Hays Technology

Hays Technology

London

Identity Infrastructure Engineer

Contract£? - ? per yearपरसोंUnited Kingdom
IT

Job Description

Salary: £? - ? per year

Requirements:
  • Extensive experience administering enterprise Active Directory environments.
  • Strong knowledge of Active Directory Domain Services (AD DS), Active Directory Sites and Services, forest and domain administration, DNS, Group Policy, LDAP/LDAPS, Kerberos authentication, trusts and replication, and Active Directory backup and recovery.
  • Experience troubleshooting complex authentication and directory service issues.
  • Strong experience with Microsoft Active Directory Certificate Services (AD CS).
  • Experience managing Certificate Authorities, Certificate Templates, CRL and AIA infrastructure, certificate lifecycle management, certificate enrolment services, and key recovery and archival.
  • Experience supporting enterprise PKI environments.
  • Windows Server 2016, 2019 and 2022 administration experience.
  • PowerShell scripting and automation experience.
  • Security hardening and privileged administration experience.
  • High availability and disaster recovery planning experience.
  • Infrastructure monitoring and operational support experience.
  • Working knowledge of Microsoft Entra ID, Microsoft Entra Connect / Cloud Sync, Microsoft Identity Manager (MIM), Okta, and BeyondTrust.
  • Strong understanding of Identity and Access Management (IAM), identity lifecycle management, authentication and authorisation, access governance, Role-Based Access Control (RBAC), and Joiner, Mover, Leaver processes.
  • Desirable: Experience supporting Microsoft Identity Manager (MIM), hybrid identity architectures, Okta administration and integration, BeyondTrust PAM or Endpoint Privilege Management, Tier 0 administration and privileged access models, CrowdStrike, Zscaler, highly regulated or secure environments, ITIL-based operational support models, and large-scale enterprise identity programmes.
Responsibilities:
  • Administer and maintain enterprise Active Directory forests, domains and domain controllers.
  • Manage Active Directory Sites and Services, replication topology, trusts and directory infrastructure.
  • Maintain AD-integrated DNS and authentication services.
  • Design, implement and support Group Policy architecture.
  • Support Active Directory backup, recovery, disaster recovery and business continuity processes.
  • Monitor platform health, security, performance and replication.
  • Participate in Active Directory upgrades, migrations and infrastructure improvement programmes.
  • Implement security hardening standards and privileged access controls.
  • Administer Microsoft Active Directory Certificate Services (AD CS).
  • Manage Certificate Authorities, templates, enrolment processes and certificate lifecycle management.
  • Support Offline Root CA and Issuing CA environments.
  • Maintain CRL, AIA and certificate distribution services.
  • Monitor renewals, revocations, compliance and certificate expiry.
  • Maintain PKI documentation, recovery procedures and security standards.
  • Troubleshoot cryptographic and certificate-related issues.
  • Support Microsoft Entra Connect and hybrid identity services.
  • Maintain LDAP, LDAPS, Kerberos and NTLM authentication platforms.
  • Support integrations across Active Directory, MIM, Entra ID, Okta and BeyondTrust.
  • Resolve authentication, directory and infrastructure incidents.
  • Contribute to service improvements and platform optimisation initiatives.
  • Develop and maintain PowerShell automation for infrastructure administration.
  • Drive operational efficiency and service improvements.
  • Support security remediation and infrastructure modernisation initiatives.
  • Produce and maintain technical documentation, support procedures and runbooks.
Technologies:
  • Active Directory
  • Cloud
  • IAM
  • Support
  • ITIL
  • LDAP
  • PowerShell
  • RBAC
  • Security
  • Windows
  • DevOps

More:

We are an organisation operating within a secure and highly regulated environment, supporting critical Identity and Access Management (IDAM) services. You will join our team in Inverness or Manchester, based within secure facilities and working onsite five days a week. This is a contract role with a rate of £447 per day inside IR35 and a contract length to be confirmed. We offer the opportunity to work on critical enterprise identity and authentication platforms, with exposure to complex Active Directory, PKI and hybrid identity environments.

last updated 38 week of 2026

Interested in this role?

Submit your application now

How to Apply

Ready to apply for this position? Here's what you need:

  • An updated resume highlighting relevant experience
  • A compelling cover letter (if required)
  • Portfolio or work samples (for relevant positions)

About Hays Technology

Hays Technology

Hays Technology

London

IT

Skills & Technologies

GoRustRESTAIDevOpsUI

Inferred from job description

Explore More UK Opportunities

Thousands of tech jobs across the United Kingdom