Support disaster recovery design, cloud platform, and file services, including recovery tiering with defined RTO and RPO, pilot light versus active-passive trade-offs, non-disruptive failover testing, and divisional cloud accounts. Expert-level knowledge of Kerberos authentication, including SPNs, duplicate-SPN failure modes, constrained delegation, AES/RC4 encryption, managed service accounts, group managed service accounts, and reverse DNS dependencies.