What are the responsibilities and job description for the Senior System Engineer position at ATR International?
About the Company
We are seeking a detail-oriented Senior Systems Engineer to lead the management, security, and architecture of our Active Directory and Windows Server infrastructure. This role is critical in ensuring identity security, OS hardening, and seamless directory services. The ideal candidate brings over a decade of deep technical expertise in complex AD environments and a proactive approach to vulnerability and patch management.
About the Role
We are seeking a detail-oriented Senior Systems Engineer to lead the management, security, and architecture of our Active Directory and Windows Server infrastructure. This role is critical in ensuring identity security, OS hardening, and seamless directory services.
Responsibilities
- Active Directory Architecture: Manage and support high-level Microsoft AD environments (2016/2019 ), including version upgrades and the deployment of Read/Write and Read-Only domain controllers.
- Identity & Access Management: Configure and manage Authentication Policies, Silos, and Group Managed Service Accounts (gMSA) to bolster security.
- Security & Hardening: Implement rigorous OS hardening, analyze security bulletins, and prioritize risk-based patching across the Windows Server fleet.
- Infrastructure Services: Closely manage DNS, DHCP, and Group Policy Objects (GPOs) to maintain consistent and secure configurations.
- Audit & Remediation: Conduct regular audits of AD objects, group memberships, and permissions to mitigate security risks and ensure environment efficiency.
- Automation: Utilize PowerShell and other scripting tools to automate routine tasks, auditing, and remediation efforts.
- Support & Troubleshooting: Resolve complex authentication issues (Kerberos, NTLM) and manage account lockouts.
Qualifications
- Experience: 10 years of dedicated experience in Active Directory and Windows Server environment support.
- Core Technical Skills: In-depth knowledge of Active Directory (on-prem architecture), Kerberos, GPOs, DNS, and DHCP.
- Scripting: Proficiency in PowerShell for automation and task management is essential.
- Education: A bachelor’s degree in engineering (Computers, Electronics, or a related technical field) is strictly required.
- Location: Ability to work onsite/in-person at our San Jose, CA office.
Preferred Skills
- Familiarity with Microsoft O365 environments and security best practices for hybrid identity.
Pay range and compensation package
$170,000 - $180,000
Equal Opportunity Statement
We are committed to diversity and inclusivity in our hiring practices.
Salary : $170,000 - $180,000