Logo
Regions Financial Corporation

Identity & Access Management (IAM) Active Directory Engineer

Regions Financial Corporation, Charlotte, North Carolina, United States, 28245


Thank you for your interest in a career at Regions. At Regions, we believe associates deserve more than just a job. We believe in offering performance-driven individuals a place where they can build a career --- a place to expect more opportunities. If you are focused on results, dedicated to quality, strength and integrity, and possess the drive to succeed, then we are your employer of choice.Regions is dedicated to taking appropriate steps to safeguard and protect private and personally identifiable information you submit. The information that you submit will be collected and reviewed by associates, consultants, and vendors of Regions in order to evaluate your qualifications and experience for job opportunities and will not be used for marketing purposes, sold, or shared outside of Regions unless required by law. Such information will be stored in accordance with regulatory requirements and in conjunction with Regions’ Retention Schedule for a minimum of three years. You may review, modify, or update your information by visiting and logging into the careers section of the system.Job Description:

At Regions, the Active Directory Administrator is responsible for the configuration, maintenance and day-to-day operations of a multi-forest, multi-domain Active Directory forest. This position will serve as a subject matter expert and rely on technical knowledge and skill to conduct tasks independently.Primary ResponsibilitiesLeads the day-to-day administration of active directories including Windows Active Directory object maintenanceTakes responsibility for management of multiple Domain Controllers located across multiple domains and sitesConducts complex troubleshooting and repair tasks on Active Directory, Windows Server 2012-2019, Domain Controllers, DNS, DFS, NPS, and DHCP configurations, user authentication, and other operational systemsDevelops, deploys, and troubleshoots Group PolicyAdministers DNS, DFS, NPS, and DHCP and supports the infrastructureConfigures and maintains Single Sign-On (SSO)/Federated Identity Management via SAML2 and OIDCManages Active Directory certificate services – supports internal and external Public Key Infrastructures (PKI) certificate requests, renewals, and installations on multiple platformsCreates and updates technical documentation of operating proceduresFollows and applies configuration and security standards and policies within a defined change management processLeverages PowerShell to perform routine tasksProactively identifies problematic areas and implements strategic solutionsParticipates in 24x7 on-call rotations and fulfills ticket requestsWorks with management in determining team knowledge and skill holes and developing training plansOffers guidance to junior administrators and contributes to their technical knowledge and skill developmentThis position is exempt from timekeeping requirements under the Fair Labor Standards Act and is not eligible for overtime pay.RequirementsHigh School Diploma or GED and eight (8) years of relevant experienceOr Bachelor’s degree in Computer Science or related discipline and four (4) years of relevant experienceOr equivalent combination of education and experiencePreferencesCertifications:

Security+MCSE: Server InfrastructureMCSA: Windows Server 2012

Advanced PowerShell scripting skillsExperience with Azure/AWS and Okta for FederationExperience with PKI Security/ManagementExperience working with a large enterprise distributed computing environmentAdvanced understanding of architecting and configuring Microsoft Windows OS technology including AD Forests, Domains, Trusts, DNS, DHCP, Group Policy, and Organizational UnitsSkills and CompetenciesAbility to multi-task and use effective time management skillsAbility to work independently and self-initiateAdvanced knowledge and skill in technical problem resolutionProactive, decisive, and action-orientedStrong research, analytical, and problem-solving skills to evaluate situations, make recommendations, and actStrong verbal, written communication, and organizational skillsThis position must be within a reasonable driving distance to a Branch, Consumer Operations, or Professional Office Building with the primary location being for

Birmingham, AL, Nashville, TN, Atlanta, GA or Charlotte, NC.

Regions will not provide relocation assistance for this position, and relocation would be at your expense.

Exceptions to the geographic location requirement may be made for current Regions associates who work remotely.Additional Job Detail:This role will function as an Identity & Access Management (IAM) Active Directory Engineer and will oversee the administration of Microsoft Active Directory Domain Services as well as several other critical identity systems, such as Microsoft Entra ID (Azure Active Directory), AWS Identity Center, and Okta. The engineer will have responsibilities in several areas, such as production support and availability, problem identification and solution development, capacity and disaster recovery planning, implementation of new identity configurations, technology refresh and deployments.Primary ResponsibilitiesProduction support and availability for on-premises Microsoft Active Directory environment, Entra ID (Azure AD), AWS Identity Center, Okta and other identity solutionsSolution, Plan and Implement new products as needed for the ongoing support and development of Regions IAMProvide consultative and implementation support for identity-related issues for applications migrating to cloud solutionsImplement SAML/OIDC/OAUTH solutions for applications implementing Single Sign On/Multi-Factor Authentication solutionsDevelop and implement automation via Powershell, Terraform and other methods to enhance efficiency & effectiveness of Regions IAMParticipate in 24x7 on-call support rotationPreferences7+ years experience supporting Microsoft Active Directory & related technologies (Domain Controller support, DNS, DHCP, NPS, etc.)3+ years experience supporting and/or using AWS Identity Center, Microsoft Entra ID (Azure Active Directory), Okta enterprise environments, and PowershellMicrosoft, AWS or Okta certification is preferredPosition Type:

Full timeCompensation DetailsPay ranges are job specific and are provided as a point-of-market reference for compensation decisions. Other factors which directly impact pay for individual associates include: experience, skills, knowledge, contribution, job location and, most importantly, performance in the job role. As these factors vary by individuals, pay will also vary among individual associates within the same job.The target information listed below is based on the Metropolitan Statistical Area Market Range for where the position is located and level of the position.Job Range Target:Minimum:

$107,722.80 USDMedian:

$136,780.00 USDIncentive Pay Plans:

This job is not incentive eligible.Benefits InformationRegions offers a benefits package that is flexible, comprehensive and recognizes that "one size does not fit all" for

benefits-eligible associates.

Listed below is a synopsis of the benefits offered by Regions for informational purposes, which is not intended to be a complete summary of plan terms and conditions.Paid Vacation/Sick Time401K with Company MatchMedical, Dental and Vision BenefitsDisability BenefitsHealth Savings AccountFlexible Spending AccountLife InsuranceParental LeaveEmployee Assistance ProgramAssociate Volunteer ProgramPlease note, benefits and plans may be changed, amended, or terminated with respect to all or any class of associate at any time. To learn more about Regions’ benefits, please click or copy the link below to your browser.https://www.regions.com/welcometour/benefits.rfLocation Details

Riverchase Operations CenterLocation:

Hoover, AlabamaBring Your Whole Self to WorkWe have a passion for creating an inclusive environment that promotes and values diversity of race, color, national origin, religion, age, sexual orientation, gender identity, disability, veteran status, genetic information, sex, pregnancy, and many other primary and secondary dimensions that make each of us unique as individuals and provide valuable perspective that makes us a better company and employer. More importantly, we recognize that creating a workplace where everyone, regardless of background, can do their best work is the right thing to do.OFCCP Disclosure: Equal Opportunity Employer/Disabled/VeteransJob applications at Regions are accepted electronically through our career site for a minimum of five business days from the date of posting. Job postings for higher-volume positions may remain active for longer than the minimum period due to business need and may be closed at any time thereafter at the discretion of the company.

#J-18808-Ljbffr