Duration: FTE/Perm
Location: Hybrid in NYC
Salary: 170-200k +bonus
A direct client is seeking a Senior Windows Infrastructure / Systems Engineer to join their organization at the Director level. This role is ideal for a candidate who has spent the majority of their career owning enterprise Windows environments and has naturally evolved into hybrid/cloud infrastructure. The ideal candidate's strongest skill set will be in Windows infrastructure, complemented by solid working knowledge of Azure/cloud, VMware, and automation.
Approximate scope of role:
- 60% Windows / Microsoft Infrastructure
- 5% Automation, Security, Monitoring & adjacent technologies
Responsibilities
- Own and manage enterprise Windows Server environments (2016/2019/2022/2025), including builds, lifecycle management, patching, and vulnerability remediation
- Administer and troubleshoot Active Directory Domain Services, including AD replication, Sites & Services, and Kerberos/Windows authentication
- Manage DNS and DHCP infrastructure, including investigating DNS-related application failures
- Design, consolidate, and maintain Group Policy across the environment
- Manage NTFS/share permissions and ACLs
- Diagnose and resolve server performance issues related to CPU, memory, storage, or network
- Lead or support Windows Server upgrades and DC replacements at scale
- Support and maintain Azure infrastructure, including VMs, networking (VNets/subnets, NSGs, private endpoints), storage, backup, and Site Recovery
- Manage identity services including Entra ID, hybrid identity, managed identities/service principals, and RBAC
- Monitor infrastructure health using Azure Monitor and related tooling
- Support VMware virtualization environments (vSphere, ESXi, vCenter), including VM provisioning, HA/DRS configuration, and VM performance troubleshooting
- Develop automation and reporting using PowerShell, including server health checks, AD reporting, patch compliance reporting, certificate expiration reporting, and bulk server configuration
- Collaborate with infrastructure/storage teams on compute and SAN considerations, including zoning, multipathing, capacity, latency, and redundancy
Required Skills & Qualifications
- Significant, hands-on experience with Windows Server 2016/2019/2022/2025
- Deep expertise in Active Directory Domain Services, AD replication, Sites & Services, Kerberos, and Windows authentication
- Strong working knowledge of DNS and DHCP
- Experience designing, consolidating, and troubleshooting Group Policy
- Solid understanding of NTFS/share permissions and ACLs
- Familiarity with certificate infrastructure / PKI
- Demonstrated experience with server lifecycle management, patching, and vulnerability remediation
- Proven ability to troubleshoot server performance issues (CPU, memory, storage, network)
- Experience managing Windows Server upgrades at scale
- Working experience with Azure infrastructure, including:
- Entra ID, hybrid identity, managed identities/service principals, RBAC
- Familiarity with AWS or another public cloud platform
- Working knowledge of VMware virtualization, including vSphere, ESXi, vCenter, VM provisioning, HA/DRS, VMware networking, and VM performance troubleshooting
- Demonstrated PowerShell scripting and automation experience (health checks, AD reporting, patch compliance, certificate expiration reporting, bulk configuration)
- General understanding of compute and SAN/storage concepts, including zoning, multipathing, capacity, latency, and redundancy
Preferred Skills & Qualifications
- Experience with PaaS technologies such as Function Apps, App Services, or Containers
- Direct experience with Cisco UCS and/or Pure Storage (candidates with equivalent experience — e.g., Dell PowerEdge + NetApp, or HPE + Dell EMC — are strongly encouraged to apply)
- Prior exposure to Citrix environments
- Broader cloud architecture experience beyond core infrastructure administration