Avatar for Suveto
Suveto
Actively Hiring
Supports vets with opportunities to create a better veterinary future

Systems Administrator

  • Conshohocken
  • |5 years of exp
  • |Full Time
Posted: 6 days ago• Recruiter recently active
Job Location
Conshohocken
Remote Work Policy

In office - WFH flexibility

Visa Sponsorship

Not Available

RelocationAllowed
Skills
Git
DNS
VPN
IIS
Windows Server Administration
Github
Enterprise Applications
source control
PowerShell
DHCP
Windows Server
routing
Firewalls
Terraform
Group Policy
Onedrive
Teams
WorkBooks
Conditional Access
Exchange Online
Microsoft Intune
Infrastructure as code
Azure Functions
Azure storage
Azure Blob Storage
Windows Task Scheduler
Microsoft Teams
Azure App Service
SharePoint Online
Microsoft Azure PaaS
Azure DevOps
Microsoft Azure IaaS
Networking Fundamentals
Microsoft 365
Azure Key Vault
Azure Logic Apps
IP Addressing
ARM Templates
MFA
Azure Resource Manager
Azure Virtual Desktop
Azure Stack HCI
Microsoft Sentinel
Azure Monitor
Microsoft Defender
Azure Backup
Bicep
Application Insights
Azure Load Balancer
Microsoft Purview
Azure Virtual Network
Azure Virtual Machines
Network Security Groups
Azure Policy
Azure Firewall
Microsoft Entra ID
Log Analytics
Certificate Services
Microsoft 365 Admin Center
Azure Arc
OneDrive for Business
Hybrid Identity
Privileged Identity Management (PIM)
Azure Site Recovery
Azure Migrate
Microsoft Defender XDR
Defender for Cloud
Kusto Query Language (KQL)
Microsoft Cloud Platforms
Active Directory Domain Services
Azure Files
Defender for Endpoint
Azure Local
Microsoft Azure Infrastructure
Microsoft Entra Connect
Defender for Identity
Azure Bastion
Azure Update Manager
Defender for Cloud Apps
Defender for Office 365
Windows 11 Enterprise
KQL Queries
AD FS
Log Analytics Workspaces
Azure Automation Runbooks
Microsoft Graph PowerShell SDK
Microsoft Defender Vulnerability Management
Microsoft Entra ID Protection
Incident Triage
Windows Admin Center
Microsoft Azure Platform Services
PowerShell 7
Azure File Sync
Exchange Online PowerShell
Microsoft 365 Apps for Enterprise
Microsoft Entra ID Governance
Azure Monitor Agent
Hybrid Connectivity Troubleshooting
Microsoft Entra Cloud Sync
Windows Server Active Directory Domain Services (AD DS)
Microsoft Security Exposure Management
SIEM Analytics Rules
Managing Endpoints
Automate Multi-Step Administrative Processes

About the job

Suveto is a dynamic and growing veterinary organization dedicated to supporting our hospitals and teams with innovative strategies.

This is a hybrid position, must be a commutable distance from our office in Conshohocken, PA.

We are seeking an experienced and skilled Systems Administrator to join our growing IT team. The Systems Administrator owns the day-to-day administration, engineering, and automation of the Company's Microsoft platform estate — Windows Server, Microsoft Azure infrastructure and platform services, Microsoft 365, Microsoft Entra ID, and Microsoft Intune. This is a hands-on senior individual contributor role for someone who has already run production Microsoft workloads and is ready to own systems end to end rather than execute tickets.

Working independently with general supervision, the Systems Administrator designs and implements system changes, builds automation in PowerShell and infrastructure as code, administers identity and endpoint management, maintains monitoring and alerting through Azure Monitor, and supports the security and compliance posture of the estate through Microsoft Defender and Microsoft Purview. The role is expected to reduce manual operational work over time — the measure of success is not how many tasks are completed but how many stop needing to be done by hand.

PLATFORM SCOPE

The Company's environment is Microsoft-centric across both Azure infrastructure and Microsoft 365. The named platforms below define the working scope of this role.

Identity & Access

  • Microsoft Entra ID (formerly Azure Active Directory) — users, groups, enterprise applications, app registrations, Conditional Access, Multi-Factor Authentication
  • Microsoft Entra ID Governance and Privileged Identity Management (PIM) — access reviews, just-in-time role elevation
  • Microsoft Entra Connect and Microsoft Entra Cloud Sync — hybrid directory synchronization
  • Microsoft Entra ID Protection — risk-based sign-in and user risk policies
  • Windows Server Active Directory Domain Services (AD DS), Group Policy, AD FS where still in use

Azure Infrastructure & Platform (IaaS/PaaS)

