Logo
Tata Consultancy Services

Active Directory Architect

Tata Consultancy Services, Palm Beach Gardens, Florida, United States,


Technical/Functional SkillsDirectory & Authentication•MS AD•Azure AD•MS Certificate Services•MS ADFS•Azure SSO•Active Directory Monitor System (SCOM)•KMS

Digital Document & Print•Print server•OpenText Dazel

Experience Required

Roles & Responsibilities Microsoft Active Directory•Perform all Microsoft Active Directory administration tasks including support consultation with Microsoft•Monitor core service health via tools such as SCOM for Domain Controllers and Ancillary Services•Mitigate any issues found during health checks•Troubleshoot issues enterprise-wide for any Active Directory authentication dependent items•Active Directory consultations for authentication implementations such as LDAPS•Server GPO Creation•Troubleshoot GPO application•Auditing requests for any items under the Directory Services umbrella•Domain controller lifecycles (DCPromo)•Initial review of any scripts proposed to be run against Active Directory

Microsoft Azure Active Directory Services•Perform all Microsoft Azure Active Directory administration tasks including support consultation with Microsoft•Monitor core service health via tools such as Azure AD Health Panel - Sync, ADFS, ADDS•Mitigate any issues found during health checks•Troubleshoot issues enterprise-wide for any Azure authentication dependent items•Active Directory consultations for authentication implementations.•Review bulletins and advise on potential impacts to current operations

Microsoft Certificate Services•Perform all Microsoft Certificate Services administration tasks including support consultation with Microsoft•Monitor core service health to ensure application availability•Mitigate any issues found during health checks•Setup new SCEP server connections to an Enterprise CA•Setup or service new certificate template requests•Troubleshoot certificate enrollment issues•Bring up offline Root and Intermediate yearly to patch

Microsoft Active Directory Federation Services•Perform all Microsoft ADFS administration tasks including support consultation with Microsoft•Monitor core service health to ensure application availability•Mitigate any issues found during health checks•Monitor service and application certificate expirations and plan updates•Service legacy applications that remain in ADFS and are not Azure AD SSO ready•Query application owners for the ability to move legacy applications from ADFS to Azure AD SSO•Create new relying party trust when Azure AD SSO is not supported (Limited availability and subject to approval)•Troubleshoot Single Sign-On issues related to ADFS

Microsoft Azure SSO Services•Perform all Microsoft Azure AD SSO administration tasks including support consultation with Microsoft•Monitor Enterprise Applications and App Registrations for expiring certificates/secrets and plan updates•Create new Enterprise Applications/App Registrations to fulfill SSO implementations•Troubleshoot Single Sign-On issues related to Azure AD SSO•Conditional Access updates to fulfill advanced SSO implementations that require a mobile device or external access with approvals•Consultation on services available via Azure AD SSO - SAML & OIDC

Active Directory Monitor System (SCOM)•Perform all Microsoft System Center Operations Manager administration tasks including support consultation with Microsoft•Monitor core service health to ensure application availability•Mitigate any issues found during health checks•Perform SCOM core and management pack updates

Microsoft KMS Administration Services•Perform all Microsoft KMS administration tasks including support consultation with Microsoft•Monitor core service health to ensure application availability•Mitigate any issues found during health checks•Ensure licenses are current and updated as needed for new OS releases•Troubleshoot client/server OS/Office activation issues•Printing•Troubleshoot any issues that are not related to the back-end infrastructure of the Printing services•Troubleshoot Ricoh, HP, Zebra, and other vendors printers, label printers, and scanners•Troubleshooting printer issues for the end-users•Troubleshoot scanning issues•Troublesho ot company-wide printing policies•Troubleshoot and setup new storm kits (mobile infrastructure servers)•Troubleshoot OS printing issues (printing services etc)•Create or migrate printer pools on servers•Add new print drivers on servers•Modify IP printer hostnames on servers•Create and modify printer R numbers in Dazle management console•Infrastructure server lifecycle•Execute Disaster Recovery Test, and DR exercise•Printing usage reporting•Create and modify printer R numbers in Dazel management console•Enable Dazel R numbers to be used with SAP, OSM, and other applications•Resubmit/Reroute jobs in Dazel

Disaster Recovery test and recovery in case of DC outage