LDAP filters to LDAP/AD must query members of groups (CN) rather than members of organization units (OU). So you need to create groups and point users to this groups. Then you can use filter like:
(&(objectClass=user)(sAMAccountName={0})(|(memberof=CN=GraylogAdmins,CN=Users,DC=company,DC=local) (memberof=CN=GraylogReaders,CN=Users,DC=company,DC=local)))
This query assumes, that groups are in Users container.