Domain Services Engineer

Posted Yesterday
Be an Early Applicant
2 Locations
In-Office
126K-170K Annually
Senior level
Aerospace • Information Technology • Professional Services • Security • Software
The Role
Designs, implements, administers, and supports enterprise Active Directory, directory synchronization, DNS, DHCP, IPAM, PKI, and Cisco ISE services across hybrid on-premises and cloud environments. Provides Tier 3 escalation support, manages 802.1X network access control, troubleshoots authentication and replication issues, implements Group Policy, and develops resilient system architectures. The role also documents modernization efforts, integrates identity and security platforms, and collaborates with network, systems, security, and business teams.
Summary Generated by Built In

Type of Requisition:

Regular

Clearance Level Must Currently Possess:

Top Secret/SCI

Clearance Level Must Be Able to Obtain:

Top Secret SCI + Polygraph

Public Trust/Other Required:

None

Job Family:

IT Infrastructure and Operations

Job Qualifications:

Skills:

Active Directory (AD), Directory Synchronization, Scripting Languages

Certifications:

None

Experience:

5 + years of related experience

US Citizenship Required:

Yes

Job Description:

GDIT is seeking a Domain Service Engineer to support the planning, building, and operations of a large, globally accessed, hybrid cloud computing system. The Domain Services Engineer provides support, implementation, and design services for ISE and Microsoft Active Directory and Windows-based systems across the enterprise, including directory and identity management solutions.

We are looking for an individual who will serve as our internal Domain Services team  a broad scale of technologies, working with 802.1X network access control using Cisco Identity Services Engine (ISE), while simultaneously taking ownership of our core DDI (DNS, DHCP, and IPAM) services. Beyond day-to-day administration and Tier 3 engineering, this individual will play a vital role in designing, modernizing, and documenting system-level architectures to ensure our hybrid on-premises and cloud infrastructures are highly available, secure, and scalable. The ideal candidate will be a motivated self-starter with excellent written and verbal communication skills, who exceeds as an individual, as well as excels among peers in a team environment.

Job Duties include but are not limited to:

•Accountable for the management, uptime, and lifecycle of the organization’s 802.1x  architecture.

•Deliver and implement a secure, scalable, and resilient Active Directory design, following industry best practices while adhering to Information Security standards.

•Provide SME level assistance and escalation support for all troubleshooting tasks related to DNS, DHCP, and AD, including but not limited to integration with Windows and non-Windows endpoints, authentication, role-based access controls, DNS, DHCP, etc.

•Manage the environment proactively, anticipating risks and issues, designing and engineering for resiliency. Take technical ownership of projects and systems accordingly.

•Facilitate the implementation of Group Policy Objects (GPO) based on stated requirements. Troubleshoot and resolve any GPO related issues that arise.

•Monitor and identify replication interruptions between domain controllers, DNS and DHCP Server configurations.

•Management of the Public Key Infrastructure (PKI) systems and certificates.

REQUIRED QUALIFICATIONS:

5+ years of experience in progressive roles from Active Directory Administrator to Sr. Engineer

Knowledge of at least scripting languages (e.g. Powershell, Python, Bash, or Perl).

In Depth understanding of Active Directory or LDAP authentication and administration.

Advanced familiarity with enterprise directory synchronization tools such as Azure Active Directory Connect, Cisco Directory Synchronization, or others.

  • Implement and Manage enterprise-wide architecture, deployment, and ongoing administration of Cisco ISE
  • Maintain advanced network access control (NAC) policies, utilizing 802.1X, MAC Authentication Bypass (MAB), and Web Authentication.
  • Act as a Tier 3 escalation point for complex 802.1X/RADIUS authentication issues, certificate mismatches, and supplicant-side issues across Windows, macOS, Linux, and IoT devices.

PREFERRED QUALIFICATIONS:

1. An analytic mindset with the ability to define complex infrastructure problems, correlate logs across multiple systems (ISE, AD, DNS, Network Switches), and execute systematic resolutions.

2. Someone who looks beyond immediate triage to design architectures that prevent future systemic failures.

3. A strong capability to translate highly technical concepts to non-technical business stakeholders, and collaborate across siloed Network, Systems, and Security teams.

4. Configure and optimize network device profiling, Cisco TrustSec (Security Group Tags), and Comply-to-Connect (C2C) architectures.

5. Integrate Cisco ISE with Active Directory, Azure AD/Entra ID, PKI/Certificate Authorities, and SIEM tools for automated threat containment and compliance reporting.

