SkyePoint Decisions · Washington

Salary
$150,000–$183,000from the description
Posted
Jul 21, 2026
Location
Washington
Last confirmed open
Jul 22, 2026

What this job asks for AI summary

This role involves designing, engineering, and maintaining Active Directory and Azure AD environments in support of a federal Department of State modernization program. Day-to-day work spans hybrid AD/AAD administration, Group Policy hardening, Tier 3 troubleshooting of complex replication and multi-domain issues, PowerShell scripting, and producing architecture roadmaps and documentation for both technical and executive audiences. It suits a seasoned AD/AAD specialist with deep experience in large, multi-forest enterprise environments and an active Secret clearance.

Senior level · 10+ years · Washington-Arlington-Alexandria, DC-VA-MD-WV · Secret clearance · Full-time

Must have (12)
Active DirectoryAzure Active DirectoryADFSAzure AD ConnectWindows Server DNSGroup PolicyPowerShellWindows Server 2016Windows Server 2019AzureKerberos Constrained DelegationAzure Application Proxy
Nice to have (3)
Quest Active RolesQuest Change AuditorMicrosoft Identity Manager

We read this from the posting text with AI. Skim the description below before ruling yourself out.

How this req sits in the market our data

What won't set you apart
Active Directory55%PowerShell50%Azure45%

Most people in this occupation already list these. Still required — just not what gets you shortlisted.

What the occupation pays Median $128,188 (middle half $100,819–$156,589). This posting is about at that midpoint.

Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.

Why we read it this way (8)

The title 'Active Directory Architect' carries no explicit seniority level word, so advertised seniority is Unspecified; however, the 10+ years requirement and SME/Architect scope firmly support a Senior classification.

The role is hybrid (not fully remote), based in Washington, D.C., supporting a Department of State customer.

A Bachelor's degree is listed as the baseline, but the JD explicitly states 'additional training and experience may be substituted in lieu of a degree,' so degree requirement is treated as None.

The clearance gate is an active Secret clearance; the ability to obtain Top Secret is also mentioned but is not itself a hard gate for hiring.

Quest Active Roles, Quest Change Auditor, and Microsoft Identity Manager appear under 'Knowledge of…' phrasing in the required qualifications section — this is softer than 'expert' or 'experience with,' so they are treated as preferred rather than hard gates.

SOC classification is Medium confidence: the role is primarily an AD/identity infrastructure architect/administrator (15-1244), but the JD also references application development activities (code stubs, unit tests, design for others to code) that could push toward 15-1299 or 15-1252; the dominant day-to-day work described is clearly identity infrastructure administration and architecture.

Ignored 2 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): AAD Conditional Access Policies, AAD Self-Service Password Reset.

Requires a Secret clearance — the cleared population is a small fraction of this occupation, so the real candidate pool is materially smaller than the estimate below, which does not model clearance.

Read the full posting

The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.

Apply

Apply on employer site ↗