Windows Systems Administrator

Relocation
Apply
AI Summary

Administer and support Windows Server infrastructure and core services. Execute disciplined OS and platform lifecycle management. Implement and maintain secure configuration baselines.

Key Highlights
Administer Windows Server infrastructure and core services
Execute disciplined OS and platform lifecycle management
Implement and maintain secure configuration baselines
Key Responsibilities
Administer and support Windows Server infrastructure and core services
Execute disciplined OS and platform lifecycle management
Implement and maintain secure configuration baselines
Operate and tune monitoring/logging for Windows systems and key services
Support Windows application platforms used by mission systems
Support VMware vSphere–hosted Windows environments
Own backup/restore readiness for assigned platforms and services
Build automation and operational tooling using PowerShell
Work with and support developers
Technical Skills Required
Windows Server Active Directory Group Policy DHCP DNS Certificate Authorities/PKI MECM WSUS MS SQL Exchange PowerShell VMware vSphere SAN/NAS concepts DISA STIG/SCAP-aligned Windows hardening Azure Azure Virtual Desktop Intune Azure Arc
Benefits & Perks
Competitive Medical, Dental, and Vision options
Short- & Long-Term Disability (company paid)
Life Insurance Non-Contributary 1X salary (company paid)
AD&D Non-contributary 1x salary (company paid)
Savings & Investment plan
Company match 50 cents/dollar up to 8% (5 yrs. vesting in company match)
Contributory Life Insurance up to 5x Salary with $1M Cap
Contributory AD&D (employee, spouse and children)
Paid Time Off
Employee Assistance Plan
Nice to Have
Azure/hybrid experience
Azure Arc and/or Azure Arc resource bridge concepts
Azure Kubernetes and enabling container-based packaging/deployment for Windows applications

Job Description


Job Description

Savannah River National Laboratory (SRNL) is seeking an experienced Windows Systems Administrator. The successful candidate will be responsible for the administration, secure operation, and lifecycle management of Windows Server platforms and foundational enterprise services that support Savannah River National Laboratory (SRNL) mission and research computing needs. This role delivers reliable, auditable operations including build, patch, hardening, monitoring, and recovery activities. Candidate will partner with cybersecurity stakeholders, infrastructure peers, and application teams to keep mission services secure and available. This role is for an experienced admin: you are expected to independently own well-scoped Windows infrastructure and platform responsibilities, resolve complex tickets and incidents with minimal supervision, and contribute measurable improvements through automation, standardization, and modernization initiatives.

Responsibilities

  • Administer and support Windows Server infrastructure and core services: Active Directory, Group Policy (GPOs), DHCP, DNS, and Certificate Authorities/PKI, including troubleshooting of authentication, policy, and name/addressing issues.
  • Execute disciplined OS and platform lifecycle management: server builds, upgrades, patching, and vulnerability remediation using WSUS and/or MECM processes (including testing, staged rollout, maintenance windows, and rollback planning).
  • Implement and maintain secure configuration baselines aligned to DISA STIG/SCAP-equivalent guidance for Windows; document exceptions, remediation plans, and evidence as required by governance/audit processes.
  • Operate and tune monitoring/logging for Windows systems and key services; perform root-cause analysis for outages/performance degradations and coordinate resolution across infrastructure, security, and application teams.
  • Support Windows application platforms used by mission systems, including Microsoft IIS and Microsoft SQL Server; support Exchange where applicable. Provide upgrade planning and operational troubleshooting that protects uptime and data integrity.
  • Support VMware vSphere–hosted Windows environments: provisioning, guest lifecycle operations, performance triage, and coordination with storage and network teams (including SAN/NAS-backed storage use cases where applicable).
  • Own backup/restore readiness for assigned platforms and services: backup configuration validation, periodic restore tests, and participation in disaster recovery exercises.
  • Build automation and operational tooling using PowerShell (and other approved tooling) to reduce manual effort, increase repeatability, and improve auditability.
  • Work with and support developers: maintain dependable Dev/Test/Prod environments; support release windows; troubleshoot environment issues impacting deployments, and improve runbooks and standard deployment patterns so teams can deploy changes safely.
  • Support modernization of both COTS and homegrown applications by helping standardize configurations and dependencies, improving deployment repeatability, and enabling Windows containers where they fit the workload.
  • Support hybrid Azure integrations by performing enterprise application registrations and service principals, Azure Virtual Desktop deployments, Intune policy/app delivery, resource bridges, and on prem integration patterns as assigned.

