Staff Security Operations Engineer - Active Directory (AD) & Azure AD (Entra ID)
Sandisk understands how people and businesses consume data and we relentlessly innovate to deliver solutions that enable today’s needs and tomorrow’s next big ideas. With a rich history of groundbreaking innovations in Flash and advanced memory technologies, our solutions have become the beating heart of the digital world we’re living in and that we have the power to shape.Sandisk meets people and businesses at the intersection of their aspirations and the moment, enabling them to keep moving and pushing possibility forward. We do this through the balance of our powerhouse manufacturing capabilities and our industry-leading portfolio of products that are recognized globally for innovation, performance and quality.Sandisk has two facilities recognized by the World Economic Forum as part of the Global Lighthouse Network for advanced 4IR innovations. These facilities were also recognized as Sustainability Lighthouses for breakthroughs in efficient operations. With our global reach, we ensure the global supply chain has access to the Flash memory it needs to keep our world moving forward. This role is primarily focused on the administration, engineering, and operational ownership of the organization’s directory services - Active Directory (AD) and Azure AD (Microsoft Entra ID) - including hybrid identity integration. The Staff Security Operations Engineer serves as the day-to-day technical lead for AD and Entra ID, ensuring their availability, reliability, and security across the organization.Supporting identity and access management technologies - IAM process automation, incident response and troubleshooting, compliance reporting, and multifactor authentication - make up the secondary scope of the role. This position works cross time zones to support Asia coverage needs.ESSENTIAL DUTIES AND RESPONSIBILITIESActive Directory (AD) and Azure AD (Entra ID) (Primary Focus)Serve as the primary administrator and operational owner of the organization’s Active Directory and Microsoft Entra ID directory services.Manage user accounts, security and distribution groups, Group Policy (GPO), and organizational units across the Active Directory environment.Design, implement, and maintain hybrid identity using Azure AD Connect - synchronization between on-premises AD and Entra ID, seamless single sign-on, and password hash sync / pass-through authentication.Administer Microsoft Entra ID, including RBAC, Privileged Identity Management (PIM), Conditional Access, application registrations / enterprise applications, and identity governance.Provide day-to-day operational support, including monitoring directory health and troubleshooting replication, DNS, authentication, and access provisioning issues.Act as the technical escalation point for directory-related incidents, working with vendors and internal teams to identify root causes and implement durable solutions.Maintain documentation, runbooks, and operational procedures for the Active Directory and Entra ID environ...