SME - Active Directory Service Interfaces
India
Job Description
SME - Active Directory Service Interfaces
| Noida, Uttar PradeshChennai, Tamil Nadu

Job Summary

Job Description L3 Active Directory, DNS, DHCP, Group Policy & Identity Engineer Key Responsibilities Act as the L3 escalation point for complex Active Directory, DNS, DHCP, Group Policy, replication, and authentication issues. Perform advanced root cause analysis, log review, performance troubleshooting, and resolution for AD and identity-related incidents. Own and maintain FSMO roles, domain controller health, AD Sites & Services, replication topology, and enterprise directory availability. Design, implement, audit, and optimize GPOs, including WMI filters, inheritance, security filtering, and performance tuning. Implement AD hardening controls such as tiered administration, LAPS, JIT/JEA, privileged group reviews, and CIS/Microsoft security baselines. Support disaster recovery planning and validation, including System State backup, authoritative restore, AD Recycle Bin, and DR readiness checks. Lead AD transition activities, KT sessions, weekly playback sessions, runbook creation, operations manual documentation, and stakeholder validation. Participate in transition governance calls, RAID log tracking, Service Readiness Checklist sign-off, cutover readiness, and hypercare support after go-live. Required Technical Skills Area Compact Skill Requirement Core AD Services Advanced Active Directory administration, domain controller health, replication troubleshooting, FSMO, sites, trusts, schema upgrade, and domain migration experience. Power Shell, MS Graph, Automation through PowerShell Script. Network Services Strong DNS and DHCP administration, design understanding, troubleshooting, and service availability management. Group Policy GPO design, audit, troubleshooting, Advance Group policy management, WMI filtering, security filtering, inheritance management, performance tuning, and policy baseline implementation. Identity & Access SSO, MFA, Conditional Access, Entra application and Entra connect sync, onboarding, modern authentication protocols, authentication flow, Kerberos, PIM, and PAM knowledge. Security & Tools AD hardening, privileged access reviews, LAPS, JIT/JEA, security baselines, and experience with third-party AD monitoring or migration tools. Transition & Operations KT delivery, runbook/operations manual creation, service readiness governance, RAID tracking, stakeholder playback, cutover, and hypercare support. Preferred Experience Hands-on support and migration experience in large enterprise, multi-domain, multi-forest environments. Experience with ADFS and hybrid identity integrations with Microsoft Entra ID. Ability to manage high-severity incidents, technical escalations, and client-facing transition discussions. Strong documentation capability for SOPs, runbooks, operations manuals, and technical knowledge-transfer artifacts.

Key Responsibilities

1. Ensure On-Time Resolution And Quality Compliance Of Escalated Active Directory Incidents By Performing In-Depth Analysis And Adhering To Sla Agreements, Thereby Enhancing Service Reliability.
2. Mentor Team Members And Administrators By Preparing Standard Operating Procedures (Sops) And Maintaining Comprehensive Documentation, While Actively Sharing Knowledge To Promote A Culture Of Continuous Improvement.
3. Validate Change Order Implementation Plans And Ensure Human Error Compliance, While Contributing To Capacity Planning Initiatives To Optimize Resource Allocation And Efficiency.
4. Facilitate Positive Customer Feedback And Satisfaction By Actively Participating In Customer Meetings To Address And Resolve Any Issues Related To Active Directory Services.
5. Validate And Analyze Reports Such As Root Cause Analysis And Trend Analysis To Present Findings To Key Business Stakeholders, Facilitating Informed Decision-Making And Enhancing Operational Performance.

