We are seeking an experienced IT Technician to manage the daily operations of our helpdesk and deliver on-site engineering support across client environments. This role is ideal for a technically proficient individual with a strong background in modern Microsoft ecosystems, cloud infrastructure, and endpoint management, who thrives on solving complex issues and is committed to delivering exceptional service.
Responsibilities:
- Provide first, second, and escalation-level technical support across Windows endpoints, servers, networking, and cloud platforms.
- Administer and maintain Microsoft 365 tenants, including Exchange Online, SharePoint Online, OneDrive for Business, Microsoft Teams, and Defender for Office 365.
- Manage identity and access through Microsoft Entra ID (formerly Azure AD), including conditional access policies, multi-factor authentication (MFA), single sign-on (SSO), and role-based access control (RBAC).
- Enrol, configure, and manage devices using Microsoft Intune and Autopilot, enforcing compliance and configuration policies across Windows, iOS, and Android endpoints.
- Support and administer Microsoft Azure resources, including virtual machines, Azure Virtual Desktop (AVD), storage accounts, networking components, and resource group management.
- Maintain and administer on-premises Windows Server environments (2016–2025), including Active Directory Domain Services (AD DS), Group Policy Objects (GPOs), DNS, DHCP, DFS, and Print Services.
- Manage hybrid identity environments using Entra Connect (formerly Azure AD Connect), ensuring seamless synchronisation between on-premises AD and Entra ID.
- Configure and troubleshoot network infrastructure, including managed switches, access points, VLANs, VPNs (site-to-site and client), SD-WAN, and next-generation firewalls (e.g., SonicWall, Fortinet, WatchGuard).
- Implement and monitor endpoint security solutions, including Microsoft Defender for Endpoint, Defender for Business, email filtering, and threat response procedures.
- Administer cloud-based backup and business continuity solutions (e.g., Datto, Veeam, Acronis), including backup scheduling, testing restores, and disaster recovery planning.
- Conduct proactive system maintenance, including patch management through WSUS or Intune, firmware updates, and hardware lifecycle management.
- Monitor infrastructure health using RMM platforms (e.g., Datto RMM, NinjaOne, ConnectWise Automate) and respond to alerts promptly.
- Document all support activity, configurations, and procedures within a PSA or ticketing system (e.g., Halo PSA, ConnectWise Manage, Autotask) and contribute to an up-to-date knowledge base.
- Carry out site surveys, workplace safety inspections, and maintain accurate asset inventories.
Requirements:
- A minimum of 3 years' experience in an IT support, systems administration, or field engineering role, with demonstrable hands-on expertise across modern Microsoft technologies.
- Strong proficiency with Windows 10, Windows 11, and Windows Server 2016–2025.
- Hands-on experience administering Microsoft 365 services, including tenant management, licence allocation, Exchange Online, Teams, and SharePoint.
- Working knowledge of Microsoft Entra ID, conditional access, MFA, and hybrid identity with Entra Connect.
- Practical experience with Microsoft Intune for endpoint deployment, compliance policies, and application management.
- Familiarity with Microsoft Azure IaaS and PaaS services, including virtual machines, Azure networking, and Azure Virtual Desktop.
- Solid understanding of networking fundamentals: TCP/IP, DNS, DHCP, VLANs, subnetting, VPNs, and firewall rule management.
- Experience with endpoint detection and response (EDR) tools and a strong awareness of current cybersecurity threats and mitigation strategies.
- Competence in hardware diagnostics, builds, and repairs across desktops, laptops, servers, and peripherals.
- Excellent communication and interpersonal skills, with the ability to explain technical concepts clearly to non-technical users.
- Strong organisational skills with the ability to manage multiple priorities and work independently on-site.
- Full UK driving licence.
Desirable:
- Microsoft certifications such as MS-900 (Microsoft 365 Fundamentals), AZ-900 (Azure Fundamentals), AZ-104 (Azure Administrator), MD-102 (Endpoint Administrator), or SC-900 (Security Fundamentals).
- CompTIA A+, Network+, or Security+ certifications.
- Experience working within an MSP (Managed Service Provider) environment.
- Familiarity with PowerShell scripting for automation and administration tasks across Microsoft 365, Azure, and Active Directory.
- Experience with virtualisation platforms such as Hyper-V or VMware.
- Understanding of ITIL frameworks and structured incident management processes.
- Exposure to Zero Trust security principles and Microsoft's security stack (Defender XDR, Purview, Sentinel).
Job Type: Full-time
Pay: £26,000.00-£29,000.00 per year
Benefits:
- Bereavement leave
- Company pension
- Free parking
- On-site parking
- Sick pay
Ability to commute/relocate:
- Ipswich IP3 9FH: reliably commute or plan to relocate before starting work (preferred)
Education:
- Certificate of Higher Education (preferred)
Work Location: In person