6. Evaluate existing infrastructure pipelines and propose architectural modernizations to leverage Zero Trust Network Architecture (ZTNA), automation, and hybrid-cloud capabilities.

7. Architect, document, and present system-level designs that integrate on-premises systems, virtualization platforms, and public/private cloud environments.

8. Experience working in a fast tempo government agency production IT environment.

9. Experience troubleshooting various Microsoft Windows Server platforms' roles and features.

Location: Customer Site / NGA Washington or NGA St. Louis

US Citizenship Required 

GDIT IS YOUR PLACE
At GDIT, the mission is our purpose, and our people are at the center of everything we do.
● Growth: AI-powered career tool that identifies career steps and learning opportunities
● Support: An internal mobility team focused on helping you achieve your career goals
● Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off
● Community: Award-winning culture of innovation and a military-friendly workplace
OWN YOUR OPPORTUNITY
Explore an enterprise IT career at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your desire to drive operations forward.

#RoverGSS

The likely salary range for this position is $125,800 - $170,200. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours:

40

Travel Required:

None

Telecommuting Options:

Onsite

Work Location:

USA VA Springfield

Additional Work Locations:

USA MO St. Louis

Total Rewards at GDIT:

Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

 



Our Identity Verification Process:

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

About Our Work:

We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.

Join our Talent Community to stay up to date on our career opportunities and events at

gdit.com/tc.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

Skills Required

  • 5+ years of progressive experience, from Active Directory Administrator to Senior Engineer
  • Knowledge of at least one scripting language, such as PowerShell, Python, Bash, or Perl
  • In-depth understanding of Active Directory or LDAP authentication and administration
  • Advanced familiarity with enterprise directory synchronization tools, such as Azure Active Directory Connect or Cisco Directory Synchronization
  • Experience implementing and managing enterprise-wide Cisco ISE architecture, deployment, and administration
  • Experience with 802.1X, MAC Authentication Bypass, and Web Authentication network access control policies
  • Experience providing Tier 3 support for 802.1X and RADIUS authentication issues across Windows, macOS, Linux, and IoT devices
  • U.S. citizenship
  • Currently possess Top Secret/SCI clearance
  • Ability to obtain Top Secret/SCI with polygraph
  • Experience configuring network device profiling, Cisco TrustSec, and Comply-to-Connect architectures
  • Experience integrating Cisco ISE with Active Directory, Azure AD/Entra ID, PKI/certificate authorities, and SIEM tools
  • Experience with Zero Trust Network Architecture, automation, and hybrid-cloud capabilities
  • Experience architecting and documenting designs spanning on-premises, virtualization, and public/private cloud environments
  • Experience in a government agency production IT environment
  • Experience troubleshooting Microsoft Windows Server roles and features

General Dynamics Information Technology Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about General Dynamics Information Technology and has not been reviewed or approved by General Dynamics Information Technology.

  • Affordable Benefits Pay and benefits are described as good or okay in multiple places, and the overall package is often portrayed as acceptable even when base pay is not viewed as top-tier.
  • Healthcare Strength Medical, dental, and vision plan options are presented as comprehensive, with additional protections like disability and life insurance contributing to a well-rounded health and protection offering.
  • Retirement Support A 401(k) plan with company match is consistently highlighted as part of the total rewards package, supporting longer-term financial planning.

General Dynamics Information Technology Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Falls Church, VA
21,625 Employees

What We Do

We are GDIT. The people supporting some of the most complex government, defense, and intelligence projects across the country. We deliver. Bringing the expertise needed to understand and advance critical missions. We transform. Shifting the ways clients invest in, integrate, and innovate technology solutions. We ensure today is safe and tomorrow is smarter. We are there. On the ground, beside our clients, in the lab, and everywhere in between. Offering the technology transformations, strategy, and mission services needed to get the job done.

Similar Jobs

SailPoint Logo SailPoint

Customer Success Manager

Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Remote or Hybrid
United States
2461 Employees
60K-101K Annually

Shield AI Logo Shield AI

Director, Enterprise Strategy and Operations (R5626)

Aerospace • Artificial Intelligence • Machine Learning • Robotics • Software
In-Office or Remote
4 Locations
190K-290K Annually

Shield AI Logo Shield AI

Senior Lead, Enterprise Strategy and Operations (R5624)

Aerospace • Artificial Intelligence • Machine Learning • Robotics • Software
In-Office or Remote
4 Locations
160K-240K Annually

Wipfli Logo Wipfli

Consultant

Cloud • Fintech • Software • Business Intelligence • Consulting • Financial Services
Remote or Hybrid
United States
2900 Employees
88K-118K Annually

Similar Companies Hiring

Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account