> Markdown version of [/jobs/ext/2737125-it-system-administration-senior-specialist](https://www.wearedevelopers.com/jobs/ext/2737125-it-system-administration-senior-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT System Administration - Senior/Specialist - **Company:** Inc Washington - **Location:** Lacey, WA, United States (Remote available) - **Experience:** Expert - **Salary:** $94,620.0 - $127,248.0 - **Contract:** Permanent contract - **Skills:** Active Directory, User Authentication, Microsoft Azure, Cloud Computing, Configuration Management, Computer Networks, Disaster Recovery, Domain Name System (DNS), Monitoring of Systems, Identity and Access Management, Name Server, Network Architecture, Windows Domain, Windows PowerShell, Azure Active Directory, Virtual Local Area Networks, Cloud Platform System, Reliability of Systems, Microsoft InTune, Containerization, Information Technology, Performance Monitor - **Published:** September 5, 2026 - **Apply:** https://www.dice.com/job-detail/696607c6-067b-4078-ac3e-7636076dc636 ## About the Role For detailed information on how we calculate experience and responses to other frequently asked questions, please visit our, * Seven years of experience and/or education related to the duties of the position, which must include the following: + Critical Thinking & Decision-Making - Proven track record evaluating risks, analyzing complex IAM, AD, DNS, and GPO issues, and making informed decisions to maintain secure and stable operations. + Security & Compliance - Demonstrated ability to apply and uphold security policies, governance requirements, and best practices to maintain compliant and secure identity, directory, and DNS environments. + Identity & Access Management Administration - Demonstrated ability to manage identity lifecycles, authentication, permissions, and roles to ensure secure and efficient access control. + Active Directory & Entra ID Management - Proven track record configuring, maintaining, modernizing, and troubleshooting Active Directory and Azure Entra ID to ensure reliable identity and directory services. + Group Policy Architecture & Management - Demonstrated ability to design, implement, and troubleshoot GPOs to enforce secure configurations and agency-wide standards. Ability to translate GPO's to Intune and Azure Policies. + DNS Administration & Architecture - Proven track record designing, implementing, securing, and troubleshooting on-premise and cloud DNS services to ensure accurate and reliable name resolution. + System Maintenance & Continuity Planning - Demonstrated ability to apply updates, monitor performance, and implement disaster recovery strategies to maintain secure and resilient IAM, AD, and DNS operations. * Education involving a major study in Computer Science, Information Technology (IT), Science, Technology, Engineering, Mathematics (STEM), or closely related field. This position does not require formal education. Instead, applicants may meet the qualification requirement through experience alone or through any combination of experience and education totaling seven years. Education in a related field may be applied year-for-year toward the seven-year requirement, as long as the applicant has at least three years of directly related experience and meets all the required competencies listed above. The examples listed below illustrate acceptable combinations of experience and education that satisfy this requirement. Examples of how to qualify: * 7 years of experience. * 6 years of experience AND 30-59 semester or 45-89 quarter college credits. * 5 years of experience AND 60-89 semester or 90-134 quarter college credits (Associate's degree). * 4 years of experience AND 90-119 semester or 135-179 quarter college credits. * 3 years of experience AND a Bachelor's degree or higher. Special Requirements/Conditions of Employment: * Must be able to provide transportation to and from office or offsite trainings or assignments. * This position requires training to keep consistent with industry best practices. Leadership works with industry leaders to forecast changes in information technology and lists required training in this position's yearly Performance Development Plan (PDP). Staff within this division are provided two (2) hours per week for training. It is expected that this position will take what is learned in their training and apply it to their daily work., * Cloud Infrastructure Familiarity - Ability to understand and work with broader Azure services (beyond Entra ID and DNS) to support identity integrations across cloud environments. * Scripting & Automation - Ability to use tools like PowerShell to automate identity, AD, DNS, and GPO tasks to improve efficiency and consistency. * Identity Governance & Administration (IGA) Tools - Ability to work with identity governance platforms and workflows to support lifecycle automation, attestation, and compliance. * Hybrid Identity Architecture - Ability to design and support hybrid identity environments that integrate on-premise AD with cloud identity platforms. * Network Infrastructure Awareness - Ability to understand related network components (firewalls, VLANs, routing) that affect IAM and DNS performance and security., How many years of experience do you have related to the duties of this position? Please include any experience gained through employment, internships, and/or volunteer positions. Note that experience gained from academic coursework, class projects, or other degree requirements is assessed in later questions. * One year * Two years * Three years * Four years * Five years * Six years * Seven or more years * None of the above 05 What is your level of education? * 30-59 semester or 45-89 quarter college credits * 60-89 semester or 90-134 quarter college credits (Associate's degree) * 90-119 semester or 135-179 quarter college credits * Bachelor's degree * Master's degree * Ph.D. * None of the above, If you feel you have not already demonstrated your proficiency in the required