Job Details
Job Location: Deer Park, TX 77536
Position Type: Full Time
Job Shift: Must Be Flexible
Job Category: Banking
Responsibilities
- Design, implement, administer, maintain, and support Shell FCU’s network, servers, communications, and infrastructure systems to ensure innovation, stability, security, and high availability.
- Plan, develop, install, configure, secure, maintain, support, and optimize all network and server hardware, systems, SaaS, software, virtualization platforms, and communication links.
- Drive innovation and roll out new technology systems, including elements of technical project management, critical thinking, and documentation when changing or implementing staff/member‑impacting systems.
- Occasionally analyze and resolve end‑user hardware and software issues in a timely manner and provide training as needed.
- Consistently meet all Shell FCU Service Commitments, Employee Creed, and Service Distinctions.
- Maintain knowledge of and comply with all applicable rules and regulations within the scope of duties, including the Bank Secrecy Act.
- Attend all required annual training sessions.
- Perform duties in compliance with Shell FCU policies, procedures, philosophy, and standards of performance.
- Design, deploy, maintain, troubleshoot, and manage LANs, WANs, VPNs, wireless networks, VLANs, and telephony systems.
- Manage daily operations of Cisco networking components, including VPNs, IDS/IPS, firewalls (ASA/Firepower), and switches to ensure maximum uptime.
- Monitor network performance, identify bottlenecks, and implement corrective solutions to maintain secure and reliable connectivity across servers, workstations, telephony equipment, and branch locations.
- Design, plan, communicate, and implement improvements or replacements of infrastructure to ensure scalability, recoverability, and performance.
- Maintain IP addressing schemes, configuration backups, and security credentials for servers, switches, VPNs, and firewalls.
- Install, configure, and maintain Windows Server operating systems (2016, 2019, 2022, and future versions).
- Administer Active Directory, Group Policy, DNS, DHCP, Certificate Services, File/Print Services, and Remote Desktop Services.
- Perform regular system updates, security patches, and hotfixes using WSUS, KACE, or similar tools to maintain compliance and security.
- Administer virtualization platforms (VMware/Hyper‑V), including provisioning, resource allocation, snapshots, and high‑availability clusters.
- Manage enterprise applications including Microsoft Exchange Online, SQL Server, and Microsoft 365 cloud services.
- Oversee enterprise backup and recovery solutions (Rubrik or equivalent), including routine restore testing.
- Maintain user and group accounts, access rights, and permissions across enterprise systems.
- Monitor server performance and system logs to proactively identify and resolve issues.
- Assist IT Security with vulnerability management by remediating findings from Nessus or similar tools.
- Monitor and respond to alerts from security and performance monitoring systems.
- Assess network threats, conduct vulnerability assessments, and support penetration testing efforts.
- Administer intrusion detection/prevention systems, review security logs, and recommend corrective actions.
- Implement Zero Trust Architecture principles (least‑privilege access, MFA, segmentation) and hybrid cloud security measures (Azure, O365, Entra ID, AWS).
- Prepare for and provide rapid response to security incidents, including malware, viruses, and other malicious attacks.
- Ensure compliance with regulatory requirements and effectively communicate security risks, incidents, and policies to staff and management.
- Participate in disaster recovery and business continuity planning, testing, and incident response scenarios.
- Ensure daily backups and functional restores of critical systems.
- Contribute to change management processes, including documenting configuration changes, recovery procedures, and architecture diagrams.
- Provide advanced technical support to end users and serve as an escalation point for Tier I/II staff.
- Mentor junior administrators and support staff to build team capabilities.
- Lead or assist in the planning, communication, and rollout of new technology systems, ensuring minimal disruption to staff and members.
- Apply critical thinking and project management principles when evaluating, implementing, and documenting system changes or upgrades.
- Work with vendors and internal teams on installations, upgrades, and hardware/software performance issues.
- Maintain system documentation, including configuration changes, access credentials, recovery procedures, and architecture diagrams.
- Performs additional duties as assigned.
Qualifications
- 5+ years of experience in enterprise Windows network and systems administration.
- Proven experience with LAN/WAN/WLAN design, virtualization (VMware/Hyper‑V), enterprise grade storage solutions, and enterprise‑level deployments.
- Strong expertise in Windows Server, Active Directory, Group Policy, DNS, DHCP, and Certificate Services.
- Experience with Microsoft Exchange Online, SQL Server (2016+), and Microsoft 365 design and administration.
- Proven ability to manage Cisco networking components (ASA/Firepower, switches, Meraki).
- Proficiency in network and server security principles, intrusion detection, and vulnerability remediation.
- Knowledge of Zero Trust security, hybrid cloud platforms (Azure, AWS), and perimeter protection.
- Strong troubleshooting, documentation, and organizational skills.
- Ability to work effectively in a fast‑paced, changing environment.
- Bachelor’s Degree or 8+ years of equivalent experience.
- Cisco CCNA certification required; CCNP certification a plus.
- Microsoft certifications preferred (MCSA/MCSE: Windows Server, Azure Administrator).
- VMware or Hyper‑V certifications a plus.
- Additional training in Active Directory, VMware, or Azure environments highly desirable.
- Knowledge of credit union products and services preferred.
- Ability to communicate IT and security concepts clearly to both technical and non‑technical staff.
- Strong analytical and problem‑solving skills, with the ability to present technical concepts to management.
- Excellent written and verbal communication skills.
- Participation in on‑call rotations and occasional after‑hours/weekend work required.
- Must be prepared to participate in disaster recovery, business continuity, and incident response efforts.
- Ability to manage workloads in high‑pressure, time‑sensitive situations.
- Must be able to work in an open‑concept workspace environment.
Physical Demands
Regularly required to bend and stand. May sometimes be able to lift, carry, or move up to 15 pounds.
Working Conditions
Exposure to potential hazardous conditions such as robbery. Employees receive detailed instructions and procedures to minimize risk.
EEO Statement
Shell Federal Credit Union is an equal opportunity and an affirmative action employer and committed to providing equal opportunity for all employees and applicants for employment, without regard to race, religion, color, sex, sexual orientation, gender identity, national origin, age, citizenship status, marital status, protected veteran status, mental and/or physical disability, pregnancy, or any basis prohibited by State or Federal law.
E-Verify
This organization uses E‑Verify in its hiring practices to achieve a lawful workforce.