Role Overview
The L3 Active Directory (AD) & Windows Server Engineer is a senior technical resource responsible for the end-to-end administration, upgrade, migration, and security hardening of enterprise Active Directory, Windows Server and Hyper-V environments. This role combines hands-on experience on complex Hyper-V, Windows server environments, operational ownership with the ability to lead complex AD initiatives including Domain Controller upgrades, migrations, and security hardening programs – and acts as the escalation point for issues beyond L1/L2 capability. The profile is designed to be broadly applicable across AD/Hyper-V/Windows Server engagements, not tied to any single project.
Key Roles & Responsibilities
1. Own end-to-end administration and troubleshooting of enterprise AD environments – DNS, Group Policy, SYSVOL replication, and authentication services (Kerberos/LDAP/NTLM).
2. Lead AD and Windows Server upgrade/migration initiatives – Domain Controller builds, FSMO role transfers, functional level upgrades, and legacy decommissioning.
3.
Design and implement security hardening measures – privileged access tiering, service account security, protocol hardening, and alignment with industry best practices.
4. Serve as the L3 escalation point for complex AD/Windows Server incidents – driving root-cause analysis and permanent resolution beyond L1/L2 capability.
5. Support hybrid identity and cloud integration – Microsoft Entra Connect sync, troubleshooting, and coordination with cloud/identity teams.
6. Administer Hyper-V virtualization and cluster infrastructure – host/cluster build and configuration, VM provisioning and lifecycle management, storage and networking, and troubleshooting across the virtualized setting.
7. Maintain documentation, drive change management, and mentor L1/L2 engineers – runbooks, as-built records, and knowledge transfer to strengthen operational maturity.
Technical Skill Set Required
- Windows Server & AD DS: Stro
📌 Active Directory Specialist (Pune)
🏢 Shi
📍 Pune