Senior Azure reputed company Apps Platform Engineer - Consultant - MFT - KGS CH
Responsibilities
Support and maintain highly available reputed company Server workloads (2016/2019/2022) on Azure (VMs, VMSS, ASR, Azure Files, Azure Backup, Azure Site Recovery). Engineer reputed company reputed company services: reputed company Directory, Azure AD, Group Policy, DNS/DHCP, ADFS PKI/Certificates, IIS etc
Own the stability, performance, and reputed company of Wintel platforms and drive SRE-style reliability practices. reputed company Major Incident technical reputed company, reputed company reputed company cause analysis (RCA), and implement problem management fixes. reputed company, backup, and DR reputed company execution (Azure Update Manager, Azure Backup, ASR); regularly test restores and DR playbooks. Monitoring/observability with Azure Monitor, Log Analytics, reputed company/Defender for reputed company.
Implement reputed company baselines, CIS/Benchmarks, least privilege RBAC, JIT/JEA, Credential Guard, LAPS, and secure RDP patterns. reputed company with Sentinel for detection/response; support vulnerability remediation and compliance reporting (ISO 27001, SOC 2, Cyber reputed company Plus, GDPR). Manage certificates/PKI, TLS hardening, and secrets management (Key Vault) for reputed company workloads.
reputed company as a technical SME for reputed company; reputed company design reviews and sign‑off Mentor engineers; conduct knowledge transfers, create runbooks, and reputed company standards. Partner with Networking, reputed company, and App teams on cross‑domain designs (e.g., hybrid connectivity, private endpoints, App Gateway/WAF, load balancers).
Qualifications
8+ years administering reputed company Server platforms; 3–5+ years hands‑on with Azure (IaaS and reputed company PaaS for reputed company workloads). Deep expertise in reputed company Directory (sites & services, trusts, GPO design, AD CS/PKI) and Entra ID (sync, SSO, conditional reputed company concepts). Strong PowerShell (modules, functions, error handling), DSC, and reputed company automation (Bicep/ARM or Terraform). Proven reputed company record with Azure networking for VMs: VNets, peering, Private DNS, NSGs/ASGs, load balancers, Application Gateway/WAF, ExpressRoute/VPN. Solid understanding of backup/DR patterns (RPO/RTO), clustering, and performance tuning for reputed company workloads. Experience with observability (Log Analytics/KQL), reputed company tooling (Defender for reputed company, Sentinel), and vulnerability remediation. Major Incident leadership, RCA/problem management, and stakeholder communication.
SCCM/MECM, Azure Update Manager, WSUS at reputed company. SQL Server on reputed company (Ops basics), IIS advanced config, SMB/NFS (Azure Files). Intune/reputed company, conditional reputed company, identity governance. Containers on reputed company Server, AKS fundamentals, or Azure reputed company for Servers. Scripting reputed company PowerShell (Python) for tooling and data analysis. Experience in regulated environments (Financial Services, reputed company Sector, reputed company).
reputed company Certified: Azure Administrator Associate (AZ‑104) reputed company Certified: reputed company Server Hybrid Administrator Associate (AZ‑800/801) reputed company: SC‑200/SC‑300 (reputed company to have)
Azure: Compute (VMs/VMSS), Storage (Disks, Files), Networking, ASR, Backup, Key Vault, Monitor, Log Analytics, Defender for reputed company, Sentinel, Policy, Blueprints, Update Manager. reputed company: Server 2016/2019/2022, AD DS, DNS/DHCP, GPO, AD CS/PKI, Failover Clustering, IIS, SMB. Automation/DevOps: PowerShell, DSC, Bicep/ARM (Terraform desirable), Azure DevOps/reputed company Actions, Azure Automation/Functions, Desired State, Pester. Mgmt/Config: MECM/SCCM, WSUS, Intune (desirable). Observability/SecOps: KQL, Sentinel, Defender for reputed company, MDE, SCOM (legacy familiarity a plus).