D Ploy

Staff engineer - Centrify/AD management

Apply Now

Job Description

We are looking for a highly skilled Staff Engineer with strong expertise in Active Directory (AD) object and schema management and hands-on experience with the Centrify IAM platform.

This role requires deep technical knowledge of Linux environments (primarily RedHat-based distributions), along with a solid understanding of UNIX profile provisioning, RBAC models, AD bridging, and proxy management.

You will play a key role in designing and executing complex Centrify zone consolidation and migration activities, working closely with infrastructure teams in high-performance environments.

Key Responsibilities

  • Lead the consolidation and migration of multiple Centrify zones, ensuring smooth integration of separate and unique environments into a unified structure
  • Analyze, manage, and consolidate AD objects and schemas, preventing and resolving potential conflicts during migration
  • Design and implement strategies to safely merge zones into a single defined structure
  • Collaborate closely with HPC (High Performance Computing) environments and Storage/Backup teams, ensuring seamless interaction with large-scale data systems
  • Manage and optimize Centrify/AD integrations, including proxies interacting with large (petabyte-scale) storage shares
  • Develop and implement automation solutions to streamline migration and operational tasks using PowerShell and/or Python
  • Ensure stability, security, and scalability of identity and access management processes
  • Troubleshoot and resolve issues related to AD bridging, RBAC, and UNIX/Linux identity provisioning
  • Contribute to best practices, documentation, and continuous improvement of IAM processes

Requirements

  • Proven experience with Active Directory (AD) object and schema management
  • Hands-on experience with Centrify IAM platform
  • Strong expertise in Linux systems, particularly RedHat-based distributions
  • Solid understanding of:
    • UNIX profile provisioning
    • Role-Based Access Control (RBAC)
    • AD bridging and proxy management
  • Experience working in complex, large-scale infrastructure environments (e.g., HPC, large storage systems)
  • Proficiency in PowerShell for scripting and automation
  • Experience with Python for automating processes and improving efficiency
  • Strong problem-solving skills and ability to manage complex migration scenarios
  • Ability to work collaboratively across multiple technical teams
  • Candidates must declare criminal record extract not older than three months

Nice to Have

  • Experience with large-scale data environments (PB-level storage systems)
  • Background in automation-first infrastructure or DevOps practices
  • Familiarity with backup and storage solutions integrated with IAM systems

Benefits

  • Broad range of activities, tasks, and projects
  • Flexible working conditions
  • Minimum 5 weeks of vacation
  • Paid sick days
  • Meal vouchers
  • Vouchers (B-day voucher, wedding, and new born surprise)
  • Contributions to wellness programs (multisport card)
  • Fishing for Friends program – our referral program
  • Refreshments in the D-ploy office
  • Further development and professional advancement
  • Friendly and international working environment 
  • Company-sponsored events
  • Competitive salary and various benefits