Jobs and Careers
CA

Active Directory Endpoint Policy Manager

CACI International Inc
United Statesfull_timeVerifiedPosted 13 Apr 2026
💰 $181,800/yr($86,600/yr$181,800/yr)

About the role

Job Title: Active Directory Endpoint Policy Manager

Job Category: Information Technology

Time Type: Full time

Minimum Clearance Required to Start: Secret

Employee Type: Regular

Percentage of Travel Required: Up to 10%

Type of Travel: Continental US

* * *

The Opportunity:

Join our dynamic team as an Active Directory Endpoint Policy Manager, where you'll play a crucial role in supporting the Air Force’s Enterprise IT as a Service program. In this exciting position, you'll be the guardian of our endpoint security, ensuring that all devices comply with the highest standards of security and performance. You'll work closely with our talented Intune team to prepare for future migrations, leveraging your familiarity with Microsoft Intune. Get ready to make a significant impact in a high-stakes environment while enjoying an exciting and collaborative work atmosphere.

Responsibilities:

Endpoint Policy Management:

  • Craft, implement, and maintain Group Policy Objects (GPOs) to fortify endpoint security across the enterprise.
  • Ensure all endpoints adhere to Air Force security policies and standards.
  • Conduct regular audits and assessments to identify and remediate non-compliance.
  • Collaborate with our security wizards to integrate cutting-edge security practices into endpoint policies.
  • Monitor and report on the effectiveness of endpoint policies, suggesting improvements to keep us ahead of the curve.

AD Sites and Services:

  • Familiarity with AD Sites and Services to design/troubleshoot new program office locations.
  • Ensure optimal performance and availability of AD services across all sites.
  • Implement and maintain site-specific policies and configurations.

Role-Based Access Control (RBAC):

  • Create and maintain security groups for tool-based RBAC delegations.
  • Ensure appropriate access levels are assigned to users and groups based on their roles and responsibilities.
  • Review and update access permissions regularly to align with organizational changes.

Service Account Management:

  • Create and configure service accounts as required by various applications and services.
  • Ensure service accounts adhere to security best practices, including the use of strong passwords and limited privileges.
  • Monitor and audit service account usage to detect any anomalies or misuse.

Support and Collaboration:

  • Provide secondary support to other team members for AD-related dependencies.
  • Collaborate with IT staff to ensure seamless integration of AD services with other enterprise systems.
  • Document processes and procedures related to endpoint policy management and AD configurations.

Intune Familiarity:

  • Gain and maintain familiarity with Microsoft Intune to support future migrations and enhancements.
  • Work alongside our Intune team to ensure a smooth transition and integration of Intune services.

Qualifications:

Required: 

  • Active Secret clearance.
  • 10+ Years of relevant experience (Bachelor’s Degree in applicable field may be substituted for 5 years of experience).
  • Minimum of 5 years of experience in Active Directory administration, with a strong focus on endpoint policy management and security hardening.
  • Must be proficiency in Microsoft Active Directory and Group Policy management.
  • Strong understanding of AD Sites and Services and its configuration.
  • Experience with role-based access control (RBAC) and security group management.
  • Knowledge of endpoint security best practices and compliance standards.
  • Excellent problem-solving and troubleshooting skills.
  • Strong communication and collaboration abilities.
  • Familiarity with Microsoft Intune (expertise not required).
  • Willingness to stay updated with the latest cybersecurity trends and emerging security tools.
  • Required DoD 8140 compliant certification such as CompTIA Security+

Desired: 

  • ServiceNow integrated workflows/automation
  • Microsoft Federation Services
  • Advanced PowerShell scripting or prior software development experience
  • DoD PKI

-

What You Can Expect:

 A culture of integrity.

At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.

An environment o

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

CACI International Inc

View company profile →