Talent.com
Sr Systems Engineer (Active Directory)

Sr Systems Engineer (Active Directory)

Columbia UniversityNew York, NY, United States
23 days ago
Job type
  • Full-time
Job description
  • Job Type : Officer of Administration
  • Regular / Temporary : Regular
  • Hours Per Week : 35
  • Salary Range : $110,000 - $120,000
  • The salary of the finalist selected for this role will be set based on a variety of factors, including but not limited to departmental budgets, qualifications, experience, education, licenses, specialty, and training. The above hiring range represents the University's good faith and reasonable estimate of the range of possible compensation at the time of posting.

    Position Summary

    Reporting to the Active Directory Manager in the Identity and Access Management (IAM) group, the Sr. Systems Engineer is responsible for the design, development, and optimization of the University's enterprise Active Directory (AD) environment. The Sr. Systems engineer will help shape strategic AD initiatives, ensure seamless integration with on-premise and cloud services, and uphold compliance and security standards for identity and access across the University.

    Responsibilities

    Enterprise Active Directory Administration

    • Architects and maintains the University-wide hybrid AD environment, supporting 120K+ users.
    • Manages domain controllers, performs OU setup and delegation, and oversees the creation and modification of group policies.
    • Implements and maintains AD sites, subnets, site links, and schema changes.
    • Proactively monitors performance, troubleshoots critical issues, and conducts root cause analyses.
    • Strategic Planning & Collaboration

    • Drives the evolution and innovation of AD services by collaborating with senior leadership to define future identity solutions.
    • Serves as the primary subject matter expert for integrating Azure AD with on-prem AD, ensuring robust SSO and secure identity federation.
    • Partners with cross-functional teams (e.g., Network Engineering, Information Security, Application Development) to implement cohesive identity and access solutions.
    • Security & Compliance

    • Collaborates with cybersecurity and compliance teams to enforce Zero Trust principles and regulatory requirements.
    • Ensures the AD environment meets security best practices for authentication, authorization, and data protection.
    • Manages backups and plans for disaster recovery of the AD infrastructure.
    • Collaborates with the broader IT security, risk, and compliance teams to interpret policies and standards, ensuring they are consistently applied.
    • Automation & Tooling

    • Develops and maintains advanced PowerShell and Graph API scripts to streamline AD management, backup, and recovery processes.
    • Manages and optimizes tooling integrations (e.g., CrowdStrike, Malwarebytes, SumoLogic, SCCM, WSUS) to ensure high availability and system health.
    • Supports automation of repetitive AD tasks to improve operational efficiency.
    • Cloud & Hybrid Environment Support

    • Oversees AD integration with VMware and cloud environments, ensuring stable and secure deployments.
    • Evaluates and recommends cloud-based solutions to optimize AD services.
    • Coordinates with IT teams to implement and maintain Office 365 services, including tenant-to-tenant migrations when required.
    • Infrastructure & PKI

    • Builds and maintains an internal Microsoft PKI environment and ensures certificate services remain reliable and secure.
    • Oversees privileged access management (PAM) solutions to protect highly sensitive AD objects.
    • Technical Documentation & Mentoring

    • Identifies and documents infrastructure configuration requirements related to AD.
    • Serves as a mentor to junior engineers, sharing best practices for problem-solving and AD administration.
    • Maintains thorough documentation of standard operating procedures, incident resolutions, and maintenance tasks.
    • Support & Operational Duties

    • Handles service tickets related to AD availability, performance, and functionality.
    • Works closely with customer organizations to plan and implement complex AD configurations.
    • Participates in on-call rotations and off-hours work to support critical maintenance windows.
    • Maintains strong working relationships with peer technical groups and other support teams.
    • Represents the IAM organization on large-scale technology projects implemented outside IAM.
    • Performs all other duties as assigned.
    • Minimum Qualifications

