Subject Matter Expert (Support&Ops)
India
Job Description
Subject Matter Expert (Support&Ops)
Gautam Buddha Nagar, Uttar Pradesh

Job Summary

Active Directory & Group Policy (GPO) L3 Engineer

Job Summary

We are seeking an experienced Active Directory & GPO L3 Engineer responsible for the design, administration, troubleshooting, security, and optimization of enterprise Active Directory environments. The candidate will act as the highest-level technical escalation point for AD, DNS, Group Policy, authentication, and identity-related services while ensuring security compliance and operational stability. The role requires strong expertise in Windows Server, Active Directory Domain Services (ADDS), Group Policy Objects (GPO), PowerShell automation, and hybrid identity platforms.

Key Responsibilities

Active Directory Administration

  • Design, implement, and maintain Active Directory infrastructure.
  • Manage Domain Controllers, Sites & Services, Trust Relationships, and Forest/Domain Functional Levels.
  • Perform AD health checks, capacity planning, and performance optimization.
  • Manage OU structures, security groups, and delegation models.

Group Policy (GPO) Management

  • Design and implement enterprise GPO strategies.
  • Create, modify, troubleshoot, and optimize Group Policy Objects.
  • Manage GPO inheritance, WMI filtering, loopback processing, and security filtering.
  • Standardize endpoint security and configuration through GPOs.
  • Conduct GPO audits and maintain backup/recovery procedures.

Security & Compliance

  • Implement AD security hardening and Tiered Administration.
  • Monitor privileged accounts and administrative access.
  • Review AD audit logs and compliance reports.
  • Address vulnerabilities, replication issues, and security findings.

Troubleshooting & Escalations

  • Provide L3 support for critical incidents and problem management.
  • Resolve replication failures, DNS issues, authentication problems, and GPO processing errors.
  • Perform root cause analysis (RCA) and preventive actions.
  • Support DR exercises and recovery validation.

Mandatory Technical Skills

  • Active Directory Domain Services (ADDS)
  • Group Policy Management (GPO)
  • Windows Server 2016/2019/2022
  • DNS, DHCP, LDAP, Kerberos
  • PowerShell Scripting
  • AD Sites & Services
  • AD Replication Management
  • Trusts and Forest Management
  • Azure AD / Microsoft Entra ID
  • Microsoft 365 Identity Integration
  • Security Hardening & Audit Compliance

 

Key Responsibilities

Active Directory & Group Policy (GPO) L3 Engineer

Job Summary

We are seeking an experienced Active Directory & GPO L3 Engineer responsible for the design, administration, troubleshooting, security, and optimization of enterprise Active Directory environments. The candidate will act as the highest-level technical escalation point for AD, DNS, Group Policy, authentication, and identity-related services while ensuring security compliance and operational stability. The role requires strong expertise in Windows Server, Active Directory Domain Services (ADDS), Group Policy Objects (GPO), PowerShell automation, and hybrid identity platforms.

Key Responsibilities

Active Directory Administration

  • Design, implement, and maintain Active Directory infrastructure.
  • Manage Domain Controllers, Sites & Services, Trust Relationships, and Forest/Domain Functional Levels.
  • Perform AD health checks, capacity planning, and performance optimization.
  • Manage OU structures, security groups, and delegation models.

Group Policy (GPO) Management

  • Design and implement enterprise GPO strategies.
  • Create, modify, troubleshoot, and optimize Group Policy Objects.
  • Manage GPO inheritance, WMI filtering, loopback processing, and security filtering.
  • Standardize endpoint security and configuration through GPOs.
  • Conduct GPO audits and maintain backup/recovery procedures.

Security & Compliance

  • Implement AD security hardening and Tiered Administration.
  • Monitor privileged accounts and administrative access.
  • Review AD audit logs and compliance reports.
  • Address vulnerabilities, replication issues, and security findings.

Troubleshooting & Escalations

  • Provide L3 support for critical incidents and problem management.
  • Resolve replication failures, DNS issues, authentication problems, and GPO processing errors.
  • Perform root cause analysis (RCA) and preventive actions.
  • Support DR exercises and recovery validation.

Mandatory Technical Skills

  • Active Directory Domain Services (ADDS)
  • Group Policy Management (GPO)
  • Windows Server 2016/2019/2022
  • DNS, DHCP, LDAP, Kerberos
  • PowerShell Scripting
  • AD Sites & Services
  • AD Replication Management
  • Trusts and Forest Management
  • Azure AD / Microsoft Entra ID
  • Microsoft 365 Identity Integration
  • Security Hardening & Audit Compliance

 

Skill Requirements

Active Directory & Group Policy (GPO) L3 Engineer

Job Summary

We are seeking an experienced Active Directory & GPO L3 Engineer responsible for the design, administration, troubleshooting, security, and optimization of enterprise Active Directory environments. The candidate will act as the highest-level technical escalation point for AD, DNS, Group Policy, authentication, and identity-related services while ensuring security compliance and operational stability. The role requires strong expertise in Windows Server, Active Directory Domain Services (ADDS), Group Policy Objects (GPO), PowerShell automation, and hybrid identity platforms.

Key Responsibilities

Active Directory Administration

  • Design, implement, and maintain Active Directory infrastructure.
  • Manage Domain Controllers, Sites & Services, Trust Relationships, and Forest/Domain Functional Levels.
  • Perform AD health checks, capacity planning, and performance optimization.
  • Manage OU structures, security groups, and delegation models.

Group Policy (GPO) Management

  • Design and implement enterprise GPO strategies.
  • Create, modify, troubleshoot, and optimize Group Policy Objects.
  • Manage GPO inheritance, WMI filtering, loopback processing, and security filtering.
  • Standardize endpoint security and configuration through GPOs.
  • Conduct GPO audits and maintain backup/recovery procedures.

Security & Compliance

  • Implement AD security hardening and Tiered Administration.
  • Monitor privileged accounts and administrative access.
  • Review AD audit logs and compliance reports.
  • Address vulnerabilities, replication issues, and security findings.

Troubleshooting & Escalations

  • Provide L3 support for critical incidents and problem management.
  • Resolve replication failures, DNS issues, authentication problems, and GPO processing errors.
  • Perform root cause analysis (RCA) and preventive actions.
  • Support DR exercises and recovery validation.

Mandatory Technical Skills

  • Active Directory Domain Services (ADDS)
  • Group Policy Management (GPO)
  • Windows Server 2016/2019/2022
  • DNS, DHCP, LDAP, Kerberos
  • PowerShell Scripting
  • AD Sites & Services
  • AD Replication Management
  • Trusts and Forest Management
  • Azure AD / Microsoft Entra ID
  • Microsoft 365 Identity Integration
  • Security Hardening & Audit Compliance

 

Other Requirements

Active Directory & Group Policy (GPO) L3 Engineer

Job Summary

We are seeking an experienced Active Directory & GPO L3 Engineer responsible for the design, administration, troubleshooting, security, and optimization of enterprise Active Directory environments. The candidate will act as the highest-level technical escalation point for AD, DNS, Group Policy, authentication, and identity-related services while ensuring security compliance and operational stability. The role requires strong expertise in Windows Server, Active Directory Domain Services (ADDS), Group Policy Objects (GPO), PowerShell automation, and hybrid identity platforms.

Key Responsibilities

Active Directory Administration

  • Design, implement, and maintain Active Directory infrastructure.
  • Manage Domain Controllers, Sites & Services, Trust Relationships, and Forest/Domain Functional Levels.
  • Perform AD health checks, capacity planning, and performance optimization.
  • Manage OU structures, security groups, and delegation models.

Group Policy (GPO) Management

  • Design and implement enterprise GPO strategies.
  • Create, modify, troubleshoot, and optimize Group Policy Objects.
  • Manage GPO inheritance, WMI filtering, loopback processing, and security filtering.
  • Standardize endpoint security and configuration through GPOs.
  • Conduct GPO audits and maintain backup/recovery procedures.

Security & Compliance

  • Implement AD security hardening and Tiered Administration.
  • Monitor privileged accounts and administrative access.
  • Review AD audit logs and compliance reports.
  • Address vulnerabilities, replication issues, and security findings.

Troubleshooting & Escalations

  • Provide L3 support for critical incidents and problem management.
  • Resolve replication failures, DNS issues, authentication problems, and GPO processing errors.
  • Perform root cause analysis (RCA) and preventive actions.
  • Support DR exercises and recovery validation.

Mandatory Technical Skills

  • Active Directory Domain Services (ADDS)
  • Group Policy Management (GPO)
  • Windows Server 2016/2019/2022
  • DNS, DHCP, LDAP, Kerberos
  • PowerShell Scripting
  • AD Sites & Services
  • AD Replication Management
  • Trusts and Forest Management
  • Azure AD / Microsoft Entra ID
  • Microsoft 365 Identity Integration
  • Security Hardening & Audit Compliance

 

Information at a Glance

Why HCLTech?

At HCLTech, you'll supercharge your potential. You'll find your career. And you'll find your spark. All at a place that knows that helping its customers stay on top starts by putting its people first.

HCLTech is a global technology company, home to more than 223,000 people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud and AI, powered by a broad portfolio of technology services and products. We work with clients across all major verticals, providing industry solutions for Financial Services, Manufacturing, Life Sciences and Healthcare, Technology and Services, Telecom and Media, Retail and CPG, and Public Services. Consolidated revenues as of 12 months ending June 2026 totaled $14.8 billion.