IT System Administrator
Job Description
Key Skills Required
Master these to land this role
Want to know if you're a match for this job?
SpecterOps is seeking a highly skilled IT System Administrator to join their internal corporate IT team. The role involves the design, deployment, administration, and optimization of enterprise IT infrastructure across cloud and hybrid environments. The ideal candidate must have a strong operational mindset, thrive in fast-paced, security-conscious research environments, and report directly to the Director of Information Technology.
The role is an individual contributor position best suited for an experienced and certified IT professional who can work both independently and collaboratively with teams across Security, Compliance, Engineering, and other business operations to achieve company-wide goals.
Responsibilities:
- Manage and maintain core infrastructure components, including servers, networking, and storage, and administer SaaS platforms to monitor performance and availability.
- Perform routine patching, backup verification, and health checks, and support cloud infrastructure tasks (VMs, storage, networking) in Azure/AWS.
- Administer Entra ID groups (dynamic and assigned), roles, and service principals, and configure and maintain Conditional Access policies.
- Manage MFA enrollment and self-service password reset, and support identity lifecycle automation (provisioning/deprovisioning), including participation in access reviews and audit evidence collection.
- Manage Intune device compliance policies, configuration profiles, and app deployments, and administer Windows Autopilot and macOS enrollment workflows.
- Monitor device compliance dashboards, remediate non-compliant devices, manage patch deployment cycles, and support mobile device management (iOS/Android) policies.
- Administer Exchange Online (mailboxes, distribution groups, mail flow rules), manage SharePoint sites, permissions, and storage policies, and configure OneDrive sync and data governance policies.
- Support SaaS administration, including guest access and policy management, and participate in M365 license management and optimization.
- Implement and administer AI solutions across the environment, including platform deployment and configuration, MCP server connections, and integrations with existing enterprise systems.
- Administer endpoint security tools (Microsoft Defender, EDR), assist in vulnerability scanning and remediation tracking, and support compliance evidence collection for audits (ISO 27001, SOC 2).
- Independently resolve complex Tier 2/3 escalations across servers, network, and infrastructure, diagnose and resolve authentication, connectivity, and platform issues, and develop and refine escalation playbooks and operational runbooks.
- Mentor Associate Systems Administrators on troubleshooting techniques and contribute to SLA/OLA monitoring for infrastructure services.
- Participate in Change Advisory Board (CAB) processes for standard and normal changes, maintain and audit the IT asset management (ITAM) database, and contribute to problem management investigations.
- Write and maintain PowerShell or Python scripts for IT operational tasks, automate onboarding/offboarding workflows using Entra ID and HR integrations, and build Power Automate flows for service request processing.
- Participate as a technical responder during infrastructure and service incidents, conduct root cause analysis, contribute to post-incident reports, and support on-call rotation coverage.
- Create and maintain standard operating procedures (SOPs), operational runbooks, and IT asset/configuration documentation.
- Execute against quarterly IT operational plans and team OKRs, and participate in cross-functional project teams as a technical contributor.
In addition to core responsibilities, the role is ideal for candidates who possess:
- Strong analytical and problem-solving skills with a systematic troubleshooting methodology.
- Excellent written and verbal communication skills; able to convey technical concepts to non-technical stakeholders.
- Demonstrated ability to manage multiple priorities in a high-paced, security-sensitive environment.
- Collaborative team player with the ability to work cross-functionally with IT Security, DevOps, and other business units.
- High degree of professionalism, personal accountability, and discretion when handling sensitive systems and data.
- Willingness to participate in an on-call rotation and respond to after-hours critical incidents as needed.
Requirements:
- 4+ years of progressive IT experience, including 2+ years in a systems administration role.
- Hands-on experience administering Windows Server, Active Directory, DNS/DHCP, and Linux, along with core infrastructure components such as servers, networking, and storage.
- Experience supporting cloud infrastructure tasks (VMs, storage, networking) in Azure and/or AWS, and administering SaaS platforms for performance and availability.
- Proficiency administering Entra ID (Azure AD), including dynamic/assigned groups, roles, service principals, Conditional Access policies, MFA enrollment, and self-service password reset.
- Experience managing Microsoft Intune device compliance policies, configuration profiles, app deployments, and Windows Autopilot/macOS enrollment workflows.
- Working knowledge of Microsoft 365 administration, including Exchange Online, SharePoint, OneDrive, and Teams.