Skill Requirements

Job Description L3 Active Directory, DNS, DHCP, Group Policy & Identity Engineer Key Responsibilities Act as the L3 escalation point for complex Active Directory, DNS, DHCP, Group Policy, replication, and authentication issues. Perform advanced root cause analysis, log review, performance troubleshooting, and resolution for AD and identity-related incidents. Own and maintain FSMO roles, domain controller health, AD Sites & Services, replication topology, and enterprise directory availability. Design, implement, audit, and optimize GPOs, including WMI filters, inheritance, security filtering, and performance tuning. Implement AD hardening controls such as tiered administration, LAPS, JIT/JEA, privileged group reviews, and CIS/Microsoft security baselines. Support disaster recovery planning and validation, including System State backup, authoritative restore, AD Recycle Bin, and DR readiness checks. Lead AD transition activities, KT sessions, weekly playback sessions, runbook creation, operations manual documentation, and stakeholder validation. Participate in transition governance calls, RAID log tracking, Service Readiness Checklist sign-off, cutover readiness, and hypercare support after go-live. Required Technical Skills Area Compact Skill Requirement Core AD Services Advanced Active Directory administration, domain controller health, replication troubleshooting, FSMO, sites, trusts, schema upgrade, and domain migration experience. Power Shell, MS Graph, Automation through PowerShell Script. Network Services Strong DNS and DHCP administration, design understanding, troubleshooting, and service availability management. Group Policy GPO design, audit, troubleshooting, Advance Group policy management, WMI filtering, security filtering, inheritance management, performance tuning, and policy baseline implementation. Identity & Access SSO, MFA, Conditional Access, Entra application and Entra connect sync, onboarding, modern authentication protocols, authentication flow, Kerberos, PIM, and PAM knowledge. Security & Tools AD hardening, privileged access reviews, LAPS, JIT/JEA, security baselines, and experience with third-party AD monitoring or migration tools. Transition & Operations KT delivery, runbook/operations manual creation, service readiness governance, RAID tracking, stakeholder playback, cutover, and hypercare support. Preferred Experience Hands-on support and migration experience in large enterprise, multi-domain, multi-forest environments. Experience with ADFS and hybrid identity integrations with Microsoft Entra ID. Ability to manage high-severity incidents, technical escalations, and client-facing transition discussions. Strong documentation capability for SOPs, runbooks, operations manuals, and technical knowledge-transfer artifacts.

Other Requirements

Job Description L3 Active Directory, DNS, DHCP, Group Policy & Identity Engineer Key Responsibilities Act as the L3 escalation point for complex Active Directory, DNS, DHCP, Group Policy, replication, and authentication issues. Perform advanced root cause analysis, log review, performance troubleshooting, and resolution for AD and identity-related incidents. Own and maintain FSMO roles, domain controller health, AD Sites & Services, replication topology, and enterprise directory availability. Design, implement, audit, and optimize GPOs, including WMI filters, inheritance, security filtering, and performance tuning. Implement AD hardening controls such as tiered administration, LAPS, JIT/JEA, privileged group reviews, and CIS/Microsoft security baselines. Support disaster recovery planning and validation, including System State backup, authoritative restore, AD Recycle Bin, and DR readiness checks. Lead AD transition activities, KT sessions, weekly playback sessions, runbook creation, operations manual documentation, and stakeholder validation. Participate in transition governance calls, RAID log tracking, Service Readiness Checklist sign-off, cutover readiness, and hypercare support after go-live. Required Technical Skills Area Compact Skill Requirement Core AD Services Advanced Active Directory administration, domain controller health, replication troubleshooting, FSMO, sites, trusts, schema upgrade, and domain migration experience. Power Shell, MS Graph, Automation through PowerShell Script. Network Services Strong DNS and DHCP administration, design understanding, troubleshooting, and service availability management. Group Policy GPO design, audit, troubleshooting, Advance Group policy management, WMI filtering, security filtering, inheritance management, performance tuning, and policy baseline implementation. Identity & Access SSO, MFA, Conditional Access, Entra application and Entra connect sync, onboarding, modern authentication protocols, authentication flow, Kerberos, PIM, and PAM knowledge. Security & Tools AD hardening, privileged access reviews, LAPS, JIT/JEA, security baselines, and experience with third-party AD monitoring or migration tools. Transition & Operations KT delivery, runbook/operations manual creation, service readiness governance, RAID tracking, stakeholder playback, cutover, and hypercare support. Preferred Experience Hands-on support and migration experience in large enterprise, multi-domain, multi-forest environments. Experience with ADFS and hybrid identity integrations with Microsoft Entra ID. Ability to manage high-severity incidents, technical escalations, and client-facing transition discussions. Strong documentation capability for SOPs, runbooks, operations manuals, and technical knowledge-transfer artifacts.

Information at a Glance

Why HCLTech?

At HCLTech, you'll supercharge your potential. You'll find your career. And you'll find your spark. All at a place that knows that helping its customers stay on top starts by putting its people first.

HCLTech is a global technology company, home to more than 223,000 people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud and AI, powered by a broad portfolio of technology services and products. We work with clients across all major verticals, providing industry solutions for Financial Services, Manufacturing, Life Sciences and Healthcare, Technology and Services, Telecom and Media, Retail and CPG, and Public Services. Consolidated revenues as of 12 months ending June 2026 totaled $14.8 billion.