USD 150000-183000/yr

Active Directory Architect

United StatesUnited States·Washingtonexecutive
ArchitectConstruction & Real Estate
0 views0 saves0 applied

Quick Summary

Key Responsibilities

Provide an in-depth knowledge of the Active Directory, Domain controllers, Azure Cloud, and a proficiency in PowerShell scripting.

Technical Tools
ArchitectConstruction & Real Estate

SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovative enterprise-wide solutions as well as targeted services addressing the complex challenges faced by our federal government clients. Our focus is on enabling our clients to deliver their mission most efficiently and effectively – anytime, anywhere, securely. We combine technical expertise, mission awareness, and an empowered workforce to produce meaningful results.

SkyePoint Decisions is seeking an Active Directory Architect to support a Department of State (DOS) customer. 

This is a hybrid position located in Washington, D.C.

Responsibilities

~2 min read
  • Provide an in-depth knowledge of the Active Directory, Domain controllers, Azure Cloud, and a proficiency in PowerShell scripting. 
  • Support the continuing goal of incorporating these innovative technologies into the Department of State (DOS) technical modernization program.
  • Provide cybersecurity, strategy, engineering, operations, and maintenance services that deliver business and mission value anytime, anywhere, and securely from any device.
  • Apply advanced subject matter knowledge to solve complex business issues and is regarded as a subject matter expert.
  • Contributes to the development of new ideas and methods.
  • Works on complex problems where analysis of situations or data requires an in-depth evaluation of multiple factors.
  • Provide expert providing direction and guidance to process improvements and establishing policies.
  • Participates as a member of and leads development teams.
  • Performs analysis of complex functional and business requirements.
  • Prepares code stubs for others.
  • Completes code to implement solutions.
  • Designs solutions for others to code.
  • Participates in cross-functional teams.
  • Leads design activities.
  • May provide mentoring and guidance to other developers.
  • Designs, prepares, and executes Unit tests.
  • Demonstrates technical leadership and exerts influence outside of the immediate team.
  • Develops innovative team solutions to complex problems. 
  • Contributes to strategic direction for teams.
  • Applies in-depth or broad technical knowledge to provide maintenance solutions across one or more technology areas
  • Independently implements end-user or enterprise infrastructure or services of significant complexity.
  • Integrates technical expertise and business understanding to create superior solutions for the company and customers.
  • Mentors and consults with team members and other organizations, customers, and vendors on complex issues.
  • Exercises significant independent judgment within broadly defined policies and practices to determine the best method for accomplishing work and achieving objectives.
  • Develop comprehensive and accurate reports and presentations for both technical and executive audiences. 
  • Create and document detailed guides and tracking documents - for clients to leverage as part of Active Directory hardening and overall infrastructure enhancements.
  • Tier 3 level troubleshooting including diagnosing complex replication and multi domain issues.
  • Develop standards, target states, roadmaps, effectively communicating and obtaining consensus across architecture, engineering, and operations teams.

 

Requirements

~2 min read
  • Bachelor’s degree with 10+ years of recent system engineering experience. Additional training and experience may be substituted in lieu of a degree.
  • Expert knowledge administering AD, AAD and ADFS in hybrid environments.
  • Expert knowledge administering AD and AAD support services such as AAD Conditional Access Policies, AAD Self-Service Password Reset (SSPR), AAD Connect and Windows Server DNS.
  • Expert knowledge designing, testing, deploying and maintaining Active Directory Group Policy (GPO) for the purpose of securing Domain Controllers, Domain Member Servers and Domain Member Workstations.
  • Expert analyzing security risks with proposed changed to AD, AAD, ADFS, AZAP, Domain Controllers, GPOs, etc. and providing an understandable summary of those risks to management for proper implementation decisions.
  • Experience administering multiple AD forests with forest trusts.
  • Knowledge of third-party AD support services such as Quest Active Roles, Quest Change Auditor for AD.
  • Knowledge of Microsoft Identity Manager.
  • Knowledge on configuring, deploying and onboarding applications for remote access via AZAP, including the use of Kerberos constrained delegation (KCD) for Single Sign On.
  • Must have a deep and thorough understanding of monitoring best practices.
  • Extensive experience with infrastructure and server theories, principles, and concepts; application infrastructure and standards; networking fundamentals.
  • Experience translating technical issues into understandable business language for end-users.
  • Experience working with cyber security teams to actively update AAD conditional access policy and AD Group Policies as determined by cyber threats and operational requirements.
  • Knowledge of Software as a Service (SaaS), Platform as a Service (PaaS) and Infrastructure as a Service (IaaS) – as it pertains to Enterprise Domain design and support.
  • Experience as a subject matter expert (SME) Senior Active Directory System Engineer or Architect in a large AD environment with the proven ability to coordinate technical efforts and resolve issues across multiple teams.
  • Strong working knowledge of Windows 2016 and 2019 Member Servers and Domain Controller operating systems platforms, DNS, networks, DMZs, network security zones.
  • PowerShell scripting experience and capabilities.
  • Expert knowledge of ADDS, ADFS, Azure AD and Windows Server Operating Systems 2016 & up.
  • Hands-on expertise with Azure AD Connect and AD Cloud SaaS.
  • U.S. Citizenship is required.
  • Active Secret clearance is required with the ability to obtain a Top Secret clearance. 

 

What We Offer

~1 min read

Salary Range: $150,000-$183,000

The SkyePoint Decisions salary range for this position is a general guideline only. It represents an estimated range for this position and is just one piece of our total compensation package. 

Salary at SkyePoint is determined by various factors, including but not limited to location, work schedule, the candidate’s combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability, market data and business considerations.

In addition to a competitive salary, SkyePoint offers benefits including a certification incentive program, PTO, floating federal holiday options, several insurance options including HMO and High Deductible plans with Health Savings Accounts [HSAs], Flex Spending Accounts [FSAs], Full Dental Plans, Vision, ST/LT Disability, Life Insurance, and 401k matched.

  • At SkyePoint, we go B.I.G. (beginning in GRATITUDE) by recognizing all we have and giving back to our employees, families, and communities. It instills a positive mindset that permeates all we do. By beginning in gratitude, SkyePoint can continue to spread living in gratitude each day.
  • Great Benefits: Several insurance options including HMO and High Deductible plans with Health Savings Accounts [HSAs], Flex Spending Accounts [FSAs], Full Dental Plans, ST/LT Disability, Life Insurance, floating federal holiday options, and 401k matched
  • Certificate Incentive Program: To promote professional development, we recognize and reward employees who obtain new certifications aligned with business needs.
  • Flexible Work Environment

SkyePoint Decisions is an established ISO 9001:2015 and ISO/IEC 27001:2013 certified small business and appraised at CMMI Level 3 for Services and Development. We possess a common vision of excellence and foster a collaborative team culture built upon individual performance and accountability. We invest in our people and systems to create value for our clients. It is the SkyePoint Way. We are grateful for the opportunity to work with exceptional people and give back to the communities we serve. Our employees value the flexibility at SkyePoint that allows them to balance quality work and their personal lives.

SkyePoint Decisions is a participating E-Verify Employer. 

U.S. Citizenship is required for most positions.

Equal Opportunity Employer/Veterans/Disabled.

 

CCPA Disclosure Notice Here 

Location & Eligibility

Where is the job
Washington, United States
On-site at the office
Who can apply
US

Listing Details

Posted
July 22, 2026
First seen
July 22, 2026
Last seen
July 22, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
60%
Scored at
July 22, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust

3 other jobs at SkyePoint Decisions

View all →

Explore open roles at SkyePoint Decisions.

Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

S
Active Directory Architect USD 150000-183000