Systems Engineer - Enterprise Infrastructure Services Administrator
Doha, Doha Municipality, Qatar · Full Time
Be the first to apply
- Experience
- 3–5 yrs
- Salary
- —
- Openings
- 1
- Posted
- há 4 horas
- Work mode
- In office
- Education
- Bachelor's degree in IT or Computer Science
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
Overview
Black & Grey HR is partnering with a leading technology solutions provider in Doha, Qatar seeking a skilled Systems Engineer specializing in Enterprise Infrastructure Services Administration. The role entails overseeing enterprise identity, directory, and access management operations across multiple cloud environments, ensuring security, scalability, and compliance within Microsoft 365, Azure, Active Directory, and collaboration platforms.
Primary Responsibilities
- Administer Microsoft 365 user accounts, groups, permissions, and licensing.
- Manage Azure Entra ID (Azure AD), Multi-Factor Authentication, Conditional Access, and Identity Protection mechanisms.
- Maintain and support on-premises Active Directory services including domain services, Group Policy Objects, and replication processes.
- Oversee Azure AD Domain Services and hybrid identity infrastructures.
- Manage Google Directory Services within hybrid and federated identity architectures.
- Design and implement hybrid identity solutions to integrate cloud and on-premise directory services.
- Configure and maintain federation protocols such as AD FS, SAML, OAuth2, and OpenID Connect.
- Implement Single Sign-On (SSO) solutions and manage role-based access control (RBAC) alongside privileged and least-privilege access models.
- Support Privileged Identity Management (PIM) and Just-In-Time (JIT) access strategies.
- Coordinate Microsoft 365 license administration and utilization monitoring.
- Manage access permissions and governance for Microsoft Teams, SharePoint, OneDrive, and emerging collaboration tools like Copilot.
- Control external guest access and cross-tenant collaboration scenarios.
- Enforce security policies and compliance across collaborative platforms.
- Administer enterprise-wide email signature deployments.
- Oversee Public Key Infrastructure (PKI) and Domain Name System (DNS) services including the management of Active Directory Certificate Services (AD CS), SSL/TLS certificates, renewals, and revocations.
- Handle internal and external DNS environments along with domain registration and configuration tasks.
- Support hybrid cloud connectivity and infrastructure integration.
- Integrate enterprise applications with Active Directory and Entra ID for authentication and access control.
- Assist with LDAP, SAML, OAuth, and directory-based application integrations.
- Collaborate with security and application teams to ensure IAM compliance and effectiveness.
- Facilitate audits, compliance assessments, and risk analysis related to identity and access management.
- Maintain comprehensive technical documentation and standard operating procedures (SOPs).
Qualifications and Requirements
- Proven expertise managing Microsoft 365, Azure Entra ID, and Active Directory environments.
- Practical experience with hybrid identity solutions and directory synchronization technologies.
- In-depth knowledge of federation services, Single Sign-On (SSO), DNS, and Public Key Infrastructure (PKI) management.
- Familiarity with enterprise-wide IAM integration and security industry best practices.
- Bachelor’s degree in Information Technology, Computer Science, or a related discipline.
- Preferred certifications include Microsoft Azure Administrator Associate, Identity & Access Administrator Associate, and Microsoft 365 Enterprise Administrator.
Technical Expertise
- Azure Entra ID (Azure Active Directory) and Microsoft 365 platform capabilities.
- Active Directory Services: AD DS, AD CS, AD FS.
- Hybrid identity and directory synchronization methods.
- DNS management and domain configuration.
- Public Key Infrastructure (PKI) and certificate lifecycle administration.
- Federation protocols including SSO, LDAP, SAML, OAuth.
Minimum education
Bachelor's Degree