- Familiarity administering endpoint security tools (Microsoft Defender, EDR) and supporting vulnerability scanning, remediation tracking, and compliance evidence collection (e.g., ISO 27001, SOC 2).
- Experience with ITIL-based ITSM practices, including participation in Change Advisory Board (CAB) processes and IT asset management (ITAM) database maintenance.
- Scripting ability in PowerShell or Python for operational automation, and experience building low-code workflows (e.g., Power Automate) for service request processing.
- Ability to work independently with limited direction while collaborating with managers on prioritization.
- Consistently professional verbal and written communicator, able to present complex technical topics in accessible terms to non-technical stakeholders.
- Strong problem-solving skills with the ability to clearly articulate issues and propose effective solutions within the function.
- Willingness to contribute to an on-call rotation and act as a technical responder for infrastructure and service incidents.
Nice to Haves:
- AWS certifications (e.g., SysOps Administrator, Solutions Architect β Associate) and Microsoft certifications (e.g., Azure Administrator Associate, Microsoft 365 Certified: Administrator Expert) relevant to the platforms supported in this role.
- ITIL Foundation certification or equivalent hands-on exposure to formal service management processes (incident, change, and problem management).
- Familiarity with security and compliance frameworks (ISO 27001, SOC 2) and experience supporting audit evidence collection in a security-conscious environment.
- Exposure to zero-trust identity concepts, Privileged Identity Management (PIM), or SIEM/EDR tuning, reflecting readiness to grow into more senior systems administration responsibilities.
How would you rate this job post?
See what other professionals think about this role.
Similar Opportunities
Train and Evaluate AI Agents in CAD Environments (Freelance)
Mindrift
United StatesTrain and Evaluate AI Agents in CAD Environments (Freelance)
Mindrift
United StatesSenior Engineer β DoD/U.S. Navy Energetics Facility Design and Construction
Eastern Research Group
United StatesSecurity Operations Specialist
HiddenLayer
United StatesMore Openings at SpecterOps
Explore Top Companies in this Space
Obsidian Security
Cybersecurity / SaaS Security Posture Management (SSPM) / AI & Identity Threat Detection
1Kosmos
Computer and Network Security / Cybersecurity / Identity Verification
Innovatrics
AI / Cybersecurity / Enterprise Software / Identity Management
Lumos
Enterprise Software / Identity & Access Management / Cybersecurity / AI
SpecterOps
View Company ProfileSpecterOps is the premier, enterprise-grade cybersecurity solutions pioneer, Identity Attack Path Management innovator, and offensive tradecraft powerhouse engineered to operate as the definitive, proactive defense and threat elimination layer for global enterprises, financial institutions, and national security networks. The company completely eliminates the severe systemic friction of modern enterprise infrastructure defenseβwhere security operations center (SOC) cells struggle against complex, deeply nested privilege escalation paths, misconfigured directory service permissions, and invisible lateral adversary movements that bypass traditional endpoint detection systemsβby deploying an advanced, graph-based security ecosystem. Moving far beyond traditional, passive vulnerability scanners or generic penetration testing services, SpecterOps natively unifies real-time identity relationship mapping across Active Directory and Azure AD (Entra ID), automated security choke-point isolation, step-by-step impact-aware remediation pipelines, and elite red-teaming adversary simulations into its flagship corporate workspace, BloodHound Enterprise. As the creators and maintainers of BloodHoundβthe world's leading open-source tool for visualizing hidden directory attack paths trusted by an ecosystem of over 20,000 security expertsβthe institution empowers global security cells to enforce strict least-privilege models and dismantle millions of exploit paths with a single strategic patch. Under the hood, its sophisticated technical practiceβbacked by a massive $75 million Series B funding round led by Insight Partners along with Cisco Investments and M12βnatively orchestrates advanced graph database infrastructure pipelines, patent-protected directory services analysis loops, and secure cloud-to-edge risk profiling grids. What sets SpecterOps apart is its uncompromising dedication to replacing blind, reactive patching cycles with absolute threat-informed architectural momentum; by bridging the gap between deep offensive research and automated, deterministic enterprise hazard mitigation, the firm remains the definitive cornerstone of modern enterprise identity protection and cloud security management.
Safety First
- Never pay for a job application.
- Do not share sensitive bank info.
- Verify the client before starting work.