AD Engineer L2
People Prime Worldwide
Key Responsibilities
Provide L2 support for Microsoft Active Directory and Windows Server environments.
Administer users, groups, computers, OUs, security groups, and service accounts.
Troubleshoot AD authentication, login, access, and account-related issues.
Manage and troubleshoot Group Policy Objects (GPOs).
Monitor and troubleshoot AD replication, DNS, and Domain Controller issues.
Perform user account creation, modification, disablement, password resets, and access management.
Support Domain Controllers, FSMO roles, Sites & Services, and AD replication.
Troubleshoot DNS, DHCP, LDAP, Kerberos, and authentication-related issues.
Perform routine health checks on Active Directory and Domain Controllers.
Support AD-related incidents, service requests, changes, and problem management activities.
Use PowerShell for AD administration and basic automation.
Assist with AD migrations, upgrades, domain changes, and infrastructure projects.
Maintain technical documentation, SOPs, and troubleshooting guides.
Coordinate with L1, L3, Security, Network, and Windows teams for complex issues.
Participate in incident management, RCA, and change management processes.
Ensure compliance with enterprise security and access-control policies.
Required Skills
3–6 years of experience in Microsoft Active Directory administration/support.
Strong knowledge of AD DS, DNS, GPO, DHCP, LDAP, and Kerberos.
Hands-on experience with Windows Server 2016/2019/2022.
Experience managing users, groups, OUs, computers, and service accounts.
Good understanding of Domain Controllers, FSMO roles, Sites & Services, and AD replication.
Experience troubleshooting authentication and connectivity issues.
Basic to intermediate PowerShell scripting skills.
Knowledge of Microsoft Entra ID / Azure AD is preferred.
Familiarity with ITIL-based Incident, Problem, and Change Management.
Good communication and documentation skills.
Preferred Skills
Experience with ADFS, Entra Connect, PKI/Certificate Services, and hybrid identity.
Knowledge of Active Directory security and hardening.
Experience with monitoring and troubleshooting tools such as DCDiag, RepAdmin, Event Viewer, and PowerShell.
Microsoft certifications such as AZ-800/AZ-801 or SC-300 are an advantage.
Education
Bachelor's degree in Computer Science, Information Technology, or a related field preferred.