SharePoint is not a meta-directory, so it cannot synchronize back to AD. This
is a design decision by the product team. You might want to look at
DeliverPoint (www.barracudatools.com) if you need to manage users who have
transferred, moved on or need to be cloned across your SharePoint farm.
DeliverPoint will allow you to transfer, delete or clone permission sets for
users or groups at the farm, virtual server, managed path, site collection,
portal, site, area or sub-web levels.