Sr. Systems Engineer (Active Directory) at Berkley
Wilmington, DE
$107,000–$198,000from the description
Jul 26, 2026
Wilmington, DE
Jul 29, 2026
What this job asks for AI summary
This senior-level role on the Platform Identity Management team at Berkley Technology Services is responsible for architecting, implementing, and managing enterprise-wide Active Directory and Microsoft Entra hybrid identity infrastructure. The position owns AD as a Source of Truth for identity, covering DNS, GPOs, PKI/AD CS, and IAM integrations, with a strong emphasis on security hardening, automation, and cross-team technical leadership. It suits a hands-on AD subject matter expert comfortable designing solutions for large, multi-forest environments.
Senior level · 5+ years · Full-time
Long application — this platform typically asks you to create an account and re-enter your work history.
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $101,310 (middle half $79,725–$129,425). This posting is about at that midpoint.
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 29, 2026. It is a model, not a headcount.
Why we read it this way (7)
No work location or city is specified in the posting; the CBSA and state fields have been left blank. The role does not appear to be advertised as remote.
The degree requirement states a Bachelor's in CS/IT or a related field, but explicitly accepts 'equivalent experience and/or alternative qualifications' — treated as no hard degree gate.
PowerShell is not explicitly named but is the standard scripting/automation tool for Active Directory environments; the posting firmly requires scripting and automation of AD/Entra tasks. If the team uses a different scripting language, this skill may need adjustment.
Netwrix Directory Manager (NDM) is listed under qualifications with firm language ('proven experience') but also notes 'or similar products' — captured as required with the understanding that equivalent delegated-AD-governance tools would be accepted.
Okta and Auth0 are listed together as preferred experience; Auth0 is named as the primary (it is the team's stated identity service) with Okta as an alternative.
The SOC classification is Medium confidence: the role primarily operates and architects identity infrastructure (AD, Entra, PKI) rather than performing security analysis, pointing to 15-1244; however, the strong security hardening, PAM, and Zero Trust focus makes 15-1212 a plausible runner-up.
Ignored 1 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): Active Directory Sites and Services.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.