Left arrow iconBack to search

IT MANAGER/SENIOR SYSTEMS ADMINISTRATOR

3Core Systems , Inc
Posted 2 days ago, valid for 24 days
Location

Littleton, CO, US

Salary

Competitive

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Role: IT MANAGER/SENIOR SYSTEMS ADMINISTRATOR

Location: New York City, NY or Old Greenwich, CT (5Days a Week Onsite)

Duration: Fulltime

 

Coreresponsibilities

·        Identity and accessgovernance: Lead the administration of ActiveDirectory architecture, group design, and the service-account estate: serviceprincipal names, Entra ID application registrations, Graph API access, andcredential rotation through our password vault. Maintain existing access standards,run periodic access and service-account reviews, and evaluate and processaccess exceptions in accordance with established approval procedures.

·        File and storageservices: administer the Windows and Sambafile-server estate across headquarters, the offsite datacenter, and remoteoffices; manage capacity, quotas, and monitoring; plan and execute server andshare migrations; oversee archiving, backup, and data-governance tooling.

·        Email andcollaboration platforms: administer Microsoft 365 andExchange Online, including mail routing, mail security and filtering, DLP,retention and journaling, and the Teams, SharePoint, and OneDrive estate.

·        Server andvirtualization infrastructure: build,patch, and maintain the Windows Server estate on VMware vSphere; hands-on workwith physical server hardware including racking, cabling, diagnostics, andcomponent replacement.

·        Network andperimeter: Administer and troubleshoot TCP/IP, DNS,DHCP, VLANs, wireless networks, certificates, and infrastructure-monitoringplatforms. Configure, monitor, and manage firewalls to enforce access controlsand protect the corporate network against unauthorized access and cyberthreats. Manage telecom and ISP vendor relationships.

·        Security operations: administer endpoint protection,data-governance, and email-security platforms; manage multi-factorauthentication, conditional access, and geographic access restrictions; run thesecurity-awareness and phishing-simulation program; respond to alerts and vulnerabilities.

·        eDiscovery andlegal hold: perform mailbox and file searches insupport of subpoenas, regulatory requests, and litigation; preserve, collect,and produce data under the direction of counsel and Compliance, handling all ofit with strict confidentiality.

·        Telephony and voiceservices: support the current Avaya PBX, associatedanalog lines, and voice-service vendors; troubleshoot and coordinate resolutionof telephony incidents, provisioning, and office moves. Assist with the plannedtransition of PBX operations to an outsourced provider and oversee the vendorrelationship thereafter.

·        Automation: use PowerShell and Python to automate provisioning, reporting, andtask scheduling, and maintain our enterprise job scheduling platform.

·        License, subscription,and vendor governance: Oversee softwareand cloud-service entitlements, licensing, renewals, procurement, and vendorrelationships. Review user licensing and assignments across platforms such asAdobe, Box, Microsoft 365/Intune, Visual Studio, Verizon, Bloomberg, andsimilar services. Recommend and implement subscription changes thatappropriately align user access, device-management, security, operationalneeds, and vendor-licensing requirements.

·        Project and vendorcoordination: Own the technical delivery of internaland vendor-led infrastructure and security projects from requirementsgathering, scoping, resource planning, testing, and implementation throughacceptance and documentation. Define and maintain project plans, timelines,dependencies, risks, action items, and internal and vendor resource needs;track progress, escalate issues, and coordinate stakeholders throughcompletion.

·        Change managementand IT control reviews: Maintain accuraterecords of material infrastructure, configuration, and access changes acrosson-premises systems, AWS, and managed-service-provider environments. Performmonthly reviews of Active Directory group membership, workstationconfiguration, local administrator access, server assignments, and system usageand monitoring; investigate and remediate discrepancies; and document findings,approvals, exceptions, and follow-up actions.

·        IT securityoversight and policy compliance: Maintainoperational controls that support IT policies, client and regulatorydue-diligence questionnaires (DDQs), and external security representations.Ensure documented policies, DDQ responses, and day-to-day practices remainaligned. Monitor and validate controls for password and credential rotation,service accounts, least-privilege access, patching and reboot compliance, andthe documentation, approval, and periodic review of exceptions.

