Previous Job
Staff Systems Engineer - Active Directory
Ref No.: 18-04655
Location: Foster City, California
Position Type:Contract
Job Description:
The Corporate Infrastructure Engineering team is looking for a Staff Systems Engineer to help us enable and deploy and manage our Global Active Directory Services. We are searching for a passionate engineer to join our team to help us evaluate, implement, deploy and support technologies that enable our users to collaborate around the globe. The motivated candidate should have a firm understanding Active Directory Services, with a base understanding of Windows servers, ADFS, Security fundamentals, network devices such as load balancers and Firewalls. Additionally, he/she should have a working knowledge of windows server operating systems. Engineers typically work under the guidance of SME lead engineers and managers responsible for a given area.

•Help engineer, deploy & manage Active Directory Services in a globally distributed environment.
•Excellent troubleshooting skills with Active Directory: Able to solve AD issues and also troubleshoot connectivity issues with AD.
•Experience with integrating applications, network devices and systems with AD for authentication and directory services.
•Solid understanding of Active Directory concepts, LDAP, Kerberos and windows security.
•Solid understanding of DNS
•Experience with AD Tools (Backup, monitoring, auditing, SIEM etc.,) is a plus.
•Experience with ADFS and ADConnect is a plus.
•Partner with Architects, Engineers and Operations individuals across a variety of services and infrastructure organizations to resolve issues, provide technical feedback, and to contribute to the overall architecture direction.
•Analyze and isolate problems and issues while leading problem bridges while being available for 3rd level when needed.
•Enhance and improve existing infrastructure through automation and reporting.
•Collaborate effectively with a team, utilizing excellent verbal and written communication skills.
•Successfully deliver projects, meet project milestones, and communicate issues/risks appropriately.
•Develop and document policies, procedures, and associated training plans for systems administration and operations teams.
•Take handoff of problems from SME leads and work them independently to root cause.
•Own Root Cause Analysis and Problem Management for corporate Identity Management environment.
•Create and maintain system documentation for domain technologies, including installation, configuration, and appropriate troubleshooting steps.
•Improve existing processes through solutions to recurring problems and enhancements to existing solutions or documentation

•Bachelor's Degree in Computer Science preferred or 3+ years relevant experience
•Strong technical knowledge and experience with planning, deploying and maintaining Active Directory services in the enterprise
•Strong technical knowledge of LDAP, Authentication, Kerberos, DNS and windows security in general.
•Strong technical knowledge and experience with both Microsoft Windows 2012 and 2016 Servers
•Experience with Windows and Mac Desktop Operating Systems
•Knowledge of Active Directory, Group Policy and Windows Server 2012/2016
•Good PowerShell scripting skills
•Experience documenting and maintaining configuration and process information
•Excellent client service delivery with a focus on the end user experience
•Experience with Quest AD tools (ARS, Change Auditor, and RMAD) is a Plus.
•Must have deep and thorough understanding of monitoring best practices, preferably with Microsoft System Center Operation Manager (SCOM) understanding and experience.
•Experience troubleshooting AD,Kerberos,LDAP application connectivity issues
•Experience with Wireshark or Network Monitor or similar tools.
•Thorough understanding of Windows Server Security (IPSec,NTLM,UAC etc.,)
•Strong understanding of PKI technologies
•Knowledge of server virtualization technologies, preferably VMware and/or Microsoft technologies
•Self-motivated, with keen attention to detail and excellent judgment skills

Major Job Duties and Responsibilities:
o Help design and deploy Red Forest infrastructures
o Remediate potential vulnerabilities and understand ramifications of design changes related to security and the overall health of the environment.
o Work with team leads to follow Microsoft's recommendations for secure domain models to make changes to existing domains
o Co-ordinate activities via change control process
o Review and approve domain changes and configurations