[Remote] Sr. Microsoft 365 Administrator (L2/L3)
Note: The job is a remote job and is open to candidates in USA. iSoftStone, Inc. is seeking a Senior M365 System Administrator (L2/L3) to join our Team. This role involves supporting the design, implementation, and ongoing operations of enterprise Microsoft 365 environments, focusing on solution architecture, system engineering, and advanced administration.
Responsibilities
- Lead solution design and technical architecture for Microsoft 365 and related services
- Translate business and security requirements into scalable, secure, and supportable solutions
- Define architecture patterns across: Identity & access (SSO, Conditional Access, Zero Trust), Endpoint management (Intune / UEM), Collaboration & messaging (Exchange, Teams, SharePoint)
- Produce high-level and low-level design (HLD/LLD) documentation
- Evaluate new features and technologies, and provide design recommendations and roadmaps
- Ensure solutions align with enterprise standards for security, compliance, and performance
- Provide L2/L3 support for Microsoft 365 services, including escalation handling and root cause analysis
- Administer: Exchange Online, Teams, SharePoint Online, OneDrive, Azure AD / Entra ID
- Troubleshoot complex issues across identity, messaging, collaboration, and endpoint environments
- Administer Microsoft Intune and UEM platforms
- Manage device compliance, configuration profiles, and application deployment
- Operate and optimize EDR solutions such as Microsoft Defender for Endpoint
- Design and implement endpoint security baselines and compliance policies
- Support enterprise endpoint strategy across Windows, macOS, and mobile devices
- Design and implement SSO, MFA, and Conditional Access architectures
- Integrate enterprise applications using SAML, OAuth, and OpenID Connect
- Support hybrid identity (on-prem AD + cloud) and identity lifecycle management
- Contribute to identity governance and Zero Trust initiatives
- Develop and maintain automation using PowerShell
- Build reusable scripts and tooling for provisioning, reporting, and compliance
- Improve operational efficiency through automation and standardization
- Troubleshoot and design solutions related to DNS, authentication, and connectivity
- Work with network teams on secure access (proxy, firewall, conditional access integration)
- Ensure reliable service integration across cloud and on-prem environments
- Implement Microsoft 365 security controls and policies aligned with best practices
- Support audit, compliance, and eDiscovery requirements
- Collaborate with security teams on monitoring, alerting, and incident response
Skills
- Five to eight+ years of Microsoft 365 administration and engineering experience
- Proven experience in solution design/architecture for Microsoft 365 environments
- Strong hands-on expertise in: Microsoft 365 core services (Exchange Online, Teams, SharePoint)
- Intune / UEM / EDR
- Azure AD (Entra ID), SSO, Conditional Access
- Advanced PowerShell scripting skills
- Solid understanding of: Identity protocols (SAML, OAuth, OpenID Connect)
- DNS, networking, and security fundamentals
- Experience with hybrid environments (on-prem and cloud)
- Strong architecture thinking with hands-on execution ability
- Ability to translate requirements into practical technical designs
- Strong troubleshooting and problem-solving skills
- Effective communication with cross-functional stakeholders
- Proactive, automation-driven mindset
- Ability to design solutions and contribute to architecture decisions, implement and optimize systems end-to-end, and provide advanced L2/L3 operational support
- Microsoft certifications (MS-102, SC-300, MD-102)
- Experience with Zero Trust architecture design
- Familiarity with SIEM tools such as Microsoft Sentinel
- Experience in enterprise or global environments
Benefits
- W2 CONTRACT POSITION (JUNE 2026 THROUGH FEBRUARY 2027)
Company Overview