Role & responsibilities
We are looking for an experienced Microsoft Infrastructure & Cloud Engineer L2/L3 to provide administration, troubleshooting and operational support for a customer's Microsoft infrastructure environment.The candidate will be responsible for Windows Server, Active Directory, Microsoft 365, Exchange Online, Microsoft Entra ID/Azure AD Connect and Azure infrastructure, along with supporting Microsoft security and endpoint management activities.The engineer will act as an L2/L3 technical escalation point, independently troubleshoot complex infrastructure issues, support P1/P2 incidents, perform root-cause analysis and implement approved infrastructure changes.
The customer environment uses Microsoft 365 E3 with Microsoft Defender capabilities.
Microsoft 365 & Exchange Online
- Administer Microsoft 365 tenant services.
- Manage users, licenses, groups and administrative roles.
- Administer Exchange Online mailboxes and distribution groups.
- Troubleshoot Exchange Online and mail-flow issues.
- Perform message tracing and email troubleshooting.
- Troubleshoot Outlook/M365 authentication and connectivity issues.
- Manage Microsoft Entra ID users and groups.
- Support MFA and Conditional Access.
- Support Microsoft 365 security and compliance activities.
- Support access/RBAC reviews.
- Assist with DLP-related activities where applicable.
Azure Cloud
- Administer Azure Virtual Machines and Azure resources.
- Provision, modify and decommission Azure resources.
- Troubleshoot Azure VM availability, performance and connectivity.
- Manage Azure RBAC and access permissions.
- Configure and troubleshoot Azure Network Security Groups (NSG).
- Support Azure networking, VNet and subnet-related troubleshooting.
- Monitor Azure infrastructure health and resource utilization.
- Support Azure monitoring and alerting.
- Identify Azure resource rightsizing and cost-optimization opportunities.
- Troubleshoot Azure infrastructure incidents.
- Coordinate with Microsoft/OEM support for complex issues.
Windows Server
- Administer Windows Server 2016/2019/2022 environments.
- Perform server monitoring and health checks.
- Troubleshoot Windows Server issues.
- Perform OS patching and remediation.
- Troubleshoot Windows services and Event Viewer issues.
- Manage NTFS and file/share permissions.
- Troubleshoot server performance issues.
- Support legacy/EOL Windows Server systems.
- Participate in server upgrades and migration activities.
- Perform RCA for recurring server issues.
Microsoft Security & Endpoint
- Support Microsoft Defender administration and troubleshooting.
- Support endpoint compliance and Windows patching.
- Investigate security alerts and coordinate with security teams.
- Coordinate with CrowdStrike for EDR-related incidents.
- Support MFA enforcement across Microsoft 365/Azure.
- Support DLP monitoring where applicable.
- Participate in vulnerability remediation.
- Support critical security incident response and escalation.
Incident, Problem & Change Management
- Handle L2/L3 infrastructure incidents.
- Act as the escalation point for complex Microsoft issues.
- Support P1/P2 incidents and major incident resolution.
- Perform technical troubleshooting and root-cause analysis.
- Implement approved changes.
- Support emergency changes during critical incidents.
- Maintain detailed incident and change documentation.
- Coordinate with internal teams, OEMs and technology vendors.
- Ensure SLA compliance.
Mandatory Technical SkillsMust Have
- Strong Windows Server administration
- Strong Active Directory administration
- Group Policy (GPO)
- AD replication and troubleshooting
- DNS/DHCP fundamentals
- Strong Microsoft 365 Administration
- Strong Exchange Online
- Strong Microsoft Entra ID / Azure AD
- Strong Azure AD Connect / Microsoft Entra Connect
- Hybrid Identity
- Strong Azure VM administration
- Strong Azure RBAC
- Strong Azure NSG
- Azure networking fundamentals
- MFA / Conditional Access
- Microsoft Defender
- Windows Server patching
- PowerShell
- L2/L3 troubleshooting
- P1/P2 incident handling
- RCA and problem management
- Change management
Good to Have
- Microsoft Intune
- Microsoft Defender for Endpoint
- Microsoft Defender for Office 365
- Microsoft Purview / DLP
- Azure Monitor
- Azure Backup
- CrowdStrike
- NinjaOne
- Veeam
- Basic networking knowledge - TCP/IP, DNS, DHCP, VPN
- FortiGate exposure
- Aruba/Extreme Networks exposure
Experience
- 5-8 years of hands-on experience in Microsoft infrastructure.
- Strong production experience in Active Directory and Windows Server.
- Strong hands-on experience with Microsoft 365 and Exchange Online.
- Hands-on Azure administration experience.
- Experience with hybrid AD/Entra environments.
- Experience troubleshooting complex Microsoft infrastructure issues.
- Experience working as an L2/L3 escalation engineer.
- Experience handling P1/P2 incidents.
- Managed Services experience is preferred.
- Customer-facing experience is preferred.
Certifications – Preferred
- AZ-104 – Microsoft Azure Administrator
- MS-102 – Microsoft 365 Administrator
- SC-300 – Microsoft Identity and Access Administrator
- AZ-800 / AZ-801 – Windows Server Hybrid Infrastructure
- SC-900 – Security, Compliance and Identity Fundamentals
Certifications are preferred, but strong hands-on production experience is more important.
Candidate Profile
The ideal candidate should be a hands-on Microsoft L2/L3 Infrastructure Engineer capable of independently handling complex production issues. The preferred skill combination is:Windows Server + Active Directory + Microsoft 365 + Exchange Online + Entra ID + Azure + Azure AD Connect + PowerShell + Microsoft SecurityThe candidate should be able to take an issue from:Incident Troubleshooting Resolution RCA Corrective Actionand should not be dependent on another team for routine L2/L3 Microsoft administration and troubleshooting.
Key Screening Criteria for Consultant
Please submit candidates only if they meet the following core requirements:
- 5-8 years relevant Microsoft infrastructure experience.
- Strong hands-on Active Directory and Windows Server experience.
- Strong Microsoft 365 and Exchange Online experience.
- Hands-on Azure administration experience.
- Azure AD Connect / Microsoft Entra Connect experience.
- Hybrid identity experience.
- Strong troubleshooting capability.
- PowerShell knowledge.
- L2/L3 production support experience.
- P1/P2 incident-handling experience.
- Managed Services experience preferred.
- Available for Bangalore onsite deployment.