Senior Directory Services Engineer in Cybersecurity
CZE - Central Bohemian - Prague (IT Riverview)
MSD
At MSD, we're following the science to tackle some of the world's greatest health threats. Get a glimpse of how we work to improve lives.Job Description
The Position
We are looking for a senior engineer working as part of a global team to support a fast-paced environment. Ensure conformance to established system architecture, security, regulations, standards, and practices, and participate\drive their evolvement\creation and upkeep. In addition to technical expertise must be proficient in managing projects through to completion, innovative, security focused, self-motivated, and driven. The candidate will be a member of the global Tier 3 Directory Services team which includes engineering along with operational responsibilities across all supported directory environments and core services within the organization. Good communication skills, documentation abilities and compliance experience are required. Comfortable working in a team environment and able to work collaboratively with other areas in implementing solutions that secure and benefit the company.
What will you do?
Tier 3 engineer supporting multiple Active Directory forests\domains with various implementations across enterprise. Experience securing, hardening and implementing tiered concepts is required.
Advanced knowledge of cloud capabilities\concepts including Entra ID, federation, RBAC and cloud security, Directory Synchronization (Entra ID Connect \ Cloud sync), Microsoft O365.
Practical experience implementing Entra ID security services (PIM, Password Protection, CAP, Identity protection etc.).
Advanced knowledge of tiering, ESAE and PAW.
Excellent understanding and technical knowledge of core services including DNS, WINS, PKI, GPOs, IPSEC, replication, trusts, etc.
Authentication services including Kerberos\NTLM and LDAP protocols.
Compliance and IT Security related best practices and processes.
Plan, configure, troubleshoot, and administer Microsoft AD DS and underlying Operating System(s).
PowerShell scripting experience in a large-scale environment for automation purposes and cloud connectivity.
Experience with Quest support tools specifically Active Roles.
Familiarity with old and modern Microsoft operating systems, server class hardware and VMWare \ HyperV technologies.
Experience with identity best practices, security, and SAAS strategies specifically around Microsoft Active Directory\Entra ID a must.
Qualifications, Skills & Experience Required
Essential
Senior level of experience supporting large scale enterprise Active Directory \ Entra ID environments and related services.
Managing permissions and all other aspects of AD DS \ Entra ID administration.
Ability to design secured large enterprise scale solutions and drive their implementation.
Ability to provide support for Real-time events providing moderated services.
Ability to acquire new skills in a diverse environment.
Fluent in English, in both verbal and written communication.
Optional skills:
Experience with Oracle products including Oracle Unified Directory (OUD).
RedHat Linux experience and support technical expertise.
Advanced knowledge of large networks including F5 load balancers concepts.
What we offer:
Exciting work in a great team, global projects, international environment
Opportunity to learn and grow professionally within the company globally
Hybrid working model, flexible role pattern (e.g., even 80% full-time is possible in justified cases)
Pension and health insurance contributions
Internal reward system plus referral programme
5 weeks annual leave, 5 sick days, 15 days of certified sick leave paid above statutory requirements annually, 40 paid hours annually for volunteering activities, 12 weeks of parental contribution
Cafeteria for tax free benefits according to your choice (meal vouchers, Lítačka, sport, culture, health, travel, etc.), Multisport Card
Vodafone, Raiffeisen Bank, Foodora, and Mall.cz discount programmes
Up-to-date laptop and iPhone
Parking in the garage, showers, refreshments, massage chairs, library, music corner
Competitive salary, incentive pay, and many more
Ready to take up the challenge? Apply now!
Know anybody who might be interested? Refer this job!
Current Employees apply HERE
Current Contingent Workers apply HERE
Search Firm Representatives Please Read Carefully
Merck & Co., Inc., Rahway, NJ, USA, also known as Merck Sharp & Dohme LLC, Rahway, NJ, USA, does not accept unsolicited assistance from search firms for employment opportunities. All CVs / resumes submitted by search firms to any employee at our company without a valid written search agreement in place for this position will be deemed the sole property of our company. No fee will be paid in the event a candidate is hired by our company as a result of an agency referral where no pre-existing agreement is in place. Where agency agreements are in place, introductions are position specific. Please, no phone calls or emails.
Employee Status:
RegularRelocation:
VISA Sponsorship:
Travel Requirements:
Flexible Work Arrangements:
HybridShift:
Valid Driving License:
Hazardous Material(s):
Job Posting End Date:
10/30/2024*A job posting is effective until 11:59:59PM on the day BEFORE the listed job posting end date. Please ensure you apply to a job posting no later than the day BEFORE the job posting end date.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Active Directory Automation Cloud Compliance DNS Kerberos LDAP Linux NTLM Oracle PKI PowerShell SaaS Scripting VMware
Perks/benefits: Competitive pay Flex hours Gear Health care Parental leave Relocation support Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.