Senior Systems Administrator
VelauraUSAFull-time1w ago
Job description
About the role
You design, operate, and continuously improve enterprise infrastructure that powers engineering and business operations. You administer and harden Linux, Windows, and macOS environments, manage cloud and virtualization platforms, and protect systems through security and compliance. You collaborate closely with Engineering, Security, and Operations to keep services reliable, performant, and well documented.
Key facts
What you'll do
- Design, administer, and continuously improve enterprise infrastructure for engineering and business operations, including installing, configuring, patching, monitoring, troubleshooting, and performing lifecycle management of Linux and Windows systems.
- Manage VMware vCenter, Proxmox, AWS, and Google Cloud Platform compute, storage, networking, virtualization, access controls, availability, and capacity planning while enforcing secure configurations.
- Administer Google Workspace, Microsoft 365, identity management, Single Sign-On, and Multi-Factor Authentication using Duo Security or comparable platforms, and support secure email, VPN, wireless, and certificate services.
- Operate Cisco Meraki wireless infrastructure, VPN services, DNS, DHCP, PAN firewalls, network segmentation, SSL/TLS certificates, and enterprise networking services with an emphasis on availability and secure remote access.
- Support NetApp enterprise storage and Rubrik backup infrastructure, execute disaster recovery and business continuity operations, and validate backups to protect data integrity and availability.
- Develop and maintain Bash and Python automation scripts to streamline operations, reduce repetitive tasks, and strengthen monitoring, standards, and operational best practices.
- Monitor infrastructure performance, availability, capacity, reliability, and security across on-premises and cloud environments, and participate in technology evaluations, infrastructure upgrades, and system implementations.
- Create and maintain architecture diagrams, configuration standards, operating procedures, inventories, and technical documentation, then collaborate with Engineering, Security, and Operations to ensure infrastructure meets business requirements.
- Implement and maintain secure configurations across Linux, Windows, macOS, cloud, networking, identity, and storage platforms, and administer endpoint detection and response platforms such as SentinelOne.
- Perform vulnerability remediation, operating system hardening, patch management, endpoint compliance, and security configuration reviews while enforcing least-privilege access, secure account provisioning, and identity lifecycle management.
- Investigate security alerts, phishing incidents, endpoint threats, suspicious activity, and potential compromises, and assist with incident response triage, containment, remediation, recovery, documentation, and post-incident analysis.
- Provide Tier 2/3 technical support for Windows and macOS endpoints including Apple and Dell systems, manage employee onboarding and offboarding, device provisioning, imaging, software deployment, hardware lifecycle, and endpoint configuration.
- Administer Iru MDM or comparable endpoint management platforms for macOS and Windows devices, and configure endpoint encryption, security controls, operating system updates, software deployment, and compliance requirements.
- Troubleshoot operating systems, applications, networking, VPN, conferencing platforms, printers, peripherals, authentication, and hardware issues while delivering responsive, professional, and customer-focused IT support.
- Develop and maintain desktop deployment standards, support procedures, knowledge base articles, and user documentation to enable consistent and efficient operations.
Requirements
- Minimum 10 years of progressively responsible experience in Systems Administration, Infrastructure Engineering, or Enterprise IT, including significant hands-on desktop engineering and Tier 2/3 end-user support.
- Proven experience designing, deploying, administering, securing, and supporting enterprise infrastructure across on-premises and cloud environments.
- Strong hands-on experience administering Linux RHEL and Ubuntu, Windows, and macOS operating systems.
- Experience administering Google Workspace, AWS and/or Google Cloud Platform, VMware vCenter, Proxmox, Cisco Meraki, Duo Security, and endpoint management platforms.
- Strong understanding of TCP/IP networking, DNS, DHCP, VPNs, VLANs, Wi-Fi, routing, firewalls, SSL/TLS certificates, and secure remote access.
- Experience supporting enterprise storage, backup, disaster recovery, and business continuity technologies such as NetApp and Rubrik.
- Experience administering endpoint security, EDR, patch management, operating system hardening, vulnerability remediation, encryption, and endpoint compliance.
- Working knowledge of Bash and Python scripting for systems administration and automation.
- Strong understanding of cybersecurity principles including Zero Trust, Least Privilege, Defense in Depth, Identity and Access Management, Secure Configuration Management, Vulnerability Management, Incident Response, and Data Protection.
- Strong troubleshooting, analytical, and problem-solving skills across infrastructure, cloud, networking, storage, desktop, identity, and security environments.
- Excellent written and verbal communication skills with the ability to create clear technical documentation and communicate with technical and non-technical users.
- Ability to independently prioritize work, manage multiple projects, collaborate effectively, and operate in a fast-paced startup environment.
- Demonstrated commitment to delivering reliable infrastructure and outstanding end-user support.
Nice to have
- Experience administering NetApp storage systems and Rubrik backup platforms.
- Experience with SentinelOne, CrowdStrike, or Microsoft Defender for Endpoint.
- Experience managing Google Workspace security, email security, phishing investigations, and secure collaboration technologies.
- Microsoft 365 administration.
- Familiarity with Infrastructure-as-Code and configuration management tools such as Terraform or Ansible.
- Experience with SIEM platforms, centralized logging, vulnerability scanners, security monitoring, or security operations workflows.
- Knowledge of SOC 2, ISO 27001, CIS Controls, or NIST Cybersecurity Framework.
- Experience managing FileVault, BitLocker, certificate services, privileged access management, endpoint compliance, and device encryption.
- Experience with monitoring, alerting, capacity planning, and infrastructure performance management.
- Previous experience in a startup, semiconductor, AI, cloud infrastructure, or other high-growth technology environment.
- Professional certifications such as RHCSA, RHCE, AWS Certified Solutions Architect, Google Cloud Professional, Microsoft Certified: Azure Administrator, Cisco, Security+, or CISSP.