Wintel Engineer
organization.
Job Description
Bachelor's degree in engineering, Computer Science, Information Systems, or equivalent experience required.
8+ years in Windows Server engineering/architecture, virtualization/hypervisor patterns (VMware/HyperâV), and
hybrid identity/integration.
Certifications preferred: Microsoft MSâ102 (Microsoft 365 Administrator), MDâ102 (Endpoint Administrator),
AZâ800/801 (Administering Windows Server Hybrid), AZâ500 (Security) or equivalent; VMware certifications a
plus.
Experience defining GPO/security baselines, AD/Entra ID integrations, OS image/driver/patching rings, RBAC/PAM
guardrails, and configurationâasâcode with PowerShell/Desired State Configuration (DSC).
Proven track record in observability/SLO design, privacy/securityâbyâdesign, and leading POCs/pilots in enterprise
environments.
Additional Preferred Experience:
ï· AI driven Windows platform analytics (event correlation, anomaly detection, drift prediction)
ï· Automation first engineering using PowerShell + DSC + CI/CD pipelines augmented by AI tooling
ï· Experience with self-healing or autonomous remediation workflows
ï· Exposure to modernization or simplification initiatives across infrastructure/platform teams
ï· Experience implementing adaptive access controls, policy-based governance, and automated security posture
management
Windows Server architecture: versions, roles (AD DS, DNS/DHCP, IIS, File/Print, Cluster), failover clustering,
SMB, NIC Teaming, disk management, and security hardening.
Virtualization/hypervisors: VMware vSphere, HyperâV; templates, cluster design, resource policies, and integration
with storage/fabrics.
Identity and access: AD/Entra ID hybrid, GPO baselines, Conditional Access, RBAC, PAM/PIM, PKI/Certificates,
integration with enterprise tools such as Delinea Secret Server, Netwrix, and BigFix.
Automation and configurationâasâcode: PowerShell, DSC, JSON policy templates, CI/CD validations; REST/Graph
APIs for inventory/compliance.
Observability: event logs, performance counters, telemetry dashboards, CMDB attributes, release readiness quality
gates, integration and monitoring oversight with tools such as Zenoss and Grafana.
Security/complianceâbyâdesign: CIS/NIST baselines, patch management strategies, encryption, audit readiness, data
residency controls, integration with enterprise tools such as Tenable and Nucleus.