Windows Administrator (m/f/d)
Halian | Managed Services, Recruitment Agency & Contract Staffing
Abu Dhabi Emirate, United Arab Emirates · À temps plein
Soyez le premier à postuler
- Expérience
- 4–8 yrs
- Salaire
- —
- Ouvertures
- 1
- Publié
- il y a 12 heures
Where you'll work
Description de l'emploi
Role Overview
This position focuses on keeping a large-scale Windows environment secure, stable, and compliant. The successful candidate will handle server patching, strengthen Active Directory security, and apply security baselines across more than 10,000 endpoints while meeting internal controls and recognized standards such as CIS benchmarks.
Core Duties
- Manage the complete patching cycle for Windows servers using WSUS and SCCM.
- Roll out operating system and application updates on schedule across enterprise environments.
- Track patch compliance levels and prepare reports for audits and leadership.
- Investigate failed patch deployments and carry out corrective actions.
- Keep patching aligned with CIS benchmarks and internal security requirements.
Active Directory Security
- Apply and maintain strong Active Directory security practices.
- Support privileged access management and role-based access control.
- Configure and maintain secure Kerberos settings and related policies.
- Review user permissions, privileged accounts, group memberships, and service accounts on a regular basis.
- Spot AD weaknesses and configuration issues, then remediate them.
Group Policy and Endpoint Baselines
- Create and manage Group Policy Objects for organization-wide security settings.
- Deploy security baselines across servers and workstations at scale.
- Ensure endpoint configurations meet internal standards and CIS recommendations.
- Continuously review GPOs to improve efficiency and compliance.
Compliance and Operations Support
- Help the infrastructure remain aligned with internal policies and regulatory obligations.
- Provide proof of patching and configuration compliance for internal and external audits.
- Keep clear records of system settings, patching progress, and Active Directory changes.
- Work with cybersecurity teams during vulnerability response and incident handling.
Infrastructure Maintenance
- Support on-premises and hybrid Windows Server environments.
- Carry out routine health checks and preventative maintenance.
- Assist with identity and access management processes in Active Directory.
- Contribute to infrastructure improvement and automation initiatives.
Education and Experience
A bachelor’s degree in Information Technology, Computer Science, Networking, or a similar discipline is required. The role calls for 4–8+ years of experience in Windows Server administration and Active Directory management in large enterprise settings. Experience working with more than 10,000 endpoints is strongly preferred. Hands-on exposure to WSUS, SCCM, and GPO design/enforcement is expected.
Technical and Soft Skills
Strong working knowledge of Windows Server 2016, 2019, and 2022, Active Directory architecture and security, Kerberos authentication, CIS hardening practices, endpoint security compliance tools, hybrid environments that combine on-premises infrastructure with Azure AD, and PowerShell scripting is important. The role also requires strong troubleshooting ability, a detail-oriented security mindset, the capacity to operate in complex environments, and solid communication and teamwork skills.
Certifications
Preferred or required certifications include Microsoft Certified: Windows Server Hybrid Administrator Associate and Microsoft 365 Certified: Security Administrator Associate. Additional beneficial certifications include Microsoft Certified: Azure Administrator Associate and CISSP or Security+.
Key Competencies
- Windows patching and compliance management
- Active Directory security administration
- Endpoint security and baseline enforcement
- Group Policy design and policy control
- Infrastructure reliability and operations
- Security risk awareness and mitigation
Location
This role is based in Abu Dhabi, United Arab Emirates, and is intended for onsite work.