Description
Description
The Senior Server Windows Engineer will provide systems administration and migration support for over 2000 windows operating on-premises and cloud tenants/environments within AWS, Azure, Google, and Oracle. This will include working with a team of server engineers to troubleshoot issues for multiple systems in multiple datacenter locations. The candidate will provide engineering support, implementation, and design services for Microsoft-based systems across the enterprise. The candidate will be responsible for resolving and completing assigned tasks and change requests and will act as an escalation for support issues.
This position requires a mixture of engineering, operations, hands on technical and support skills. Qualified candidates should have excellent troubleshooting and analytical skills. The individual will work closely with technical leads, infrastructure and operations teams and other cross-department teams to evaluate business needs and provide end-to-end technical solutions and manage, operate, monitor, audit, and harden server assets.
Full-time Onsite at DOT HQ, Washington DC. Ideal candidate will cover later shift providing support ending sometime between 5pm and 7pm daily.
Job Duties:
- Once every 2-3 months support server infrastructure in a 24x7 on-call escalation capacity as part of a team rotation.
- Identify opportunities to innovate, extend, and enhance service delivery everywhere possible including through automation and scripting.
- Performs security hardening, patching and server certificate updates.
- Run system scans and analyze reports on system vulnerabilities on over 2000 windows servers in the enterprise.
- Maintain and update environmental documentation, standard Operating Procedures, and engineering documentation.
- Provide support to system administrators to resolve issues when required provide support in response to outages including conducting root cause analysis.
- Recognize and escalate risks, issues, and concerns when necessary.
- Analyze vulnerability reports identify areas of responsibility for remediation.
- Resolve known exploited vulnerabilities, prioritizing critical and highs.
- Facilitate coordination of vulnerability remediations across the team.
- Develop and provide recommendations and remediations for vulnerabilities.
- Harden Windows OS with secure versions of Transport Layer Security (TLS), and cipher suites according to NIST policy.
- Assist Security Operations personnel in developing Plan of Action & Milestones (POAM's) for vulnerabilities requiring long-lead time resolve.
- Work closely with the SCCM/Deployment team to perform routine and bulk patching as well as reporting.
- Provide on-call support and manage ticket queue.
- Demonstrate a strong appetite to learn and translate evolving threats into real world recommendations.
- Improve existing processes through solutions to recurring problems and enhancements to existing solutions or documentation.
- Provide support for new enterprise systems and in support of engineering solutions to address existing issues.
- Create and maintain system documentation for domain technologies, including installation, configuration, and appropriate troubleshooting steps
Qualifications
Required Knowledge, Skills and Abilities
- Must have a minimum of 10 years of experience administrating and managing servers and systems, cloud infrastructure, file and print environments, specializing in Windows operating systems
- Experience managing environments of 2000+ servers across multiple field site locations.
- Experience leading troubleshooting calls spanning across multiple teams and using multi-discipline approach.
- Must have extensive knowledge of multi-vendor server operating systems.
- Demonstrated experience in all aspects of enterprise Windows environment operations and engineering.
- MS Server Administration [senior-level]
- Scripting Experience: MS Graph/PowerShell and VBScript [senior-level]
- Windows Server Operating Systems (2019 to 2022) [senior-level]
- VMware vSphere [senior-level]
- Active Directory / Entra [intermediate-level]
- Strong knowledge and troubleshooting skills to resolve failed update installation in Windows OS.
- Strong knowledge of AD Group policy and applying security posture via GPO's.
- Strong knowledge of System Center Configuration Manager (SCCM).
- Experience with performing root cause analysis, risk identification, and risk mitigation.
- Must be a self-started with strong problem solving and communication skills.
- Experience with installing hardware drivers, firmware, bios, and other hardware upgrades for Dell servers.
- Demonstrate knowledge of common ports and protocols used by Windows servers and clients.
- Experience with performing root cause analysis, risk identification, and risk mitigation
- Interpersonal skills including the ability to collaborate effectively.
- Demonstrated experience in a fast tempo ITSM support environment.
- Candidate must be a U.S. citizen or green card holder who has resided in the U.S. for at least 3 years with the ability to obtain a public trust clearance
Preferred
- Intune access experience with Co-Management across MS Intune and SCCM/MECM
- Experience providing IT Service Management services delivery to the US Government
- Microsoft Certification(s) including Windows Server Hybrid Administrator Associate, Endpoint Administrator Associate, Azure Fundamentals, Azure Administrator Associate, MS365 Certified Administrator Expert, etc.
- AWS/ Azure Cloud Certifications a plus
- VMware Certifications a plus
- Experience with MS Server 2025, ideally with building images and applying STIG's for compliance.
- Administrator level proficiency with vulnerability management tools such as Tenable Nessus, Qualys WAS, Inviciti, and BigFix.
- Experience with Dell Open Manage Enterprise is a plus.
- Experience with PowerBI is a plus.
- Experience with Microsoft Intune is a plus.
Apply on company website