Summary:
We are seeking a highly skilled and experienced Infrastructure Engineer to design, implement, migrate, and operate Microsoft onpremises and hybrid identity and infrastructure services. The ideal candidate has strong handson experience with Active Directory Domain Services (AD DS), Microsoft Entra ID Connect, PKI / ADCS, Windows Serverbased infrastructure, and highavailability solutions. This role requires the ability to clearly explain architecture and best practices to customers and stakeholders.
Responsibility:
- Design, implement, and migrate Active Directory Domain Services (AD DS) environments, including:
- Domain Controllers
- DNS and DHCP
- Organizational Units (OUs) and delegation models
- Design, implement, and migrate Microsoft Entra ID Connect (formerly Azure AD Connect) to synchronize identities, groups, and credentials between onpremises AD and cloud environments
- Monitor and maintain AD health, replication, and Group Policy Objects (GPOs) to ensure stability and security compliance
- Understand and clearly explain Active Directory tiering and security models to customers
- Design, implement, and migrate Public Key Infrastructure (PKI) using Active Directory Certificate Services (AD CS)
- Manage Certificate Authorities (CAs), including configuration, maintenance, and lifecycle operations
- Understand and explain twotier ADCS architectures
- Issue, renew, and troubleshoot certificates used for servers and enduser authentication
- Configure and manage Windows Failover Clustering to provide high availability for:
- File services
- Critical applications
- Maintain and troubleshoot onpremises Windows Server infrastructure
- Design, implement, and migrate Remote Desktop Services (RDS) environments, including:
- Session Hosts
- Connection Broker
- Remote Desktop Gateway
- Clearly communicate technical designs and operational concepts to customers and stakeholders
Qualifications:
- Strong experience with Active Directory Domain Services (AD DS)
- Solid understanding of DNS, DHCP, and Windows Server architecture
- Handson experience with Microsoft Entra ID Connect
- Experience designing and operating ADCS / PKI environments
- Knowledge of Windows Failover Clustering and RDS
- Strong troubleshooting and problemsolving skills
- Experience in enterprisescale, multidomain environments
- Hybrid identity experience involving Microsoft Entra ID
- Azure infrastructure knowledge
- Ability to explain complex technical concepts clearly to customers
- Non-negotiables: Thai language and up to 50% on-site