Authentication Services Lead Platform Engineer (Active Directory, SSO, AWS)
Company: Capital One
Location: Richmond
Posted on: September 20, 2023
Job Description:
Center 3 (19075), United States of America, McLean,
VirginiaAuthentication Services Lead Platform Engineer (Active
Directory, SSO, AWS)Do you want to work for a tech company that
writes its own code, develops its own software, and builds its own
products? We experiment and innovate leveraging the latest
technologies, engineer breakthrough customer experiences, and bring
simplicity and humanity to banking. We make a difference for 65
million customers. -At Capital One, you'll be part of a group of
makers, breakers, doers, and disruptors, who love to solve real
problems and meet real customer needs. Do you possess an innate
desire to learn and work on new and exciting technology and design
solutions as it relates to identity and directory services today
and into the future? If so, then this opportunity might be for you.
We want you to be curious and ask "what if?"Do you have experience
with:
- AWS Cloud Infrastructure management
- Microsoft's Active Directory -
- Single Sign-On (SSO)/MFA - Ping, Okta, or similar platform
- Azure Active Directory
- AWS Directory Services
- Microsoft AD on AWS
- Google Cloud Directory
- Similar LDAP or cloud vendor based platformCapital One is
looking for an experienced Authentication Services Lead Platform
Engineer to help drive the enterprise directory strategy forward
for the Identity and Access Management organization. - As a member
of the Authentication Services Platform team within Authentication
Services, you will be responsible for developing, engineering,
deploying and supporting comprehensive solutions. The
Authentication Services Lead Platform Engineer will also be
responsible for identifying opportunities for the automation of
tasks, processes, or entire solutions. This role is also
responsible for leading and driving initiatives as well as
identifying any opportunities for improvement in the
environment.Candidates for this role should have expert level
knowledge and experience with complex enterprise level Active
Directory environments, other enterprise LDAP platforms, Single
Sign On (SSO)/MFA, and AWS Cloud Infrastructure management.
Candidates should be passionate about delivering a highly secure
and stable environment with an eye for continuous improvement. The
individual should have experience with integrating new and emerging
technologies into an enterprise environment and welcome the
opportunity to work on cloud based platforms from AWS, Microsoft,
and Google.Responsibilities
- Analyze, design, and support a highly complex, enterprise level
Active Directory and Single Sign On services in a hybrid on-premise
and cloud hosted environment.
- Manage enterprise identity cloud directories including
Microsoft Azure AD, AWS Microsoft AD, and Google Cloud Domain
Directory.
- Manage enterprise cloud infrastructures in AWS, Azure, and
Google cloud platforms
- Translate business needs into workable technology solutions
that meet the needs of internal customers.
- Participate in or lead troubleshooting and incident resolution
of complex, high severity incidents
- Develop automated solutions using scripts, pipelines, and cloud
based server-less computing platforms
- Develop detailed architecture, standards, design, and
implementation documentation
- Analyze the current Authentication Services environment to
identify both technical and operational opportunities and develop
continuous improvement action plans.
- Participate in disaster recovery, capacity planning,
performance monitoring and maintenance to ensure high availability.
-Basic Qualifications
- High School Diploma, GED or equivalent certification
- At least 6 years of experience with Active Directory -
- At least 6 years of experience with engineering, operational
support, and implementation of identity and directory services
- At least 6 years of experience with Windows security,
delegation of permissions, and group policy management
- At least 6 years of experience with AWS Cloud Infrastructure
management - -Preferred Qualifications
- Bachelor's Degree
- 7+ years of experience supporting Public Key Infrastructure
(PKI) and Active Directory Certificate Services
- 7+ years of experience supporting Active Directory in a cloud
hosted environment with AWS, Microsoft Azure, or Google Cloud
Platform
- 7+ years of experience with cloud-based directories Microsoft
Azure, AWS Microsoft AD, and Google Cloud Domain Directory
- 7+ years of experience developing complex scripts in
PowerShell, VBScript, YAML, Python or other languages to develop
automated solutions
- 7+ years of experience with Microsoft Identity Manager in an
enterprise environment
- 7+ years of experience developing Infrastructure as Code in
cloud hosted environments using Terraform, CloudFormation, or Azure
Resource Manager -At this time, Capital One will not sponsor a new
applicant for employment authorization for this position.The
minimum and maximum full-time annual salaries for this role are
listed below, by location. Please note that this salary information
is solely for candidates hired to perform work within one of these
locations, and refers to the amount Capital One is willing to pay
at the time of this posting. Salaries for part-time roles will be
prorated based upon the agreed upon number of hours to be regularly
worked.New York City (Hybrid On-Site): $160,200 - $182,800 for Lead
Platform EngineerSan Francisco, California (Hybrid On-Site):
$169,700 - $193,700 for Lead Platform EngineerCandidates hired to
work in other locations will be subject to the pay range associated
with that location, and the actual annualized salary amount offered
to any candidate at the time of hire will be reflected solely in
the candidate's offer letter.This role is also eligible to earn
performance based incentive compensation, which may include cash
bonus(es) and/or long term incentives (LTI). Incentives could be
discretionary or non discretionary depending on the plan.Capital
One offers a comprehensive, competitive, and inclusive set of
health, financial and other benefits that support your total
well-being. Learn more at the -. Eligibility varies based on full
or part-time status, exempt or non-exempt status, and management
level.No agencies please. Capital One is an Equal Opportunity
Employer committed to diversity and inclusion in the workplace. All
qualified applicants will receive consideration for employment
without regard to sex, race, color, age, national origin, religion,
physical and mental disability, genetic information, marital
status, sexual orientation, gender identity/assignment,
citizenship, pregnancy or maternity, protected veteran status, or
any other status prohibited by applicable national, federal, state
or local law. Capital One promotes a drug-free workplace. Capital
One will consider for employment qualified applicants with a
criminal history in a manner consistent with the requirements of
applicable laws regarding criminal background inquiries, including,
to the extent applicable, Article 23-A of the New York Correction
Law; San Francisco, California Police Code Article 49, Sections
4901-4920; New York City's Fair Chance Act; Philadelphia's Fair
Criminal Records Screening Act; and other applicable federal,
state, and local laws and regulations regarding criminal background
inquiries.If you have visited our website in search of information
on employment opportunities or to apply for a position, and you
require an accommodation, please contact Capital One Recruiting at
1-800-304-9102 or via email at
RecruitingAccommodation@capitalone.com. All information you provide
will be kept confidential and will be used only to the extent
required to provide needed reasonable accommodations.For technical
support or questions about Capital One's recruiting process, please
send an email to Careers@capitalone.comCapital One does not
provide, endorse nor guarantee and is not liable for third-party
products, services, educational tools or other information
available through this site.Capital One Financial is made up of
several different entities. Please note that any position posted in
Canada is for Capital One Canada, any position posted in the United
Kingdom is for Capital One Europe and any position posted in the
Philippines is for Capital One Philippines Service Corp.
(COPSSC).
Keywords: Capital One, Richmond , Authentication Services Lead Platform Engineer (Active Directory, SSO, AWS), Engineering , Richmond, Virginia
Didn't find what you're looking for? Search again!
Loading more jobs...