    • Minimum 4-6 years' related experience.
    • 4+ years of relevant Windows Systems Administration experience.
    • 3+ years of Active Directory technical experience (operational support and implementation of large-scale, enterprise-level solutions).
    • Strong knowledge of AD, Azure AD, Microsoft 365, ADFS, and hybrid identity integrations.
    • Experience in Windows Server design, deployment, and maintenance within VMware and / or cloud environments.
    • Basic understanding of networking concepts (DNS, Load Balancing, Wireless, VPNs, VLANs, Subnets, Firewalls).
    • High proficiency in PowerShell scripting and working with the Graph API.
    • Proven ability to communicate technical issues to both technical and non-technical audiences.
    • Strong critical-thinking skills and demonstrated ability to work in a fast-paced, deadline-driven environment.
    • Demonstrated excellence in teamwork, collaboration, analytical thinking, communication, and technical expertise.
    • Ability to manage multiple projects with shifting priorities.
    • Ability to work independently with minimal supervision.
    • Willingness to be available for weekend and off-hour work as necessary.
    • Preferred Qualifications

    • 4+ years managing an enterprise-level Active Directory environment (50K+ users).
    • Familiarity with Microsoft Zero Trust security architecture.
    • Strong knowledge and experience in building and maintaining a Microsoft PKI environment.
    • In-depth PowerShell scripting and Graph API expertise.
    • Experience with Office 365 tenant-to-tenant migrations.
    • Experience working with Privileged Access Management (PAM) solutions.
    • Familiarity with CrowdStrike, Malwarebytes, SumoLogic, SCOM, WSUS, SCCM, and ADFS.
    • Working knowledge of VMware vCenter.
    • Basic working knowledge of UNIX / Linux operating systems.
    • Basic working knowledge of MIT Kerberos.
    • Relevant certifications (e.g., Microsoft Certified : Identity and Access Administrator Associate, MCSE in Core Infrastructure).
    • Equal Opportunity Employer / Disability / Veteran

      Columbia University is committed to the hiring of qualified local residents.

    Create a job alert for this search

    Sr System Engineer • New York, NY, United States

    Related jobs
    • Promoted
    Senior Advanced Systems Engineer

    Senior Advanced Systems Engineer

    VirtualVocationsAstoria, New York, United States
    Full-time
    A company is looking for a Senior Advanced Systems Engineer (Tracking).Key Responsibilities Collaborate with customers and stakeholders to translate requirements into system designs Decompose en...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    Sr. Software Engineer

    Sr. Software Engineer

    VirtualVocationsElizabeth, New Jersey, United States
    Full-time
    A company is looking for a Sightline Sr.Key Responsibilities Develop, enhance, maintain, and support software within Enterprise Business Solutions environments, focusing on SAP and Workday system...Show moreLast updated: 13 hours ago
    Lockheed Martin is hiring : Radar Systems Architect Sr Staff / Technical Director i

    Lockheed Martin is hiring : Radar Systems Architect Sr Staff / Technical Director i

    MediabistroNew York, NY, United States
    Full-time
    Description : WHAT WE’RE DOING The TPY-4 system is a Next Gen Radar for Next Gen Threats, with a growing customer base domestically and internationally. As the product line continues to grow, we a...Show moreLast updated: 30+ days ago
    • Promoted
    Windows Systems Engineer

    Windows Systems Engineer

    VirtualVocationsFlushing, New York, United States
    Full-time
    A company is looking for a Staff Windows Systems & Automation Engineer (Remote).Key Responsibilities Architect and operate core Windows platform services including Active Directory, DNS / DHCP, and...Show moreLast updated: 1 day ago
    • Promoted
    Resident Engineer

    Resident Engineer

    Laland BaptisteFar Rockaway, NY, US
    Full-time
    Laland Baptiste, LLC is a certified minority and woman owned construction management and consulting firm.Laland Baptiste provides innovative and professional services throughout all phases of the c...Show moreLast updated: 30+ days ago
    • Promoted
    Principal Sales Systems Engineer

    Principal Sales Systems Engineer

    VirtualVocationsYonkers, New York, United States
    Full-time
    A company is looking for a Principal Sales Systems Engineer - RoIP.Key Responsibilities Support Radio over IP (RoIP) deployments during system lifecycle, including pre-sales and post-sales Provi...Show moreLast updated: 1 day ago
    • Promoted
    Senior System Software Engineer

