GSPANN is hiring a Systems Engineer with expertise in FinOps Open Cost and Usage Specification (FOCUS) to manage Windows Server and Azure infrastructure, driving automation, patching, and incident resolution while leading shift operations.
Description
Roles and Responsibilities
• Support Windows Server environments (2016/2019/2022) through administration, monitoring, and maintenance.
• Implement installation, configuration, patching, upgrades, and troubleshooting of Windows operating systems.
• Ensure server health, performance, and capacities are proactively monitored to identify risks before they cause incidents.
• Drive root-cause isolation across adjacent dependencies (network, storage, virtualization, security, and applications) while keeping Windows/Azure as the primary area of ownership.
• Manage Active Directory (AD), Group Policies (GPO), Domain Name System (DNS), Dynamic Host Configuration Protocol (DHCP), and related identity services.
• Support user accounts, security groups, service accounts, and access controls.
• Ensure AD integrations with cloud and enterprise applications function reliably.
• Drive resolution of authentication, authorization, and directory-related issues.
• Manage Azure Virtual Machines (VMs), Virtual Networks, Storage, Backup, and Recovery services.
• Support Azure AD, Azure Security, monitoring, and governance initiatives.
• Build hybrid cloud environments that integrate on-premises infrastructure with Azure services.
• Support cloud migration, optimization, and modernization projects.
• Drive troubleshooting of virtualized infrastructure underlying Windows environments, applying working knowledge of VMware.
• Collaborate with virtualization teams on VM provisioning, performance, and resource-related issues.
• Drive automation as a core responsibility, with hands-on PowerShell scripting to reduce repetitive operational work, standardize routine tasks, and improve consistency.
• Build and maintain PowerShell scripts and Azure automation for provisioning, patching, monitoring, and recurring administrative tasks.
• Drive an automation and AI mindset by proactively using modern AI-assisted tools for scripting, troubleshooting, documentation, and overall operational efficiency.
• Build automated, permanent fixes for recurring issues to reduce repeat incidents and manual effort.
• Manage the end-to-end patching lifecycle for Windows Server environments, including planning, testing, scheduling, and execution.
• Drive vulnerability remediation in coordination with security teams, tracking findings through to closure within Service Level Agreement (SLA) timelines.
• Implement and maintain security hardening and compliance standards across Windows infrastructure, beyond general OS hardening, including compliance benchmark alignment and audit support.
• Support security assessments, compliance reporting, and remediation tracking.
• Lead as Shift Lead and primary escalation point for critical Windows and Azure incidents.
• Drive troubleshooting efforts during major incidents and coordinate resolution across technology teams.
• Implement preventive, automated measures based on root-cause analysis (RCA) rather than one-off workarounds.
• Drive recurring-issue reduction through problem management and continuous improvement of operational practices.
• Ensure adherence to SLAs, operational procedures, and escalation protocols.
• Support enterprise Managed File Transfer (MFT) platforms such as MoveIT, where applicable to the environment.
• Drive resolution of file transfer failures, connectivity issues, and performance bottlenecks.
• Collaborate with application owners and business stakeholders on secure data exchange requirements.
• Manage ticket resolution end to end, along with RCA.
• Develop and maintain technical documentation, SOPs, and knowledge articles.
• Support shift operations, on-call rotations, and production support activities.
• Collaborate with global infrastructure, network, security, and application teams.
• Support Senior Engineers and Architects in operationalizing new designs, standards, and automation solutions.
Skills and Experience
• 5+ years of in-depth experience in Windows systems administration.
• Hold a Microsoft Certified: Azure Administrator Associate, Azure Solutions Architect, Windows Server Administration, or ITIL Foundation certification, which is an advantage.
• Demonstrate strong expertise in Windows Server Administration (2016/2019/2022), Active Directory, DNS, DHCP, Group Policy, Azure infrastructure services, Azure Active Directory (Entra ID), Windows security and hardening, server monitoring and performance management, and backup and disaster recovery solutions.
• Apply hands-on PowerShell scripting for automation and operational efficiency, using automation to reduce repetitive operational and administrative work.
• Work with Azure automation tools.
• Bring working knowledge of VMware for troubleshooting and supporting virtualized infrastructure.
• Demonstrate working knowledge of patching, vulnerability remediation workflows, and security compliance practices.
• Apply familiarity with compliance frameworks and benchmarks for Windows environments.
• Demonstrate knowledge of Azure networking, storage, and virtual machine administration.
• Bring experience with cloud migration and infrastructure modernization initiatives.
• Work with Incident, Problem, Change, and Service Request Management processes.
• Apply exposure to ITIL processes and enterprise support environments.
• Demonstrate the ability to lead shifts and manage critical production incidents.
• Utilize AI-assisted tools to speed up scripting, troubleshooting, and documentation.
• Bring experience with MoveIT or an equivalent enterprise Managed File Transfer (MFT) platform, which is an advantage.
• Demonstrate experience working in GCC, Build-Operate-Transfer (BOT), or Managed Services environments, which is an advantage.
• Apply knowledge of cyber security controls and compliance standards.
• Bring exposure to automation tools and Infrastructure-as-Code practices, which is an advantage.