Active Directory & Azure Security Engineer in West Midlands
Posted by Gleeson Recruitment Group
We are looking for an experienced Active Directory & Azure Security Engineer on a remote working basis to support a programme of remediation and modernisation across a Microsoft environment.
The organisation has accumulated technical debt across its infrastructure and identity estate and now needs a contractor who can assess the current environment, identify areas of risk and improvement, and help implement modern best practices across Active Directory, Entra ID, Azure, Intune and Microsoft Defender.
This is a hands-on project and remediation role rather than a BAU support position. You will need to understand the potential impact of changes, plan and test effectively, and implement improvements without creating unnecessary operational risk.
Key Responsibilities
Review the existing Active Directory environment and identify areas of technical debt, security risk and configuration improvement.
Lead hands-on remediation and modernisation across the AD estate.
Implement Microsoft recommended practices around identity, authentication, access control and security.
Review and improve Group Policy, privileged access, service accounts, legacy authentication and identity configuration.
Support alignment between on-premise Active Directory and Microsoft Entra ID.
Review and improve Conditional Access, MFA and identity security controls where required.
Support improvements across Azure and Intune environments.
Work with Microsoft Defender technologies to improve endpoint and identity security.
Assess the impact of proposed changes before implementation.
Develop appropriate testing, rollback and mitigation plans.
Implement changes safely across production environments.
Identify dependencies and potential risks across legacy systems and applications.
Produce clear technical documentation covering findings, recommendations and completed remediation.
Work with internal infrastructure and security teams to embed improved standards and practices.
Key Skills & Experience
We are looking for someone with strong hands-on experience across:
Active Directory administration, engineering and remediation.
AD security hardening and modernisation.
Group Policy design and remediation.
Active Directory Domain Services.
Microsoft Entra ID / Azure AD.
Hybrid identity environments.
Conditional Access and Multi-Factor Authentication.
Microsoft Azure.
Microsoft Intune.
Microsoft Defender technologies.
Identity and access management.
Privileged access and account security.
Security remediation within complex Microsoft environments.
Change management, testing and rollback planning.
Troubleshooting dependencies across legacy infrastructure.
At Gleeson Recruitment Group, we embrace inclusivity and welcome applicants of all backgrounds, experiences, and abilities. We are proud to be a disability confident employer.
By applying you will be registered as a candidate with Gleeson Recruitment Limited. Our Privacy Policy is available on our website and explains how we will use your data.
Application opens at the source listing. Free for jobseekers.