On-site
Rekrute -
Morocco
--
Rekrute

Job Details

Job description

Job :

About the position



As part of strengthening our Identity & Access Management team, we are looking for an Active Directory Administrator Level 2 (L2) responsible for ensuring the operation, administration, and maintenance of Active Directory services.



You will play a key role in the daily management of the AD environment, while applying the architecture, security, and governance standards defined by Level 3 (L3) teams.



Your main tasks



Active Directory Administration



• Manage the lifecycle of Active Directory objects (users, groups, computers).
• Administer group memberships, including sensitive and privileged groups.
• Ensure compliance with naming conventions, directory consistency, and cleanup operations.
• Execute standard requests via ITSM tools.
• Apply validated permissions, policies, and workflows.



Operational management of GPOs



• Create, modify, delete, and link Group Policies (GPOs).
• Monitor and validate their correct application on workstations.
• Ensure operational consistency of GPOs.
• Perform diagnosis and resolution of common incidents related to GPOs.
• Implement deployments approved by L3 teams.



Operation of Tier 0 environments



• Administer domain controllers, DNS, PKI, and Entra ID Connect in compliance with security rules.
• Perform system updates, health checks, service restarts, and log analysis.
• Monitor the performance and availability of Domain Controllers.
• Execute backup and restore operations.
• Participate in delegated DNS administration operations.



Incident management and Level 2 support



• Resolve incidents related to:
o authentication and account lockouts;
o propagation of group memberships;
o DNS issues;
o common AD replications;
o GPO incidents;
o Entra ID Connect synchronizations;
o domain join problems;
RODC Infrastructures



• Perform root cause analysis and escalate complex incidents to L3 teams.



Compliance, security, and governance



• Ensure compliance with IAM governance rules and change procedures.
• Ensure adherence to security principles, separation of privileges, and Tier 0 access.
• Document interventions, incidents, and changes made.
• Contribute to the continuous improvement of operating procedures.
 





Required profile :

Profile sought



Technical skills:



• Solid expertise in Microsoft Active Directory administration.



• Proficiency in tools:
o Active Directory Users and Computers (ADUC)
o Active Directory Administration Center (ADAC)
o Group Policy Management Console (GPMC)
o DNS Manager
o PowerShell



• Good knowledge of authentication protocols: Kerberos, LDAP, NTLM.
• Experience in diagnosing authentication, replication, and DNS issues.
• Operational knowledge of Domain Controller services.
• Proficiency in operating and troubleshooting GPOs.
• Experience with Microsoft Entra ID Connect.




Personal qualities:



• Rigor and organizational skills.
• Strict adherence to procedures and security requirements.
• Excellent analytical and incident resolution skills.
• Good communication and teamwork.
• Ability to work under pressure and manage priorities.
• Strong sensitivity to cybersecurity and identity management issues.
 





Similar Jobs

About Rekrute
Morocco