Sr. Authentication Services Engineer (Hybrid)
Capital OneAbout the role
Do you want to work for a tech company that writes its own code, develops its own software, and builds its own products? We experiment and innovate leveraging the latest technologies, engineer breakthrough customer experiences, and bring simplicity and humanity to banking. We make a difference for 65 million customers.
At Capital One, you'll be part of a group of makers, breakers, doers, and disruptors, who love to solve real problems and meet real customer needs. Do you possess an innate desire to learn and work on new and exciting technology and design solutions as it relates to identity and directory services today and into the future? If so, then this opportunity might be for you. We want you to be curious and ask “what if?”
Do you have experience with:
AWS Cloud Infrastructure management
Microsoft’s Active Directory
Single Sign-On (SSO)/MFA - Ping, Okta, or similar platform
Azure Active Directory
AWS Directory Services
Microsoft AD on AWS
Google Cloud Directory
Similar LDAP or cloud vendor based platform
Capital One is looking for an experienced Sr. Authentication Services Platform Engineer to help drive the enterprise directory strategy forward for the Identity and Access Management organization. As a member of the Authentication Services Platform team within Authentication Services, you will be responsible for developing, engineering, deploying and supporting comprehensive solutions. The Authentication Services Lead Platform Engineer will also be responsible for identifying opportunities for the automation of tasks, processes, or entire solutions. This role is also responsible for leading and driving initiatives as well as identifying any opportunities for improvement in the environment.
Candidates for this role should have expert level knowledge and experience with complex enterprise level Active Directory environments, other enterprise LDAP platforms, Single Sign On (SSO)/MFA, and AWS Cloud Infrastructure management. Candidates should be passionate about delivering a highly secure and stable environment with an eye for continuous improvement. The individual should have experience with integrating new and emerging technologies into an enterprise environment and welcome the opportunity to work on cloud based platforms from AWS, Microsoft, and Google.
Responsibilities
Analyze, design, and support a highly complex, enterprise level Active Directory and Single Sign On services in a hybrid on-premise and cloud hosted environment.
Manage enterprise identity cloud directories including Microsoft Azure AD, AWS Microsoft AD, and Google Cloud Domain Directory.
Manage enterprise cloud infrastructures in AWS, Azure, and Google cloud platforms
Translate business needs into workable technology solutions that meet the needs of internal customers.
Participate in or lead troubleshooting and incident resolution of complex, high severity incidents
Develop automated solutions using scripts, pipelines, and cloud based server-less computing platforms
Develop detailed architecture, standards, design, and implementation documentation
Analyze the current Authentication Services environment to identify both technical and operational opportunities and develop continuous improvement action plans.
Participate in disaster recovery, capacity planning, performance monitoring and maintenance to ensure high availability.
Basic Qualifications
High School Diploma, GED or equivalent certification
At least 4 years of experience with Active Directory
At least 4 years of experience with engineering, operational support, and implementation of identity and/or directory services
At least 4 years of experience with Windows security, delegation of permissions, and group policy management
At least 4 years of experience with Cloud Infrastructure management
Preferred Qualifications
Bachelor’s Degree
6+ years of experience supporting Public Key Infrastructure (PKI) and Active Directory Certificate Services
6+ years of experience supporting Active Directory in a cloud hosted environment with AWS, Microsoft Azure, or Google Cloud Platform
6+ years of experience with cloud-based directories Microsoft Azure, AWS Microsoft AD, and Ping Federate or equivalent experience
6+ years of experience developing complex scripts in PowerShell, VBScript, YAML, Python or other languages to develop automated so
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s