Job Description
Position Summary
The Server & Application Services Administrator supports CES’s Infrastructure Services organization through the design, automation, and management of hybrid on-premises and cloud environments. This role blends traditional server administration with modern identity, monitoring, and automation practices to deliver secure, reliable, and scalable systems. The ideal candidate has strong technical depth across Windows and Linux platforms, proficiency in scripting (PowerShell, Python, or Bash), and a collaborative mindset that drives modernization and operational excellence.
Key Responsibilities:
Server, Systems & Virtualization
- Install, configure, and maintain Windows and or Linux servers in both on-prem and cloud environments (VMware, Hyper-V, AWS, Azure).
- Manage Active Directory, DNS, DHCP, Group Policy, and file/print services.
- Perform capacity planning, patching, performance tuning, and preventive maintenance.
- Administer virtualization platforms and optimize compute, storage, and resource utilization.
- Execute regular system backups, restorations, and disaster-recovery testing using enterprise tools (Veeam, Rubrik, Commvault).
- Maintain accurate system documentation, topology diagrams, and operational procedures.
Cloud & Identity Management
- Deploy and manage cloud infrastructure in AWS and Azure, including compute, networking, and storage.
- Implement and maintain Infrastructure-as-Code (Terraform, CloudFormation, or ARM templates) to automate provisioning and configuration.
- Administer Microsoft Entra ID (Azure AD) for identity, access, and conditional-access management across hybrid environments.
- Manage collaboration and messaging services in Microsoft 365, including mailboxes, distribution lists, and security configurations.
- Support hybrid identity integrations between on-prem and cloud systems.
- Oversee certificate lifecycle processes and enforce least-privilege principles for all access management.
Automation & Orchestration
- Develop and maintain automation scripts using PowerShell, Python, or Bash to streamline server and service administration.
- Automate recurring infrastructure tasks such as provisioning, patching, monitoring, and compliance reporting.
- Identify and implement opportunities to reduce manual processes and increase operational efficiency.
Monitoring, Patch & Secrets Management
- Maintain and enhance enterprise monitoring and alerting tools (SolarWinds, Azure Monitor, AWS CloudWatch) to ensure service visibility and uptime.
- Automate incident detection, escalation, and service-workflow integrations with ITSM systems.
- Manage endpoint deployment, configuration, and patch compliance using centralized management tools (SCCM, Intune, etc.).
- Administer enterprise password and secrets-management platforms in alignment with security policies.
Network & Security Support
- Support and troubleshoot local and remote network connectivity, including VLANs, VPNs, and firewall rules.
- Collaborate with Security Operations for incident response, vulnerability management, and log review.
- Maintain firewall configurations, network documentation, and adherence to compliance frameworks (SOC 2, ISO 27001).
- Implement security hardening, antivirus/EDR deployment, and patching compliance for all managed systems.
Collaboration, Documentation & Support
- Partner with development, infrastructure, and security teams to ensure smooth deployments and integrations.
- Create and maintain clear technical documentation, SOPs, and knowledge-base articles.
- Participate in on-call rotation and planned maintenance windows to ensure 24×7 system availability.
- Provide Tier 3 escalation support for complex infrastructure and application-adjacent incidents.