Administer and maintain on-premises Active Directory (AD DS) and Microsoft Entra ID (Azure AD) in a hybrid identity environment, including domain controllers, AD Sites & Services, domain/forest trusts, replication and directory synchronization.
Create, manage, and troubleshoot Group Policies to enforce consistent configuration and security settings across the enterprise.
Monitor directory health (AD replication, AD-integrated DNS, domain controller performance, Azure AD sync) and proactively resolve issues to ensure reliable authentication and access services.
Apply Active Directory security best practices (tiered admin model, least privilege, hardened domain controllers) to safeguard identity infrastructure and data.
Maintain and test Active Directory backup and recovery processes (authoritative/non-authoritative restore procedures), participating in disaster recovery exercises to ensure directory service resilience....