ACTIVE DIRECTORY AND IDENTITY MANAGEMENT ENGINEER

5 days left

Location
Arlington, Virginia
Salary
$98,633.60 - $150,592.00 Annually
Posted
Oct 09, 2020
Closes
Oct 29, 2020
Ref
1000-21A-DTS-BL
Industry
Engineering
Hours
Full Time
Position Information

Arlington County's Department of Technology Services is seeking an Identity Management Engineer to utilize the Microsoft Azure Active Directory (AD) Environment and support the County's transition of AD functionality to cloud-based services. This position will collaborate with the Chief Information Security Officer to lead identity and access management functions that protect and control access to the network, the AD, the Virtual Directory and other critical identity management systems.

Specific duties include:
  • Serving as a technical lead for identity and access management requirements of the AD and the Virtual Directory;
  • Providing professional technical support required to operate and maintain the County's AD;
  • Managing AD infrastructure to include Flexible Single Master Operation (FSMO) roles, trusts, Kerberos KDCs, replication topology, etc.;
  • Creating and ensuring the security of all top-level Organizational Unit (OU) hierarchies with sub-OUs, groups, and appropriate security permissions;
  • Adding OU Administrators to groups and the mail list;
  • Setting appropriate permissions on created objects and linking default Group Policy Objects within the AD;
  • Performing day-to-day monitoring of the domains to ensure stability and security;
  • Monitoring the AD and system security and compliance with protocols and conventions; and
  • Managing Microsoft Azure Directory Environment to include assigning licenses, application access to groups or users, and delegating permissions to distribute identity management tasks.
The ideal candidate will have strong problem-solving skills with the ability to translate moderately complex technical information; excellent customer service and team skills; and be able to think logically and act decisively in critical situations.

Selection Criteria

Minimum: Bachelor's degree in Computer Science, Information Systems Management, or related field plus considerable experience with Active Directory and cybersecurity programs and systems.

Substitution: Additional qualifying experience may substitute for the education requirement on a year for year basis.

Desirable: Preference may be given to applicants with one or more of the following:
  • Experience in server administration, Active Directory tools, Active Directory Federation Services, Microsoft Exchange and security related to server management;
  • Advanced understanding of Microsoft Azure Active Directory Environment;
  • Experience assigning licenses, application access to groups or users, and delegating permissions to distribute identity management tasks; and
  • Basic knowledge of Microsoft InTune packaging policies & procedures.


Additional Information

Work hours: Flexible working hours and remote work is available. Normal business hours are Monday-Friday, 8:00 A.M.- 5:00 P.M. Some evenings and weekends may be required.

The official title for this position is Cybersecurity Engineer.

Please complete each section of the application, including the supplemental questionnaire. A resume may be attached; however, it will not substitute for the completed application. Incomplete applications will not be considered.

Arlington County Government employee benefits depend on whether a position is permanent, the number of hours worked, and the number of months the position is scheduled.

Specific information on benefits and conditions of employment can be found on the Arlington County Human Resources Department website: www.arlingtonva.us/pers.

Permanent, Full-Time Appointments
All jobs are permanent, full-time appointments unless otherwise stated in the announcement. The following benefits are available:

Paid Leave : Vacation leave is earned at the rate of four hours biweekly. Leave accrual increases every three years until eight hours of leave are earned biweekly for twelve or more years of service. Sick leave is earned at the rate of four hours biweekly. There are eleven paid holidays each year.

Health and Dental Insurance : Three group health insurance plans are offered - a network open access plan, a point-of-service plan, and a health maintenance organization. A group dental insurance plan is also offered. The County pays a significant portion of the premium for these plans for employees and their dependents. A discount vision plan is provided for eye care needs.

Life Insurance : A group term policy of basic life insurance is provided at no cost to employees. The benefit is one times annual salary. Additional life insurance is available with rates based on the employee's age and smoker/non-smoker status.

Retirement : The County offers three vehicles to help you prepare for retirement: a defined benefit plan, a defined contribution plan (401(a)), and a deferred compensation plan (457). The defined benefit plan provides a monthly retirement benefit based on your final average salary and years of service with the County. You contribute a portion of your salary on a pre-tax basis to this plan. General employees contribute 4% of pay; uniformed public safety employees contribute 7.5% of pay. Employees become vested in the plan at five years of service. The County also contributes to this plan.

For general employees, the County also contributes 4.2% of pay to a defined contribution plan (401(a)) . The County also matches your 457 contribution, up to $20 per pay period, in this plan. The 457 deferred compensation plan allows you to set aside money on either a pre-tax (457b) or post-tax (457 Roth) basis up to the IRS annual limit. New employees are automatically enrolled with a pre-tax contribution equal to 2% of your base pay.

Other Benefits: The County also offers health, dependent care, and parking flexible spending accounts; long-term care insurance; tuition assistance; transit and walk/bike to work subsidies; a college savings plan; wellness programs; training opportunities; and a variety of other employee benefits.

Permanent, Part-Time Appointments:
Part time employees who work ten or more hours per week receive paid leave and benefits in proportion to the number of hours worked per week.

Limited Term Appointments:
Benefits are the same as permanent appointments except that the employees do not achieve permanent status.

Temporary Regular Appointments:
Temporary regular employees who work 30 hours or more per week are eligible for health, dental, and basic life insurance as described above. They are also eligible for vacation, sick leave, and paid holidays.

Temporary Seasonal and Occasional Appointments:
Temporary employees who work on a seasonal basis or variable hours receive sick leave, but do not normally receive other paid leave or benefits. Exceptions are noted in individual announcements.

01

Please provide an overview of your experience in Active Directory Administration and Identity Management.

02

Please describe your experience in Cloud technology, if any.

03

Please select if you have one or more of the following:
  • Experience in server administration, Active Directory tools, Active Directory Federation Services, Microsoft Exchange and security related to server management;
  • Advanced understanding of Microsoft Azure Active Directory Environment;
  • Experience assigning licenses, application access to groups or users, and delegating permissions to distribute identity management tasks;
  • Basic knowledge of Microsoft InTune packaging policies & procedures;
  • Strong problem-solving and interpersonal skills with the ability to translate moderately complex technical information;
  • Customer service and team skills;
  • The ability to think logically and act decisively in critical situations.


Required Question