Senior Security Engineer

HybridSalary not specified
Latvia · Lithuania

Tech Stack

PowerShell

Job Description, Responsibilities & Requirements

About the Position

We are seeking a Senior Security Engineer to join an Active Directory Hygiene Initiative, focused on remediating security, configuration, and architectural issues within the Active Directory environment. In this role, you will work closely with Security Engineering and Infrastructure teams to analyze, design, improve, and secure the Active Directory environment, ensuring alignment with modern security, compliance, and operational standards.

Responsibilities

  • Analyze, design, and improve the Active Directory environment to align with modern security and operational standards
  • Remediate security, configuration, and architectural issues within the existing Active Directory infrastructure
  • Implement Active Directory security hardening measures, including Tiering, ESAE/Red Forest, and PAM
  • Design and govern forest, domain, and Group Policy structures
  • Manage Active Directory replication, DNS architecture, and hybrid integration with Microsoft Entra ID
  • Support identity and access management processes, including ADFS and Kerberos authentication flows
  • Develop PowerShell automation and scripting to streamline operational tasks
  • Plan and execute Active Directory migration, consolidation (ADMT), disaster recovery, and backup/restore activities
  • Ensure auditing and compliance alignment with NIST and DORA frameworks
  • Collaborate with security, architecture, and infrastructure stakeholders on large-scale enterprise initiatives

Requirements

  • 3+ years of proven experience as a Security Engineer working in large-scale enterprise environments
  • Expertise in Active Directory architecture, design, forest and domain management
  • Proficiency in Active Directory security hardening (Tiering, ESAE/Red Forest, PAM)
  • Background in Identity & Access Management, Microsoft Entra ID hybrid integration, and ADFS
  • Skills in Group Policy design and governance, Active Directory replication, and DNS architecture
  • Knowledge of PKI / AD Certificate Services integration, Kerberos, and authentication flows
  • Competency in PowerShell automation and scripting
  • Familiarity with Active Directory disaster recovery, backup/restore, and migration/consolidation using ADMT
  • Understanding of auditing and compliance frameworks (NIST, DORA)
  • Solid networking fundamentals paired with strong troubleshooting, analytical, and problem-solving skills
  • Excellent communication skills and ability to collaborate with security, architecture, and infrastructure stakeholders
  • Fluent English, both spoken and written (B2+ level)

Nice to Have

  • Expertise in Microsoft Azure / Entra ID
  • Experience with AWS
  • Background in the banking or financial services industry
  • Familiarity with RDFS

We Offer

  • Opportunity to work in a hybrid role across Latvia and Lithuania
  • Engaging role in enhancing Active Directory security and compliance

About the Company

EPAM Systems is a global software engineering and product development company, providing end-to-end technology solutions and services to the world's leading enterprises.

Job Details

Company name:
EPAM
Location:
Latvia · Lithuania
Employment Type:
Contract
Work Mode:
Hybrid
Posted on TheJob:
Jul 27, 2026
Last checked:
Jul 27, 2026
Posted on the source:
Jul 21, 2026
Apply Now