Senior/Intermediate Active Directory (AD) Administrator
Posting Date : 21 Jan 2026 | Close Date :21 Apr 2026


Job Title: Senior / Intermediate Active Directory (AD) Administrator – CGI Malaysia
Category: Infrastructure / Cloud
Location: Kuala Lumpur, Malaysia
Employment Type: Full-time
Experience Level: Minimum 5 years (Senior or Intermediate)

About CGI

CGI is a leading global IT and business consulting firm delivering advisory, systems integration, and managed services. We support organizations in modernizing, securing, and operating their enterprise technology environments to achieve measurable and sustainable outcomes.

Role Overview

CGI Malaysia is looking for a Senior or Intermediate Active Directory (AD) Administrator to manage and enhance a client’s enterprise identity infrastructure across On-Premises Active Directory and Microsoft Entra ID (Azure AD). This role is ideal for a self-driven professional capable of performing gap assessments, identifying risks, and implementing corrective measures to strengthen identity security and operational resilience within a hybrid environment.

Key Responsibilities

  • Administer and support On-Prem Active Directory and Entra ID, including users, groups, OUs, domains/forests, trusts, service accounts, access models, and delegated administration.

  • Lead Group Policy (GPO) governance, covering design, deployment, troubleshooting, and lifecycle management.

  • Align and reconcile AD Group Policies with Microsoft Intune policies (Configuration Profiles, Compliance Policies, Security Baselines) to minimize conflicts and ensure consistent endpoint security across hybrid or co-managed environments.

  • Support hybrid identity operations such as Entra Connect / AD Connect synchronization and federation (where applicable), as well as core AD services including DNS integration and replication health.

  • Troubleshoot complex identity-related issues involving authentication, replication, GPO processing, and synchronization errors, performing thorough root cause analysis.

  • Conduct risk and control assessments, recommending and implementing remediation measures such as security hardening, least-privilege access, and privileged access controls.

  • Develop and maintain technical documentation (runbooks, SOPs, architecture diagrams), mentor junior team members, and implement automation using PowerShell.

Qualifications & Experience

  • At least 5 years of hands-on experience in enterprise Active Directory administration at a Senior or Intermediate level.

  • Strong knowledge of AD security and hardening practices, GPO management, replication, DNS fundamentals, and hybrid identity concepts.

  • Practical experience administering Microsoft Entra ID (Azure AD) in a corporate environment.

  • Proficiency in PowerShell scripting for automation, bulk administration, and reporting.

  • Excellent troubleshooting, communication, and documentation skills with the ability to work independently.

Strong Advantage

  • Experience with Conditional Access, MFA, SSO, and privileged access management (e.g., Entra PIM).

  • Exposure to large-scale, complex environments such as multi-site, multi-domain, or multi-forest setups.

  • Experience working with audit or regulatory frameworks such as ISO 27001 or SOX.

Preferred Certifications

  • Microsoft certifications such as SC-300, AZ-104, or equivalent.

 


Sub Specialization : Information Technology;IT Infrastructure
Type of Employment : Permanent
Minimum Experience : Fresher
Work Location : Kuala Lumpur