competencies elsewhere in your application, you are encouraged to use this space to provide any additional details that help illustrate your experience and capabilities in the areas listed below. While this question is optional, providing clear evidence of your competence in these fields will strengthen your application.Please share any additional information that further demonstrates your proficiency in the following required competencies:1. Critical Thinking & Decision-Making - Proven track record evaluating risks, analyzing complex IAM, AD, DNS, and GPO issues, and making informed decisions to maintain secure and stable operations.2. Security & Compliance - Demonstrated ability to apply and uphold security policies, governance requirements, and best practices to maintain compliant and secure identity, directory, and DNS environments.3. Identity & Access Management Administration - Demonstrated ability to manage identity lifecycles, authentication, permissions, and roles to ensure secure and efficient access control.4. Active Directory & Entra ID Management - Proven track record configuring, maintaining, modernizing, and troubleshooting AD and Azure Entra ID to ensure reliable identity and directory services.5. Group Policy Architecture & Management - Demonstrated ability to design, implement, and troubleshoot GPOs to enforce secure configurations and agency-wide standards.6. DNS Administration & Architecture - Proven track record designing, implementing, securing, and troubleshooting on-premise and cloud DNS services to ensure accurate and reliable name resolution.7. System Maintenance & Continuity Planning - Demonstrated ability to apply updates, monitor performance, and implement disaster recovery strategies to maintain secure and resilient IAM, AD, and DNS operations. 15 ## Description * This position is eligible for telework and flexible schedule options. * You may telework most of your work time with occasional in-person meetings and activities. * Schedules are dependent upon position needs and are subject to change., In this role, you will be the senior Identity and Access Management Administrator, with responsibilities for Windows Domain Controllers and cloud-based identity management platform, including Azure. You will be responsible for architecting and modernizing Ecology's Identity and Access Management strategy through the adoption of cloud-native technologies. What you will do: * Mentor and guide other Domain Administrators. * Provide excellent customer service and collaborate with other teams to improve the security posture of Ecology's Identity and Access Management strategy. * Communicate effectively with Management to articulate Ecology's strategy for modernizing Identity and Access Management. * Assess the current Windows Domain Controller architecture and health and identify optimization opportunities. * Assess the current Group Policy Objects architecture and health and identify opportunities to streamline. * Assess and identify opportunities to improve the security posture of Ecology's Identity and Access Management strategy and infrastructure. * Assess and plan the adoption of Intune based policy management., Application Attestation: By submitting an application, you are affirming that the information contained in your application and on all attachments is complete and truthful. The state may verify this information, and any false or misleading answers may result in rejection of your application or dismissal if employed., We understand that your life revolves around more than just your career. Like everyone, your first priority is ensuring that you and your family will maintain health and financial security. That's why choice is a key component of our benefits package. We have a selection of health and retirement plans, paid leave, staff training and other compensation benefits that you can mix and match to meet your current and future needs. Read about our benefits: The following information describes typical benefits available for full-time employees who are expected to work more than six months. Actual benefits may vary by appointment type or be prorated for other than full-time work (e.g. part-time); view the job posting for benefits details for job types other than full-time. Note: If the position offers benefits which differ from the following, the job posting should include the specific benefits. Insurance Benefits Employees and their families are covered by medical (including vision), dental and basic life insurance. There are multiple medical plans with affordable monthly premiums that offer coverage throughout the state. Staff are eligible to enroll each year in a medical flexible spending account which enables them to use tax-deferred dollars toward their health care expenses. Employees are also covered by basic life and long-term disability insurance, with the option to purchase additional coverage amounts. To view premium rates, coverage choice in your area and how to enroll, please visit the Public Employees Benefits Board (PEBB) website. The Washington Wellness program from the Health Care Authority works with PEBB to support our workplace wellness programs. Dependent care assistance allows the employee to save pre-tax dollars for a child or elder care expenses. Other insurance coverage for auto, boat, home, and renter insurance is available through payroll deduction. The Washington State Employee Assistance Program promotes the health and well-being of employees. Retirement and Deferred Compensation State Employees are members of the Washington Public Employees' Retirement System (PERS). New employees have the option of two employer contributed retirement programs. For additional information, check out the Department of Retirement Systems' web site. Employees also have the ability to participate in the Deferred Compensation Program (DCP). This is a supplemental retirement savings program (similar to an IRA) that allows you control over the amount of pre-tax salary dollars you