Job Summary:
As an Application Support Engineer, you will act as software detectives, providing dynamic service to identify and solve issues within multiple components of critical business systems. You will play a crucial role in ensuring the smooth functioning of applications and providing support to end-users. Your typical day will involve troubleshooting and resolving technical issues, collaborating with cross-functional teams, and contributing to the improvement of application performance and stability.
Roles & Responsibilities:
- Hyper-V Virtualization Management (2022/2019/2016/2012):
- Design, implement, and manage Hyper-V environments, including deployment and maintenance of virtual machines, virtual switches, and failover clustering.
- Optimize and troubleshoot Hyper-V clusters, ensuring high availability (HA), disaster recovery (DR), and scalability.
- Perform regular updates, patching, and monitoring of Hyper-V hosts and clusters using Windows Admin Center or System Center Virtual Machine Manager (SCVMM).
- Windows Server Management (2022/2019/2016/2012):
- Administer and maintain Windows Server environments, ensuring high availability, security, and performance.
- Configure and manage Active Directory Domain Services (AD DS), Group Policy Objects (GPOs), DNS, DHCP, and File/Print Services.
- Implement and maintain Microsoft Failover Clustering and Network Load Balancing (NLB) for high availability of critical services and applications.
- SCCM (System Center Configuration Manager) & WSUS:
- Manage SCCM for automated software deployments, patch management, OS imaging, and reporting.
- Administer Windows Server Update Services (WSUS) for managing and automating patching of Windows servers and workstations.
- Troubleshoot and optimize software distribution, update rollouts, and endpoint management through SCCM and WSUS.
- Azure Windows Server Management:
- Deploy, configure, and manage Windows Servers in Azure, including virtual machines, storage accounts, and networking.
- Utilize Azure Automation, Azure Monitor, and Azure Security Center to monitor and manage Windows Server environments in the cloud.
- Implement Azure Backup and Azure Site Recovery (ASR) for disaster recovery and business continuity in Azure.
- Server Hardening and Vulnerability Remediation:
- Implement server hardening best practices across Windows Server environments, including disabling unnecessary services, applying security baselines, and configuring firewall settings.
- Conduct regular vulnerability assessments using tools like Qualys, Nessus, or Microsoft Defender for Endpoint to identify and remediate security vulnerabilities.
- Collaborate with the security team to ensure compliance with corporate security policies and regulatory requirements, addressing identified vulnerabilities promptly.
- Distributed File System (DFS) & File/Print Services:
- Configure and manage DFS Namespaces (DFS-N) and DFS Replication (DFS-R) for high availability and efficient file sharing across multiple locations.
- Maintain and optimize Print Servers, ensuring availability, performance, and compatibility with different network printers.
- Radius/NPS (Network Policy Server):
- Configure and maintain Radius/NPS for secure wireless access, VPN authentication, and centralized network policy management.
- Troubleshoot and optimize Radius/NPS integrations with wireless controllers, VPN appliances, and other network components.
- DHCP Services:
- Manage and maintain DHCP services for dynamic IP address allocation, lease management, and IP scope configuration.
- Troubleshoot IP conflicts and ensure efficient IP address distribution across the network.
- Antivirus Solutions (Symantec/McAfee):
- Deploy, manage, and update enterprise antivirus solutions such as Symantec Endpoint Protection and McAfee ePolicy Orchestrator (ePO).
- Ensure that antivirus definitions are current, monitor for potential threats, and respond to security incidents.
- Microsoft Failover Clustering & NLB:
- Configure and manage Microsoft Failover Clusters to ensure high availability of critical services such as databases, file servers, and Hyper-V clusters.
- Deploy and maintain Network Load Balancing (NLB) for web servers, applications, and other network services to ensure optimal load distribution and uptime.
- FTP and SFTP:
- Manage and maintain FTP and SFTP servers for secure file transfer within and outside the organization.
- Implement encryption standards, manage user access, and troubleshoot connectivity issues for secure file sharing.
- Security and Compliance:
- Ensure compliance with corporate security standards and best practices, including regular patching, system hardening, and vulnerability assessments.
- Implement Role-Based Access Control (RBAC) and security policies in alignment with organizational requirements.
- Level 3 Escalation Support:
- Provide Level 3 escalation support for complex infrastructure issues related to Hyper-V, Windows Servers, SCCM, DFS, NPS, DHCP, Antivirus Solutions, Clustering/NLB, server hardening, and vulnerability remediation.
- Investigate and resolve critical incidents, ensuring minimal downtime and maximum performance.
- Automation and Scripting:
- Automate repetitive tasks using PowerShell, VBScript, or other scripting tools for efficient management of Windows and Azure infrastructure.
- Create custom scripts to automate server provisioning, configuration, and maintenance tasks.
- Documentation and Collaboration:
- Maintain detailed documentation for configurations, processes, and procedures across all areas of responsibility.
- Collaborate with network, security, and storage teams to deliver integrated solutions that meet business objectives.
Professional & Technical Skills:
- Required Technical Skills:
- Extensive experience managing Hyper-V (2022/2019/2016/2012) virtualization environments.
- Expertise in Windows Server (2022/2019/2016/2012) management, including Active Directory, GPOs, DNS, DHCP, and Failover Clustering.
- Hands-on experience with System Center Configuration Manager (SCCM) for software deployment, patch management, and endpoint protection.
- Proficiency in Windows Server Update Services (WSUS) for centralized patch management.
- Experience in Azure Windows Server management, including monitoring, automation, and disaster recovery.
- Strong knowledge of server hardening techniques and vulnerability remediation processes.
- Knowledge of DFS for file replication and Print Server management.
- Experience with Radius/NPS for secure network access and policy management.
- Advanced knowledge of Symantec Endpoint Protection, McAfee ePO, or similar antivirus solutions.
- Strong expertise in Microsoft Failover Clustering and Network Load Balancing (NLB).
- Preferred Skills:
- Familiarity with PowerShell scripting for automation of Windows Server tasks.
- Understanding of secure file transfer protocols (FTP, SFTP).
- Experience with disaster recovery planning and backup solutions for Windows and Azure infrastructure.
Experience Level:
- 2+ years of hands-on experience in Windows Server and Hyper-V infrastructure management.
- 1+ years of experience with SCCM, WSUS, and antivirus solutions in enterprise environments.
- Experience in managing Azure Windows Servers, server hardening, and vulnerability remediation.
Educational Requirements:
- Bachelor's degree in Computer Science, Information Technology, or a related field.
- Relevant certifications such as:
- Microsoft Certified: Windows Server Administrator Associate.
- Microsoft Certified: Security, Compliance, and Identity Fundamentals.
- Hyper-V and SCCM certifications are preferred.
Additional Information:
- Excellent communication skills, with the ability to document solutions and train other teams.
- Should be able to work in 24/7 Rota.
- Should be flexible to support during out-of-hours (OOH).