RESPONSIBILITIES
Essential Functions
Virtualization, Active Directory & Windows Server Modernization
- Administer, maintain, and troubleshoot enterprise virtualization environments including Hyper-V, VMware, and Proxmox.
- Design and support highly available virtual infrastructure platforms, including host configuration, storage integration, backup, recovery, and performance optimization.
- Plan and execute infrastructure migrations and platform transitions between virtualization technologies with minimal operational impact.
- Lead modernization of legacy Active Directory environments, including migration from Windows Server 2008/2012 R2 domain controllers to Windows Server 2022/2025.
- Design, deploy, and promote new domain controllers in virtualized environments.
- Develop and execute domain controller decommissioning plans with minimal risk and no interruption to users.
- Troubleshoot complex AD, DNS, Kerberos, replication, and Group Policy issues.
- Establish and maintain standards for secure, production-ready server builds, including hardening, patch management, monitoring, backup integration, configuration baselines, and resiliency best practices.
- Develop and enforce infrastructure standards for redundancy, fault tolerance, disaster recovery, documentation, and operational readiness across critical systems.
DNS, DHCP & Identity Services
- Design, administer, and maintain enterprise network and identity services in hybrid environments.
- Manage core infrastructure services including DNS, DHCP, directory services, and authentication platforms.
- Develop and execute migration and continuity strategies for infrastructure changes, system retirements, and service cutovers.
- Troubleshoot complex name resolution, authentication, connectivity, and identity-related issues across on-premises and cloud systems.
- Implement and support secure identity, single sign-on, and multi-factor authentication solutions.
- Establish standards, documentation, and best practices for identity and network service architecture.
Microsoft 365, Exchange Online & Azure Administration
- Administer and support Microsoft 365, Exchange Online, and Azure environments in hybrid enterprise organizations.
- Manage cloud-based messaging, collaboration, identity, licensing, compliance, security, and user administration.
- Configure and support Exchange Online mail flow, mailbox administration, shared mailboxes, retention, security, transport rules, and hybrid mail environments.
- Design and implement identity, multi-factor authentication, conditional access, and cloud governance strategies.
- Support Azure subscriptions, cloud infrastructure, monitoring, reporting, backup, recovery, and operational governance.
- Evaluate and implement cloud technologies to improve security, resiliency, scalability, and operational efficiency.
Security Operations & Third-Party Security Platforms
- Administer, support, and troubleshoot third-party security platforms used for endpoint protection, monitoring, vulnerability management, email security, and incident response.
- Support enterprise security toolsets including Huntress, Action1, Proofpoint, endpoint protection, vulnerability management, remote monitoring, and related operational platforms.
- Investigate and respond to security alerts, suspicious activity, phishing attempts, endpoint events, and access-related incidents.
- Develop and maintain security procedures, incident response documentation, monitoring standards, and operational playbooks.
- Coordinate with vendors, leadership, and technical teams to improve organizational security posture and operational readiness.
Supervisory Responsibilities:
None
Travel Required: Limited
QUALIFICATIONS
Required Education
M.S. Degree in Information Systems, Computer Science, Computer Engineering, or a closely related field.
Required Experience
- 15+ years of enterprise systems administration, infrastructure engineering, or systems architecture experience
- Experience leading infrastructure modernization, migration, and cloud transformation initiatives
- Strong written communication, documentation, and executive presentation skills
- Experience supporting enterprise production environments with high availability and disaster recovery requirements
- VMware Certified Professional (VCP)
- Microsoft Certified: Azure Security Engineer Associate (AZ-500)
- Certified Information Systems Security Professional (CISSP)
Physical Requirements
This position has the following specific requirements:
- Walking, climbing (stairs) to access other departments and buildings.
- Sitting for extended periods of time (4-8 hrs.) at desk
- Carrying, lifting equipment, supplies up to 25 lbs. waist high.
- Bending, kneeling, and reaching to store/retrieve supplies, repair equipment
- Sight, reading, wrist movements, feeling to operate computer terminal, repair computer equipment, and handle documents.
- Talking, hearing to instruct employees and assist service providers in person and over the telephone.
- Occasionally climbing ladders and working in contained spaces.
Eligibility Qualifications
- Must be a U.S. citizen due to Cyber requirements.
WORK ENVIRONMENT
Environmental Factors
This position typically involves working in a climate-controlled office environment. On occasion, it may require outdoor work or work in locations that do not have climate controls to meet operational requirements.
Expected Hours of Work:
IT and AV operations occur 24x7, 365 days a year at USSRC. Generally, it is expected to work 40-60 hours per week to meet operational issues, including some work on weekends and holidays.
DISCLAIMERS
The U.S. Space & Rocket Center is an Equal Opportunity Employer
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, disability, or veteran status.
Duties and Responsibilities May Change with or Without Notice
This job description is not designed to cover or contain a comprehensive listing of activities, duties, or responsibilities that are required of the employee. Duties, responsibilities, and activities may change, or new ones may be assigned at any time, with or without notice.