Demo

Principal IAM/AD Engineer-- DAVDC5693168

Compunnel Inc.
Natick, MA Full Time
POSTED ON 12/15/2025 CLOSED ON 12/17/2025

What are the responsibilities and job description for the Principal IAM/AD Engineer-- DAVDC5693168 position at Compunnel Inc.?

Job Description:


Are you an IAM / AD Engineer with Architect-level knowledge? Our Natick, MA client is looking to bring on a Senior IAM / AD Engineer to help deliver hardened directory services across the organization. This will include modern authentication, ITDR, and Zero Trust controls. This person will provide SME guidance as well as hands on duties such as operating on-prem AD, patching / replication / monitoring / and more. This is a full-time, direct hire position.


Must haves:

  • 10 years enterprise Experience
  • Bachelors
  • Active Directory
  • MS EntraID
  • Azure AD Connect / Cloud Sync
  • Experience working in hybrid cloud/on-prem
  • PowerShell


Client JD:

Do you design secure, resilient Active Directory at scale and enjoy automating identity operations? Join our Security Operations IAM team responsible for enterprise identity foundations across on‑prem Active Directory and Microsoft Entra ID. We partner with Security Engineering, IT, and Compliance to deliver hardened directory services, modern authentication, ITDR capabilities and Zero Trust controls that enable the business.


Responsibilities

  • Operate and maintain on‑premises Active Directory: domain controller health, patching, promotion/demotion, replication, sites/subnets, time services, SYSVOL/GPO health, and capacity monitoring.
  • Implement and manage Entra ID capabilities: Conditional Access, Identity Protection risk policies, PIM, and app registrations/service principals.
  • Monitor, troubleshoot, and optimize directory synchronization and identity lifecycle flows.
  • Partner with our SOC to drive a successful TDR program. Help build and tune detections to identify threats such as DCSync, Golden/Silver Ticket, Kerberoasting, pass‑the‑hash/ticket, risky sign‑ins, and impossible travel.
  • Harden AD and Entra ID: apply baselines, admin tiering, PAW usage, secure delegation, privileged workflow controls, regular access reviews, and identity threat hunting.
  • Automate identity operations and ITDR tasks with PowerShell and APIs (Graph/Entra): alert enrichment, response runbooks, access certifications, reporting, and drift remediation.
  • Lead complex troubleshooting and incident response for identity (Kerberos/NTLM, replication, DCSync/Golden/Silver Ticket detections, Conditional Access failures); drive root cause and preventive actions.
  • Produce runbooks, standards, and change records; mentor team members and collaborate with stakeholders to align IAM operations with business needs.


Minimum Qualifications

A bachelor's degree and 10 years of professional work experience (or equivalent experience) is required.


Additional Qualifications

A successful candidate for this role will have a combination of some or all of the following skills/experience:


  • 7 years in enterprise Active Directory operations and hardening including DC lifecycle management, sites/services, replication, BCDR, and observability.
  • Hands-on experience with Microsoft Entra ID: Conditional Access, MFA, Identity Protection, PIM, app registration and service principal governance.
  • Experience operating Azure AD Connect or Cloud Sync in hybrid identity environments.
  • Identity Governance and Administration experience for provisioning, role/entitlement models, and access certifications.
  • Proficiency with PowerShell, Python and Microsoft Graph/Entra APIs for automation.
  • Experience with privileged access models and administrative tiering.
  • Ability to support after-hours maintenance and incident response as needed.
  • SSO/Federation: SAML/OIDC/OAuth; SCIM provisioning to SaaS apps.
  • AD security: trusts, LDAP/LDAPS, constrained delegation, GPO hardening.
  • PKI and certificates: AD CS, CRL/OCSP, auto enrollment, renewal automation for workloads and service principals/certs.
  • Backup/Recovery: authoritative restore, forest recovery planning and drills.
  • IaC/automation: DSC, GPO as Code, Git workflows; CI/CD familiarity for scripts/policies.
  • Compliance familiarity: CMMC, NIST CSF/800‑53/171, ISO 27001

Senior IAM Engineer
Bright Horizons Children's Centers -
Newton, MA
Software Engineer, Ad Serving
Roku -
Boston, MA
Software Engineer, Ad Serving
Roku and Careers -
Boston, MA

Salary.com Estimation for Principal IAM/AD Engineer-- DAVDC5693168 in Natick, MA
$210,041 to $265,114
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Principal IAM/AD Engineer-- DAVDC5693168?

Sign up to receive alerts about other jobs on the Principal IAM/AD Engineer-- DAVDC5693168 career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$103,114 - $138,258
Income Estimation: 
$118,163 - $145,996
Income Estimation: 
$120,777 - $151,022
Income Estimation: 
$129,363 - $167,316
Income Estimation: 
$86,891 - $130,303
Income Estimation: 
$195,700 - $270,403
Income Estimation: 
$265,326 - $360,661
Income Estimation: 
$241,674 - $350,303
This job has expired.
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Compunnel Inc.

  • Compunnel Inc. Fargo, ND
  • In this role, you will have the opportunity to: Stage, package, handle, and receive materials and production vials according to established SOPs, ensuring ... more
  • 12 Days Ago

  • Compunnel Inc. Washington, DC
  • Job Summary We are seeking a compassionate and highly skilled Registered Nurse – NICU to provide specialized care for critically ill or premature newborns ... more
  • 12 Days Ago

  • Compunnel Inc. Merrimack, NH
  • Job: Oracle Database Developer Location: Merrimack NH or Westlake TX 2 weeks onsite in a month Long term contract Must Have: Primarily looking for someone ... more
  • 12 Days Ago

  • Compunnel Inc. Des Moines, IA
  • Introduction Client is seeking an experienced IT Contracting Officer to support IT contract management, performance monitoring &compliance. General Descrip... more
  • 12 Days Ago


Not the job you're looking for? Here are some other Principal IAM/AD Engineer-- DAVDC5693168 jobs in the Natick, MA area that may be a better fit.

  • MathWorks Natick, MA
  • Summary MathWorks has a hybrid work model that enables staff members to split their time between office and home. The hybrid model provides the advantage o... more
  • 8 Days Ago

  • Bright Horizons Newton, MA
  • This is a remote role in the United States We are seeking a skilled Sr. IAM Engineer to join our team. The ideal candidate will have extensive experience i... more
  • 12 Days Ago

AI Assistant is available now!

Feel free to start your new journey!