ForgeApply · Job listing
Sr Systems Engineer
Boys Town
See all 166 open roles at Boys Town →
Tailor your resume for this Boys Town job in about a minute.
ForgeApply tailors your resume and cover letter to this exact posting, then hands you a ready-to-submit application for Boys Town's site. Free trial, no card required.
About this role
Architects, engineers, and administrates cloud and on-premises system solutions. Primary responsibilities will be supporting identity and access management (IAM) systems, Microsoft 365 solutions, virtualized server infrastructure, storage area network (SAN) environments, and operating systems.
MAJOR RESPONSIBILITIES & DUTIES:
Supports and Ensures Integrity and Security for Identity Management and Security Systems • Deploys, maintains, upgrades, and resolves issues with Active Directory, Entra ID, and Identity and Access Management Systems for HR System integration to include support for joiner, mover, & termination processes, as well as role-based access and other automated processes.
• Supports Identity Management for 3rd party applications, Azure Enterprise Applications, to include securing access using conditional access and MFA (Multi Factor Authentication) systems.
• Designs and supports authentication methodologies including Radius, LDAPS, SAML, Kerberos, PAM (Privileged Access Management), and certificate-based authentication.
• Designs, installs, and maintains the enterprise certificate environment.
• Works with Information Security to implement proper controls and security measures to protect local and cloud-based data.
Deploys and Supports Microsoft 365, MS Modern Desktop, and Other SaaS Solutions • Configures and supports Microsoft SaaS systems such as Exchange, SharePoint, and Teams.
• Architects the migration of on-premises files and data to SharePoint Online and OneDrive. Supports and secures data in SharePoint and OneDrive.
• Implements DLP (Data Loss Prevention), sensitivity, and retention labeling to maintain integrity and security of data with guidance from Information Security.
• Serves as the senior administrator for one or more Microsoft 365 tenants, with direct responsibility for tenant configuration, security posture, licensing management, and service health across the M365 suite including Exchange Online, SharePoint Online, Teams, OneDrive for Business, and Intune.
• Manages M365 identity and access governance including role-based access control (RBAC), privileged identity management (PIM), guest/external access policies, and cross-tenant collaboration settings.
• Oversees Exchange Online administration including mail flow rules, connectors, anti-spam/anti-phishing policies, shared mailboxes, distribution groups, and hybrid mail routing where applicable.
• Administers Microsoft Teams governance including team lifecycle policies, meeting configurations and compliance recording where required.
• Monitors tenant health, service incidents, and adoption metrics through the M365 Admin Center and Defender portals, driving proactive resolution of issues and escalating with Microsoft Support as warranted.
• Supports System Administrators with Endpoint Management and Security solutions for Windows workstation and servers, Android, and iOS devices.
• Assists System Engineers in the design and implementation of systems to manage security at the server operating system level, including hardening and patches.
• Responsible for Azure, AWS, and GCP Public Cloud platforms including identity, security, policy management, and cost allocation.
• Designs, implements, and manages other cloud SaaS Systems to reduce enterprise costs & complexity, while increasing reliability.
Manages Active Directory and On-Premises Identity Infrastructure • Owns and administers the on-premises Active Directory environment, including domain and forest architecture, domain controller deployment and health, AD sites and services, replication topology, and Group Policy infrastructure.
• Designs and maintains Group Policy Objects (GPOs) for security baselines, software deployment, user environment management, and compliance enforcement across workstations and servers.
• Manages AD trust relationships, organizational unit (OU) structure, delegation of control, and role-based administrative access in alignment with least-privilege principles.
• Administers and maintains Microsoft Entra ID (Azure AD) Connect, overseeing hybrid identity synchronization, password hash sync or pass-through authentication, and seamless SSO configurations between on-premises AD and M365.
• Leads identity lifecycle management processes including provisioning, de-provisioning, access reviews, and privileged account governance spanning both on-premises AD and Entra ID.
• Monitors AD health and security through tools such as Microsoft Defender for Identity, ensuring detection and response to suspicious authentication activity, lateral movement, or privilege escalation attempts.
• Maintains AD disaster recovery capabilities including authoritative and non-authoritative restore procedures, domain controller backup validation, and documented recovery runbooks.
Manages and Supports Virtualized Server Environment • Serves as the primary subject matter expert and administrator for a hybrid virtualized environment spanning both VMware vSphere/ESXi and Microsoft Hyper-V platforms, ensuring high availability, performance, and security across all hypervisor hosts and guest workloads.
• Designs, deploys, and maintains VMware vSphere clusters including vCenter Server, ESXi hosts, vMotion, High Availability (HA), Distributed Resource Scheduler (DRS), and Fault Tolerance configurations.
• Administers Microsoft Hyper-V environments including failover clustering, Live Migration, Hyper-V Replica, and integration with System Center Virtual Machine Manager (SCVMM) where applicable.
• Leads capacity planning efforts across both platforms, analyzing resource utilization trends and making recommendations for infrastructure scaling, consolidation, or refresh.
• Develops and enforces standards, policies, and procedures for VM provisioning, template management, snapshot governance, and lifecycle management across VMware and Hyper-V environments.
Administers vSAN and Fibre Channel SAN Storage Infrastructure • Architects, deploys, a
Tailor your resume for this Boys Town role before you apply.
Tailor my resume for this jobSimilar jobs
- Sr Systems Engineer — SNC · Lone Tree, CO
- Sr Systems Engineer — SNC · Plano, TX
- Sr Systems Engineer — SNC · Lexington Park, MD
- Sr Systems Security Engineer — SNC · Lone Tree, CO
- Sr Systems Security Engineer — SNC · Beavercreek, OH
- Sr Systems Security Engineer — SNC · Beavercreek, OH | Dayton, OH
- Senior Systems Engineer — Aerovect · Remote
- Senior Systems Engineer — Clarios · Plymouth, Michigan, United States
Free ATS checker · No Salary on the Job Posting? How to Find the Number Before You Interview