Identity Engineer - Active Directory
Ralliant
Role Description Location: Raleigh, NC OR Beaverton, OR Hybrid The Identity Engineer – Active Directory is responsible for administering, engineering, and optimizing Ralliant Corporation’s complex, multi-domain Active Directory environment. This role serves as a hands‑on technical leader across core AD infrastructure, ensuring stability, security, and scalability while supporting the broader Identity & Access Management (IAM) program. This position operates within a multi-domain, multi-forest environment (13+ domains) with hybrid identity integration and deep dependencies across enterprise IAM systems. The engineer is expected to operate confidently across all layers of Active Directory, from object lifecycle management and Group Policy to replication topology, authentication mechanisms, and disaster recovery. The role partners closely with Security, Infrastructure, and Compliance teams to ensure Active Directory functions as a secure and reliable foundation for enterprise identity. It contributes to identity strategy by aligning AD schema, attributes, and configurations with identity governance platforms and access lifecycle processes. The role embraces the Ralliant Business System (RBS) by embedding operational discipline, documentation, and continuous improvement into tools, workflows, and standard work. The engineer drives repeatable, scalable processes that improve security posture, reduce operational risk, and support audit readiness across the enterprise and Operating Companies (OpCos). Key Responsibilities Administer a multi-domain, multi-forest Active Directory environment including user, group, and computer object lifecycle management, OU structure, delegation models, and trust relationships Manage the full lifecycle of Group Policy Objects (GPOs), including design, implementation, auditing, and cleanup Maintain AD Sites and Services, DNS integration, subnet mappings, and replication topology Monitor and maintain Domain Controller health, replication status, FSMO roles, and SYSVOL/DFS‑R consistency Manage SPNs, gMSAs, and Kerberos authentication dependencies Mentor and coach engineers through design reviews, code reviews, and knowledge sharing, promoting consistent and high-quality delivery Maintain documentation including technical designs, workflows, configurations, and operational procedures Contribute to identity strategy and roadmap planning, identifying opportunities to enhance automation, security, and user experience Use PowerShell as the primary tool for data collection, reporting, bulk operations, and automation Develop scripts for auditing, compliance reporting, and operational health monitoring Build automation for infrastructure lifecycle processes such as DC replacement and recovery Support Active Directory integration with CyberArk for credential vaulting, rotation, and privileged session management Manage privileged accounts and service account credentials in alignment with PAM policies Collaborate on CPM dependencies, credential policies, and troubleshooting PAM-to-AD integrations Partner with PKI teams to ensure AD Certificate Services configurations align with enterprise standards Implement tiered administration models and protected group governance Qualifications Bachelor’s degree recommended; equivalent experience considered 6 years of hands‑on experience administering Active Directory in enterprise environments Deep expertise in AD architecture, including object management, GPOs, DNS, replication, and domain controller operations Advanced PowerShell scripting and automation capabilities Strong understanding of Kerberos, SPNs, gMSAs, and delegation models Experience working with CyberArk or similar PAM solutions integrated with Active Directory Hands‑on experience with AD disaster recovery and multi-domain/multi-forest environments Understanding of Active Directory’s role within identity governance and IAM ecosystems Experience collaborating with PKI teams and supporting AD‑integrated certificate services Experience with hybrid identity environments (Entra ID / Azure AD Connect) Strong knowledge of AD security hardening practices and attack mitigation techniques Experience generating audit evidence and supporting compliance requirements Experience with SIEM platforms such as CrowdStrike or equivalent Experience supporting regulated or customer‑driven security requirements, including U.S. Government environments; familiarity with CMMC and NIST SP 800‑171 aligned expectations preferred Strong communication and documentation skills, with the ability to translate technical concepts into business impact Ability to operate effectively across enterprise and OpCo environments, balancing global consistency with local context across multiple time zones and culture Alignment with Ralliant values and the Ralliant Business System (RBS), including continuous improvement, transparency, and ownership Benefits Bonus or Equity: This position is also eligible for bonus as part of the total compensation package. Pay Range: The salary range for this position (in local currency) is 83,400.00-155,000.00. Export Control The essential duties of this position require adherence to U.S. Government export control regulations. Candidates must either be U.S. Persons (i.e., U.S. citizens, U.S. lawful permanent residents, or protected individuals as defined by 8 U.S.C. 1324b(a)(3)) or be prepared to collaborate with the company in securing the necessary U.S. government export authorizations. Ongoing employment is dependent upon obtaining the appropriate government export authorizations. Equal Opportunity Employment We Are an Equal Opportunity Employer. Ralliant Corporation and all Ralliant Companies are proud to be equal opportunity employers. We value and encourage diversity and solicit applications from all qualified applicants without regard to race, color, national origin, religion, sex, age, marital status, disability, veteran status, sexual orientation, gender identity or expression, or other characteristics protected by law. Ralliant and all Ralliant Companies are also committed to providing reasonable accommodations for applicants with disabilities. Individuals who need a reasonable accommodation because of a disability for any part of the employment application process, please contact us at View email address on click.appcast.io . #J-18808-Ljbffr Ralliant
