Purpose of the Job
The IT Systems Administrator is instrumental in administering, securing, and operating a hybrid IT estate that spans on-premises infrastructure and a fully cloud-based Microsoft 365 environment. Covering end user support, virtualization, cloud identity, endpoint management, networking, and security, this is a full-spectrum role that balances day-to-day operational support with strategic project execution.
This role spans both systems administration and end user support. The ideal candidate owns and administers the platforms directly Entra ID, Intune, Microsoft 365, VMware, and the broader infrastructure while also handling L1 and L2 support tickets as part of daily responsibilities. The advantage of a true sysadmin in this seat is that they are not just troubleshooting symptoms, they understand and control the systems underneath. When project work is light, additional focus shifts to end user support alongside the helpdesk team.
Key Accountabilities
1. Administer Entra ID (Azure AD) including user and group lifecycle, Conditional Access policies, MFA enforcement, and SSO integrations across 300 users and 3 tenants 2. Manage the Windows endpoint fleet of 500 devices and 20 macOS devices via Microsoft Intune including configuration profiles, compliance policies, app delivery, and Autopilot provisioning 3. Administer Microsoft 365 tenant including Exchange Online, Teams, SharePoint Online, OneDrive, and licensing 4. Maintain and support on-premises application server infrastructure hosted on VMware ESXi across 25 hosts and approximately 150 virtual machines spanning production, QA, and development environments 5. Perform routine server administration tasks including patching, health monitoring, resource optimization, and incident response for physical and virtual workloads in the MDF 6. Support day-to-day network operations across a Meraki environment 7. Maintain endpoint security posture and patch compliance across the fleet via Kaseya VSA (used as a basic RMM tool); support Zscaler client deployments on endpoints as directed 8. Assist with vulnerability remediation using Microsoft Defender for Endpoint and endpoint security tooling 9. Assist with backup integrity checks and participate in DR planning and scheduled recovery testing 10. Use PowerShell for basic administrative tasks; willingness to learn and grow scripting skills over time 11. Handle L1 and L2 support tickets covering workstations, laptops, printers, mobile devices, and connectivity issues across office and warehouse locations 12. Serve as the escalation point for tickets that exceed L1 scope and require deeper system or platform knowledge 13. Set up and configure new endpoints with standardized builds, software, and security tooling via Autopilot and Intune 14. Assist IT team with camera system locations, installations, and maintenance 15. Respond to emergency issues that require on-site presence including travel to datacenter locations as needed 16. Document system configurations, changes, and procedures; contribute to knowledge base to reduce repeat escalations 17. Execute IT projects as assigned including migrations, deployments, and policy rollouts with minimal supervision |
Why You Would Love This Job
Key Figures
• Users supported: 300 employees and contractors
• Endpoints managed: 500 Windows + 20 macOS + 300 mobile devices (Intune/MDM scope)
• Ticket volume: ~120 tickets/month (Tier 1–2)
• Server footprint: 55 Windows servers (2016/2019/2022/2025)
• Virtualization scope: 5 ESXi hosts; 50 VMs supported
• Network scope: 4 Meraki firewalls; 10 switches; 10 APs; 12 sites/VLAN domains
• Identity/M365 scope / IDM365: 300 Entra ID users; 3 tenant(s)
Qualifications
Physical Requirements