Description
Overview:
We are seeking an experienced Active Directory (AD) and Entra ID Security Architect/ Engineer to lead a critical security initiative. This role will be responsible for assessing, designing, and implementing a secure and scalable identity and access management (IAM) framework across our Active Directory and Entra ID environments. The ideal candidate will bring deep technical expertise, a security-first mindset, and the ability to drive change in a complex enterprise environment.
This will be a detail-oriented and strategic Active Directory & Identity Governance Specialist to lead a six-month initiative focused on improving administrative access controls, rationalizing Group Policy Objects (GPOs), standardizing AD group descriptions, and aligning hybrid identity configurations with Entra ID best practices. This role is critical to enhancing audit readiness, reducing complexity, and supporting Zero Trust principles across the enterprise.
Objectives:
AD Admin Justification Framework: Improve & Help drive the process for requesting, approving, and reviewing AD Admin access.
Group Policy Object (GPO) Rationalization: Identify, consolidate, and decommission redundant or conflicting GPOs.
AD Group Description Standardization: Apply consistent naming and description conventions to improve discoverability and reduce access confusion.
Entra ID Alignment: Ensure hybrid identity configurations are secure, efficient, and aligned with best practices.
Month 1
Discovery & Assessment
Inventory all GPOs and AD groups
Identify redundant or conflicting policies
Review current Domain Admin assignments and usage
Assess Entra ID configuration and integration points
Expected Outcomes
Reduced complexity and risk in AD environments
Improved audit readiness and access transparency
Stronger alignment with Zero Trust and least privilege principles
Enhanced operational efficiency for IAM and support teams
Key Responsibilities:
Active Directory Security Overhaul:
Conduct a comprehensive review of the current AD environment.
Define and implement administrative tiers and role-based access controls (RBAC).
Identify and remediate security gaps, misconfigurations, and legacy practices.
Establish governance and operational best practices for AD management.
Entra ID (Azure AD) Operationalization:
Lead the effort to operationalize Entra ID with a focus on IAM.
Define roles, policies, and access controls aligned with Zero Trust principles.
Collaborate with internal teams to build knowledge and operational maturity in Entra ID.
Security & Compliance:
Align AD and Entra ID configurations with industry standards (e.g., CIS Benchmarks, NIST).
Implement monitoring, alerting, and auditing for privileged access.
Support compliance initiatives and audits related to identity and access.
Collaboration & Leadership:
Work closely with infrastructure, security, and application teams.
Provide mentorship and guidance to internal staff on AD and Entra ID best practices.
Communicate findings and progress to leadership with clarity and confidence.
Skills
Security, active directory
Top Skills Details
Security,active directory
Pay and Benefits
The pay range for this position is $65.00 - $70.00/hr.
Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following:
Medical, dental & vision - Critical Illness, Accident, and Hospital - 401(k) Retirement Plan - Pre-tax and Roth post-tax contributions available - Life Insurance (Voluntary Life & AD&D for the employee and dependents) - Short and long-term disability - Health Spending Account (HSA) - Transportation benefits - Employee Assistance Program - Time Off/Leave (PTO, Vacation or Sick Leave)
Workplace Type
This is a fully remote position.
Application Deadline
This position is anticipated to close on Sep 1, 2025.
h4>About TEKsystems:
We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia. As an industry leader in Full-Stack Technology Services, Talent Services, and real-world application, we work with progressive leaders to drive change. That's the power of true partnership. TEKsystems is an Allegis Group company.
The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.
About TEKsystems and TEKsystems Global Services
We're a leading provider of business and technology services. We accelerate business transformation for our customers. Our expertise in strategy, design, execution and operations unlocks business value through a range of solutions. We're a team of 80,000 strong, working with over 6,000 customers, including 80% of the Fortune 500 across North America, Europe and Asia, who partner with us for our scale, full-stack capabilities and speed. We're strategic thinkers, hands-on collaborators, helping customers capitalize on change and master the momentum of technology. We're building tomorrow by delivering business outcomes and making positive impacts in our global communities. TEKsystems and TEKsystems Global Services are Allegis Group companies. Learn more at TEKsystems.com.
The company is an equal opportunity employer and will consider all applications without regard to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.