Systems Administrator & Security Engineer
Role details
Job location
Tech stack
Job description
Reporting to the Director of Information Technology, the Systems Administrator & Security Engineer supports a technology environment that includes Windows servers, Active Directory, network infrastructure, corporate applications (FAS, Traverse, HubSpot), legacy systems, and Microsoft 365, spanning the corporate office and Regional Offices across multiple states. What success looks like: You bring strong systems and security judgment, prioritize competing demands across sites, take a proactive approach to monitoring and hardening, and apply real analytical discipline to decide which processes should be automated, which should not, and why. You work well independently and collaboratively, and you document your work so others can understand and maintain it., * Administer and monitor Windows servers, Active Directory, DNS, DHCP, Group Policy, and user accounts across corporate and multi-state Regional Office environments
- Maintain network infrastructure including switches, routers, wireless access points, and VPN connections for reliable, secure connectivity
- Monitor system performance, backups, and logs to resolve issues before they cause outages
- Plan and perform system updates, patches, and software deployments, coordinating across sites and time zones
- Manage user access provisioning and de-provisioning, including timely removal of access for departing employees
- Administer Microsoft 365 services including Exchange Online, SharePoint, Teams, and OneDrive
- Verify backup completion and perform periodic test restores to ensure data recovery capability
- Support corporate applications including FAS, Traverse, HubSpot, legacy systems, and the Jani-King mobile application
Security Engineering & System Protection
- Design, implement, and maintain security controls including MFA, least-privilege access models, account policies, and endpoint protection across all sites
- Monitor and triage security alerts from antivirus, firewall, and email security systems, investigating suspicious activity and responding to threats
- Lead response to security incidents - isolating affected systems, resetting credentials, performing root-cause analysis, and escalating as appropriate
- Own vulnerability management: apply security patches promptly, disable unused services, and follow hardening guidelines
- Develop, test, and document security baselines and configuration standards, keeping systems consistent across all states
- Support security awareness efforts, communicating threats such as phishing, ransomware, and social engineering to staff
- Ensure compliance with Jani-King's information security policies, including acceptable use, data classification, and approved-systems standards
Automation, Scripting & Digital Transformation
- Identify repetitive, manual, or error-prone IT processes and engineer automated solutions, treating automation as core to the role
- Evaluate each candidate process on clear factors - frequency, time cost, error rate, risk, stability, and maintainability - and articulate why a task should or should not be automated
- Recognize and document the limits of automation, flagging poor candidates with the reasoning recorded
- Design, write, test, and maintain automation using PowerShell, batch, Python, or similar tools for provisioning, reporting, patch deployment, monitoring, and routine maintenance
- Build automation that is observable and safe - with logging, error handling, alerting, and rollback considerations - so processes fail loudly rather than silently
- Lead and support digital transformation initiatives such as modernizing legacy workflows and standardizing tooling across sites
- Maintain clear documentation for all automation and scripts so they can be understood, audited, and maintained by others
- Use AI platforms (such as Claude Enterprise and Microsoft Copilot) fluently to accelerate scripting, research, log analysis, and documentation, while following data classification policies
Technical Support & Infrastructure
- Serve as senior technical escalation point for complex hardware, software, network, and application issues from corporate staff and Regional Offices
- Provide remote support to multi-state Regional Offices using Remote Desktop, VNC, or similar tools
- Document issues, troubleshooting steps, and resolutions in the IT ticketing system (Jira), building a searchable knowledge base
- Address the root cause of recurring issues through automation, configuration changes, or user training to reduce repeat tickets
- Deploy, configure, and troubleshoot workstations, laptops, printers, and mobile devices; maintain IT asset inventory and coordinate hardware procurement
- Perform basic server hardware maintenance and coordinate warranty support with vendors
Projects & Process Improvement
- Lead and support IT projects including system migrations, software rollouts, infrastructure upgrades, and new application implementations across multiple states
- Create and maintain IT documentation including system configurations, network diagrams, SOPs, and troubleshooting guides
- Continuously evaluate IT processes for opportunities to automate, consolidate, or eliminate work, proposing improvements with a clear cost/benefit rationale
- Coordinate with external IT vendors and service providers for equipment repairs, software support, and infrastructure services
Requirements
Do you have experience in Vulnerability Remediation?, Do you have a Associate's degree?, * Associate's or Bachelor's degree in Information Technology, Computer Science, or a related field, or equivalent professional experience
- 5+ years of experience in system administration and IT support with increasing responsibility, including hands-on security responsibilities
- Demonstrated experience administering and supporting IT environments across multiple states or distributed sites, including remote support of geographically separated offices
- Strong working knowledge of Windows Server, Active Directory, Group Policy, DNS, and DHCP
- Solid networking skills including TCP/IP, routers, switches, firewalls, VPNs, and wireless systems across multi-site environments
- Hands-on security engineering experience including MFA, endpoint protection, firewall and email security monitoring, patch and vulnerability management, hardening, and incident response
- Proven automation and scripting ability using PowerShell and at least one additional language (such as Python or batch), with examples of processes automated end to end
- Ability to reason clearly about automation trade-offs - not just how a task could be automated, but whether it should be, and why
- Proficiency with Microsoft 365 administration (Exchange Online, SharePoint, Teams, OneDrive) and remote support tools (Remote Desktop, VNC)
- Fluency with AI platforms such as Claude, ChatGPT, or Microsoft Copilot, used productively within policy
- Working knowledge of SQL Server, IIS, or database administration is a plus
- Relevant certifications such as CompTIA Security+, Network+, A+, or Microsoft Certified: Azure Administrator preferred
- Strong analytical and problem-solving skills, excellent communication, and the ability to explain technical concepts to non-technical users
- Ability to pass a background screen; willingness to travel occasionally to Regional Offices and provide occasional after-hours support for critical incidents
Benefits & conditions
Pulled from the full job description
- Health insurance
- Paid time off
- Vision insurance
- Dental insurance
- Paid holidays, Competitive Compensation Package
$105,000 - $125,000 base salary Commensurate with experience * Medical, dental, vision * Paid vacation * Paid holidays * PTO
- Real Ownership: You'll own the systems, security, and automation roadmap for a global brand's corporate and multi-state environment - not just a narrow slice of it.
- Automation Mandate: Modernization is part of the job, not a side project. You'll be encouraged to eliminate manual work and build durable, automated solutions.
- Modern Tooling: Work with current platforms and AI tools (Claude Enterprise, Microsoft Copilot) as part of your daily workflow.
- Stability: Join a well-established global organization with a long track record of success and continued growth.
- Impact Across the Company: Your work keeps every department and Regional Office secure, connected, and productive.