Colorado Springs, CO

Salary
$105,400–$207,800from the description
Posted
Jul 22, 2026
Location
Colorado Springs, CO
Last confirmed open
Jul 23, 2026

What this job asks for AI summary

A consulting role focused on Microsoft Active Directory and enterprise identity infrastructure, working with clients on assessments, security hardening, migrations, domain consolidations, and hybrid identity integrations with Microsoft Entra ID. The position involves leading engagements across the full project lifecycle and suits someone with hands-on AD engineering experience who is comfortable guiding technical workstreams and traveling regularly to client sites.

Mid level · 4+ years · Bachelor's required · Full-time

Advertised as Senior, but the requirements read as Mid.

Must have (6)
Active Directory · 4+ yrsDNSDHCPGroup PolicyLDAPSemperis, Rubrik or Microsoft Defender For Identity
Nice to have (4)
CISSPMicrosoft SC-300CCSKCCNA

“or” means any one of them counts — you don't need all of them.

Posted 11 times — it's one opening, so apply once.

We read this from the posting text with AI. Skim the description below before ruling yourself out.

How this req sits in the market our data

What won't set you apart
Active Directory50%

Most people in this occupation already list these. Still required — just not what gets you shortlisted.

What the occupation pays Median $132,021 (middle half $99,961–$167,095). This posting is about at that midpoint.

Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.

Why we read it this way (7)

SOC classification is a genuine judgment call: the role is primarily Active Directory security assessment, hardening, and identity threat detection (pointing to 15-1212 Information Security Analysts), but a substantial portion of the work is infrastructure engineering — domain/forest architecture, migrations, DNS/DHCP administration — which could support 15-1244. 15-1212 was chosen because the security assessment, hardening, and cyber recovery framing is the dominant theme in both the responsibilities and the Deloitte Cyber team context.

The title 'Senior Engineering Management Specialist' is Deloitte's internal leveling language. The actual requirements (4+ years, mid-level scope) support a Mid-level classification despite the 'Senior' label in the title.

Quest On Demand Migration and Semperis appear together as interchangeable migration tooling options under Required qualifications. Semperis also appears separately as an identity threat detection/recovery tool alongside Rubrik and Microsoft Defender for Identity — those three are listed as interchangeable alternatives for that second requirement.

Microsoft Entra ID, federation, synchronization, MFA, SSO, and hybrid identity architectures are listed under the Preferred section.

Certifications (CISSP, CCSK, SC-300, CCNA) are listed under Preferred qualifications.

The compensation range ($105,400–$207,800/year) is explicitly noted as not adjusted for geographic differential, and Deloitte states it is not typical to be hired near the top of the range.

Ignored 1 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): Quest On Demand Migration.

Read the full posting

The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.

Apply

Apply on employer site ↗