- ...Identity Engineer – Active Directory Location: Raleigh, NC OR Beaverton, OR Hybrid The Identity Engineer – Active Directory is responsible for administering, engineering, and optimizing Ralliant Corporation's complex, multi-domain Active Directory environment. This...SuggestedLocal area
- ...Job Title: Systems Engineer(Windows Active Directory Engineer.) Project Duration: 9 Months Locaton :- 100% Remote Role Description: We are seeking an experienced Windows Active Directory Engineer. The ideal candidate will have a deep understanding...SuggestedRemote work
- Identity Automation Engineer Location: Raleigh, NC OR Beaverton, OR- Hybrid The Identity Automation Engineer is responsible for leading the design... ..., and custom connectors across enterprise systems (HR, Active Directory, Azure AD, SaaS platforms). Serve as a technical SME for...SuggestedLocal area
$114k - $142k
...the future? We are seeking a Cyber Security Architect/Engineer II – Active Directory/IAM to join our team. In this role, you will work remotely... ...responsible for managing the daily operations of our Privilege Identity (PI) applications and monitoring the daily operations of...SuggestedPermanent employmentTemporary workWork experience placementRemote workFlexible hours$83.4k - $155k
Ralliant is seeking an Identity Engineer - Active Directory to lead efforts in managing a complex, multi-domain Active Directory environment. Positioned within the IAM program, the role focuses on ensuring system stability and security through effective operations and...Suggested$130k - $190k
...seeking a Senior IT Specialist - M365 & Active Directory Architect. The preference is for this... ...Base (KB), process documents, Engineering Standards, FAQ, technical tips etc. Also... ...protection. • Experience with deploying Identity governance controls and Conditional Access...Permanent employmentLocal areaImmediate startRelocation- ...OIM Engineer This is a contract opportunity with our company that must be worked on... ...below. Job Title: OIM Engineer (Oracle Identity Manager Engineer) Contract Length: 9... ...processes. Integrate OIM with Active Directory, RACF, HR systems, databases, and enterprise...Contract workRemote workVisa sponsorship
- ...Technical Lead – Identity Federation, Azure & Access Policy The... ...a senior, hands on identity engineer responsible for owning... ...not mentioned below. Specific activities may change from time to time... ...Conditional Access. Microsoft Active Directory Strong understanding of...Work experience placement
- ...Technology Architecture and Engineering from defining the overall enterprise... ...Participate and coordinate activities for incident management,... ...forest/multi domain Active Directory and GPO. ~ Working... ...sexual orientation, gender identity, status as a veteran and basis...Work experience placementWork at officeLocal areaRemote workWeekend work1 day per week
- ...management. The successful candidate will manage incidents, support desktop applications, and serve as a subject-matter expert in Active Directory. Proven experience and specialized knowledge in service desk operations are essential. #J-18808-Ljbffr Software Technology,...
$140k - $160k
...Senior Infrastructure Engineer - IAM & Automation Polsinelli does not accept unsolicited... ...require demonstrated experience in Identity and Access Management platforms and workflows... ...Access controls through Okta and Entra/Active Directory. Create, support, and maintain Okta...Full timeTemporary workPart timeRemote work$78.4k - $129.4k
...Integrate SharePoint with related technologies—including Active Directory, SQL Server, IIS, and external line‑of‑business systems—to provide... ...'s race, color, religion, sex, disability, age, gender identity, veteran status, sexual orientation or national origin are not...Contract workWork at office- ...Job Title: US_Electrical Engineering Experienced Professional... ...risks for work on requested activity on the Permit to work and completes... .... The LOCK NUMBER Directory shall be updated regarding the... ...religion, color, sex, gender identity, sexual orientation, ag e, non...Temporary workImmediate startRelocationVisa sponsorshipWork visaShift work
$92.87k - $152.57k
Infrastructure Systems Engineer - Level III WSFS Bank seeks a candidate to serve as a subject... ...two of the following technologies: Active Directory Group Policy, Azure VM deployment and... ...conditions), sexual orientation, gender identity, gender expression, age, status as a...Work experience placementFlexible hours- Ralliant is seeking an Identity Automation Engineer in Raleigh, NC or Beaverton, OR to lead the design and development of identity governance solutions. The engineer will optimize identity lifecycle processes and ensure compliance with regulatory requirements through scalable...