defer as well as the flexibility to choose between multiple investment options. Social Security All state employees are covered by the federal Social Security and Medicare systems. The state and the employee pay an equal amount into the system. Public Service Loan Forgiveness If you are employed by a government or not-for-profit organization, and meet the qualifying criteria, you may be eligible to receive student loan forgiveness under the Public Service Loan Forgiveness Program. Holidays Full-time and part-time employees are entitled to paid holidays and one paid personal holiday per calendar year. Note: Employees who are members of certain Unions may be entitled to additional personal leave day(s), please refer to position specific Collective Bargaining Agreements for more information. Full-time employees who work full monthly schedules qualify for holiday compensation if they are employed before the holiday and are in pay status for at least 80 nonovertime hours during the month of the holiday; or for the entire work shift preceding the holiday., If you have college credits or a degree, please list your major(s) or field(s) of study and any degree(s) earned. If you don't have this education, put N/A. 07 Please provide an example of a time you identified and analyzed a complex identity, directory, or DNS-related issue. What steps did you take to evaluate risks and determine a solution? If you do not have direct experience, enter N/A, or describe a similar analytical decision you've made in another technical area. 08 Please describe your ability to apply and enforce security policies, governance requirements, and best practices in identity, directory, or DNS environments. * None - No experience applying security or governance requirements. * Foundational - I understand basic security concepts and can follow documented policies. * Intermediate - I regularly apply and uphold security requirements in technical tasks. * Advanced - I interpret policies, implement controls, and ensure compliance across systems. * Expert - I develop, refine, or advise on security policies and translate them into operational practices. 09 Please rate your experience managing identity lifecycles, authentication methods, and permission structures. * None - No experience with access-control or identity processes. * Foundational - I can perform basic provisioning/deprovisioning with guidance. * Intermediate - I manage identity lifecycles and permissions independently. * Advanced - I design or refine role structures and ensure secure, efficient access control. * Expert - I implement or oversee complex IAM frameworks involving multiple authentication and authorization models. 10 Please provide an example of a time you configured, maintained, or modernized an Active Directory or cloud directory. Describe the challenge, your approach, and the outcome. If you have not done this directly, describe a similar experience in another directory or large-scale identity system. If you do not have this experience, please enter N/A. 11 Please describe your experience designing, implementing, or troubleshooting system-wide policy configurations such as GPOs or comparable configuration-management tools. * None - No experience with GPOs or policy automation tools. * Foundational - I can apply basic GPOs or follow existing templates. * Intermediate - I create and troubleshoot GPOs to support standard configurations. * Advanced - I design and maintain complex GPO architectures across diverse environments. * Expert - I architect enterprise-wide policy frameworks and resolve high-impact GPO conflicts or failures. 12 Please describe your proficiency with DNS administration and architecture. * None - No DNS experience. * Foundational - I understand DNS basics and can make simple changes. * Intermediate - I manage DNS zones and troubleshoot common issues. * Advanced - I design, secure, and maintain DNS infrastructure across multiple environments. * Expert - I architect complex DNS environments and resolve high-impact or systemic DNS failures. 13 Please describe your experience maintaining system reliability through patching, performance monitoring, or disaster recovery planning. * None - No experience maintaining or monitoring systems. * Foundational - I can install updates and follow basic maintenance procedures. * Intermediate - I independently maintain systems and address routine issues. * Advanced - I implement monitoring, plan continuity strategies, and address complex operational risks. * Expert - I design and oversee disaster recovery, continuity plans, or large-scale maintenance strategies for critical systems. ## Related Videos - [Developer Tools for Microsoft Azure](https://www.wearedevelopers.com/videos/450-developer-tools-for-microsoft-azure) - [The Journey of a Pixel in a React Application](https://www.wearedevelopers.com/videos/1667-the-journey-of-a-pixel-in-a-react-application) - [AI Vector Search at Scale - Ewa Szyszka - Ewa Szyszka](https://www.wearedevelopers.com/videos/2161-ai-vector-search-at-scale-ewa-szyszka-ewa-szyszka) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Develop enterprise-ready applications for Microsoft Teams with Azure resources on modern web technologies](https://www.wearedevelopers.com/videos/187-develop-enterprise-ready-applications-for-microsoft-teams-with-azure-resources-on-modern-web-technologies) - [Operating etcd for Managed Kubernetes](https://www.wearedevelopers.com/videos/1191-operating-etcd-for-managed-kubernetes) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [How to Write a CV and Interview if You Don't Fully Qualify For The Job](https://www.wearedevelopers.com/magazine/183-how-to-write-a-cv-and-interview-if-you-don-t-fully-qualify-for-the-job) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Résumé-Driven Development: How IT trends affect the job market for software developers](https://www.wearedevelopers.com/magazine/59-resume-driven-development-how-it-trends-affect-the-job-market-for-software-developers)