Mediabistro logo
job logo

AD Engineer

TEKsystems · Multiple locations ·

Pay:
$10-$70/hr
Job type:
Contract

Top Skills' Details AD expertise - 5 years working on hardening, consolidation, and tiering projects
Windows engineering
Powershell for automation
Overview We are seeking an Active Directory Engineer to support a critical Active Directory (AD) Hardening and Consolidation initiative. This project is focused on improving security posture, reducing cross-site risk, and implementing best practices across a complex, multi-site environment.
This individual will play a key role in design, validation, and implementation of AD enhancements, working closely with teams across IT to ensure minimal business impact.
Key Responsibilities Lead and contribute to Active Directory hardening and tiering initiatives
Design and implement security best practices across AD, including: AD tiering strategy
Privileged access controls
Group Policy (GPO) design, cleanup, and enforcement

Support AD consolidation and infrastructure changes across ~90 distributed sites
Perform impact analysis, testing, and validation prior to rollout of changes
Partner with application owners and business stakeholders to ensure: Awareness of AD changes
Proper testing and minimal disruption

Assist in server builds, domain controller updates, and decommissioning legacy components
Work cross-functionally with network teams to validate dependencies (e.g., redundancy, connectivity)
Evaluate and integrate Privileged Access Management (PAM) controls
Manage and optimize: Service accounts
Authentication flows and dependencies

Develop automation using PowerShell scripting to support implementation and standardization
Document architecture, processes, and security improvements
Qualifications 7+ years of experience in Active Directory engineering/administration
Deep experience with: AD solution design and deployment
AD hardening and security best practices
Domain services, replication, and multi-site environments

Hands‑on experience with: AD tiering models (Tier 0 / Tier 1 / Tier 2 concepts)
Group Policy Management (GPOs)
Windows Server administration

Strong scripting experience with PowerShell
Experience supporting or implementing: Privileged access controls / PAM integrations
Service account management and security

Knowledge of DNS, authentication protocols, and AD dependencies
Strong collaboration skills and ability to work across technical and business teams
Expertise lending to a solutions-oriented approach; not a task-driven role
Job Type & Location Contract position based out of Chicago, IL.
Pay and Benefits The pay range for this position is $10.00 - $70.00/hr.
Medical, dental & vision
Critical Illness, Accident, and Hospital
401(k) Retirement Plan – Pre‑tax and Roth post‑tax contributions available
Life Insurance (Voluntary Life & AD&D for the employee and dependents)
Short and long‑term disability
Health Spending Account (HSA)
Transportation benefits
Employee Assistance Program
Time Off/Leave (PTO, Vacation or Sick Leave)
Workplace Type Fully onsite position in Chicago, IL.
Application Deadline This position is anticipated to close on Jun 25, 2026.
The company is an equal opportunity employer and will consider all applications without regard to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.
San Francisco Fair Chance Ordinance: Pursuant to the San Francisco Fair Chance Ordinance, for all positions located in the city and county of San Francisco, we will consider for employment qualified applicants with arrest and conviction records.
Massachusetts Lie Detector: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

#J-18808-Ljbffr