IRIS Consulting Corporation logo

Identity & Access Management Professional

IRIS Consulting Corporation

Minnetonka, MNJobNo compensation foundTracked 5 days agoSeen in employer's feed 5 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
No compensation found
Location
Minnetonka, MN
Work Authorization
Not specified

Job overview

The Cargill Identity Security team seeks an IAM professional with extensive Active Directory experience to improve AD implementation and modernize it with extension into AWS and the broader cloud environment.

Skills & qualifications

RequiredNice to have

Skills

Active DirectoryAWSLDAPKerberosIAMPAMIdentity GovernancePrivileged Access ManagementGroup PolicyDNSAuthenticationReplication

Qualifications

Hands‑on Experience Administering Microsoft Active DirectoryStrong Understanding of Active Directory Security PrinciplesExperience Operating Active Directory as Part of Integrated IAM EcosystemProven Troubleshooting Skills Across Authentication Replication DNS Account Lifecycle and Access IssuesExperience Working With AWS and Its Active Directory Implementation OptionsExperience Integrating Active Directory With Identity Governance or Privileged Access Management PlatformsExperience Supporting Global Multi‑Domain or Multi‑Region Active Directory Environments

Full job description

The Cargill Identity Security team is looking for an IAM professional with extensive Active Directory experience to improve our AD implementation and modernize it with extension into our Amazon Web Services (AWS) and broader cloud environment.

Responsibilities include but are not limited to:

  • Design, engineer, operate, and secure Active Directory forests, domains, trusts, organizational units, Group Policy, and domain controllers.

  • Partner with IAM and PAM teams to design and support privileged access controls, including administrative group structures and delegated administration models.

  • Monitor, troubleshoot, and remediate Active Directory health issues, including authentication failures, replication, DNS dependencies, domain controller availability, and account state incidents.

  • Support integrations between Active Directory and identity governance, access request, authentication, and certification platforms.

  • Develop and maintain standards, runbooks, and operational documentation for Active Directory services and domain controller operations.

  • Participate in change management, incident response, audits, and continuous improvement initiatives aligned to the IAM roadmap and security strategy.

  • Develop integration patterns with AWS to facilitate authentication with AD using LDAP or Kerberos

  • Develop application development patterns encouraging app devs to leverage Kerberos over just LDAP

Required Qualifications include:

  • Hands‐on experience administering Microsoft Active Directory in large, complex enterprise environments.

  • Strong understanding of Active Directory security principles, delegation models, and privileged group management.

  • Experience operating Active Directory as part of an integrated Identity and Access Management (IAM) ecosystem.

  • Proven troubleshooting skills across authentication, replication, DNS, account lifecycle, and access issues.

  • Experience working with AWS and any of its Active Directory implementation options (e.g. Managed AD, self-hosted, etc.)

  • Experience integrating Active Directory with identity governance or privileged access management platforms.

  • Experience supporting global, multi‐domain, or multi‐region Active Directory environments.

Equal opportunity employer including disability/veterans.

You've read the whole posting — now see how you match it.