- ...Adobe Acrobat Ability to travel occasionally to DoD sites within the continental United States (CONUS) for system and user support Active Top-Secret security clearance with SCI eligibility Experience in contracting infrastructure management within a DoD environment...Contract workWork at office
- ...CRB is a leading provider of sustainable Engineering, Architecture, Construction and... ...Project work involves directing design activities for all levels of design such as studies... ...status, sex, sexual orientation, gender identity or any other legally protected category...For subcontractorWork at office
- ...Dewberry is seeking a Senior Electrical Engineer or Senior Instrumentation and Control... ...lighting systems, equipment layout and related activities. Provide EI&C specifications,... ...disability, protected veteran status, gender identity or sexual orientation. *Only...For contractorsWork at officeLocal area
$112k - $154k
...Baxter Healthcare Corporation as a Principal Engineer, Embedded Systems and begin an ambitious... ...embedded software development activities within our research and development team... ...origin, age, sexual orientation, gender identity or expression, protected veteran status,...Temporary workLocal areaFlexible hours- ...Companies, is seeking a motivated Field Engineer to support electrical construction projects... ...coordinating electrical construction activities on-site. Support project teams with technical... ...HIV status, sexual orientation, gender identity and/or expression, marital, civil union...For subcontractorWork at office
- ...Bachelor's degree in Computer Science, Engineering, or equivalent work experience ~ Strong... ...fraudulent domains, and how to report suspicious activity here ( . Equal Opportunity Employer... ..., sex, sexual orientation, gender identity, national origin, age, disability,...Work experience placementSecond jobLive inWorldwideFlexible hours
$150k - $185k
...Job Summary This Sr. Managed Services Engineer - AI & CoPilot is responsible for... ...Participate in required audits and compliance activities. Assist with SOW scoping and development... ...Copilot readiness and enablement (identity, data, security, governance, licensing,...Work experience placementWork at officeRemote workWorldwideHome officeFlexible hours- ...Role Overview Field Service Engineer (FSE) at Cepheid provides on‑site support to customers... ...to manage time effectively and document activities and expenses. Travel: 75% travel on... ...veteran status, sexual orientation, gender identity, or other characteristics protected by law...Contract workWork experience placementRemote workShift workNight shiftWeekend work
- ...collaboration and communication. The Field Service Engineer I will be expected to provide technical... ...expertise to perform Pre-commissioning activities including system checkout,... ...affectional or sexual orientation, gender identity or expression, disability, nationality,...Temporary workWork experience placementLocal areaRemote workFlexible hours
- Automation and Controls Engineering Co-Op Automation and Controls Engineering Co-Op About... ...Engineering co-op to support PLC and HMI/SCADA activities in a high-volume manufacturing... ...religion, sex, sexual orientation, gender identity/expression, national origin, disability...
- ...Estimating, Project Supervision, and Field Engineering. We offer opportunities in Heavy Civil,... ...protective equipment (PPE) for jobsite activities. Observe and prevent safety incidents.... ...pregnancy, sexual orientation, gender identity, and expression, protected veteran...Internship
- ...sustainability. As a Protection & Control Engineer, you will design and implement advanced... ...documentation. Coordinate technical activities throughout the project lifecycle. Perform... ...Life and Family (Legal, pet, auto, home, identity theft, etc.), special needs support, and...
- ...equipment. This person will work with Project Engineers, Process Engineers, Process Mechanics,... ...conditions or practices, unlawful activities and activities which present unreasonable... ..., disability, ethnicity, gender, gender identity and expression, religion, or sexual orientation...Local areaImmediate start
- ...team that is responsible for the design/engineering/operation of the following... ...infrastructure technology services: Microsoft Active Directory Domain Services Microsoft Active... ...Management Services (KMS) Microsoft Identity Manager (MIM) Microsoft Remote Desktop...Permanent employmentFull timePart timeWork experience placementH1bWork at officeRemote workWork visaShift workDay shift
- ...company’s success. As a Corporate Facilities Engineer I within PNC's Realty Services... ...project objectives. • Directs and coordinates activities of external engineers, consultants, and... ...origin, age, sexual orientation, gender identity, disability, veteran status, or other categories...Full timeContract workTemporary workPart timeFor contractorsWork experience placementWork at officeNight shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Identity Engineer - Active Directory. Be the first to apply!

