21 Aug
|
Neurealm
|
Chennai
Job Title: O365/AD Admin – L2+
Band: Band 2
Experience: 4 to 8 years
Location: Chennai (work from Office)
About the Role
We are looking for an experienced L2+ O365/AD Admin to manage, support, and troubleshoot our Microsoft 365 (O365) and Active Directory (AD) environment as a dedicated function within the EUC tower. The ideal candidate will handle day-to-day mailbox and messaging administration, identity and access management, user lifecycle (Joiner/Mover/Leaver) activities, and endpoint productivity services support, working closely with L1 support and L3/EUC Architects to ensure secure, reliable, and well-governed collaboration and identity platforms.
Key Responsibilities
Office 365 / Exchange Online Administration
- Manage and support Exchange Online mailbox administration — mailbox creation, permissions, distribution lists, shared/resource mailboxes, and mail flow/transport rules.
- Handle L2 escalations from L1 for mailbox and messaging issues — mail flow delays, delivery failures, quota/size issues, and mobile device (ActiveSync) sync problems — within defined SLAs.
- Perform user account provisioning and deprovisioning within Microsoft 365, including license assignment/management and application access setup.
- Provide L2 support for Microsoft 365 applications — Outlook, Teams, OneDrive, SharePoint Online — including access, sync, and performance issues.
- Support endpoint productivity services — Microsoft 365 apps deployment, activation issues, and integration with endpoint management tools.
- Monitor Microsoft 365 service health and communicate proactively on service incidents/advisories impacting mailbox or collaboration services.
Active Directory Administration
- Manage on-premises and/or Azure AD (Entra ID) user account administration — creation, modification, disablement, and deletion in line with defined processes.
- Administer security and distribution groups, organizational units (OUs), and permission structures, ensuring least-privilege access principles.
- Support authentication and access control — password resets, account lockouts, MFA configuration issues, and conditional access-related troubleshooting.
- Execute Joiner/Mover/Leaver (JML)
activities end-to-end — account provisioning for new hires, access/role changes for role movements, and timely de-provisioning for leavers.
- Perform identity administration and policy enforcement — Group Policy Objects (GPO), password/account policies, and directory hygiene/cleanup activities.
- Support AD replication health checks, DNS/DHCP-related identity issues, and hybrid identity synchronization (Azure AD Connect/Entra Connect) monitoring.
Troubleshooting
- Diagnose and resolve mailbox and mail flow issues — message tracing, transport rule conflicts, spam/quarantine issues, and connector failures.
- Troubleshoot Active Directory authentication failures, replication errors, GPO application issues, and account lockout root causes.
- Investigate Azure AD Connect/Entra Connect sync errors and hybrid identity mismatches between on-premises AD and Microsoft 365.
- Debug user access issues spanning both O365 and AD — license/permission mismatches, group membership errors, and conditional access blocks.
- Perform root cause analysis for recurring incidents and drive permanent fixes in coordination with L3/EUC Architecture teams.
Security & Access
- Implement and manage role-based access control (RBAC) within Microsoft 365 admin centers and Active Directory for secure, least-privilege access.
- Support compliance and data protection features — mailbox auditing, retention policies, DLP alerts, and litigation hold requests.
- Ensure JML processes are executed within SLA to minimize orphaned accounts, excess access, and audit findings.
- Ensure compliance with patch SLAs, access review cycles, and audit/regulatory requirements related to identity and messaging platforms.
Platform & Automation
- Automate routine O365/AD administrative tasks using PowerShell (Exchange Online PowerShell, AzureAD/Microsoft Graph, ActiveDirectory module).
- Contribute to standardization of onboarding/offboarding checklists, naming conventions, and access request workflows.
- Work with monitoring and reporting tools to proactively track license utilization, mailbox growth, and AD account hygiene.
- Support integration between O365/AD processes and endpoint/automation platforms used within the broader EUC tower.
- Document runbooks, SOPs, and knowledge base articles for recurring O365 and AD issues.
- Participate in on-call/shift-based support rotation and support during planned maintenance or major directory/tenant changes.
Required Skills & Qualifications
- Bachelor’s degree in Computer Science, IT, or related field (or equivalent experience).
- 4 to 8 years of hands-on experience in Office 365/Exchange Online administration and Active Directory/Azure AD administration.
- Strong hands-on experience with Exchange Online mailbox management, mail flow troubleshooting, and Microsoft 365 admin center administration.
- Solid working knowledge of on-premises Active Directory and Azure AD (Entra ID), including group/OU management and hybrid identity concepts.
- Demonstrated experience executing Joiner/Mover/Leaver (JML) processes and identity lifecycle management within an enterprise environment.
- Working knowledge of PowerShell scripting for Exchange Online and Active Directory administration and automation.
Preferred / Good to Have
- Microsoft Certified: Contemporary Desktop Administrator Associate, Identity and Access Administrator Associate, or Microsoft 365 Certified: Administrator Expert.
- Experience with Azure AD Connect/Entra Connect configuration and troubleshooting for hybrid identity environments.
- Exposure to conditional access, Multi-Factor Authentication (MFA), and Microsoft Purview compliance/data protection features.
- Experience working within an ITSM/ticketing platform for incident, request, and change management.
- Familiarity with endpoint management tools (Microsoft Intune) and their integration with Azure AD-based identity.
- Exposure to automation/scripting for bulk account operations and reporting (PowerShell, Microsoft Graph API).
📌 & AVD Administrator (Chennai)
🏢 Neurealm
📍 Chennai