Job Details
Morgan Stanley is a global financial services leader known for its integrity, excellence, and commitment to innovation. Our Technology organization plays a critical role in enabling the firm to operate at scale by delivering resilient, secure, and high‑performance infrastructure solutions that support our global businesses. We foster a culture that values individual expertise as much as teamwork, encourages continuous learning, and provides meaningful opportunities for long‑term career growth.
About the TeamThe Windows Server Technology Chapter is a global engineering organization responsible for delivering resilient, secure, and modern Windows Server and Active Directory services across the firm. The chapter supports over 13,000 servers globally, enabling mission‑critical business functions and underpinning a wide range of infrastructure, security, and operational capabilities.
The chapter is structured into specialized, globally distributed squads that collaborate closely to drive engineering excellence, automation, and modernization at scale. These squads include:
Active Directory SquadFocused on engineering and operating the firm’s on‑premises Active Directory environment. The squad delivers authentication, directory services, security hardening, GPO architecture, DNS integration, monitoring, and compliance controls.
Windows Server Platform SquadResponsible for core Windows Server platform engineering, including OS lifecycle, Microsoft clustering, SCCM Operating System Deployment (OSD), distributed file system (DFS), secure file transfer services, system performance optimization, and modernization of hybrid and on‑prem workloads.
Tooling SquadThe Tooling Squad designs, builds, and operates enterprise‑grade monitoring, observability, automation, and systems‑tooling solutions that support the entire Windows Server estate. This includes automated health checks, infrastructure workflow orchestration, and engineering tools used across all squads to reduce toil, increase reliability, and accelerate operational insight.
Role OverviewWe are hiring a Windows Server / Active Directory Platform Engineer.
This role is designed to be squad‑agnostic — meaning the selected candidate may be placed into either the Active Directory Squad or the Windows Server Platform Squad, depending on skill alignment and business needs.
The engineer will be responsible for engineering, maintaining, securing, and modernizing our global Windows infrastructure. Work will span solution design, 3rd‑line engineering support, automation, troubleshooting, and Site Reliability Engineering (SRE) practices.
Key Responsibilities Core Responsibilities (common to both squads)- Engineer, maintain, and support global Windows Server–based platforms following firm policies and modern security guidelines.
- Contribute to solution design and architecture aligned with the firm’s technology roadmap, performance, and security requirements.
- Provide 3rd‑line support, including on‑call rotation, to troubleshoot and resolve complex Windows Server or AD‑related incidents.
- Create, maintain, and review technical documentation, runbooks, operational procedures, and design specifications.
- Apply SRE principles and DevOps practices to improve reliability, reduce toil, and increase automation.
- Share knowledge with global peers, collaborate across distributed teams, and work closely with internal stakeholders and vendors.
If assigned to the AD squad, you will also:
- Maintain and support on‑premises Active Directory services globally.
- Design and enhance AD security, authentication, GPO architecture, DNS integration, and domain services.
- Implement monitoring, auditing, and compliance‑aligned controls for Active Directory.
If assigned to the Platform squad, you will also:
- Deliver engineering and operational support for core Windows Server platform components such as OS lifecycle, clustering, DFS, SCCM OSD, WDS, secure file transfer services, and system performance optimization.
- Drive modernization of the Windows Server platform across hybrid environments through cloud integration, automated configuration management, and transforming legacy Windows Server workloads.
- Minimum 5 years of hands‑on experience in Windows Server infrastructure engineering and/or Active Directory administration.
- Deep understanding of Windows Server OS (2019–2025).
- Strong PowerShell scripting and automation skills (intermediate–advanced).
- Strong troubleshooting mindset (event logs, SysInternals, memory dump analysis, etc.).
- Solid understanding of networking, firewalls, authentication protocols, and security practices.
- Ability to write high‑quality engineering and operational documentation.
- Deep expertise in AD infrastructure components: DNS, Group Policy, LDAPs, Kerberos authentication, and AD security hardening.
- Experience implementing AD monitoring, auditing, and compliance controls.
- Experience with enterprise Windows Server technologies such as SCCM OSD, Microsoft Clustering, DFSN/DFSR, WDS, SFTP services.
- Experience designing large‑scale Windows Server platform solutions in global environments.
- Experience with automation/orchestration platforms (Orchestrator, Ansible, DSC, Terraform).
- Exposure to public cloud technologies such as Azure Local, Azure Arc, observability and monitoring platforms, Office 365, AWS, Intune, and Windows Virtual Desktop (WVD).
- Experience in security modernization, identity hardening, or Zero‑Trust principles.
- Experience working in distributed global teams, including leading technical initiatives.
- Demonstrated ability to configure and leverage agentic AI tools—such as GitHub Copilot—to automate repetitive tasks, accelerate system design workflows, and enhance overall engineering productivity.
WHAT YOU CAN EXPECT FROM MORGAN STANLEY:
At Morgan Stanley, we raise, manage and allocate capital for our clients – helping them reach their goals. We do it in a way that’s differentiated – and we’ve done that for 90 years. Our values - putting clients first, doing the right thing, leading with exceptional ideas, committing to diversity and inclusion, and giving back - aren’t just beliefs, they guide the decisions we make every day to do what's best for our clients, communities and more than 80,000 employees in 1,200 offices across 42 countries. At Morgan Stanley, you’ll find an opportunity to work alongside the best and the brightest, in an environment where you are supported and empowered. Our teams are relentless collaborators and creative thinkers, fueled by their diverse backgrounds and experiences. We are proud to support our employees and their families at every point along their work-life journey, offering some of the most attractive and comprehensive employee benefits and perks in the industry. There’s also ample opportunity to move about the business for those who show passion and grit in their work.
To learn more about our offices across the globe, please copy and paste https://www.morganstanley.com/about-us/global-offices into your browser.
Morgan Stanley is an equal opportunities employer. We work to provide a supportive and inclusive environment where all individuals can maximize their full potential. Our skilled and creative workforce is comprised of individuals drawn from a broad cross section of the global communities in which we operate and who reflect a variety of backgrounds, talents, perspectives, and experiences. Our strong commitment to a culture of inclusion is evident through our constant focus on recruiting, developing, and advancing individuals based on their skills and talents.
At Morgan Stanley, we raise, manage and allocate capital for our clients – helping them reach their goals. We do it in a way that’s differentiated... Read more