ASM Research

System Administrator

ASM Research United States

IT Services and IT Consulting · 1,001-5,000 employees

4 h ago
Remote sysadmin Mid (2-5 yrs) Full-time United States
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The System Administrator manages Windows Server infrastructure, including Active Directory, DNS, DHCP, and file services in a federal environment. They are responsible for server hardening, patching, vulnerability remediation, and automating operational tasks using PowerShell.

What they look for

Windows Server Active Directory DNS DHCP PowerShell Server Hardening Vulnerability Remediation Patch Management System Administration Group Policy NTFS Permissions Network Troubleshooting Identity Management Access Management Performance Monitoring Backup and Recovery

Requirements

Candidates must have at least 4 years of experience in Windows Server administration and Active Directory management. Strong proficiency in PowerShell scripting and knowledge of enterprise network concepts are required, along with U.S. citizenship.

Full description

The System Administrator administers Windows Server infrastructure supporting enterprise directory services, domain services, file services, and integrated identity, credential, and access-management capabilities in a regulated federal IT environment. The role maintains reliable, secure, and high-performing operation of distributed domain controllers, DNS, DHCP, file servers, and directory-integrated systems serving a large user population.

The System Administrator implements server hardening, patching, vulnerability remediation, monitoring, recovery, and automation activities in accordance with approved security baselines and operational procedures. This position collaborates with directory engineering, cybersecurity, and network teams to troubleshoot cross-platform infrastructure issues, sustain authentication and directory-service availability, and improve operational consistency through PowerShell-based administration and reporting.

 

Key Responsibilities

  • Administer Windows Server 2016, 2019, and 2022 environments supporting enterprise directory services, including server builds, configuration, roles and features, service management, local security policy, patching, performance monitoring, backup, recovery, storage, and technical troubleshooting.
  • Manage Active Directory Domain Services infrastructure, including domain controllers, directory replication, organizational units, users and groups, Group Policy dependencies, directory-integrated applications, and authentication-related service dependencies.
  • Administer Domain Name System services supporting enterprise directory operations, including Active Directory-integrated zones, forward and reverse lookup records, secure dynamic updates, zone replication, domain-controller DNS client configuration, and name-resolution troubleshooting.
  • Administer DHCP services in distributed environments, including scopes, address reservations, exclusions, lease monitoring, DHCP options, failover considerations, and DHCP-to-DNS dynamic-update integration.
  • Administer Windows file servers, including share and NTFS permissions, access-based security, capacity monitoring, quota management, audit settings, file-service availability, and resolution of user-access issues.
  • Apply approved Windows Server, Active Directory, and DNS security configuration baselines, including Security Technical Implementation Guide requirements, secure configuration validation, remediation tracking, and documentation of approved exceptions or residual risk.
  • Plan and execute server patching, updates, vulnerability remediation, and maintenance activities by performing dependency analysis, coordinating maintenance windows, preparing backups and rollback procedures, validating implementation results, and capturing required evidence.
  • Monitor and troubleshoot server availability, processor and memory utilization, disk capacity and I/O, service status, directory replication, DNS health, authentication events, and network connectivity using native Windows tools and enterprise monitoring platforms.
  • Develop and maintain PowerShell scripts for server inventory, configuration validation, Active Directory and DNS reporting, health checks, patch-status reporting, routine maintenance, bulk administrative tasks, and repeatable operational workflows.
  • Collaborate with directory engineers, cybersecurity personnel, and network teams to diagnose infrastructure issues, assess operational impact, coordinate remediation, and sustain availability of mission-critical authentication and access services.

 

Required Qualifications

  • High school diploma or equivalent and at least 4 years of experience administering Windows Server environments, enterprise infrastructure, or related systems-administration functions.
  • Strong hands-on experience administering Windows Server 2016, 2019, and/or 2022 environments, including server configuration, operating-system maintenance, service management, patching, monitoring, troubleshooting, backup, and recovery.
  • Demonstrated experience administering Active Directory Domain Services, including domain controllers, directory replication, users and groups, organizational units, Group Policy dependencies, directory-integrated applications, and authentication-related services.
  • Experience administering DNS and DHCP services in a distributed enterprise environment, including DNS zones and records, secure dynamic updates, name-resolution troubleshooting, DHCP scopes, reservations, lease monitoring, options, and DNS integration.
  • Experience administering Windows file services, including share permissions, NTFS permissions, access-based security, capacity management, quotas, auditing, and user-access troubleshooting.
  • Demonstrated ability to apply secure Windows Server, Active Directory, and DNS configuration baselines; execute patching and vulnerability-remediation activities; and document validation results, risks, and approved exceptions.
  • Strong PowerShell scripting skills for server inventory, health checks, configuration validation, Active Directory and DNS reporting, patch-status reporting, bulk administrative tasks, and routine operational workflows.
  • Working knowledge of enterprise network concepts, including TCP/IP, DNS, DHCP, ports, firewalls, routing, load balancing, network segmentation, certificate dependencies, and connectivity troubleshooting.
  • U.S. citizenship and ability to obtain and maintain a Public Trust background investigation.

 

Preferred Qualifications

  • Microsoft certification in Windows Server administration, hybrid infrastructure, Azure administration, identity and access administration, or a related infrastructure discipline.
  • Security+ or another relevant cybersecurity certification, paired with experience applying secure configuration baselines and vulnerability-remediation procedures.
  • ITIL 4 Foundation certification or practical experience supporting formal incident, problem, change, and configuration-management processes.
  • Experience supporting high-availability Active Directory, DNS, DHCP, file-service, or identity-related infrastructure in a regulated federal IT environment.

Qualifications

Compensation Ranges

Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.

 

EEO Requirements

It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.

 

All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.

 

Physical Requirements

The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.

 

Disclaimer

The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.

Similar roles