Yes it's possible. Just configure the LDAP authentication subsystem to synchronize with your LDAP server. The synchronizer imports all your users and groups and respects parent-child relationships between groups. The groups will be navigable through the 'root groups' (those with no parent groups) in the Alfresco administration console.