Windows Virtualization ADFS Engineer
DXC Technology.com
Office
Riyadh, Saudi Arabia (SA001)
Full Time
Job Description:
- Job Summary:The AD Administrator will be responsible for the day-to-day operations, maintenance, and support of enterprise identity services including Active Directory, ADFS, PKI, Microsoft Entra ID (Azure AD), DNS, DHCP, and associated monitoring and self-service tools. This includes managing hybrid identity environments, troubleshooting replication and authentication issues, and implementing security and compliance controls.
Mandatory Skills Description:
- Key Responsibilities:
- Active Directory (On-Prem & Hybrid)
- • Manage multi-domain AD forest including replication, OU delegation, GPO enforcement, and health checks.
- • Perform daily operational tasks such as user/service account provisioning, password resets, and group management.
- • Monitor AD health using ManageEngine AD Audit Plus, Splunk, and Dynatrace.
- • Implement and maintain RBAC, MFA for privileged accounts, and CyberArk PAM integration.
- ADFS (Active Directory Federation Services)
- • Maintain multiple ADFS farms for internal and external applications.
- • Manage relying party trusts, certificate rollover, and conditional access policies.
- • Coordinate with application and network teams for federation and high availability setup.
- PKI (Public Key Infrastructure)
- • Operate and maintain a 2-tier PKI
- • Manage certificate templates, auto-enrolment and manual issuance for web servers and domain controllers.
- • Ensure CRL/CDP configurations and Splunk-based monitoring are in place.
- Microsoft Entra ID (Azure AD)
- • Support hybrid identity architecture with Azure AD Connect sync from On-Prem AD.
- • Manage conditional access policies, licensing and integration with cloud applications.
- • Assist in certificate-based authentication (CBA) and governance activities.
- DNS & DHCP
- • Administer DNS zones, scavenging, and secure updates (DNSSEC).
- • Manage DHCP scope configurations, reservations, and IP address management
- • Ensure compliance with naming conventions and subnet allocation policies.
- ManageEngine AD Audit Plus
- • Configure and maintain auditing policies for AD changes, logon events, and GPO modifications.
- • Generate compliance reports and alerts for unauthorized access or privilege escalation.
- • Integrate with SIEM tools for centralized monitoring.
- Self-Service Password Reset (SSPR)
- • Administer and support SSPR solutions for internal and external users.
- • Ensure secure enrolment, multi-factor authentication, and policy enforcement.
- • Monitor usage and troubleshoot issues related to password reset workflows.
- • Strong knowledge of Windows Server (2016/2019/2022), AD DS, ADFS, PKI, DNS, DHCP.
- • Experience with hybrid identity solutions including Azure AD and Entra ID.
- • Familiarity with tools: ManageEngine AD Audit Plus, CyberArk, Splunk, Dynatrace.
- • Scripting skills (PowerShell) for automation and reporting.
- • Understanding of ITSM processes, incident/change/problem management.
- Qualifications:
- • Bachelor’s degree in computer science, Information Technology, or related field.
- • Certifications preferred: Microsoft Certified: Azure Administrator Associate (AZ-104), AD DS, PKI, ADFS, DNS/DHCP.
- • Minimum 5 years of experience in enterprise AD administration.
At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritizes in-person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We’re committed to fostering an inclusive environment where everyone can thrive.
Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers typically through online services, such as false websites, or through unsolicited emails claiming to be from the company. These emails may request recipients to provide personal information or to make payments as part of their illegitimate recruiting process. DXC does not make offers of employment via social media networks and DXC never asks for any money or payments from applicants at any point in the recruitment process, nor ask a job seeker to purchase IT or other equipment on our behalf. More information on employment scams is available here.
Windows Virtualization ADFS Engineer
Office
Riyadh, Saudi Arabia (SA001)
Full Time
September 20, 2025