  • Azure Virtual Machines, Azure Virtual Network, Network Security Groups, Azure Bastion, Azure Load Balancer, Azure Firewall
  • Azure Storage, Azure Files and Azure File Sync, Azure Blob Storage
  • Azure App Service, Azure Functions, Azure Key Vault
  • Azure Backup, Azure Site Recovery, Azure Update Manager
  • Azure Arc — extending Azure management to on-premises and non-Azure servers
  • Azure Local (formerly Azure Stack HCI) and Azure Virtual Desktop where deployed
  • Azure Policy, Azure Resource Manager, management groups and subscription governance

Microsoft 365 & Endpoint

  • Exchange Online, SharePoint Online, Microsoft Teams, OneDrive for Business
  • Microsoft 365 Apps for enterprise; Microsoft 365 admin center
  • Microsoft Intune — compliance policies, configuration profiles, Windows Autopilot, application deployment, Endpoint Privilege Management
  • Windows 11 Enterprise servicing and update rings

Security, Compliance & Monitoring

  • Microsoft Defender XDR — Defender for Endpoint, Defender for Office 365, Defender for Identity, Defender for Cloud Apps, Defender for Cloud
  • Microsoft Defender Vulnerability Management; Microsoft Security Exposure Management
  • Microsoft Purview — data loss prevention, retention, sensitivity labels, audit, eDiscovery
  • Microsoft Sentinel (formerly Azure Sentinel) — SIEM analytics rules and incident triage
  • Azure Monitor, Log Analytics workspaces, Kusto Query Language (KQL), Workbooks, Azure Monitor Agent, Application Insights

Automation & Tooling

  • PowerShell 7, Microsoft Graph PowerShell SDK, Exchange Online PowerShell (note: Azure AD PowerShell and MSOnline are deprecated — Graph is the forward path)
  • Infrastructure as code — Bicep, ARM templates, or Terraform
  • Azure Automation runbooks, Azure Logic Apps, Windows Task Scheduler for legacy on-premises jobs
  • Git and Azure DevOps or GitHub — source control, pull requests, pipelines
  • Windows Admin Center, Azure Migrate

Responsibilities

  • Azure Infrastructure & Platform Engineering
  • Identity & Access Administration
  • Microsoft 365 & Endpoint Management
  • Automation & Infrastructure as Code
  • Monitoring, Alerting & Operational Health
  • Security & Compliance
  • Documentation & Mentorship

Essential

COMPETENCIES & QUALIFICATIONS

  • Four (4) year bachelor's degree in related area
  • Three (3) to five (5) years of relevant experience administering Microsoft Windows Server and Microsoft cloud platforms with growing responsibilities.
  • Hands-on production experience with Microsoft Azure IaaS and PaaS — Virtual Machines, Virtual Network, Storage and Azure Files, App Service, Key Vault, Backup, and Site Recovery.
  • Hands-on production experience administering Microsoft Entra ID, including Conditional Access, MFA, enterprise applications, and hybrid identity via Microsoft Entra Connect or Entra Cloud Sync.
  • Hands-on production experience administering Microsoft 365 — Exchange Online, SharePoint Online, Teams, and OneDrive — and managing endpoints through Microsoft Intune.
  • Strong Windows Server administration, including Active Directory Domain Services, Group Policy, DNS, DHCP, certificate services, and IIS.
  • Proficiency in PowerShell, including the Microsoft Graph PowerShell SDK, sufficient to automate multi-step administrative processes unsupervised.
  • Working knowledge of infrastructure as code (Bicep, ARM templates, or Terraform) and source control in Git.
  • Working knowledge of Azure Monitor and Log Analytics, including writing KQL queries.
  • Working knowledge of Microsoft Defender XDR and Microsoft Purview in an operational capacity.
  • Solid networking fundamentals — IP addressing, DNS, DHCP, routing, firewalls, VPN, and hybrid connectivity troubleshooting.
  • Excellent verbal and written communication skills, and the ability to discuss technical issues with non-technical audiences.
  • Demonstrated ability to work independently, own systems end to end, and exercise judgment about what requires escalation or change control.
  • Professional judgment when working with sensitive systems, sensitive data, and production infrastructure.

Core Competencies

  • Customer Focus
  • Interpersonal Savvy
  • Communicates Effectively
  • Decision Quality
  • Being Resilient

Benefits

Our employment package for full-time employees includes unlimited PTO/vacation, paid holidays, medical, dental and vision insurance, pet care discounts, 401K with a true match up to 4%. In addition, all full-time hospital team members receive VSOP® grants, SUVETO’S VETERINARY STOCK OWNERSHIP PLAN, at no cost to team members. VSOP® is an ownership program that tracks the value of the entire Suveto organization.

Suveto is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

About the company

Suveto company logo

Suveto

Actively Hiring
Supports vets with opportunities to create a better veterinary future201-500 Employees
Company Location
Grapevine
Company Size
201-500
Learn more about Suveto image