Overview
Client is seeking an experienced Active Directory Administrator/Engineer to support and maintain enterprise-scale directory services environments. This role is responsible for designing, implementing, securing, and troubleshooting Active Directory infrastructure that supports a large user and device population.
The position requires deep technical expertise across Active Directory, identity and access management, Windows Server environments, and infrastructure security. The successful candidate will collaborate with cross-functional IT teams to ensure reliable, secure, and scalable directory services.
Core Responsibilities
• Design, deploy, and manage Active Directory infrastructure, including domains, forests, and trust relationships.
• Administer user and computer accounts, organizational units, security groups, and Group Policy.
• Implement and maintain Active Directory security best practices and compliance standards.
• Manage identity and access management solutions and directory synchronization tools.
• Monitor Active Directory performance, health, and replication across multiple sites.
• Troubleshoot and resolve complex Active Directory issues and escalations.
• Collaborate with network, security, and application teams to support integrated infrastructure solutions.
• Document configurations, procedures, and technical runbooks.
• Plan and execute Active Directory upgrades and migrations.
• Implement disaster recovery and business continuity procedures for directory services.
• Provide technical support and training to IT staff and end users.
• Stay current with security updates, industry trends, and emerging technologies.
Essential Qualifications, Skills, and Technologies
• 5+ years of hands-on experience administering Active Directory in enterprise environments.
• Strong knowledge of Active Directory architecture, replication, and Group Policy management.
• Experience with Windows Server 2016, 2019, 2022, or newer versions.
• Proficiency in PowerShell scripting for automation and administration.
• Knowledge of DNS, DHCP, and network protocols.
• Experience with directory synchronization tools such as Azure AD Connect, Okta, or similar solutions.
• Understanding of security principles, least-privilege access, and compliance requirements.
• Excellent troubleshooting, problem-solving, communication, and documentation skills.
• CompTIA Security+ or Microsoft Certified: Identity and Access Administrator certification, or equivalent experience.
Preferred Skills or Experience
• Microsoft Certified: Enterprise Administrator Expert or a comparable advanced certification.
• Experience with hybrid cloud identity solutions, including Azure AD/Entra ID.
• Knowledge of LDAP, Kerberos, and SAML protocols.
• Experience with privileged access management (PAM) solutions.
• Familiarity with IT service management tools and ticketing systems.
• Experience working in healthcare, finance, or other regulated industries.
Work Details
• Onsite daily at a Client office in New York City.
• Onsite daily at Bloomberg office required. Work location can be between (3 client sites)
• Limited local travel may be required between Client office locations within New York City.
• Interview process consists of an initial screening followed by a Client interview.
Nesco Resource offers a comprehensive benefits package for our associates, which includes a MEC (Minimum Essential Coverage) plan that encompasses Medical, Vision, Dental, 401K, and EAP (Employee Assistance Program) services.
Nesco Resource provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws.