Directory Services Lead
Americas, US-PA, King of Prussia, CSL Behring, United States
CSL
CSL consists of CSL Behring, CSL Seqirus and CSL Vifor. Together they help ensure people everywhere get the treatments they need.The Opportunity
Reporting to the Associate Director, Identity Access Management Lead, you will lead the strategic direction, operational excellence, and continuous improvement of the enterprise directory services ecosystem—including Active Directory (AD), Entra ID, DNS, DHCP, PKI, and related infrastructure. You will ensure the delivery of secure, scalable, and compliant directory services across both enterprise and manufacturing environments, enabling reliable, modern, and integrated identity foundations to support hybrid and multi-cloud deployments. This is a hybrid role, which offers a combination of an onsite and remote work schedule. #LI-hybrid
The Role
Responsibilities:
Strategy and roadmap: Responsible for developing the strategy and roadmap for directory services that minimizes technical debt, maintains low complexity, and remains future-proof and flexible to support both on-premises and hybrid estates, driving towards establishing a unified cloud identity.
Project & Service Delivery: Lead directory services-related projects from design through implementation, ensuring alignment with enterprise security and compliance standards.
Architecture & Integration: Design and maintain CSL's directory architecture that supports hybrid environments (on-prem and Entra ID cloud). Ensure seamless integration with enterprise applications, SSO, MFA, and PAM systems.
Governance & Compliance: Define and enforce policies, SLAs, and audit controls for directory services. Collaborate with security and compliance teams to meet regulatory and internal audit requirements.
Collaboration & Stakeholder Engagement: Partner with IAM leads, infrastructure teams, Managed Service Providers and external vendors to align directory services with broader I&T and business goals.
Team Leadership & Mentorship: Provide technical guidance and mentorship to various support teams to drive maturity, while fostering a culture of accountability, continuous learning, and service excellence.
Service Provider Management: Oversight of Managed Service Provider to ensure service level management metrics for Directory services are met.
Technical Expertise, Innovation and User Experience
Explores, selects, implements, and provides operational oversight of Active directory technology-based tools and technologies.
Drive efforts towards modernization of Directory Services embracing Cloud native domain services and Zero Trust Architectures and improving overall security, reliability, and stability.
Monitor the market to gain knowledge and understanding of emerging technologies and trends, proposes measures to either improve existing capabilities or introduce new ones, lobbies for organizational support, and procures and implements enhancements.
Embody a continuous improvement mindset by identifying opportunities for innovation with driving operational maturity and lowering the maintenance costs.
Lead the consolidation and optimization of multiple legacy Active Directory domains and Entra ID platform.
Support the Identity & Access Management (IAM) organization with strategy, design, planning, and deployment of IAM solutions and capabilities promoting AI-enabled self-services.
Your skills and experience
Bachelor's degree with a preferred focus in Information Technology, Computer Science, or related field or equivalent combination of education and experience.
Pharma/Biotech or similarly regulated environment experience preferred.
IT Security Industry certifications (CISM, CISSP, CISA, etc.) desirable.
Experience with Large-scale Active directory implementations, with expert knowledge (7+ years) in Directory services focused on Microsoft Active Directory, Entra ID, AWS Domain services.
Minimum 5 years in directory services or Identity & Access Management (IAM) roles, with proven technical leadership in managing enterprise-scale AD environments.
Deep expertise in AD, Azure AD, DNS, DHCP, Kerberos, LDAP, PKI.
Experience leading teams through transformational programs for cloud-enabled ecosystems preferred.
Experience working with a Managed Service Provider to improve outsourced directory services.
Identity Governance & Administration domain experience and technical background implementing SailPoint, CyberArk, Ping Technologies SSO/MFA, user accounts, security group memberships in Active Directory and Entra ID.
Experience managing cloud technology deployments and integrations in AWS and Azure.
Our Benefits
CSL employees that work at least 30 hours per week are eligible for benefits effective day 1. We are committed to the wellbeing of our employees and their loved ones. CSL offers resources and benefits, from health care to financial protection, so you can focus on doing work that matters. Our benefits are designed to support the needs of our employees at every stage of their life. Whether you are considering starting a family, need help paying for emergency back up care or summer camp, looking for mental health resources, planning for your financial future, or supporting your favorite charity with a matching contribution, CSL has many benefits to help achieve your goals.
Please take the time to review our benefits site to see what’s available to you as a CSL employee.
About CSL Behring
CSL Behring is a global leader in developing and delivering high-quality medicines that treat people with rare and serious diseases. Our treatments offer promise for people in more than 100 countries living with conditions in the immunology, hematology, cardiovascular and metabolic, respiratory, and transplant therapeutic areas. Learn more about CSL Behring.
We want CSL to reflect the world around us
At CSL, Inclusion and Belonging is at the core of our mission and who we are. It fuels our innovation day in and day out. By celebrating our differences and creating a culture of curiosity and empathy, we are able to better understand and connect with our patients and donors, foster strong relationships with our stakeholders, and sustain a diverse workforce that will move our company and industry into the future. Learn more Inclusion and Belonging | CSL.
Do work that matters at CSL Behring!
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Active Directory AWS Azure CISA CISM CISSP Cloud Compliance Computer Science Cyberark DNS Governance IAM Kerberos LDAP PKI SailPoint SLAs SSO Strategy Zero Trust
Perks/benefits: Career development Flex hours Health care
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.