Logo for Bonapolia

Senior Security Engineer

Role overview

Qualifications

  • Proven expertise in Active Directory Architecture Design in large-scale enterprise environments
  • Hands-on experience with Forest and Domain Management
  • Deep knowledge of Active Directory Security Hardening β€” Tiering, ESAE/Red Forest, PAM
  • Strong background in Identity Access Management

Responsibilities

  • Analyze, design, and improve the enterprise Active Directory architecture, including Forest and Domain Management
  • Implement Active Directory Security Hardening practices including Tiering, ESAE/Red Forest, and PAM models
  • Manage and optimize Identity Access Management processes and policies
  • Drive Microsoft Entra ID hybrid integration and Active Directory Federation Services (ADFS) configurations

Key facts

Other skills

  • Troubleshooting (Problem Solving)
  • Analytical Skills

About the company

Bonapolia logo

Bonapolia

Staffing & Recruiting

BONAPOLIA is a staffing company offering augmentation and recruitment services to place the right people with the right jobs in the USA, Europe, and Scandinavia. Whether you are looking to hire new staff or find a new job, we’re happy to offer you our services. Contact us up to arrange an appointment. We’ll have your hiring or job-seeking needs met in no time by one of our professional team members.

Company details

Company typeScaleup
IndustryStaffing & Recruiting
Company size11 - 50

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Project/Client: Banking
Location: Baltic States (remote)
Start Date: ASAP
Duration: Until 2026-12-31 with possible extension
Seniority: Senior
Language: English

Role Overview:
We are looking for a Senior Security Engineer to join a banking sector Security Engineering team. The engagement is centered around an Active Directory Hygiene Initiative, focused on remediating security, configuration, and architectural issues within an enterprise Active Directory environment. The consultants will collaborate closely with Security Engineering and Infrastructure teams to analyze, design, improve, and secure the Active Directory environment, ensuring alignment with modern identity & access management, compliance, and operational standards. The role requires strong hands-on expertise in Active Directory architecture, security hardening, Microsoft Entra ID hybrid integration, and PKI services.

Key Responsibilities:

  • Analyze, design, and improve the enterprise Active Directory architecture, including Forest and Domain Management

  • Implement Active Directory Security Hardening practices including Tiering, ESAE/Red Forest, and PAM models

  • Manage and optimize Identity & Access Management processes and policies

  • Drive Microsoft Entra ID hybrid integration and Active Directory Federation Services (ADFS) configurations

  • Design, govern, and maintain Group Policy frameworks across the environment

  • Manage Active Directory Replication and DNS Architecture to ensure stability and performance

  • Oversee PKI / AD Certificate Services integration and lifecycle management

  • Administer and troubleshoot Kerberos and authentication flows

  • Develop and maintain PowerShell automation and scripting for operational efficiency

  • Plan and execute Active Directory Disaster Recovery, backup, and restore procedures

  • Lead or contribute to Active Directory Migration & Consolidation using ADMT

  • Ensure compliance with NIST and DORA aligned auditing and governance standards

Must-Have Requirements:

  • Proven expertise in Active Directory Architecture & Design in large-scale enterprise environments

  • Hands-on experience with Forest and Domain Management

  • Deep knowledge of Active Directory Security Hardening β€” Tiering, ESAE/Red Forest, PAM

  • Strong background in Identity & Access Management

  • Experience with Microsoft Entra ID hybrid integration

  • Proficiency with Active Directory Federation Services (ADFS)

  • Solid experience in Group Policy design and governance

  • Knowledge of Active Directory Replication and DNS Architecture

  • Hands-on experience with PKI / AD Certificate Services integration

  • Strong understanding of Kerberos and authentication flows

  • Proficiency in PowerShell automation and scripting

  • Experience with Active Directory Disaster Recovery and backup/restore procedures

  • Familiarity with Active Directory Migration & Consolidation using ADMT

  • Knowledge of NIST and DORA compliance and auditing frameworks

  • Solid networking fundamentals and strong troubleshooting and analytical skills

  • Fluent English (spoken and written)

Nice to Have:

  • Expertise in Microsoft Azure / Entra ID cloud-native capabilities

  • Hands-on experience with AWS

  • Background in the banking or financial services industry

    πŸ“© Ready to Join?
    We look forward to receiving your application and welcoming you to our team!

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
Β·

Security Engineer Related jobs

Other jobs at Bonapolia

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.