AD Systems Engineer

SAICBeltsville, MD
Onsite

About The Position

This position is in support of the Department of State (DoS) as a part of the Vanguard 2025 contract. The candidate will be responsible to support on-prem AD as well as Entra-ID. This role is located in Beltsville, MD, on-site at least 4 days per week. It is an afternoon shift 3pm-11pm and may include up to one weekend day. This role requires an in-depth knowledge of the Active Directory, DNS, SCOM/SCCM, group policy, and security group management. The candidate must have demonstrated prior and active experience in managing Active Directory including diagnosing replication, group policy, and user/group issues. The successful candidate will be a self-starter, someone who can work independently, and will be flexible in a fast-paced environment. Role may include approximately 10% travel within Washington, DC Metro area.

Requirements

  • Bachelors degree in a related field, Associates in related field and 2 years recent system engineering experience or 4+ years of recent system engineering experience.
  • A Strong understanding of Active Directory
  • A Strong understanding of DNS Management
  • Strong understanding and practical experience using of Group Policy for server management
  • Foundational to advance proficiency with SCOM and SCCM
  • US Citizenship.
  • Ability to obtain and maintain top secret clearance.

Nice To Haves

  • Microsoft MSCE certification.
  • Familiarity with DoS processes.
  • Microsoft and/or networking certifications.
  • Ability to apply ITIL v3 Foundation concepts within the workplace.
  • Excellent interpersonal and team skills.
  • Strong writing skills.
  • ServiceNow experience.
  • Data base experience.

Responsibilities

  • Active Directory object creation/management.
  • Participate in Technical Meetings.
  • Ensure services manager is made aware of potential system problems or customer issues to avoid surprising management personnel.
  • Create AD test plans, technical specifications, and white papers as required.
  • Communicate regularly to project leads regarding project activities and status.
  • Work with Quest ARS or other tools to manage Active Directory.
  • Help application owners to create service principal name (SPN) if it is not already configured.
  • Create Kerberos Constrain Delegation (KCD) for single sign-on (SSO).
  • Replicate the changes to three (3) Active Directory core site (BIMC, EW, and MS)
  • Create/Modify/Delete DNS records in AD and INFOBLOX.
  • Patching/Management of Domain Controllers and other servers as required.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service