Key Technologies

  • Windows Server (Active Directory, GPOs, DHCP, DNS, Certificate Authorities/PKI),MECM, WSUS, MS SQL, Exchange (if applicable), PowerShell, VMware vSphere, SAN/NAS concepts, DISA STIG/SCAP-aligned Windows hardening, identity integration (AD/LDAP/Entra ID and hybrid identity patterns), backup/DR, monitoring/observability, Windows containers, and hybrid Azure integrations (e.g., enterprise app registrations/service principals, Azure Virtual Desktop, Intune, Azure Arc resource bridge, and on-prem integration patterns).

Qualifications

Minimum Qualifications:

  • Bachelor's Degree and 5+ years of relevant experience administering Windows Server in production environments (or equivalent combination of education and experience).
  • Working proficiency with Windows Server enterprise services: Active Directory, Group Policy, DNS, DHCP, and certificate-based security concepts (PKI/CA exposure).
  • Demonstrated experience performing patching and vulnerability remediation at scale using WSUS and/or MECM (or closely related enterprise patch tooling), including staged deployments and troubleshooting failed updates.
  • Practical experience supporting Windows-hosted application platforms (e.g., IIS and/or SQL Server) and partnering with application owners for stability and upgrades.
  • Scripting/automation skills with PowerShell for administration, troubleshooting, and operational efficiency.
  • Experience supporting Windows virtual machines in VMware vSphere environments (or equivalent virtualization experience).
  • Experience with monitoring/logging and incident/problem management (root-cause analysis, corrective actions, documentation).

Preferred Qualifications

  • Demonstrated experience building/maintaining DISA STIG-aligned Windows baselines, including use of SCAP content and/or applying STIG settings via GPO packages.
  • MECM depth beyond basics (software updates, application deployments, compliance settings baselines, reporting) and strong WSUS operational knowledge (including maintenance).
  • Azure/hybrid experience: Microsoft Entra ID application concepts (app registrations, service principals), hybrid identity/on prem integration patterns, Azure Virtual Desktop, and Intune device/app/policy management for Windows.
  • Experience with Azure Arc and/or Azure Arc resource bridge concepts for hybrid governance/management of on prem resources.
  • Experience with Azure Kubernetes and enabling container-based packaging/deployment for Windows applications.
  • Strong backup/DR experience with validated restores and recovery planning for Windows services and application stacks.
  • Familiarity with enterprise storage concepts (SAN/NAS) and performance troubleshooting involving storage and network dependencies.

About Us

"We put science to work!"

Savannah River National Laboratory (SRNL) is a multi-program laboratory applying state of the art science and practical, high-value, cost-effective solutions to complex technical problems to protect the nation. Located at the U.S. Department of Energy’s (DOE) Savannah River Site (SRS) in Aiken SC, the laboratory develops and deploys innovative technologies to address some of the nation’s environmental, energy, and national security challenges.

Battelle Savannah River Alliance (BSRA) is constantly assessing trends to provide the best possible benefits to our workforce. We also negotiate cost effective premiums that will meet the needs of our evolving workforce.

Some of the *Benefits offered to employees include:

  • Benefits vary based upon employment status
  • Highly competitive Medical, Dental, and Vision options including HSA options with company provided seed
  • Short- & Long-Term Disability (company paid)
  • Life Insurance Non-Contributary 1X salary (company paid)
  • AD&D Non-contributary 1x salary (company paid)
  • Savings & Investment plan:
    • Qualified Non-Elective Company Contribution of 5% each pay period with immediate vesting
    • Company match 50 cents/dollar up to 8% (5 yrs. vesting in company match)
  • Contributory Life Insurance up to 5x Salary with $1M Cap
  • Contributory AD&D (employee, spouse and children)
  • Paid Time Off
  • Employee Assistance Plan
  • SRNL offers a competitive relocation package to ease the transition process. Domestic and international relocation assistance is available for certain positions.
For more information about our benefits, working here, and living here, visit the “About” tab at www.srnl.doe.gov .

BSRA is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, or protected veteran status. BSRA is also committed to making our workplace accessible to individuals with disabilities and will provide reasonable accommodations, upon request, for individuals to participate in the application and hiring process. Please email us at SRNLRecruiting@srnl.doe.gov with any questions regarding the hiring process or to request an accommodation.

About The Team

Chief Information Office (CIO) team supports SRNL in achieving mission and business goals of this National Laboratory. Our team provides digital solutions along with virtual infrastructure. Dynamic team providing growth opportunity to support cutting edge research and development and solve nation state problems. Ability to work across multiple federal customers. Solutions range from commercial off the shelf and custom written including cloud based solutions.

Similar Jobs

Explore other opportunities that match your interests

Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Savannah River National Labora...

United State

Systems Engineer - Robotics Deployment

Networking
2h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Amazon

United State

Fleet Routing Software Quality Assurance Engineer

Networking
5h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Esri

United State

Subscribe our newsletter

New Things Will Always Update Regularly