Confirmed on the employer's own hiring board on Oct 8, 2026. First seen by Alion on Oct 7, 2026.
Job Summary
HCLTech is looking for an accomplished Active Directory & Microsoft Entra ID Engineer for its Noida location. This is a critical technology role responsible for engineering, operational stability, security, service resilience and continuous improvement across a complex enterprise environment. The role requires deep hands-on expertise, disciplined change execution, strong troubleshooting capability and effective collaboration with infrastructure, application, security, service-management and vendor teams.
Key Responsibilities
KEY RESPONSIBILITIES AND TECHNICAL SKILLS
- Design and administer multi-domain AD DS, forests, trusts, sites/services, DNS, DHCP, Group Policy, domain controllers, FSMO roles, replication and time services.
- Operate Microsoft Entra ID, Entra Connect/Cloud Sync, hybrid identity, SSO, Conditional Access, MFA/passwordless, PIM, Identity Governance, access reviews and RBAC.
- Manage Kerberos, NTLM, LDAP/LDAPS, SAML, OAuth 2.0 and OpenID Connect integrations.
- Secure privileged access, tiered administration, service accounts/gMSA, certificates and identity baselines; monitor sign-in and audit logs.
- Troubleshoot replication, DNS, authentication and synchronization; automate with PowerShell/Microsoft Graph and plan upgrades, migrations, backup and forest recovery.
Skill Requirements
Technical Profile - Active Directory and Microsoft Entra ID
Core technical skills:
- Design and administer multi-domain AD DS, forests, trusts, sites/services, DNS, DHCP, Group Policy, domain controllers, FSMO roles, replication and time services.
- Operate Microsoft Entra ID, Entra Connect/Cloud Sync, hybrid identity, SSO, Conditional Access, MFA/passwordless, PIM, Identity Governance, access reviews and RBAC.
- Manage authentication protocols including Kerberos, NTLM, LDAP/LDAPS, SAML, OAuth 2.0 and OpenID Connect; integrate enterprise and SaaS applications.
- Secure privileged access, tiered administration, service accounts/gMSA, certificates and identity baselines; monitor sign-in and audit logs.
- Troubleshoot replication, DNS, authentication, synchronization and access issues; automate with PowerShell and Microsoft Graph; plan upgrades, migrations, backup and forest recovery.
Other Requirements
DETAILED ROLE ACCOUNTABILITIES
- Engineer and administer enterprise AD DS and Microsoft Entra ID services across hybrid identity environments.
- Troubleshoot replication, DNS, Kerberos, LDAP/LDAPS, Group Policy, federation, synchronization, Conditional Access and sign-in issues.
- Implement privileged-access, MFA/passwordless, PIM, access review, service-account and identity-governance controls.
- Plan domain-controller, Entra Connect/Cloud Sync, forest/domain and authentication modernization activities with recovery controls.
- Automate administration and reporting through PowerShell and Microsoft Graph while maintaining audit-ready documentation.
DESIRED CERTIFICATIONS (GOOD TO HAVE)
- Microsoft Certified: Identity and Access Administrator Associate (SC-300)
- Windows Server Hybrid Administrator Associate (AZ-800/AZ-801)
- Azure Solutions Architect Expert
- ITIL 4 Foundation.
PROFICIENCY EXPECTATIONS
Competent (L3): Independently administer identities/GPOs, resolve common AD/Entra incidents, execute approved changes and maintain monitoring, backups and documentation.
Proficient (L4): Design hybrid identity and recovery architecture, lead migrations and complex security incidents, define Conditional Access/governance standards and mentor L3 engineers.
CANDIDATE PROFILE
- Strong hands-on experience in the stated technology domain and enterprise operations environment.
- Ability to independently troubleshoot complex issues, document solutions and collaborate with cross-functional stakeholders.
- Strong communication, change management, incident management and problem-solving skills.
- Willingness to work from the Noida location and support operational requirements as applicable.
REQUIRED EXPERIENCE AND CAPABILITIES
- Bachelor’s degree in Computer Science, Information Technology, Engineering or a related discipline, or equivalent relevant experience.
- Demonstrated hands-on experience supporting business-critical enterprise environments and handling complex incidents and changes.
- Working knowledge of ITIL-aligned incident, problem, change, request and knowledge-management processes.
- Ability to create HLD/LLD, implementation plans, rollback plans, SOPs, runbooks, RCA documents and operational reports.
- Strong stakeholder communication, ownership, analytical thinking and collaboration across application, infrastructure, security and vendor teams.
- Ability to participate in operational support, planned changes and major-incident activities according to business requirements.
KEY DELIVERABLES
- Stable, secure and supportable technology services with improved availability, performance and operational readiness.
- Timely resolution of complex incidents, complete root-cause analysis and closure of preventive actions.
- High-quality technical designs, implementation evidence, knowledge articles and support documentation.
- Controlled delivery of upgrades, migrations, standardization, automation and service-improvement initiatives.
- Clear technical communication with stakeholders, service owners, partner teams and technology vendors.
SELECTION FOCUS
- Depth of hands-on technical knowledge and ability to explain design and troubleshooting decisions.
- Experience with enterprise-scale operations, critical incidents, controlled changes and service restoration.
- Quality of documentation, automation mindset, security awareness and approach to continuous improvement.
Communication, ownership and ability to work effectively

