System Administrator II

QE Solar•Scottsdale, AZ
•$80,000 - $100,000•Onsite

About The Position

You'll join QE Solar's Site Reliability Engineering (SRE) team, which runs the corporate technology our office and field employees use every day: laptops, tablets and iPads, identity and sign-in, Microsoft 365, endpoint security and IT asset inventory. For this team, reliability means four things: Devices are compliant and patched. Accounts are correct on an employee's first day and removed on their last. Security alerts are handled promptly, day or night. Every task is written down so someone else can run it. This is a systems and security operations role. It is not a cloud, Kubernetes or software engineering role. The Systems Administrator II is the escalation point behind our Service Desk: You go looking for problems and fix them before anyone reports them. You own platforms end to end. You resolve what Tier 1 cannot, and fix the cause, not only the ticket. You automate the manual work you find, in code others can run. You bring the team up with you: you teach what you know and help teammates get certified on the platforms they work on. Everything we run should live in a standard operating procedure (SOP). Team members certify on each SOP by running it with a teammate observing, so knowledge is shared and anyone can cover.

Requirements

  • 4+ years in IT systems or security operations, including 2+ years at Tier 2 or above, in an environment of several hundred users or more
  • A record of finding and fixing problems no one had reported, with specific examples and results
  • A record of raising the people around you: teammates you trained or mentored into new skills and certifications, and knowledge you shared rather than kept
  • Designed and built Intune compliance and configuration baselines, Autopilot enrollment and Conditional Access in a production tenant
  • Built identity-provider integrations (Okta preferred): SAML or OIDC apps, SCIM provisioning, group rules and lifecycle automation
  • Incident lead on at least one security incident, from detection through containment and post-incident review
  • PowerShell (or an equivalent scripting language) automation running in production, using Microsoft Graph and vendor APIs, that you built and maintain, with scheduling, logging and error handling
  • At least one infrastructure project delivered end to end through change control, such as an MDM, EDR or tenant migration
  • SOPs you wrote that others run, and change records with tested rollback plans
  • Available for the weekly after-hours on-call rotation
  • Live within commuting distance of Scottsdale, AZ, or relocate before your start date. This role is on-site.
  • Authorized to work in the United States

Nice To Haves

  • Microsoft MD-102 or SC-300, or CompTIA CySA+. We value certifications as a signal, but we hire and certify on demonstrated skill.
  • Okta Workflows or Lifecycle Management; JAMF; an RMM platform
  • Jira Service Management Assets or another CMDB
  • Support for a distributed field workforce on tablets and mobile devices

Responsibilities

  • Finding problems first. Don't wait for tickets. Look through the systems you own for issues before they become tickets. Fix them, or bring a fix with its cost.
  • Serve as lead for platforms we run. Own the design, configuration baselines, change records, SOPs and health metrics, and help teammates get certified on them. Support patch management across all of our environments, including restricted ones once authorized and trained.
  • Design and build Intune compliance and configuration baselines, Autopilot profiles, update rings and Conditional Access policies, plus Okta app integrations with SCIM provisioning and group rules.
  • Lead P1 and security incidents through containment, keep your lead informed, and write up the root cause and fix.
  • Triage MDR, SIEM and phishing alerts. Contain threats to accounts and devices. Take your turn in the weekly after-hours on-call rotation.
  • Write PowerShell and Microsoft Graph automation that runs in production on a schedule. Build it so others can run and maintain it, and document it so others understand it.
  • Deliver projects end to end through change control, each with a plan, a change record and a tested rollback. Examples: platform migrations and onboarding acquired companies' users, devices and tenants. Work across the company with HR, finance, field operations, and our network, OT and product teams to plan the work, support their needs and land changes with the people they affect.
  • Automate joiner, mover and leaver changes across Okta and Entra, including license assignment by role and access reviews.
  • Keep our asset inventory accurate, and automate the reconciliation wherever you can.
  • Take Tier 2 tickets through to root cause. Turn repeat issues into SOP changes, and coach Service Desk staff and junior administrators to run them.

Benefits

  • QE Solar is committed to providing equal employment opportunities and reasonable accommodations in accordance with the Americans with Disabilities Act (ADA) and applicable state and local laws.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service