Hello wendohw
From 12.1X47 onwards, SRX has the capability to work with AD directly, and this feature is called user firewall.
At this point, 12.1X47 is in beta stage, you could work with your Juniper SE/Accoutn team to know more about it.
Regards,
Raveen