System Architect (Active Directory)

Sorry, this job was removed at 08:13 p.m. (CST) on Thursday, May 08, 2025
Be an Early Applicant
Ashburn, VA
In-Office
AdTech • Information Technology • Marketing Tech
The Role
About Infinitive:
Infinitive is a data and AI consultancy that helps clients modernize, monetize, and operationalize their data to generate lasting value. They pride themselves on their deep industry and technology expertise, ensuring that they drive and sustain the adoption of new capabilities. Infinitive is committed to aligning their team with their clients' culture, ensuring a successful partnership by bringing the right mix of talent and skills for high return on investment.
Infinitive has earned recognition as one of the "Best Small Firms to Work For" by Consulting Magazine, receiving this accolade seven times, most recently in 2024. They have also been honored as a “Top Workplace” by the Washington Post, “Best Places to Work” by the Washington Business Journal, and “Best Places to Work” by Virginia Business.
Job Summary:
We are seeking an experienced Active Directory (AD) Architect to design, implement, and optimize enterprise-level directory services and identity management solutions. The ideal candidate will have deep expertise in Microsoft Active Directory, Azure AD, Identity & Access Management (IAM), and related security best practices. This role requires strong technical leadership, hands-on implementation skills, and the ability to drive architectural decisions that enhance security, scalability, and operational efficiency.
Key Responsibilities
Architecture & Design:
  • Design and architect highly available, scalable, and secure Active Directory (AD) and Azure AD environments.
  • Develop and maintain Active Directory Federation Services (ADFS), Azure AD Connect, Group Policy Objects (GPOs), and DNS architectures.
  • Define and enforce directory trust models, authentication strategies (Kerberos, NTLM, OAuth, SAML, OpenID), and single sign-on (SSO) solutions.
  • Optimize AD schema, forest, and domain structure for enterprise-scale deployments.
  • Design and implement role-based access control (RBAC), privileged access management (PAM), and multi-factor authentication (MFA) solutions.
Implementation & Administration:
  • Lead the migration, consolidation, or restructuring of AD domains and forests.
  • Configure and manage Group Policies, Organizational Units (OUs), and user/group provisioning.
  • Integrate AD with cloud-based identity solutions such as Okta, AWS IAM, Google Workspace, and other federated services.
  • Ensure seamless synchronization between on-prem AD and Azure AD.
  • Oversee PowerShell scripting for automation, monitoring, and troubleshooting of AD environments.
Security & Compliance:
  • Implement Zero Trust security models within the AD infrastructure.
  • Conduct security assessments, vulnerability remediation, and AD hardening to mitigate risks such as pass-the-hash and golden ticket attacks.
  • Define policies and standards for identity governance, lifecycle management, and audit logging.
  • Ensure compliance with ISO 27001, NIST, SOX, HIPAA, GDPR, and other regulatory requirements.
Monitoring & Troubleshooting:
  • Establish proactive monitoring and alerting using tools like Microsoft Defender, Azure Monitor, Splunk, and SIEM solutions.
  • Troubleshoot authentication failures, replication issues, and performance bottlenecks.
  • Provide root cause analysis (RCA) and incident response for AD-related security breaches or service outages.
Collaboration & Documentation:
  • Work closely with Security, Cloud, Network, and Application teams to align identity management strategies.
  • Develop detailed architectural diagrams, SOPs, and documentation for AD environments.
  • Train IT teams on best practices for Active Directory and Identity Management.

Technical Skills:
  • 10+ years of experience in Active Directory architecture, design, and administration.
  • Expertise in Azure Active Directory (Entra ID), ADFS, Azure AD Connect, and Azure B2C/B2B.
  • Strong knowledge of Windows Server (2016/2019/2022), DNS, DHCP, and LDAP.
  • Experience with identity federation protocols (SAML, OAuth, OpenID Connect, Kerberos, NTLM).
  • Proficiency in PowerShell scripting for automation and management.
  • Familiarity with SIEM tools, endpoint security, and identity threat detection.
  • Hands-on experience with IAM solutions (Okta, SailPoint, Ping Identity, CyberArk, BeyondTrust, etc.).
  • Knowledge of hybrid cloud environments (AWS, GCP, Azure) and cloud identity integrations.

Preferred Certifications (Nice to Have):
  • Microsoft Certified: Identity and Access Administrator Associate
  • Microsoft Certified: Azure Solutions Architect Expert
  • Certified Information Systems Security Professional (CISSP)
  • Certified Azure Security Engineer Associate
  • Okta Certified Consultant or AWS Certified Security – Specialty

Similar Jobs

Anduril Logo Anduril

Test Engineer

Aerospace • Artificial Intelligence • Hardware • Robotics • Security • Software • Defense
In-Office
Reston, VA, USA
6000 Employees
146K-200K Annually

CoreWeave Logo CoreWeave

Principal, Data Center Development

Cloud • Information Technology • Machine Learning
In-Office
6 Locations
1450 Employees
180K-240K Annually

Sprout Social Logo Sprout Social

Vice President, Revenue Marketing

Marketing Tech • Social Media • Software • Analytics • Business Intelligence
Easy Apply
Remote or Hybrid
US
1400 Employees
238K-328K Annually

Anduril Logo Anduril

Infrastructure Engineer

Aerospace • Artificial Intelligence • Hardware • Robotics • Security • Software • Defense
In-Office
Reston, VA, USA
6000 Employees
129K-171K Annually
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Ashburn, VA
174 Employees
Year Founded: 2003

What We Do

Infinitive is a transformation and technology consultancy. We enable global brands to deliver kick-ass results through insights, innovation, and efficiency. We possess deep industry and technology expertise to drive and sustain adoption of new capabilities. We match our people and personalities to our clients’ culture while bringing the right mix of talent and skills to enable a high return on investment.

Our strong workplace culture has received recognition from Inc. magazine, The Washington Post, Consulting Magazine, Washington Business Journal and other top media outlets and awards programs.

Similar Companies Hiring

ClickMint Thumbnail
Marketing Tech • Generative AI • eCommerce • AdTech
Malibu, CA
9 Employees
Standard Template Labs Thumbnail
Software • Information Technology • Artificial Intelligence
New York, NY
15 Employees
PRIMA Thumbnail
Travel • Software • Marketing Tech • Hospitality • eCommerce
US
15 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account