About The Company
Tata Communications Redefines Connectivity with Innovation and IntelligenceDriving the next level of intelligence powered by Cloud, Mobility, Internet of Things, Collaboration, Security, Media services and Network services, we at Tata Communications are envisaging a New World of Communications
Active Directory Operations & Engineering
- Design, implement, and manage Active Directory Domain Services (AD DS) in large enterprise environments.
- Lead AD architecture, forest/domain design, trust relationships, and site topology.
- Handle complex AD troubleshooting including replication issues, authentication failures, DNS-related problems, and GPO conflicts.
- Perform AD health checks, risk assessments, and remediation planning.
Identity & Access Management
- Manage and troubleshoot Group Policy Objects (GPOs), OU structure, delegation models, and fine-grained password policies.
- Implement and support Privileged Access Management (PAM), tiered AD model, and secure admin workstations.
- Ensure compliance with least privilege and security best practices.
Integration & Advanced Services
- Integrate AD with Azure AD / Entra ID, ADFS, LDAP, and third-party applications.
- Support hybrid identity setups including Azure AD Connect, PTA, and SSO.
- Work on AD migrations, domain/forest consolidation, and version upgrades.
- Manage and troubleshoot Certificate Services (AD CS) and authentication protocols (Kerberos, NTLM).
Security & Compliance
- Investigate and resolve security incidents related to AD.
- Implement hardening standards, baseline policies, and security monitoring.
- Support audits and ensure AD compliance with internal and regulatory standards.
Automation & Scripting
- Develop and maintain PowerShell scripts for AD automation, reporting, and bulk operations.
- Optimize operational tasks and reduce manual interventions.
Incident, Problem & Change Management
- Act as L3 escalation point for critical incidents and P1/P2 issues.
- Perform root cause analysis (RCA) and implement permanent fixes.
- Review and approve change requests related to AD and identity services.
- Mentor L1/L2 teams and provide technical guidance.
Technical Skills (Must Have)
- Active Directory (AD DS, DNS, GPO, Sites & Services)
- Azure AD / Entra ID & Hybrid Identity
- ADFS, LDAP, SSO
- Windows Server (2016/2019/2022)
- PowerShell scripting
- AD Security & Hardening
- Troubleshooting replication, authentication & DNS