CTC Technologies is a Value-Added Reseller (VAR) and Managed Service Provider (MSP), and we're looking for a Mid-Level Microsoft Systems Engineer to support the Windows and Microsoft 365 environments of our managed services (MSP) clients and other client accounts. Rather than owning a single environment, you'll work across a portfolio of client networks and tenants — keeping their Active Directory, identity, and PKI infrastructure healthy and secure, and their Microsoft 365 platforms running reliably. This is a hands-on, client-facing engineering role for someone who is equally comfortable troubleshooting a DNS issue for one client, issuing a certificate through AD CS for another, and helping a client's end users get the most out of Word, Outlook, Excel, and Teams — all while managing multiple tickets and projects against defined SLAs.
Key Responsibilities
Administer and support Active Directory Domain Services across multiple client environments, including domain controllers, OU structure, Group Policy, and directory replication.
Manage core network services — DNS, DHCP, and NTP — for client environments, ensuring reliable name resolution, IP address allocation, and time synchronization.
Design, deploy, and maintain Active Directory Certificate Services (AD CS) and PKI for clients, including certificate templates, issuance, renewal, and revocation.
Administer client Microsoft 365 tenants, including Entra ID (Azure AD) identity, conditional access, licensing, and device/app management.
Support and maintain Exchange Online, SharePoint Online, and Microsoft Teams for clients, including configuration, permissions, and troubleshooting.
Provide advanced end-user support for Windows and Microsoft 365 desktop applications — including Word, Outlook, and Excel — across the client base.
Serve as an escalation resource for Tier 2/3 tickets involving identity, directory services, network services, or M365 availability, performing root-cause analysis and remediation.
Participate in client onboarding and project work, including new AD and M365 tenant builds, migrations, and infrastructure deployments as part of VAR-sold solutions.
Document all work clearly and consistently in the company's PSA/ticketing platform and manage competing priorities across multiple clients against contracted SLAs.
Maintain accurate client documentation for AD, PKI, and M365 configurations, and contribute to change management and security best practices.
Collaborate with the sales and account management teams on identity governance, certificate lifecycle management, and technology recommendations for clients.
Required Skills & Qualifications
Core Infrastructure & Identity
Hands-on experience administering Active Directory Domain Services (AD DS), ideally across multiple domains or client environments
Solid working knowledge of DNS and DHCP administration and troubleshooting
Experience with NTP / time synchronization in a Windows domain
Experience with Active Directory Certificate Services (AD CS) and PKI concepts (certificate templates, chains, revocation, renewal)
Microsoft 365 & Productivity Applications
Administration experience with Microsoft 365 (M365), including Entra ID (Azure AD), ideally across multiple tenants
Experience administering or supporting Exchange Online
Experience administering or supporting SharePoint Online
Experience administering or supporting Microsoft Teams
Strong working knowledge of Windows desktop applications and Office/M365 apps — Word, Outlook, and Excel
MSP / VAR Environment
Prior experience in an MSP, VAR, or IT consulting/services environment strongly preferred
Comfortable supporting multiple clients and tenants simultaneously, and switching context between environments throughout the day
Experience with PSA and RMM platforms (e.g., NinjaOne, or similar) a plus
Strong client-facing communication skills, with the ability to explain technical issues clearly to non-technical stakeholders
Ability to prioritize and manage multiple concurrent client tickets and projects against defined SLAs
General
3–5 years of experience in a systems or infrastructure engineering role supporting Windows and Microsoft environments
Strong troubleshooting and root-cause analysis skills across network, identity, and application layers
Clear written and verbal communication skills, with the ability to document technical work for both technical and non-technical audiences
Preferred Qualifications
Relevant certifications such as Microsoft Certified: Identity and Access Administrator Associate, Microsoft 365 Certified: Administrator Expert, or Microsoft Certified: Windows Server Hybrid Administrator
Experience with PowerShell scripting for automation of AD and M365 administrative tasks across multiple client environments
Familiarity with Microsoft Partner Center, Granular Delegated Admin Privileges (GDAP), and/or Azure Lighthouse for managing client tenants
Exposure to hybrid identity (Entra Connect / Azure AD Connect) and conditional access policies
Experience with endpoint management tools such as Microsoft Intune
What We Offer
Salary to commensurate with experience
Health, dental, and vision insurance available and partially paid by employer
401K plan
Paid time off and company holidays
Hybrid work flexibility
Exposure to a wide variety of clients, industries, and Microsoft technology stacks
Opportunities for training, certification, and professional development
How to Apply
Interested candidates should submit a resume and brief cover letter describing their experience with Active Directory, PKI, and Microsoft 365 administration in an MSP, VAR, or multi-client environment. CTC Technologies is an equal opportunity employer.
Location
Hybrid — a blend of on-site work at our office and at client sites, with remote flexibility (specific schedule discussed during interview)
Employment Type
Full-Time
Level
Mid-Level
Department
Managed Services / Professional Services
Reports To
Service Delivery Manager
On-Call / After Hours
As-needed basis (occasional; no fixed rotation currently)
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.