Azure Admin

0 years

0 Lacs

Posted:22 hours ago| Platform: SimplyHired logo

Apply

Work Mode

On-site

Job Type

Full Time

Job Description

P1-C2-TSTS
You will join the EDS team as a hands-on engineer focused on day-to-day operations and security hardening across Active Directory and Microsoft Entra ID (Azure AD). You will work with platform SMEs and the wider team to deliver BAU tickets, implement hardening baselines, and execute engineering changes. The emphasis is on collaboration and delivery contributing expert work under established standards and designs rather than owning product roadmaps or leading programs. Key responsibilities BAU delivery: Triage and resolve incidents, service requests, and standard changes across AD/Entra ID, PKI, AD FS, and Quest Active Roles in line with SLAs. Hardening and hygiene: Implement Tier-0/DC hardening, GPO governance, Kerberos/LDAP protections, Conditional Access/PIM controls, SPN/gMSA/service-account hygiene. Engineering execution: Build and ship changes from SME/architect designs (e.g., DC upgrades, federation tweaks, AAD Connect/Cloud Sync tasks, App Proxy integrations). Automation: Use PowerShell and Microsoft Graph to audit, enforce, and remediate configuration; contribute to policy/config-as-code practices. Security remediation: Run BloodHound/AzureHound and PingCastle collections, analyse findings, and implement agreed remediations with SMEs. Monitoring & ops quality: Contribute to health/capacity checks, dashboards, and runbooks; document work clearly and keep records up to date. Change & compliance: Raise change records, follow CAB processes, and align with platform standards and security product roadmaps. Collaboration: Partner with SMEs, Operations, Network, and Security teams; participate in major-incident support and post-incident actions when required. Knowledge sharing: Provide peer support and share practical know-how (acting as a subject-matter contributor for assigned tasks while SMEs retain ownership). Experience & qualifications Must-have (merged) Microsoft identity stack: Deep experience with Active Directory and Entra ID (Azure AD), plus associated infrastructure such as AD FS and Azure AD Connect; excellent knowledge of AD 2016/2019 design, troubleshooting, and administration. Tiering & privileged access: Practical understanding of AD security concepts (Tier-0/Tier-1, PAWs) and lateral-movement risks; PAW/jump pattern design and rollout. Active Directory hardening: CIS-aligned DC baselines, host firewalls, and no-Internet DC patterns. Entra ID controls at scale: Conditional Access (MFA/device/risk), and PIM for roles and PIM for Groups. GPO & identity hygiene: Tier-0/Tier-1 GPO design/governance, SPN hygiene, gMSA adoption, and service-account policies (length/rotation). Automation-first: PowerShell and Microsoft Graph for audits, enforcement, and remediation; KQL, Terraform, Python; policy/config-as-code mindset in a DevOps environment. Exposure tooling: Hands-on with BloodHound/AzureHound and PingCastle (collection, analysis, and driving remediation). Quest ecosystem: Active Roles (ARS) and Change Auditor (or equivalent) for RBAC and change/drift tracking. Endpoint & access management: Experience with Microsoft Intune or strong understanding of MDM/MAM/Conditional Access. Standards & protocols: Strong understanding of OAuth2/OIDC and SAML; experience with PKI/AD CS and relevant Windows security standards. Security principles: Least privilege, separation of duties, auditability; confident engagement with InfoSec.

About Virtusa

Teamwork, quality of life, professional and personal development: values that Virtusa is proud to embody. When you join us, you join a team of 27,000 people globally that cares about your growth — one that seeks to provide you with exciting projects, opportunities and work with state of the art technologies throughout your career with us.

Great minds, great potential: it all comes together at Virtusa. We value collaboration and the team environment of our company, and seek to provide great minds with a dynamic place to nurture new ideas and foster excellence.

Virtusa was founded on principles of equal opportunity for all, and so does not discriminate on the basis of race, religion, color, sex, gender identity, sexual orientation, age, non-disqualifying physical or mental disability, national origin, veteran status or any other basis covered by appropriate law. All employment is decided on the basis of qualifications, merit, and business need.

Mock Interview

Practice Video Interview with JobPe AI

Start Python Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Python Skills

Practice Python coding challenges to boost your skills

Start Practicing Python Now
Virtusa logo
Virtusa

Information Technology and Services

Southborough

RecommendedJobs for You

gurgaon, haryana, india

gurugram, haryana

hyderabad, telangana, india

bengaluru, karnataka, india

gurgaon, haryana, india

Bengaluru, Karnataka, India