×
Register Here to Apply for Jobs or Post Jobs. X

Sr Director, Active Directory

Job in Roseland, Essex County, New Jersey, 07068, USA
Listing for: AGM Tech Solutions, LLC
Full Time position
Listed on 2026-03-04
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer
Job Description & How to Apply Below
At AGM Tech Solutions, we partner with high impact enterprise and mid size clients to solve complex challenges through top-tier IT Talent. Our Direct client is hiring:

Hybrid to Roseland, NJ or Alpharetta, GA

In this role you will lead the development, protection, and modernization of our on
- premises and cloud-based identity infrastructure. You will oversee strategic initiatives
such as Active Directory (AD) consolidation, certificate lifecycle management, and cloud
identity integration, while ensuring the team's alignment with security best practices and
automation-first principles. You will be responsible for securing identity platforms, reducing
the organization's technical attack surface, managing hybrid cloud identity systems, and driving
innovation through automation, scripting, and modern Dev Sec Ops  practices. A deep
understanding of identity security architecture, Infrastructure as Code (IaC), and end-to-end
certificate management is essential.

Key Responsibilities:

Leadership & Strategy
  • Lead and mentor a high-performing team managing active directory and identity infrastructure across on-premises and cloud environments.
  • Define and execute the roadmap for identity management, directory services, and certificate services across hybrid infrastructure.
  • Align IAM and directory strategies with organizational security policies, compliance requirements, and business continuity goals.
  • Design and enforce Active Directory Tiering, segmentation, and hardening standards.
  • Lead domain consolidation, forest restructuring, and trust design initiatives.
  • Define and execute the roadmap to move to cloud and SaaS capabilities.
  • Define, implement, and operate the use and impact of GenAI within IAM landscape along with use of GenAI in the ecosystem.
Directory Services & Identity Management
  • Oversee the operation, consolidation, and security of Microsoft Active Directory (AD), in conjunction with the Azure AD (Entra ) Team
  • You will ensure that access to enterprise resources is both secure and seamless, across multiple devices and environments, leveraging technologies such as Microsoft Entra  (Azure AD) for SSO and MFA, and supporting advanced authentication methods like passwordless, adaptive, and device-based authentication, along with the management of Active Directory, Virtual Directory Services (VDS), PKI, and API security.
  • Govern identity lifecycle processes, group policy management, and role-based access controls.
  • Manage identity federation and SSO integrations using Entra , SAML, OAuth2, and OIDC.
  • Implement and maintain MFA and adaptive authentication based on risk, device, and location signals.
  • Deploy and manage password less authentication solutions (FIDO2, biometrics, certificates).
Cloud & Hybrid Identity Infrastructure
  • Manage and secure identity services across both on-premises data centers and public cloud platforms (Azure, AWS, and possible OCI or GCP).
  • Integrate cloud-native identity tools and federated authentication mechanisms with enterprise AD.
  • Develop and maintain hybrid identity synchronization strategies (e.g., Azure AD Connect, ADFS).
Certificate & Key Management
  • Own the Public Key Infrastructure (PKI), including root and issuing CA management.
  • Manage the full certificate lifecycle for internal needs, including issuance, renewal, rotation, and revocation.
  • Administer and secure Hardware Security Modules (HSMs) for cryptographic key protection.
Security & Event Management
  • Collaborate with the SOC to integrate directory-related logs and alerts into the Security Information and Event Management (SIEM) systems.
  • Respond to and lead investigations involving identity compromise, privilege escalation, and misconfiguration.
  • Implement privileged access management (PAM) and just-in-time access controls.
Automation & Dev Sec Ops
  • Drive adoption of Infrastructure as Code (IaC) for identity infrastructure using tools like Terraform or Ansible.
  • Automate identity management processes using Power Shell, Python, or similar scripting languages.
  • Implement secure coding and automated deployment practices into CI/CD pipelines to rapid, compliant identity changes.
  • Define security guardrails and policy-as-code controls to secure pipeline-deployed…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary