Apetan Consulting LLC is seeking a highly skilled Identity & Security Engineer to support and manage enterprise identity infrastructure within a secure, large-scale environment. This role is critical to maintaining and enhancing authentication, authorization, and data protection systems across the organization.
Responsibilities:
- Administer and maintain Active Directory (AD), including domain controllers, replication, and security hardening
- Manage Active Directory Certificate Services (ADCS) and Public Key Infrastructure (PKI)
- Support and maintain Active Directory Federation Services (ADFS) and integrations with identity providers
- Implement and manage Azure Information Protection (AIP) for data classification and security
- Utilize Quest tools (Change Auditor, RMAD, GPOAdmin) for auditing, recovery, and policy management
- Configure and manage Hardware Security Modules (HSM) for cryptographic operations
- Deploy and manage AWS infrastructure using Terraform (Infrastructure-as-Code)
- Ensure secure authentication using Kerberos, including SPNs and keytab management
- Design, implement, and enforce Group Policy Objects (GPOs)
- Develop automation using PowerShell scripting
- Collaborate with security and infrastructure teams to ensure compliance with enterprise standards
- Participate in on-call rotation for critical identity services
- Work within an Agile environment, collaborating with cross-functional teams
Requirements:
- Strong experience with Active Directory, including domain controllers, replication, and security hardening
- Hands-on expertise in ADCS and Public Key Infrastructure (PKI)
- Proficiency in Kerberos authentication, SPNs, and keytab management
- Experience managing and troubleshooting Group Policy Objects (GPOs)
- Advanced PowerShell scripting skills
- Familiarity with Azure Information Protection (AIP) and identity security
- Experience with Quest tools (Change Auditor, RMAD, GPOAdmin)
- Knowledge of HSM configuration and cryptographic key management
- Experience with AWS and Terraform (Infrastructure-as-Code)
- Strong understanding of enterprise security principles and best practices