Sopra Steria
Wintel Active Directory Senior Infrastructure Lead
Company
Role
Wintel Active Directory Senior Infrastructure Lead
Location
Job type
Full-time
Posted
Yesterday
Salary
Job description
Active Directory & Wintel
- Excellent working knowledge of Microsoft Active Directory and Azure Active Directory, with the ability to assess enterprise on‑prem AD environments and design and implement target solutions.
- Strong expertise in Active Directory design and implementation, including:
- AD forest and domain design
- Sites and subnets
- FSMO role placement
- NTP configuration
- RODC management
- Experience with on‑premises Active Directory and Azure Active Directory integration and migration.
- In‑depth knowledge of PKI, Certificate Services, ADFS, and identity federation technologies.
- Hands‑on experience with Active Directory security, resilience, and recovery, including tools such as Semperis (AD Forest Recovery, AD Security & Audit).
- Strong understanding of SSO and MFA implementations.
- Experience in automating Active Directory and Azure AD tasks, and proposing and implementing infrastructure improvements and enhancements.
- Proven experience with:
- Domain Controller promotion and decommissioning
- GPO design, creation, and implementation
- Active Directory operational support and project work
- Good knowledge of DNS, DHCP, File Services, DFS, and other AD‑dependent services.
- Expertise in securing Microsoft client and server operating systems, including:
- Authentication and authorization mechanisms
- Encryption technologies
- Certificate Authority services
- Security hardening and compliance
- Install, configure, tune, maintain, monitor, and troubleshoot Windows Server 2012 / 2016 / 2019 / 2022.
- Strong experience in server hardening, patching, and vulnerability remediation.
- Experience managing and supporting Hyper‑V, SCVMM, and Failover Clustering.
- Ability to support application and infrastructure teams for AD‑related business requirements and incident resolution.
- Manage work queues for incidents, problems, changes, tasks, and service requests, ensuring effective workload management.
- Excellent written, verbal, and interpersonal communication skills.
Azure
- Hands‑on experience in Azure architecture, deployment, and operations.
- Strong experience with:
- Azure Virtual Machines and compute services
- Azure Storage (Accounts, Snapshots, Monitoring)
- Azure Backup (MARS)
- Azure Site Recovery
- Azure Monitor
- Experience migrating on‑prem applications and workloads to Azure.
- Experience with Azure Arc for managing and governing on‑premises and multi‑cloud resources from Azure.
- Knowledge and hands‑on experience with:
- Azure Active Directory
- Single Sign‑On (SSO)
- Identity and access management
- Understanding of cloud cost monitoring and optimization.
- Deploy, manage, and support Azure resources using best practices and governance standards.
CyberArk (Secondary)
- Basic experience with CyberArk PAM, including onboarding and managing privileged accounts (Windows, Active Directory, service accounts).
- Familiarity with core CyberArk components (PVWA, CPM, PSM) and password rotation concepts.
- Experience supporting CyberArk‑related incidents and access requests.
- Understanding of privileged access security best practices and AD/Azure AD integration.
Total Experience Expected: 08-10 years
- BE/B-TECH or any equivalent degree
- Language : English (Professional)
- Other Language Optional - French.
At our organization, we are committed to fighting against all forms of discrimination. We foster a work environment that is inclusive and respectful of all differences.
All of our positions are open to people with disabilities.


