A company's compliance department needs to migrate its Windows-based file shares to AWS. The current setup uses SMB file shares on Windows Server, with access governed by a self-managed, on-premises Active Directory (AD). The team wants to use Amazon FSx for Windows File Server as the new storage solution. After migrating, access control must still be enforced by the existing on-premises AD groups to manage permissions at the share, folder, and file level. The company has already deployed an FSx for Windows File Server file system. What is the correct next step to ensure access remains consistent with their on-premises setup?