Role OverviewWe are looking for a capable System Administrator to manage, secure, and operate our enterprise Windows and Linux server environments. This role ensures reliability, security, and performance across core infrastructure, virtualization, storage, backups, and observability.
Responsibilities- Provision, configure, and operate Windows Server & Linux hosts, including golden images, baselines, and CIS hardening.
- Execute patch management and vulnerability remediation; maintain health of EDR, monitoring, and backup agents at scale.
- Administer Active Directory/Group Policy and integrate SSO (LDAP/SAML/OIDC) for servers and applications.
- Manage virtualization platforms: clusters, templates, snapshots, performance, and capacity planning.
- Operate storage & filesystems (RAID/LVM, NFS/SMB, iSCSI) and enforce quotas and permissions.
- Ensure reliable backup & restore operations (Veeam/Bacula/Commvault); perform periodic restore tests with documented evidence.
- Maintain certificates (TLS/PKI), time/NTP, syslog/Winlog forwarding, and OS logging to SIEM.
- Implement and monitor server observability (metrics/logs/alerts) and publish availability/utilization reports.
- Support application teams with environment setup, service configuration, and deployment/change activities via CAB.
- Conduct DR/BCP drills for server layers aligned with RTO/RPO; maintain up-to-date runbooks and CMDB records.
- Automate operational tasks using PowerShell/Bash (and Ansible where applicable); maintain HLD/LLD and SOP documentation.
Requirements- 24+ years of experience as a System Administrator in an enterprise environment.
- Strong Windows Server and Linux administration skills (services, permissions, events/logs).
- Hands-on expertise with Active Directory, Group Policy, and SSO protocols (LDAP/SAML/OIDC).
- Experience with patching, CIS hardening, and vulnerability fix coordination via ITSM.
- Practical experience with virtualization and storage systems.
- Proven backup/restore operations with periodic test restore evidence.
- Scripting proficiency in PowerShell and/or Bash; strong CLI and remote administration skills.
- Experience with server monitoring and logging tools (Zabbix/PRTG/Prometheus; syslog/Winlogbeat).
- Familiar with ITSM processes (Incident/Problem/Change, CAB) and able to produce audit-ready documentation.
Nice to Have- Exposure to container platforms (Docker, Kubernetes node ops) and GitOps/CI/CD fundamentals.
- IaC/automation experience (Ansible, Terraform basics).
- Web server knowledge (Nginx/Apache/IIS), certificate automation (ACME/Let's Encrypt), mail relay basics.
- Cloud & hybrid networking experience (S2S VPN to AWS/Azure/GCP); use of bastion/SSM/Session Manager.
- Security enhancements: BitLocker/LUKS, FIM, secrets management (Vault), endpoint/EDR baseline awareness.
- Experience in regulated environments and ISO 27001:2022 compliance documentation.
- Performance tuning (CPU/memory/I/O), capacity forecasting, and license/cost hygiene.