Full-Time

Senior Systems Administrator

IT

Updated on 9/4/2026

Deadline 8/18/27
Racker

Racker

Compensation Overview

$75k - $85k/yr

+ Retirement plan employer match

Ithaca, NY, USA

Hybrid

Hybrid role based in Ithaca, New York.

Category
IT Operations (1)
Required Skills
PowerShell
Microsoft Azure
LDAP
Git
Microsoft Windows
Computer Networking
Version Control
Hyper-V
Penetration Testing
DevOps
Requirements
  • At least 4 years of Windows systems administration experience in a production environment.
  • Deep hands-on expertise with Active Directory, including Group Policy Objects, Domain Name System, Dynamic Host Configuration Protocol, replication, Flexible Single Master Operations, and Active Directory security.
  • Strong PowerShell scripting and automation skills.
  • Solid administration experience with Microsoft 365 and Entra ID, including Exchange Online, Conditional Access, and multifactor authentication.
  • Working knowledge of Windows Server, Hyper-V, and core networking, including Domain Name System, Dynamic Host Configuration Protocol, virtual private networks, and firewalls.
  • Knowledge of security hardening, least privilege, certificate and public key infrastructure fundamentals, and patch management.
  • Comfort with Git version control and disciplined technical documentation.
Responsibilities
  • Administer on-premises Active Directory, including domain controllers, replication health, Flexible Single Master Operations roles, Sites and Services, Domain Name System, and Group Policy design, testing, and staged fleet rollout.
  • Manage hybrid identity through Entra Connect synchronization, Active Directory Federation Services, hybrid Azure Active Directory join, and troubleshooting of device state and Primary Refresh Token acquisition.
  • Administer Microsoft 365 and Entra ID, including user lifecycle, licensing, Conditional Access, multifactor authentication enforcement, and Privileged Identity Management.
  • Maintain service-account hygiene, conduct privileged-group reviews, and enforce least-privilege access.
  • Drive security-hardening initiatives, remediate penetration-test findings, and apply security baselines.
  • Manage Windows Firewall policy centrally through Group Policy Objects and maintain the internal public key infrastructure and certificate lifecycle.
  • Maintain audit trails and operator attribution for sensitive actions.
  • Manage the Hyper-V virtualization fleet, server lifecycle, and storage.
  • Administer multi-site network infrastructure, including FortiGate virtual private network tunnels, UniFi wireless and switching, Dynamic Host Configuration Protocol, and Domain Name System.
  • Plan and deploy Windows updates fleet-wide and monitor and orchestrate update operations.
  • Own backup and disaster recovery by validating jobs, managing retention, and testing restores.
  • Operate and tune the Graylog security information and event management system and event-log pipeline, and triage alerts across security platforms.
  • Develop and maintain PowerShell automation.
  • Maintain and extend internal operations tooling, including a custom dashboard and scheduled or automated reporting.
  • Use Azure DevOps for source control, continuous integration and continuous delivery pipelines, work tracking, and documentation.
  • Maintain operational runbooks, change logs, and a knowledge-base wiki.
  • Follow a methodical, change-managed approach for high-risk changes by auditing, staging, and validating them.
  • Provide escalation support for endpoint, identity, email, and access issues, and partner with help-desk operations on service-level-agreement-tracked tickets.

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A