Overview
Skills
Job Details
About this Position:
Job Title: Senior System Engineer
Responsibilities and Duties:
Network Planning
-
Architect and optimize enterprise-level LAN/WAN topologies, including routers, switches, firewalls, and SD-WAN solutions.
-
Implement VLANs, QoS, and load balancing strategies to ensure secure, efficient traffic management.
-
Perform bandwidth forecasting and traffic analysis using advanced monitoring tools.
-
Document network diagrams and establish network performance baselines for capacity planning.
-
Administer and maintain Cisco, Juniper, Palo Alto, or Fortinet network devices.
-
Leverage enterprise monitoring platforms (Kaseya, Cynet, SolarWinds, Nagios, PRTG) to track availability, uptime, and performance.
-
Manage Windows Server, Linux, and VMware environments, including AD, DNS, DHCP, and GPO management.
-
Configure and secure VPN tunnels (IPSec, SSL) to enable remote workforce operations.
-
Automate system health checks and log monitoring using PowerShell, Bash, or Python scripts.
-
Plan, procure, and integrate enterprise-class servers, SAN/NAS storage solutions, and virtualization platforms (VMware vSphere, Hyper-V, Nutanix).
-
Conduct compatibility analysis and capacity planning for hardware expansion.
-
Deploy and configure end-user devices, thin clients, and multi-factor authentication hardware.
-
Implement imaging and deployment automation tools (SCCM, MDT, Intune).
-
Develop and enforce hardware lifecycle management policies, aligned with warranty and EOL (End of Life) schedules.
-
Create detailed replacement roadmaps for servers, network gear, and endpoints.
-
Negotiate vendor contracts and SLAs for timely procurement and deployment.
-
Leverage IT asset management tools (ServiceNow, Lansweeper, GLPI) for tracking lifecycle status.
-
Design, implement, and audit Zero Trust security frameworks.
-
Develop Identity and Access Management (IAM) policies, leveraging SSO and MFA solutions.
-
Enforce compliance with HIPAA, NIST 800-53, CJIS, and ISO 27001 security standards.
-
Conduct penetration testing and vulnerability assessments using Nessus, Qualys, or OpenVAS.
-
Architect endpoint security solutions using EDR/XDR platforms (Cynet, CrowdStrike, SentinelOne).
-
Deploy and manage SIEM/SOAR platforms (Splunk, QRadar, Azure Sentinel) for real-time event correlation.
-
Monitor and analyze security logs for threat intelligence and incident response.
-
Implement patch management and system hardening using WSUS, SCCM, and Kaseya.
-
Oversee incident response playbooks to reduce MTTR (Mean Time to Resolution).
-
Test and validate disaster recovery plans through regular simulations.
-
Lead cross-functional teams through ITIL/Agile methodologies for system upgrades, migrations, and deployments.
-
Create detailed project roadmaps with milestones, KPIs, and risk registers.
-
Oversee Microsoft 365, SharePoint, and Teams deployments to enhance collaboration.
-
Manage cloud transformation initiatives (Azure, AWS, Google Cloud) with emphasis on hybrid and multi-cloud architecture.
-
Deliver comprehensive monthly reports summarizing uptime, incident trends, SLA compliance, and security posture.
-
Provide Tier III escalation support with rapid response times for critical incidents.
Qualifications and Skills
Experience-
10+ years in enterprise IT support with at least 5 years supporting municipalities or public sector entities.
-
Proven ability to manage environments with 200+ end-users and multiple remote sites.
-
Networking: Advanced knowledge of TCP/IP, DNS, DHCP, BGP, OSPF, MPLS, and VPN technologies.
-
Servers & Virtualization: Expertise with Windows Server, Linux, VMware ESXi/vSphere, Hyper-V, and Active Directory Domain Services.
-
Cloud: Hands-on experience with Microsoft Azure, AWS, and M365 environments (Exchange Online, Intune, SharePoint).
-
Storage & Backup: Familiarity with SAN, NAS, Veeam, Commvault, and Azure Site Recovery.
-
Cybersecurity: Strong expertise with firewalls, IDS/IPS, EDR/XDR, SIEM, IAM, and MFA solutions.
-
Tools: Proficient in Kaseya, IT Glue, Cynet, SolarWinds, ServiceNow, and scripting (PowerShell, Bash).
-
Deep understanding of HIPAA, CJIS, FISMA, NIST 800-53, ISO 27001, and SOC 2 frameworks.
-
Skilled in ITIL v4, Agile, and DevOps practices, with a track record of delivering mission-critical projects.
-
Ability to lead migrations, cloud adoptions, and infrastructure modernization efforts.
-
Exceptional ability to translate technical solutions into executive-level strategies.
-
Strong analytical, problem-solving, and decision-making abilities.
-
Effective stakeholder engagement and cross-department collaboration.
-
Microsoft Certified: Azure Solutions Architect or Systems Administrator
-
Cisco CCNP / CCIE
-
CompTIA Security+ / CySA+ / CASP+
-
VMware Certified Professional (VCP)
-
ITIL v4 Foundation