    Senior System Software Engineer

    VirtualVocationsPaterson, New Jersey, United States
    Full-time
    A company is looking for a Senior System Software Engineer - AV Platform.Key Responsibilities Lead software integration to streamline embedded development across various vehicle subsystems Contr...Show moreLast updated: 30+ days ago
    • Promoted
    Director of Safety-Critical Software

    Director of Safety-Critical Software

    VirtualVocationsYonkers, New York, United States
    Full-time
    A company is looking for a Director of Safety Critical Software.Key Responsibilities Lead design and development of safety-critical software in compliance with industry standards Build and mento...Show moreLast updated: 1 day ago
    • Promoted
    DevOps Systems Engineer

    DevOps Systems Engineer

    VirtualVocationsPaterson, New Jersey, United States
    Full-time
    A company is looking for a DevOps Systems Engineer (Windows & Azure).Key Responsibilities Manage and maintain Windows Server operating systems and Azure environments, ensuring compliance with sec...Show moreLast updated: 30+ days ago
    Systems Engineer, Sr.

    Systems Engineer, Sr.

    Semper Valens SolutionsNew Hanover, NJ, USA
    Full-time
    Quick Apply
    Full Time JB McGuire-Dix Lakehurst, NJ.This position is contingent upon contract award • •.The Systems Engineer will play a pivotal role in our operational, network and architecture development of ou...Show moreLast updated: 30+ days ago
    • Promoted
    Digital Data Systems and Applications Sr. Manager, Engineering

    Digital Data Systems and Applications Sr. Manager, Engineering

    Novartis Group CompaniesEast Hanover, NJ, United States
    Full-time
    This position will be located at East Hanover, NJ site and will not have the ability to be located remotely.Please note that this role would not provide relocation and only local candidates will be...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Cloud Systems Engineer

    Senior Cloud Systems Engineer

    VirtualVocationsFlushing, New York, United States
    Full-time
    A company is looking for a Senior Systems Engineer, Cloud Platform.Key Responsibilities Maintain system stability, security, and performance Build and manage CI / CD pipelines and deployment autom...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    Principal IAM Engineer

    Principal IAM Engineer

    VirtualVocationsElizabeth, New Jersey, United States
    Full-time
    A company is looking for a Principal Identity and Access Management Engineer.Key Responsibilities : Define and evolve enterprise IAM architecture and roadmap aligned to security, compliance, and b...Show moreLast updated: 5 hours ago
    • Promoted
    Corporate Systems Engineer

    Corporate Systems Engineer

    VirtualVocationsNewark, New Jersey, United States
    Full-time
    A company is looking for a Corporate Systems Engineer to manage and innovate on corporate and care delivery systems.Key Responsibilities Support provisioning and management of all endpoints, SaaS...Show moreLast updated: 22 days ago
    • Promoted
    Systems Engineer III #10

    Systems Engineer III #10

    St. John's Episcopal HospitalFar Rockaway, NY, US
    Full-time
    John’s Episcopal Hospital is the only hospital providing emergency and ambulatory care to the densely populated, culturally and economically diverse, and medically underserved populations of ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Systems Engineer

    Senior Systems Engineer

    VirtualVocationsBrooklyn, New York, United States
    Full-time
    A company is looking for a Senior Systems Engineer - Account Executive - Higher Ed & SLED.Key Responsibilities Assist customers with evaluations, benchmarks, system configurations, and installati...Show moreLast updated: 30+ days ago
    • Promoted
    Associate Systems Engineer

    Associate Systems Engineer

    Watts Water TechnologiesBlauvelt, NY, United States
    Permanent
    Together, we're reimagining the future of water.We feel proud every day about what we do.We're all part of the same crucial mission, no matter what function we support it's to provide safe, clea...Show moreLast updated: 30+ days ago
    • Promoted
    Principal Systems Engineer

    Principal Systems Engineer

    VirtualVocationsJackson Heights, New York, United States
    Full-time
    A company is looking for a Principal Systems Engineer (MBSE).Key Responsibilities Perform systems engineering tasks in support of software development for a Space Ground mission-focused software ...Show moreLast updated: 30+ days ago