A senior role responsible for managing, securing, and improving the enterprise IT environment with a focus on Microsoft 365, security controls, endpoint management, and supporting organizational IT operations in a dynamic startup setting.
Key Responsibilities
Administer and maintain Microsoft 365 services including Exchange Online, SharePoint Online, OneDrive, and Teams.
Manage Microsoft 365 licensing, permissions, external sharing, retention, and secure collaboration governance.
Administer Microsoft Entra ID Azure AD, including user lifecycle, groups, RBAC, and troubleshooting.
Design, implement, and maintain security controls such as Conditional Access, MFA, and identity security measures.
Operate and optimize Microsoft Defender services, including Defender for Endpoint and Defender for Office 365.
Implement and maintain Microsoft Purview features like Sensitivity labels and Data Loss Prevention across M365 workloads.
Support security investigations, control tuning, and audit preparations.
Manage endpoint devices using Microsoft Intune, including enrollment, compliance, configuration, and deployment.
Collaborate with teams to resolve technical issues, improve workflows, and enhance system effectiveness.
Provide senior technical support and guidance for complex or escalated IT issues.
Requirements
Five years of dedicated hands-on experience in systems administration roles.
Ten years of total IT experience across infrastructure, systems, and user support environments.
Deep experience managing Microsoft 365, ideally in an E5 licensed environment.
Practical, production experience with Microsoft Entra ID Azure AD, including user lifecycle management, groups, RBAC, and identity troubleshooting.
Experience designing, implementing, and maintaining Conditional Access, Multi-Factor Authentication (MFA), and baseline identity security controls.
Experience operating and optimizing Microsoft Defender services, including Defender for Endpoint and Defender for Office 365.
Experience implementing and maintaining Microsoft Purview capabilities, including Sensitivity labels and Data Loss Prevention (DLP) across Microsoft 365 workloads.
Experience supporting security investigations, control tuning, and audit-ready configurations.
Experience contributing to IT workstreams supporting SOX and TISAX compliance, including process execution, evidence collection, access reviews, and control documentation.
Experience managing Microsoft Intune for device enrollment, compliance policies, configuration profiles, and application deployment.
Ability to improve endpoint security posture, patching, and device lifecycle management across Windows, macOS, and mobile platforms.
Ability to provide senior-level technical support and guidance for complex or escalated IT issues.
Strong communication skills and a collaborative, service-oriented mindset.
Experience supporting regulated environments, audits, or compliance initiatives (Nice to Have).
Experience with PowerShell scripting for automation, reporting, and administration (Nice to Have).
Relevant Microsoft certifications in M365, Security, or Endpoint technologies (Nice to Have).
Work environment perks: Collaborative, service-oriented team in a dynamic startup environment
Additional benefits: Opportunities for ownership across core platforms, exposure to compliance and security initiatives, and potential for professional growth
Ready to Apply?
Join Factorial Energy and make an impact in renewable energy