Jobs and Careers
IT

Senior Microsoft Systems and Security Engineer

ITW
Eden Prairie, United Statesfull_timeVerifiedPosted 10 Aug 2023

About the role

Company Description

A thriving environment for learning, innovation and growth.

As a global company, MTS offers unparalleled access to challenging opportunities around the world. We engineer technology for some of the most recognizable companies in the world, focused on making products better, safer, cleaner, more efficient and reliable. Our employees are passionate about driving innovation, creating high quality solutions, and providing an excellent customer experience.

By joining MTS, you’ll have access to the latest tools and technologies, along with the support of colleagues who are passionate about their work. You’ll discover a dynamic culture of continuous improvement that extends to our people, one that offers numerous ways to expand your knowledge and advance your career. And because we are a global company, your work may also include world travel.

 

Job Description

Primary Objective: 

  • Manage and optimize the organization's identity infrastructure, including Azure Active Directory (Azure AD), Active Directory Federation Services (ADFS), and on-premises Active Directory.
  • Responsible for designing, implementing, and maintaining secure identity solutions that enable seamless access to applications and resources while maintaining a strong emphasis on information security and data protection.
  • Ensuring efficient identity synchronization and authentication processes between on-premises and cloud-based environments.
  • Responsible for designing and deploying Microsoft technologies such as DNS, DHCP, group policy, security, certificate services, LDAP, DHCP, DFS, FRS, and Azure AD.
  • Troubleshoot and deploy Azure AD, Active Directory, conditional access, AAD connect, and other Microsoft identity technologies.
  • Implement and troubleshoot a complex global Active Directory environment that will allow us to connect all MTS businesses more seamlessly.
  • Establish and support SSO solutions to internal and external applications.

Requires US Citizenship because of ITAR/CUI

Onsite Only no Remote

Main Areas of Responsibilities 

  • Azure AD and Active Directory Management
    • Configure and maintain Active Directory, Azure AD, and associated identity technologies to provide seamless single sign-on (SSO) capabilities for cloud and on-premises applications.
    • Implement and manage trust relationships with external applications and partners, ensuring secure and reliable federation.
    • Develop and maintain claim rules to govern user authentication and authorization and troubleshoot any related issues.
    • Manage on-premises Active Directory, including user and group accounts, organizational units (OUs), and Group Policy Objects (GPOs).
    • Simplify and ensure the proper functioning of domain controllers, replication, and trust relationships with external domains or forests.
    • Employ best practices to maintain AD security and integrity, including password policies, account lockouts, and secure authentication mechanisms.
  • Azure AD Connect Configuration and Maintenance
    • Configure Azure AD Connect to synchronize on-premises Active Directory objects with Azure AD, including customizing attribute mapping and filtering.
    • Monitor synchronization processes and resolve any synchronization conflicts or anomalies.
    • Implement and test disaster recovery procedures for Azure AD Connect to ensure business continuity.
  • Identity and Access Solutions Development
    • Collaborate with application owners and development teams to integrate identity and access solutions into new and existing applications.
    • Design and implement multi-factor authentication (MFA) solutions, conditional access policies, and other identity-related security measures.
    • Work with stakeholders to define identity and access requirements and translate them into technical solutions.
  • Security and Compliance
    • Stay current with industry best practices, security trends, and compliance regulations related to identity and access management.
    • Implement security controls to safeguard identities and data, and actively participate in security assessments and audits.
    • Ensures appropriate security measures are maintained and policies followed across the server, storage infrastructure, and server hardware.
    • Support other security platforms, integrations, such as EDR, SIEM, and ensure compliance with the BRAVE cyber security framework.
  • Other duties
    • Support existing server infrastructure in a 24x7 on-call escalation capacity.
    • Manage and lead systems and infrastructure projects from conception to completion.
    • Administer windows systems infrastructure in both on-premises and in the cloud (AWS & Azure)
    • Follow existing in

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

ITW

View company profile →