Systems Administrator

Rochester Precision OptTown of Henrietta, NY
4hOnsite

About The Position

Rochester Precision Optics, LLC is seeking a Systems & Network Administrator to support and operate the company’s core IT infrastructure within a regulated manufacturing environment. This role is responsible for the administration and operational stability of server, network, cloud, and enterprise infrastructure platforms supporting approximately 300 users across corporate and manufacturing operations. The Systems & Network Administrator works closely with the IT Manager to maintain a secure, reliable, and compliant infrastructure, including implementation of technical controls aligned with NIST 800-171 and CMMC 2.0 requirements. This is a hands-on role where the successful candidate will take ownership of infrastructure operations, contribute to the ongoing improvement and modernization of the organization’s infrastructure platforms, and serve as an escalation resource for complex technical issues.

Requirements

  • Bachelor’s degree in Information Technology, Computer Science, or related field preferred, or equivalent combination of education and experience.
  • 5+ years of experience in systems administration, infrastructure engineering, or related roles
  • Strong knowledge of Windows Server, Active Directory, and Microsoft enterprise environments
  • Experience managing network infrastructure including VLANs, switching, firewalls, and VPN technologies
  • Experience supporting Microsoft 365 environments (GCC High experience preferred)
  • Experience with virtualization platforms such as VMware or Hyper-V
  • Experience administering enterprise endpoint management platforms (Intune, Endpoint Central, or similar)
  • Experience supporting enterprise backup platforms and disaster recovery planning
  • Familiarity with enterprise deployment tools and automation scripting (PowerShell preferred)
  • Experience supporting infrastructure hosting enterprise applications or ERP systems preferred
  • Familiarity with NIST 800-171 or CMMC security frameworks preferred
  • Results-Oriented: Motivated, hard-working and ready to level-up;
  • Curious:  You never stop learning and have an insatiable desire to gain new skills and knowledge;
  • Process Oriented:  Well organized, demonstrating attention to detail;
  • Analytical:  Possess a “If there’s a problem, I’ll find a solution” attitude;
  • Accountable:  Demanding the highest quality from yourself and team members;
  • Detail-Oriented:  Have excellent time management and organizational skills;
  • A Team Player:  Reliable, collaborative, flexible with a positive ‘get things done’ attitude;
  • A U.S. Person: Compliant with ITAR, EAR and other laws and regulations as defined:  “U.S. citizens, lawful permanent residents ("Green Card" holders), persons granted refugee status or asylum status in the United States, or temporary residents granted amnesty.”

Nice To Haves

  • Relevant industry certifications such as Network+, Security+, Microsoft, or VMware certifications are a plus.
  • Experience supporting infrastructure hosting enterprise applications or ERP systems preferred
  • Familiarity with NIST 800-171 or CMMC security frameworks preferred

Responsibilities

  • Administer and maintain Windows Server environments and enterprise infrastructure systems
  • Manage Active Directory, DNS, DHCP, Group Policy, and identity infrastructure
  • Support virtualization platforms such as VMware or Hyper-V
  • Provision and maintain virtual machines and server resources
  • Monitor infrastructure performance, system capacity, and service availability
  • Perform patch management and security updates for servers and infrastructure systems
  • Maintain file services, storage systems, and system health monitoring
  • Administer enterprise backup platforms and validate backup integrity through periodic recovery testing
  • Administer enterprise software deployment platforms including PDQ Deploy and related deployment tooling
  • Create and maintain standardized software deployment packages for enterprise applications and operating system updates
  • Coordinate controlled rollout of software updates and application upgrades across managed systems
  • Maintain infrastructure documentation including system configuration standards and architecture diagrams
  • Maintain & support network infrastructure including switches, firewalls, VPN, and wireless networks
  • Configure and support VLANs, routing, and subnetting
  • Configure and maintain firewall policies, access rules, and network security controls
  • Maintain network authentication systems supporting secure wired and wireless access
  • Support VoIP and network-connected infrastructure including cameras and related technologies
  • Maintain and troubleshoot DNS, DHCP, routing, and other core network services
  • Support structured cabling, patch panel management, and infrastructure expansion projects
  • Maintain network diagrams, segmentation documentation, and infrastructure configuration records
  • Administer Microsoft 365 GCC High tenant services including Exchange Online, Microsoft Teams, and Entra ID
  • Configure and maintain Conditional Access policies and secure authentication configurations
  • Support identity lifecycle integration between on-premises Active Directory and Entra ID
  • Provide Tier 2/3 escalation support for advanced Exchange Online and Teams issues
  • Assist with Microsoft Purview administration including eDiscovery searches, retention policies, and litigation hold support
  • Maintain secure messaging and collaboration configurations aligned with regulatory requirements
  • Administer enterprise device management platforms including Microsoft Intune and Endpoint Central
  • Configure and maintain device enrollment policies, compliance policies, and security baselines
  • Integrate device compliance enforcement with Conditional Access authentication policies
  • Provide Tier 3 escalation support for complex endpoint and mobile device management issues
  • Support device security posture aligned with organizational security and compliance requirements
  • Maintain backend infrastructure supporting enterprise applications including ERP, SQL Server, and FileMaker hosting environments
  • Support infrastructure stability for unified communications platforms such as 3CX VoIP
  • Maintain backend infrastructure supporting physical security platforms including badge access control and video surveillance systems
  • Maintain infrastructure supporting enterprise print services and related systems
  • Support infrastructure used for digital signage, IoT devices, and other network-connected systems
  • Implement and maintain infrastructure security controls aligned with NIST 800-171 and CMMC 2.0 requirements
  • Partner with internal leadership and external compliance advisors on cybersecurity initiatives
  • Maintain secure configuration baselines and infrastructure hardening standards
  • Ensure infrastructure systems generate and forward logs to centralized monitoring platforms
  • Support vulnerability remediation across infrastructure platforms
  • Assist with investigation of infrastructure-level security alerts and anomalies
  • Support audit readiness activities and collection of technical compliance evidence
  • Serve as Tier 2 / Tier 3 escalation resource for complex infrastructure and systems issues
  • Collaborate with IT leadership on infrastructure improvements and modernization initiatives
  • Assist with enterprise application upgrades and infrastructure lifecycle projects
  • Provide mentorship and technical guidance to IT support staff
  • Participate in rotating on-call coverage for infrastructure alerts and critical incidents

Benefits

  • Competitive compensation package linked to your experience and performance, a 401(k) with company match
  • Health, dental, vision & life insurance
  • 11 paid holidays, generous paid vacation and sick -time
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service