·        Technicalleadership and escalation: Route andprioritize support tickets, help coordinate support coverage and issueresolution, and serve as the technical escalation point for IT support staff.Mentor junior team members and promote clear documentation, consistentoperational practices, and timely risk escalation.

·        Facilities andcritical-environment infrastructure: monitor andcoordinate the power, cooling, and environmental systems supporting officetechnology rooms and server rooms, including UPS units, PDUs, circuits,temperature/humidity monitoring, and HVAC. Coordinate with building management,datacenter providers, electricians, and HVAC vendors during incidents,maintenance, capacity changes, and planned shutdowns.

 
Skillsand qualifications

  • In-depth knowledge of Microsoft Windows Server, Active Directory, Microsoft 365, MS Teams, and Multi-Factor Authentication.
  • Hands-on experience administering non-human identity: service accounts, service principal names, Entra ID app registrations, and credential lifecycle management.
  • Experience with VMware vSphere virtualization.
  • Strong experience administering Windows file servers and network storage at scale - permissions, quotas, capacity monitoring, and migrations.
  • Strong understanding of email flow and mail security, including routing, spam, malware, and DLP; hands-on experience with a secure email gateway (Proofpoint, Mimecast, or similar).
  • Strong understanding of networking concepts and protocols (TCP/IP, DNS, DHCP, VLANs, etc.), coupled with experience in configuring, monitoring, and managing firewalls to secure the corporate network, and enforce access controls.
  • Experience with endpoint protection and data-governance platforms (CrowdStrike, Varonis, or similar).
  • Proficiency with PowerShell for infrastructure automation, reporting, and administration.
  • Hands-on experience with physical server hardware, including racking, structured cabling, hardware diagnostics, and component replacement (disks, memory, power supplies, etc.).
  • Working knowledge of the power and environmental requirements of server rooms and network closets, including UPS systems, rack PDUs, electrical capacity, cooling, temperature/humidity monitoring, and escalation to facilities, datacenter, and building vendors.
  • Proven experience as a Systems Administrator or similar role, with 7+ years managing enterprise IT infrastructure in a hands-on environment.
  • Experience supporting DR, backup/restore testing, infrastructure monitoring, change control, and documented operational procedures.
  • Experience operating and evidencing IT controls in a regulated or audited environment, including access reviews, change management, exception management, and policy compliance.
  • Demonstrated experience with software and cloud-license governance, entitlement reviews, vendor renewals, and cost-conscious subscription management.
  • Proven ability to lead technical projects and coordinate internal stakeholders, managed service providers, and other vendors from scope through implementation.
  • Strong organizational skills, with the judgment to identify control gaps, document risks, drive remediation, and communicate status clearly to technical and non-technical stakeholders.

 Preferredqualifications

  • Bachelor's degree in Computer Science, Information Technology, or related field (or equivalent experience).
  • Experience in financial services or another regulated, audited environment.
  • Exposure to eDiscovery, legal hold, or regulatory production processes.
  • Experience with cloud computing platforms such as AWS or Azure is a plus.
  • Experience with configuration management tooling (Ansible, PowerShell DSC, or similar) is beneficial.
  • Familiarity with market data platforms, particularly Bloomberg administration and entitlements.
  • Familiarity with Avaya PBX administration, analog/POTS lines, and telecom vendor coordination.

 Whatwe’re looking for

  • Excellent problem-solving skills and attention to detail.
  • Strong communication and interpersonal skills, including the ability to explain technical issues to non-technical stakeholders.
  • Discretion and sound judgment when handling confidential company, employee, and legal data.
  • A practical, service-oriented approach; able to balance competing priorities, document work clearly, and escalate risks appropriately.
  • Comfortable serving as a technical escalation point and mentoring junior IT staff.

 Workingarrangements

  • On-site only — this is not a remote or hybrid role.
  • Occasional scheduled after-hours work for patching windows and recovery testing.
  • Ability to move and install IT equipment and work in server rooms, wiring closets, and office locations as needed.
  • If located in NYC, must have ability to travel to CT or our DR site in Westchester as needed.





Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.