The Identity & Access Management (IAM) Directory Services team is responsible for building and operating a secure, standardized, and automated enterprise identity foundation across the Company. We provide the authoritative directory platforms that enable authentication, authorization, and access governance for both human and non human identities. Our mission is to move identity governance from manual, reactive processes to automated, policy driven enforcement, ensuring identities are secure, compliant, and healthy by default across their lifecycle. We partner closely with security, infrastructure, and application teams to eliminate legacy risk, reduce operational toil, and enable modern, cloud first identity capabilities at enterprise scale.
What You Ll Do
Directory Platform Engineering & Operations:
- Engineer, harden, and operate enterprise and multidomain Active Directory environments supporting critical business workloads.
- Lead Active Directory consolidation and domain rationalization efforts, including enterprise, eCommerce, and business unit directories.
- Support RadiantLogic s Virtual Directory System operations and enhancements.
- Establish and enforce multi domain baseline identity security standards across environments.
- Implement and mature RBAC based access models across Active Directory.
- Integrate AD with Privileged Identity Management (PIM) and Privileged Access Management (PAM) platforms.
- Help with eliminating standing privilege through group based, time bound, and JIT access patterns.
- Implement and support synchronization between Active Directory and Entra ID.
- Support cross tenant identity governance for business segments and federated environments.
- Enable automated human and non human identity governance, including monitoring, remediation, and compliance reporting.
- Reduce directory and tool sprawl while maintaining service reliability and business continuity.
- Mentor and uplift junior engineers; contribute to repeatable engineering patterns and documentation.
Required Qualifications & Skills- 8+ years of hands on experience engineering and operating large scale Active Directory environments.
- Deep expertise in:
- Active Directory architecture, trusts, replication, DNS, PKI
- Multi domain / multi forest designs
- AD security hardening and recovery
- Radiant Logic s Virtual Directory Services
- Proven experience implementing or supporting:
- RBAC, PIM, and PAM
- Privileged account separation and Tier 0 controls
- Strong troubleshooting skills in complex, highly regulated environments.
- Experience working in enterprise scale IAM or directory services teams.
Preferred Qualifications
- Experience integrating AD with Entra ID / Azure AD in hybrid or cloud first environments.
- Familiarity with identity governance automation, non human identity management, and continuous compliance.
- Experience supporting cross tenant or multi business unit identity models.
- Background in directory consolidation, legacy system sunset, or M&A identity integration.
- Comfort operating in environments with high security, resilience, and audit expectations.
Required Education
- Bachelor s degree in Computer Science, Information Systems, Software, Electrical or Electronics Engineering, or comparable field of study, and/or equivalent work experience .
Why Join Us
At our organization, technology powers the magic. As part of our team, you ll help build and maintain the systems that support our iconic brands and global operations. We offer a collaborative work environment, opportunities for growth, and a culture that celebrates diversity, creativity, and innovation.