Cloud Solution Architect (v-CSA) - Active Directory & PKI

Posted Yesterday
Be an Early Applicant
4 Locations
In-Office or Remote
Entry level
Energy
The Role
Cloud Solution Architect focused on Active Directory and Public Key Infrastructure in a work-from-home role. The provided description contains no additional responsibilities, qualifications, compensation, travel, sponsorship, or clearance details.
Summary Generated by Built In

Job Title:

Cloud Solution Architect (v-CSA) - Active Directory & PKI

Job Description

We are looking for a Cloud Solution Architect (CSA) with deep expertise in Active Directory (AD) and Public Key Infrastructure (PKI) to support enterprise and regulated customers in identity, security, and hybrid infrastructure scenarios.
This is a customer-facing role responsible for driving secure identity architecture, acting as a trusted technical advisor, and delivering resilient AD and PKI solutions across on-premises and hybrid environments. Depth in AD and PKI is the primary requirement; broader technical coverage is valuable when it supports identity, security, and regulated customer scenarios.
Key Responsibilities
1. Active Directory & PKI Architecture
  • Design and implement enterprise Active Directory Domain Services (AD DS) architectures.
  • Design and implement Public Key Infrastructure (PKI), Certificate Services, and certificate lifecycle management solutions.
  • Support AD domain design, consolidation, modernization, and operational governance.
  • Guide customers on secure identity architecture, authentication, authorization, and certificate-based trust models.
2. Customer Delivery & Execution
  • Lead end-to-end delivery of AD and PKI engagements, including assessment, design, implementation, migration, and troubleshooting.
  • Troubleshoot complex identity, authentication, DNS, Group Policy, and certificate-related issues.
  • Deliver high-quality, repeatable technical engagements for enterprise and regulated customers.
3. Trusted Advisor & Stakeholder Management
  • Act as a trusted technical advisor for customers and internal stakeholders.
  • Translate business, compliance, and security requirements into practical technical architecture.
  • Communicate clearly with technical teams, customer decision makers, CSAMs, partners, and engineering teams.
4. Operations, Resilience & Optimization
  • Improve operational stability, monitoring, and reliability of identity and certificate services.
  • Support disaster recovery, backup, and business continuity planning for AD and PKI services.
  • Drive performance, maintainability, and operational maturity improvements.
5. Security & Governance
  • Guide customers on secure-by-design identity and certificate architectures.
  • Support security hardening for Active Directory, Windows Server, PKI, and related infrastructure.
  • Advise on access control, governance, compliance, and identity protection practices.
6. Collaboration & Knowledge Sharing
  • Collaborate closely with CSAMs, partners, engineering teams, and other CSA communities to deliver customer outcomes.
  • Contribute to reusable assets, delivery IP, technical guidance, and best practices for AD, PKI, and hybrid identity scenarios.
  • Share knowledge with the broader team to strengthen depth in identity, security, and high-security customer delivery.
Required Technical Skills
Core Must-have Skills: Onprem strong experience is must to have
  • Minimum 2 of the following 3 skills:
  • Expert-level Active Directory Domain Services (AD DS), including architecture, operations, troubleshooting, and modernization.
  • Expert-level Public Key Infrastructure (PKI) / Active Directory Certificate Services (AD CS), including certificate lifecycle, templates, enrollment, governance, and troubleshooting.
  • Strong Windows Server knowledge, including DNS, Group Policy, authentication protocols such as Kerberos and NTLM, and security hardening.
  • And:
  • Knowledge of recent Windows Server functionalities and enhancements required.
  • Strong ability to operate confidently across on-premises and hybrid identity environments.
Additional Skills - Strongly Preferred
  • Microsoft Sentinel experience is preferred, especially where it supports identity threat detection, security monitoring, and high-security customer scenarios.
  • Microsoft Defender for Identity or related identity threat detection experience.
  • Conditional Access, Identity Protection, privileged access, or identity governance experience.
  • PowerShell scripting and automation for AD, PKI, operational reporting, and repeatable delivery.
Hybrid & Identity Integration -Better to have
  • Microsoft Entra ID and hybrid identity concepts.
  • Microsoft Entra Connect / AD Connect and synchronization fundamentals.
  • Identity federation such as ADFS and enterprise application / SSO integration.
Security & High-Security Environment Requirements
  • Proven experience working in environments with high security, compliance, confidentiality, or regulated customer requirements.
  • Strong awareness of classified, regulated, sovereign, public sector, defense, or critical infrastructure IT environments where applicable.
  • Ability to follow strict confidentiality expectations and demonstrate professionalism, integrity, reliability, and accountability.
  • Ability to work effectively in complex enterprise IT landscapes and fast-moving customer situations.
  • Where customer engagements require it, the candidate must be able to meet applicable security screening, background check, or clearance requirements.
  • Finland citizenship and need to apply for security clearance
Language & Location Requirements
  • Fluent English, spoken and written, is mandatory.
  • Finnish is strongly preferred.
  • Relevant Nordic language capability is considered a plus, depending on customer and country needs.
  • Ability to work onsite as required for customer delivery, workshops, or high-security engagement needs.
  • Flexibility to travel as needed.
Core Qualifications & Capabilities
  • Experience working with enterprise customers in customer-facing technical delivery or advisory roles.
  • Strong troubleshooting and problem-solving skills, especially in critical identity, authentication, and certificate-related situations.
  • Excellent communication, presentation, and stakeholder engagement skills.
  • Strong balance between deep technical expertise and business understanding.
  • Ability to adapt quickly in changing environments and manage multiple stakeholders under pressure.
  • Strong ownership mindset, delivery discipline, and ability to contribute to team knowledge and repeatable IP.
What Makes This Role Unique
  • Deep specialist role focused on Active Directory and PKI rather than broad generalist coverage.
  • Combines architecture design, hands-on delivery, customer advisory, and high-security environment readiness.
  • Provides an opportunity to strengthen team capability in identity security while expanding into adjacent areas such as Microsoft Sentinel and identity threat protection.

