Job Summary/Objective:
- Set up & Maintain On-premises Active Directory, Azure Hybrid Cloud Infrastructure
- Windows Administration on VMWARE/Hyper-V in Datacenter & Backup Administrator
Skills:
- On-premise Active Directory Administrator & ADFS Administration
- Configure and manage Microsoft Intune for MDM and MAM
- Support hybrid Azure AD joined and Azure AD joined devices.
- Manage synchronization between on-premises Active Directory and Azure AD using Azure AD Connect.
- Window Server Administration in Data Center
- patching via WSUS or configuration management tools SCCM/Manage Engine
- Proficient PowerShell Scripting /.NET Programming
- Experience on VMWARE, Hyper-V Admin & Backup Tools,
- Work Experience on Azure Security Centre, Azure Defender, and Azure Sentinel (nice to Have)
- Work Experience in ISO27001/SOC2/GDPR Compliant Organization(Nice to Have)
- Good Document writing Skill on Microsoft Excel & PowerPoint Preparation
Certifications:
- Exam AZ-800: Administering Windows Server Hybrid Core Infrastructure
- Exam AZ-801: Configuring Windows Server Hybrid Advanced Services
- SC-300: Microsoft Identity and Access Administrator
Experience: Relevant 6 Years
Personal attributes:
- Good Communication skills specially written, Excel and PowerPoint Preparation
- Team Leader, Effectively articulation of ideas, convey information.
- Addresses customer inquiries or issues promptly & professionally.
- Clear and concise communication is essential for understanding requirements & expectations.
Work Environment: 5 Days in-office working, Posting at Faridabad/Greater Noida, May have to travel Chennai & Overseas
Roles and Responsibilities Azure Intune & AD Admin Activities:
-
- Implement identity and access management solutions using Azure Active Directory (Azure AD).
-
- Manage and maintain the Azure Active Directory (Azure AD) environment.
- Create, modify, and delete user accounts, groups, and roles.
- Manage synchronization between on-premises Active Directory and Azure AD using Azure AD Connect.
-
- Implement and manage identity and access management (IAM)policies, including role-based access control (RBAC) and conditional access policies to enforce the principle of least privilege.
- Configure and manage Microsoft Intune for MDM and MAM.
- Create and deploy configuration profiles, compliance policies, app protection policies, and conditional access.
- Package and deploy line-of-business and store apps using Win32, MSIX, or Microsoft Store for Business.
- Integrate Intune with Azure AD, Microsoft Defender for Endpoint, and Autopilot for device provisioning.
- Implement Windows Autopilot for seamless out-of-the-box provisioning and enrolment.
- Monitor device compliance, remediate issues, and generate reports.
- Enforce security baselines, BitLocker encryption, antivirus and firewall policies.
- Troubleshoot Intune issues related to deployment, enrolment, or application distribution.
- Coordinate with security, network, and support teams to ensure endpoint protection and compliance.
- Support hybrid Azure AD joined and Azure AD joined devices.
- Maintain up-to-date knowledge of Intune and related technologies and apply best practices
- Integrate Azure AD with other cloud services and on-premises systems.
- Automate routine administrative tasks using PowerShell and other scripting tools.
- Manage single sign-on (SSO) configurations and integrate with external identity providers.
- Generate and analyse reports on user activities, access patterns, and security incidents.
- Assist with onboarding and offboarding processes to ensure proper access management.
- Work closely with IT, security, and development teams to implement and manage Azure AD solutions.
Azure Network Admin Activities:
- Design and implement Azure network solutions, including virtual networks, subnets, network security groups (NSGs), and routing configurations.
- Manage and maintain azure network services such as Azure VPN Gateway, Azure ExpressRoute, Azure Firewall, Azure Load Balancer, and Azure Traffic Manager.
- Monitor network performance and troubleshoot network-related issues to ensure optimal performance and availability.
- Implement and manage network security measures, including firewalls, intrusion detection/prevention systems (IDS/IPS), and security policies.
- Conduct regular network assessments and audits to ensure compliance with industry standards and best practices.
Azure Security Related Activities:
- Establish security policies, standards, and procedures for Azure environments.
- Conduct risk assessments and vulnerability analyses to identify potential threats.
- Design secure architectures for Azure cloud solutions, including network, application, and data security.
- Design and implement secure hybrid cloud solutions, integrating on-premises and Azure resources.
- Configure Azure security services, such as Azure Security Centre, Azure Defender, and Azure Sentinel, Azure Policy, Azure Blueprints
- Implement network security measures, including Azure Firewall, Network Security Groups (NSGs), and Virtual Private Networks (VPNs).
- Implement continuous monitoring and logging using Azure Monitor, Azure Log Analytics, and Azure Sentinel.
- Maintain comprehensive documentation of security policies, procedures, and configurations.
- Ensure compliance with regulatory requirements and industry standards (SOC2, GDPR, ISO 27001).
Windows Server Admin Related Activities:
- Install, configure, and maintain Windows Server 2012/2016/2019/2022 systems.
- Manage Active Directory, DNS, DHCP, Group Policy Objects, and File/Print Services.
- Implement and support Failover Clustering and High Availability for business-critical services.
- Administer virtualized environments using Hyper-V and/or VMware vSphere.
- Ensure timely OS and software patching via WSUS or configuration management tools SCCM/Manage Engine
- Troubleshoot hardware, software, and performance issues, and perform root cause analysis.
- Design and maintain backup and disaster recovery solutions, including replication and restore testing.
- Collaborate with storage and network teams to maintain system performance and availability.
- Support hybrid integration with Azure AD, Intune, Microsoft Endpoint Manager, or MECM/SCCM (as applicable).
Other Tasks:
- Identify potential risks or issues before they escalate
- Dealing with Customers for issues
- Embrace change, adapt quickly to shifting needs or conditions.
- Maintaining documentation of configurations, processes, and procedures
- Generating reports on performance, availability, and security metrics for management and compliance purposes
- Pay attention to details to ensure project requirements and deliverables are met accurately
- Review project documentation, monitor progress
- Work closely with diverse teams, stakeholders, and clients
- Provide Consultancy to the Customers