BGTSis presenting a new opportunity for aSenior Active Directory Engineerto work on a client project for an internationalautomotive company based in Germany.This is aremote role,where you will be engaged through BGTS and contribute to enterprise-level identity infrastructure within a large, international IT environment.ResponsibilitiesDesign and maintain Active Directory forest/domain structure, OU hierarchy, and Group Policy architecture Implement best practices for Kerberos, LDAP, DNS, DHCP, and domain controller deployment Plan and execute major upgrades (domain/forest functional level changes, site topology redesigns) Manage and enforce Group Policy security configurations across large endpoint environments Maintain Kerberos health including tickets, encryption types, and service account security Monitor AD replication, DNS integrity, and domain controller health Troubleshoot authentication outages, replication delays, and domain controller failures Maintain Active Directory operational hygiene and stability Design and support hybrid identity solutions (Entra Connect, Cloud Sync) Ensure secure and reliable synchronization between on-premises AD and Entra IDRequirementsStrong hands-on experience with enterprise Active Directory administration and architecture Deep knowledge of Group Policy, Kerberos, LDAP, DNS, and authentication mechanisms Experience managing large domain environments and domain controller infrastructure Experience with hybrid identity (Entra ID Connect / Cloud Sync) Proven troubleshooting skills in complex identity and authentication incidents Ability to work independently in an international team environment Strong analytical and communication skills Strong English communication (German not required)