Senior Platform Engineer - Directory Services

The Walt Disney Company
The Walt Disney Company

Software Engineering

Bengaluru, Karnataka, India

Posted on Aug 19, 2026

Job Posting Title:

Senior Platform Engineer - Directory Services

Req ID:

10158252

Job Description:

Department Description:

At Disney, we’re storytellers. We make the impossible, possible. The Walt Disney Company (TWDC) is a world-class entertainment and technological leader. Walt’s passion was to continuously envision new ways to move audiences around the world—a passion that remains our touchstone in an enterprise that stretches from theme parks, resorts and a cruise line to sports, news, movies and a variety of other businesses. Uniting each endeavor is a commitment to creating and delivering unforgettable experiences — and we’re constantly looking for new ways to enhance these exciting experiences.

The Enterprise Technology mission is to deliver technology solutions that align to business strategies while enabling enterprise efficiency and promoting cross-company collaborative innovation. Our group drives competitive advantage by enhancing our consumer experiences, enabling business growth, and advancing operational excellence.

The Global Information Security (GIS) organization strives to secure the magic by employing best-in-class services to assess, prevent, detect, and respond to cyber threats that present risk to The Walt Disney Company. We enable the business by integrating enterprise and business segment-specific supported services to create a robust, efficient, and adaptable cybersecurity program. Our key objectives are to:

  • Secure the Magic by protecting information systems and platforms.
  • Reduce Risk by proactively assessing, preventing, and detecting to prevent harm to the Company and our Guests.
  • Strengthen the business through optimizing execution, application, and technology used to protect the Company.
  • Innovate by investing in core capabilities to enhance operational efficiency.

Team Description:

  • The Identity & Access Management (IAM) – Directory Services team is responsible for building and operating a secure, standardized, and automated enterprise identity foundation across The Walt Disney Company. We provide the authoritative directory platforms that enable authentication, authorization, and access governance for both human and non‑human identities.
  • Our mission is to move identity governance from manual, reactive processes to automated, policy‑driven enforcement, ensuring identities are secure, compliant, and healthy by default across their lifecycle. We partner closely with security, infrastructure, and application teams to eliminate legacy risk, reduce operational toil, and enable modern, cloud‑first identity capabilities at enterprise scale.

What You’ll Do:

Directory Platform Engineering & Operations

  • Engineer, harden, and operate enterprise and multidomain Active Directory environments supporting critical business workloads.
  • Lead Active Directory consolidation and domain rationalization efforts, including enterprise, eCommerce, and business‑unit directories.
  • Support RadiantLogic’s Virtual Directory System operations and enhancements.
  • Establish and enforce multi‑domain baseline identity security standards across environments.
  • Implement and mature RBAC‑based access models across Active Directory.
  • Integrate AD with Privileged Identity Management (PIM) and Privileged Access Management (PAM) platforms.
  • Help with eliminating standing privilege through group‑based, time‑bound, and JIT access patterns.
  • Implement and support synchronization between Active Directory and Entra ID.
  • Support crosstenant identity governance for business segments and federated environments.
  • Enable automated human and non‑human identity governance, including monitoring, remediation, and compliance reporting.
  • Reduce directory and tool sprawl while maintaining service reliability and business continuity.
  • Mentor and uplift junior engineers; contribute to repeatable engineering patterns and documentation.

Required Qualifications & Skills:

  • 8+ years of hands‑on experience engineering and operating large‑scale Active Directory environments.
  • Deep expertise in:
    • Active Directory architecture, trusts, replication, DNS, PKI
    • Multi‑domain / multi‑forest designs
    • AD security hardening and recovery
    • Radiant Logic’s Virtual Directory Services
  • Proven experience implementing or supporting:
    • RBAC, PIM, and PAM
    • Privileged account separation and Tier 0 controls
  • Strong troubleshooting skills in complex, highly regulated environments.
  • Experience working in enterprise‑scale IAM or directory services teams.

Preferred Qualifications:

  • Experience integrating AD with Entra ID / Azure AD in hybrid or cloud‑first environments.
  • Familiarity with identity governance automation, non‑human identity management, and continuous compliance.
  • Experience supporting cross‑tenant or multi‑business‑unit identity models.
  • Background in directory consolidation, legacy system sunset, or M&A identity integration.
  • Comfort operating in environments with high security, resilience, and audit expectations.

Required Education:

Bachelor’s degree in Computer Science, Information Systems, Software, Electrical or Electronics Engineering, or comparable field of study, and/or equivalent work experience

Engineer, harden, and operate large‑scale, multi‑domain Active Directory environments supporting critical business workloads.

Lead Active Directory consolidation and domain rationalization, reducing directory sprawl across enterprise, eCommerce, and business units.

Operate and enhance Virtual Directory services (RadiantLogic) to support federated and multi‑source identity use cases.

Define, implement, and enforce baseline identity security standards across complex, multi‑domain environments.

Design and mature RBAC‑based access models within Active Directory.

Integrate Active Directory with Privileged Identity and Access Management (PIM/PAM) platforms.

Eliminate standing privilege through group‑based, time‑bound, just‑in‑time (JIT) access patterns.

Implement and sustain Tier 0 security posture, including privileged account separation and Privileged Access Workstations (PAW).

Design and operate bi‑directional synchronization between Active Directory and Entra ID, partnering with cloud identity teams for consistent governance.

Improve identity governance and lifecycle accuracy through authoritative attribute synchronization, cross‑tenant governance, automation, documentation, and mentoring of junior engineers.

Job Posting Segment:

Enterprise Technology and Data

Job Posting Primary Business:

Global Information Security

Primary Job Posting Category:

Security Engineering

Employment Type:

Full time

Primary City, State, Region, Postal Code:

Bangalore, India

Alternate City, State, Region, Postal Code:

Date Posted:

2026-08-19