Directory Services Leader

EKC Advanced Electronics USAWimington, DE
Hybrid

About The Position

At Qnity, we’re more than a global leader in materials and solutions for advanced electronics and high-tech industries – we’re a tight-knit team that is motivated by new possibilities, and always up for a challenge. All our dedicated teams contribute to making cutting-edge technology possible. We value forward-thinking challengers, boundary-pushers, and diverse perspectives across all our departments, because we know we play a critical role in the world enabling faster progress for all. Learn how you can start or jumpstart your career with us. Qnity is seeking a Directory Services Leader to lead and operate enterprise directory and identity services across Microsoft Active Directory, Microsoft Entra ID, hybrid identity, privileged access, and integration with Saviynt IGA and PAM. This is a hands-on working manager role responsible for the reliability, security, governance, and continuous improvement of the identity platforms supporting Qnity users, endpoints, servers, applications, cloud services, manufacturing environments, and privileged access. The Directory Services Leader will manage identity engineers and service partners while remaining directly involved in architecture, implementation, technical review, troubleshooting, incident response, and operational support. The successful candidate must be able to move comfortably between team leadership, service ownership, security controls, architecture, and detailed engineering work. This role is intended for an experienced identity professional who can lead the function while remaining technically capable of performing and validating the work.

Requirements

  • Bachelor's or Master’s degree in Computer Science or related field.
  • 8+ years of relevant IT experience with significant experience designing, operating, and securing enterprise Microsoft identity environments.
  • Deep hands-on expertise with Microsoft Active Directory, including domains, forests, trusts, organizational units, group policy, replication, authentication, privileged groups, service accounts, and directory recovery.
  • Strong hands-on expertise with Microsoft Entra ID, including administrative roles, Privileged Identity Management, enterprise applications, application registrations, service principals, access reviews, and hybrid identity.
  • Demonstrated experience leading technical teams while remaining directly engaged in engineering and operations.
  • Experience operating identity services in a large, complex, hybrid enterprise environment.
  • Strong understanding of least privilege, role-based access control, privileged-access management, administrative tiering, and segregation of duties.
  • Working knowledge of Kerberos, LDAP, SAML, OAuth 2.0, OpenID Connect, and certificate-based authentication.
  • Experience with identity lifecycle management, provisioning, deprovisioning, access certification, and entitlement governance.
  • Ability to troubleshoot complex identity issues across directories, cloud platforms, networks, servers, endpoints, and applications.
  • Experience leading major incidents, root-cause analysis, and corrective-action planning.
  • Strong communication, documentation, stakeholder-management, and technical decision-making skills.

Nice To Haves

  • Hands-on experience with Saviynt IGA, Saviynt PAM, or a comparable enterprise identity platform.
  • Experience integrating identity platforms with SAP, cloud services, databases, infrastructure systems, and enterprise applications.
  • Experience supporting a global manufacturing, industrial, semiconductor, chemical, or regulated enterprise.
  • Experience with PowerShell, Microsoft Graph, REST APIs, and identity automation.
  • Knowledge of Microsoft Sentinel, Defender, Intune, Purview, or related Microsoft security technologies.
  • Experience with mergers, divestitures, directory separations, tenant migrations, or large-scale identity transformations.
  • Relevant Microsoft, identity, security, or cloud certifications.

Responsibilities

  • Own the operation, security, resilience, and lifecycle of Qnity directory and identity services.
  • Lead the architecture, administration, and support of Microsoft Active Directory, Microsoft Entra ID, and hybrid identity services.
  • Manage and develop identity engineers, administrators, contractors, and service providers.
  • Establish technical standards, operating procedures, support models, escalation paths, and service performance expectations.
  • Review and approve changes affecting domains, trusts, organizational units, group policy, directory permissions, privileged groups, synchronization, and authentication services.
  • Govern Entra ID administrative roles, Privileged Identity Management, enterprise applications, application registrations, service principals, managed identities, and administrative consent.
  • Lead implementation of least privilege, just-in-time administration, role-based access control, privileged account separation, and emergency-access controls.
  • Oversee service accounts, group managed service accounts, non-human identities, application identities, and credential-management standards.
  • Partner with Cybersecurity and IAM teams to integrate Active Directory and Entra ID with Saviynt IGA and PAM.
  • Support identity lifecycle processes, including provisioning, deprovisioning, access requests, birthright access, access reviews, entitlement management, and segregation of duties.
  • Oversee Saviynt connectors, account and entitlement reconciliation, provisioning failures, orphaned accounts, and access-removal issues.
  • Lead technical design reviews for authentication, authorization, federation, privileged access, and directory integration.
  • Troubleshoot complex issues involving Kerberos, LDAP, replication, synchronization, SAML, OAuth, OpenID Connect, service principals, and application access.
  • Provide senior technical leadership during identity incidents, outages, account compromises, and privileged-access events.
  • Ensure directory recovery, backup validation, disaster-recovery procedures, monitoring, patching, certificate renewal, and platform maintenance are performed reliably.
  • Maintain accurate architecture diagrams, service inventories, operating documentation, standards, and dependency maps.
  • Support internal and external audits by producing accurate evidence for identity, access, and privileged-access controls.
  • Identify technical debt, control weaknesses, and operational risks, and drive remediation to completion.
  • Partner with Infrastructure, End User Computing, Cloud, Application, ERP, Compliance, Service Management, and manufacturing technology teams.

Benefits

  • comprehensive pay and benefits package
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service