microsoft Certified: Azure Security Engineer Associate (AZ-500).
  • CISSP (Certified Information Systems Security Professional).
  • CISM (Certified Information Security Manager).
  • Okta Certified Professional or Okta Certified Administrator.


Please Note:The program budget salary for this role could fall anywhere between mid $150,000 to low/mid $170,000 with a slight wiggle room (no guarantees) based on relevant experience and assessment. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Leidos is growing! Connect with us on LinkedIn and Facebook

About Leidos Holding

Leidos Holding Careers

Joining Leidos Holding presents an unparalleled opportunity to advance one's career with a leader in innovation and technology. The company offers a plethora of job opportunities aimed at fostering professional growth and development in a diverse and inclusive environment.

Explore Career Opportunities

Leidos Holding is actively seeking skilled professionals who are passionate about leveraging their expertise to drive innovation and leadership in their fields. With a variety of open positions, Leidos Holding provides a platform for individuals to challenge themselves in a dynamic work environment.

Innovation and Professional Growth

At Leidos Holding, innovation is at the core of everything they do. Employees are encouraged to think creatively and push boundaries. The company supports this drive for innovation through comprehensive professional development and diversity training programs that are designed to enhance skills and foster leadership.

Commitment to Diversity and Inclusion

Leidos Holding is committed to creating a workplace where diversity is not only recognized but celebrated. With a culture that values and promotes diversity, Leidos Holding ensures that all team members have the opportunity to contribute, learn, and grow.

Internship Programs

For those starting their career, Leidos Holding offers internship programs that provide a robust foundation in the industry. Internships are a great way to develop essential skills, gain valuable work experience, and build professional networks.

Benefits and Culture

Employees at Leidos Holding enjoy a range of benefits designed to support their professional and personal lives. The company culture is built on a foundation of respect and integrity, providing a supportive and collaborative environment where every team member is valued.

Join the Team

Leidos Holding is hiring! Explore job opportunities that match your skills and interests. Leidos Holding looks for driven, curious, and innovative individuals to join their team. Positions are available across various disciplines and experience levels.

Stay Connected

Stay informed with the latest career tips, industry insights, and company news from Leidos Holding. Subscribe to receive updates and be the first to know about new job opportunities, company developments, and more.

Prepare for Your Interview

To prepare for an interview at Leidos Holding, candidates should familiarize themselves with the company's missions and values, update their resumes, and be ready to discuss how their background and skills align with the position they are applying for.

Networking and Career Advancement

Leidos Holding encourages its employees to engage in networking within the company to discover new opportunities for career advancement. The leadership team at Leidos Holding is dedicated to supporting employees in their career paths with ample opportunities for networking and growth.

Explore Leidos Holding Jobs and Careers

Discover the exciting career opportunities at Leidos Holding today. With a commitment to employee growth, innovation, and diversity, Leidos Holding is the perfect place to advance your career. Check out the latest job listings and find your perfect fit at Leidos Holding.

SEARCH LEIDOS HOLDING JOBS

READ CAREERS BLOG

Job Alert Emails

Customize your subscription to receive job alerts and insider tips tailored to your preferences from Leidos Holding. See what exciting and rewarding opportunities await in your professional journey.
Learn more about Leidos Holding

Similar Jobs

More Jobs at Leidos Holding

More Information Technology Jobs

Find similar Active Directory Architect / Engineer jobs: