AD Engineer L2

People Prime Worldwide

We are looking for an experienced Active Directory (AD) Engineer L2 to provide second-level support for enterprise Microsoft Active Directory and Windows infrastructure. The candidate will be responsible for day-to-day AD administration, troubleshooting, incident resolution, and maintaining a secure and highly available directory environment.

Key Responsibilities

Provide L2 support for Microsoft Active Directory and Windows Server environments.

Administer users, groups, computers, OUs, security groups, and service accounts.

Troubleshoot AD authentication, login, access, and account-related issues.

Manage and troubleshoot Group Policy Objects (GPOs).

Monitor and troubleshoot AD replication, DNS, and Domain Controller issues.

Perform user account creation, modification, disablement, password resets, and access management.

Support Domain Controllers, FSMO roles, Sites & Services, and AD replication.

Troubleshoot DNS, DHCP, LDAP, Kerberos, and authentication-related issues.

Perform routine health checks on Active Directory and Domain Controllers.

Support AD-related incidents, service requests, changes, and problem management activities.

Use PowerShell for AD administration and basic automation.

Assist with AD migrations, upgrades, domain changes, and infrastructure projects.

Maintain technical documentation, SOPs, and troubleshooting guides.

Coordinate with L1, L3, Security, Network, and Windows teams for complex issues.

Participate in incident management, RCA, and change management processes.

Ensure compliance with enterprise security and access-control policies.

Required Skills

3–6 years of experience in Microsoft Active Directory administration/support.

Strong knowledge of AD DS, DNS, GPO, DHCP, LDAP, and Kerberos.

Hands-on experience with Windows Server 2016/2019/2022.

Experience managing users, groups, OUs, computers, and service accounts.

Good understanding of Domain Controllers, FSMO roles, Sites & Services, and AD replication.

Experience troubleshooting authentication and connectivity issues.

Basic to intermediate PowerShell scripting skills.

Knowledge of Microsoft Entra ID / Azure AD is preferred.

Familiarity with ITIL-based Incident, Problem, and Change Management.

Good communication and documentation skills.

Preferred Skills

Experience with ADFS, Entra Connect, PKI/Certificate Services, and hybrid identity.

Knowledge of Active Directory security and hardening.

Experience with monitoring and troubleshooting tools such as DCDiag, RepAdmin, Event Viewer, and PowerShell.

Microsoft certifications such as AZ-800/AZ-801 or SC-300 are an advantage.

Education

Bachelor's degree in Computer Science, Information Technology, or a related field preferred.

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.