Overview
Operate, secure and continuously improve the Institute's Microsoft 365 platform across Exchange Online and hybrid Exchange, Proofpoint, Microsoft Defender for Office 365, Entra ID, Active Directory, Intune, Teams, SharePoint Online and OneDrive for Business. Work within a multidisciplinary infrastructure team, report to the Manager IT Infrastructure Services, provide second- and third-level escalation, and automate recurring administration through PowerShell and Microsoft Graph.
What you'll do
- Administer Exchange Online and hybrid Exchange, including user, shared, resource and room mailboxes, permissions, delegation, archiving, retention and on-premises Exchange servers.
- Own mail flow, including connectors, accepted and remote domains, transport and journaling rules, message tracing, queue monitoring and delivery-failure resolution.
- Manage SPF, DKIM and DMARC, third-party sending services, hybrid coexistence, mailbox migration and consolidation.
- Monitor service health and message queues, respond to Microsoft service advisories, and assess releases and deprecations.
- Administer Proofpoint, Exchange Online Protection and Microsoft Defender for Office 365, including filtering, anti-phishing, quarantine, URL and attachment defense, routing and allow-listing.
- Investigate phishing, spoofing and business email compromise using message tracing and header analysis, and report on threat volume, quarantine, false positives and user-reported messages.
- Administer Entra ID and on-premises Active Directory, including groups, administrative units, enterprise applications, SSO, app registrations, service principals, OU and Group Policy structure, directory hygiene and synchronization.
- Administer conditional access, MFA, authentication methods, privileged identity management and access reviews, and execute identity-side joiner, mover and leaver workflows.
- Administer Intune, including enrolment profiles, device configuration and compliance policies, app protection, application deployment, Windows baselines, update rings, Autopatch, Autopilot and co-management.
- Administer Teams, SharePoint Online and OneDrive for Business, including governance, permissions, sharing, storage, lifecycle, meetings, calling and telephony where deployed.
- Perform mailbox hygiene, archive and retention application, quota and growth management, mailbox recovery, group administration, license assignment and reclaim, and leaver processing.
- Fulfil messaging, identity and collaboration service requests through the ITSM tool to agreed SLA and act as second- and third-level escalation.
- Develop PowerShell and Microsoft Graph automation for recurring administration, bulk changes, reporting, mailbox cleanup, license management and joiner and leaver processing.
- Build scheduled reports on mailbox, license, group, mail-flow, threat, device-compliance and identity-hygiene data.
- Administer Microsoft Purview capabilities in scope, maintain compliance evidence, update runbooks, operate tested change control and provide technical guidance and mentoring.
What you'll need
- Bachelor’s degree in computer science, Information Technology, Engineering or a closely related field, or equivalent professional experience.
- 7+ years of experience administering Microsoft 365 in an enterprise environment, including at least 4 years with substantial Exchange Online and hybrid Exchange responsibility.
- Hands-on ownership of hybrid mail flow, including connectors, transport rules, message tracing and delivery-failure resolution.
- Hands-on administration of Proofpoint or a comparable product such as Mimecast or Cisco Email Security, including policy, quarantine and URL and attachment defense.
- Experience implementing and operating SPF, DKIM and DMARC, including progression of a domain to an enforcing DMARC policy.
- Hands-on administration of Entra ID and on-premises Active Directory in a hybrid configuration, including Entra Connect or cloud sync, sync error resolution, conditional access and MFA.
- Hands-on administration of Microsoft Intune, including device configuration and compliance policies, application deployment and update rings.
- Administration of Microsoft Teams, SharePoint Online and OneDrive for Business, including governance, permissions and external sharing controls.
- Experience operating mailbox lifecycle administration at scale, including cleanup, archiving, quota management, shared mailbox conversion and leaver processing.
- Experience administering distribution lists, mail-enabled security groups and Microsoft 365 groups, including membership management and periodic hygiene review.
- Experience with Microsoft 365 license administration, including group-based licensing, SKU assignment, reclaim and license reporting.
- Strong PowerShell scripting ability with practical use of Microsoft Graph for bulk administration, automation and reporting.
- Experience with Microsoft Purview in scope, including retention, data loss prevention, eDiscovery and audit log search.
- Experience supporting a globally distributed user base across multiple time zones from an offshore or global capability center.
- Professional proficiency in spoken and written English for a multi-national user base and senior-stakeholder communication.
Nice to have
- Certification such as Microsoft 365 Certified: Administrator Expert (MS-102), Messaging Administrator Associate (MS-203), Identity and Access Administrator (SC-300) or Endpoint Administrator Associate (MD-102).
- Experience in an environment subject to external audit, where messaging and collaboration controls must be evidenced rather than asserted.
- ITIL 4 Foundation, or equivalent demonstrated knowledge of incident, change and problem practice.
Details
- Location: Navi, Mumbai.
- The role is a night-shift position.
- Work within a multidisciplinary infrastructure team and report to the Manager IT Infrastructure Services.
Read the full description and apply on the company’s own careers page.