Location:

FIN -Work-at-Home

Language Requirements:

Time Type:

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Canonsburg, PA
843 Employees
Year Founded: 1864

What We Do

CNX Resources Corporation (NYSE: CNX) is the premier natural gas development, midstream, and technology company in Appalachia – one of the most energy abundant regions in the world. We believe in an Appalachia First approach to our work – prioritizing investments and utilizing home-grown resources that truly make a Tangible, Impactful, and Local difference in our regional communities first, and then far beyond. Over the past 150+ years, our 100% local workforce has produced low cost and low emission natural gas to help meet the world’s growing energy demand and catalyze environmental progress. Learn more about our company at CNX.com. Or, to view stories on our vision, innovations and actions, visit PositiveEnergyHub.com

Similar Jobs

Drata Logo Drata

Enterprise Account Executive

Security • Software • Cybersecurity • Automation
Remote
26 Locations
600 Employees
194K-273K Annually

Pfizer Logo Pfizer

Machine Learning Engineer

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
32 Locations
121990 Employees
163K-272K Annually

Pfizer Logo Pfizer

Senior Director, Innovation, Data & Analytics (IDA) Lead

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
32 Locations
121990 Employees
231K-385K Annually

Pfizer Logo Pfizer

InsightXplorer Platform Lead, Medical Insights

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
In-Office or Remote
32 Locations
121990 Employees
124K-207K Annually

Similar Companies Hiring

UL Solutions Thumbnail
Automotive • Professional Services • Software • Consulting • Energy • Chemical • Renewable Energy
Chicago, IL
15000 Employees
Runwise Thumbnail
Greentech • Hardware • Real Estate • Software • Energy • PropTech
New York, NY
199 Employees
Energy CX Thumbnail
Greentech • Professional Services • Business Intelligence • Consulting • Energy • Financial Services • Utilities
Chicago, IL
108 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account