Microsoft Active Directory Subject Matter Expert
Position Description:We are seeking a Microsoft Active Directory Subject Matter Expert (SME) for a role supporting the Department of the Navy in Annapolis Junction, MD.The ideal candidate must hold an active TS/SCI clearance and have 8-10+ years of experience with a BS/BA or 6-8+ years with an MS/MA or 3-5+ years with a PhD. Experience managing enterprise Active Directory environments and a current DoD 8570.1-M/8140 IAT Level III certification are required.The Microsoft Active Directory Subject Matter Expert (SME) will support our client's enterprise infrastructure initiatives. This individual will lead the architecture, design, deployment, and ongoing operations of Microsoft AD services, including Azure Active Directory, Group Policy, Identity Federation, and associated authentication systems. The ideal candidate will bring deep expertise in AD forest design, domain consolidation, AD hardening, and security best practices, with a strong focus on enterprise-scale environments.Primary job location: Annapolis Junction, MD.Future job location: Landover, MDJBAB (Depends on Responsibilities) Position Job Duties:Serve as the technical authority on all matters related to Microsoft Active Directory and identity servicesDesign, implement, and manage scalable and secure AD infrastructures (on-premises and cloud hybrid)Oversee AD migrations, upgrades, domain consolidation, and forest restructuringDevelop and enforce AD-related security policies and standards, including privileged access managementManage integration with Azure AD, ADFS, MFA, SSO, and conditional access policiesCollaborate with cybersecurity teams to strengthen identity security postureConduct regular AD health checks, performance tuning, and troubleshootingDocument architecture, configurations, operational procedures, and support guidesProvide mentoring and training to junior team members and IT support staff Position Qualifications:TS/SCI level clearance is requiredRequires 8 to 10 years with BS/BA or 6 to 8 years with MS/MA or 3 to 5 years with PhDExperience managing enterprise Active Directory environmentsExpert knowledge of:D DS (Domain Services), DNS, DHCP, and Group Policyzure Active Directory, AD Connect, and Hybrid Identity solutionsDFS, LDAP, Kerberos, NTLM authenticationStrong PowerShell scripting and automation skillsExperience with Zero Trust principles and identity governance toolsFamiliarity with ITIL-based service management and change controlExperience in software engineering and integration of Commercial Off-the-Shelf software products Certification Requirement:Must have a current DoD 8570.1-M/8140 IAT Level III certification Desired:ITIL Foundations certification is desiredMicrosoft Certified: Identity and Access Administrator Associate or similarExperience with Microsoft Entra, MIM (Microsoft Identity Manager), or OktPrevious experience in regulated environments (e.g., financial, healthcare, or government)