{bc}
linkedin

Windows Administrator with experience in Banking Domain

TAT IT Technolgies
Abu Dhabi, UAE
contract
Mid-Senior
1 weeks ago
Office ManagementSchedulingCommunicationData EntryFiling SystemsMicrosoft Office Suite (Word
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan

Key skills for this role

Office ManagementSchedulingCommunication
Smart Apply

Full Job Posting

Overview

We have an urgent requirement for Windows Administrator with experience in Banking Domain is required for our banking clients in Abu Dhabi ,UAE

Windows Server & AD Security Administrator to maintain, patch, and harden Windows server environments at enterprise scale.--Must

Active Directory security hardening (privileged access management, Kerberos)--Must

Strong hands-on with WSUS, SCCM/MECM, Active Directory, Group Policy Management, ADCS, and LAPS.

Experience

with patching at 10,000+ endpoint scale.--Must

Familiarity with SCCM reporting, Microsoft Defender for Endpoint, Event Log analysis, and SIEM integration for AD events--Must

Job Summary

We are seeking a Windows Server & AD Security Administrator to maintain, patch, and harden Windows server environments at enterprise scale.

This role owns Windows Server patch management via WSUS/SCCM aligned to CIS Benchmarks, implements Active Directory security hardening including privileged access and Kerberos policies, and enforces GPO-based security baselines across 10,000+ endpoints.

You will ensure timely OS and application patch deployment to maintain compliance and system integrity.

Enterprise Patch Management

Oversee end-to-end Windows Server patch management using WSUS and SCCM.

Plan, test, and deploy monthly security updates, out-of-band patches, and third-party application updates across production, UAT, and DR environments.

Ensure patch SLAs and compliance reporting.

Active Directory Security Hardening

Implement and maintain AD security controls: tiered privileged access model, admin account management, Kerberos policy hardening, LDAP signing/channel binding, and attack path mitigation.

Manage LAPS, gMSA, and reduce standing privilege.

GPO-Based Baseline Enforcement

Design, deploy, and audit Group Policy Objects to enforce CIS Benchmarks and internal security baselines across 10,000+ endpoints.

Manage security templates, WMI filters, and GPO versioning.

Remediate drift and exceptions with documented risk acceptance.

Configuration Compliance & Reporting

Use SCCM, MECM, and other tools to monitor compliance with patching and security baselines.

Generate compliance dashboards, vulnerability remediation status, and audit evidence for internal and regulatory reviews.

Identity & Access Support

Support enterprise identity controls including privileged access workstations, just-in-time access, and AD trust reviews.

Troubleshoot authentication issues related to Kerberos, NTLM, and certificate-based auth.

Incident & Change Management

Perform root cause analysis for patch failures, GPO issues, and AD incidents.

Follow CAB/change control processes.

Provide L3 support for Windows Server and AD outages during business and non-business hours.

Experience

5+ years administering Windows Server 2016/2019/2022 in large enterprise environments, with 2+ years focused on patching and AD security.

Tooling

Strong hands-on with WSUS, SCCM/MECM, Active Directory, Group Policy Management, ADCS, and LAPS.

Experience

with patching at 10,000+ endpoint scale.

Security Hardening

Practical knowledge of CIS Benchmarks for Windows Server and AD, Microsoft Security Baselines, Kerberos hardening, and privileged access management.

Scripting

Proficiency in PowerShell for automation of patching, compliance checks, GPO management, and AD reporting.

Monitoring

Familiarity with SCCM reporting, Microsoft Defender for Endpoint, Event Log analysis, and SIEM integration for AD events.

Experience

operating in ITIL environments with strict change control.

Ability to produce patch schedules, risk assessments, and compliance artifacts.

Certifications

Microsoft Certified: Windows Server Hybrid Administrator Associate, Security Administrator Associate, CISSP, or GSEC.

Skills

windows,bank,administrator

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today

More from this employer

More jobs at TAT IT Technolgies