How to delete ghost AD users, or disable disabled AD Accounts for Security Audit Reasons

Is there a way or a script that exists, or an Octopus maintenance job, that queries AD on the entire list of Octopus AD users, and if that user is disabled within AD, it disables or deletes it in Octopus, likewise if the account is gone in AD, it deletes in Octopus?

SOX audit compliance requires terminated employees to be removed from all systems, even if they’re deleted from AD they HAVE to be deleted from Octopus as well.