We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Sr. II Engineer - Azure & Active Directory

NYU Langone Health
$97,589.95 - $99,306.10 / yr
United States, New York, New York
Jun 14, 2025

NYU Langone Health is a fully integrated health system that consistently achieves the best patient outcomes through a rigorous focus on quality that has resulted in some of the lowest mortality rates in the nation. Vizient Inc. has ranked NYU Langone the No. 1 comprehensive academic medical center in the country for three years in a row, and U.S. News & World Report recently placed nine of its clinical specialties among the top five in the nation. NYU Langone offers a comprehensive range of medical services with one high standard of care across 6 inpatient locations, its Perlmutter Cancer Center, and over 320 outpatient locations in the New York area and Florida. With $14.2 billion in revenue this year, the system also includes two tuition-free medical schools, in Manhattan and on Long Island, and a vast research enterprise with over $1 billion in active awards from the National Institutes of Health.

For more information, go to NYU Langone Health, and interact with us on LinkedIn, Glassdoor, Indeed, Facebook, Twitter, YouTube and Instagram.

Position Summary:
We have an exciting opportunity to join our team as a Sr. II Engineer - Azure & Active Directory.

In this role, the successful Senior Active Directory and Azure AD Engineer provides implementation, and design services for Microsoft Active Directory, AAD, and Windows-based systems across the enterprise, including directory and identity management solutions. Resolves and appropriately completes assigned cases and change requests and acts as an escalation for issues. Applies new solutions through research and collaboration with the team and determines the course of action for new application initiatives. Implements new software solutions as required by the business. The core infrastructure technology duties include enterprise Microsoft Active Directory, AAD, M365, Certificate Authority and Windows file services architecture creation and management, enterprise-wide system security and policy configuration, and top-level implementation of project initiatives.

Job Responsibilities:

- Produce enterprise-level designs for Active Directory, Azure Active Directory, SaaS application integration, Azure App., and SSO for enterprise initiatives, following those through to implementation via collaboration with project and support teams.

- Produce Enterprise-level plan for security hardening.

- Design, implement, and manage Azure infrastructure components, such as virtual networks, subnets, network security groups (NSGs), and Azure Resource Manager (ARM) templates.

- Implement, Monitor and maintain Azure security and compliance, including configuring Azure Security Center, implementing role-based access control (RBAC), and managing security alerts and threat detection.

- Perform regular audits as part of implementation and assessments of Azure resources and configurations to ensure compliance with security best practices and regulatory requirements.

- Update Enterprise-level plan for recovery of Active Directory in the event of a disaster or system compromise.

- Work closely with internal teams to implement Group Policy Objects (GPOs), and performance tuning as it relates to the Migration project(s).

- Own Root Cause Analysis and Problem Management for Active Directory environment as part of project implementation.

- Install, configure, and document Active Directory, PKI (Microsoft Certificate Authority) and third-party software utilities for hardware systems within company operational guidelines.

- Develops, documents, and enforces the standards, security procedures, and controls for access to ensure integrity of the Windows Systems, Active Directory, Azure ADConnect and related systems.

- Create and maintain system documentation for domain technologies, including installation, configuration, and appropriate troubleshooting steps.

- Manage customer satisfaction through effectively communicating and managing customer expectations

- Stay up to date with the latest Azure and Microsoft security technologies, trends, and best practices to proactively identify and mitigate potential security risks

Minimum Qualifications:
To qualify you must have a Typically requires 7 or more years of experience and BA/BS degree.

Preferred Qualifications:
- Minimum 8 years overall IT experience with 5+ years of professional experience in designing, automating using Powershell, deploying, securing and monitoring on-prem and Azure Active Directory.
- Must show a progressive advancement in responsibility including deep troubleshooting technical skills.
- Must understand how to identify and instill industry best practices.
- Ability to translate technical issues into understandable business language for end users.
- Desired experience working in a fast-paced Industrial Manufacturing environment with a career track record of engineering, developing, deploying, and maintaining business-critical systems in the area of technical expertise, including hands-on solution development and implementation experience.
- Team Player with proven leadership, communication, organizational, and strong interpersonal skills. The role requires significant interaction with many different teams across a large company.
- Must be able to work in a team environment with a can do attitude capable of overcoming difficult challenges.
- Self-motivated, with keen attention to detail and excellent judgment skills
- Ability to establish new standards for quality, performance or productivity
- Must have excellent writing and communication skills, strong communicator with ability to maintain open communication with internal employees, contractors, managers, 3rd parties, and customers as needed
- Able to integrate and apply feedback in a professional manner

Qualified candidates must be able to effectively communicate with all levels of the organization.

NYU Langone Health provides its staff with far more than just a place to work. Rather, we are an institution you can be proud of, an institution where you'll feel good about devoting your time and your talents.

At NYU Langone Health, we are committed to supporting our workforce and their loved ones with a comprehensive benefits and wellness package. Our offerings provide a robust support system for any stage of life, whether it's developing your career, starting a family, or saving for retirement. The support employees receive goes beyond a standard benefit offering, where employees have access to financial security benefits, a generous time-off program and employee resources groups for peer support. Additionally, all employees have access to our holistic employee wellness program, which focuses on seven key areas of well-being: physical, mental, nutritional, sleep, social, financial, and preventive care. The benefits and wellness package is designed to allow you to focus on what truly matters. Join us and experience the extensive resources and services designed to enhance your overall quality of life for you and your family.

NYU Langone Health is an equal opportunity employer and committed to inclusion in all aspects of recruiting and employment. All qualified individuals are encouraged to apply and will receive consideration. We require applications to be completed online.

View NYU Langone Health's Equal Employment Opportunity (EEO) policy, Know Your Rights: Workplace discrimination is illegal.

NYU Langone Health provides a salary range to comply with the New York state Law on Salary Transparency in Job Advertisements. The salary range for the role is $97,589.95 - $99,306.10 Annually. Actual salaries depend on a variety of factors, including experience, specialty, education, and hospital need. The salary range or contractual rate listed does not include bonuses/incentive, differential pay or other forms of compensation or benefits.

To view the Pay Transparency Notice, please click here

Applied = 0

(web-696f97f645-4mdcj)