System Engineer - Infrastructure
We are seeking an experienced Senior System Engineer to join our IT Infrastructure team. This role is responsible for the design, operation, and continuous improvement of core Microsoft infrastructure services, including server patching, enterprise messaging, identity services, and server lifecycle management within a regulated financial services environment. The position requires a hands-on expert capable of managing critical infrastructure platforms and ensuring their stability, security, and compliance.
Key Responsibilities
Server Patching & Vulnerability Management
• Own and execute the end-to-end server patch management lifecycle
• Manage and optimize patching processes across the server estate using SCCM / relevant tooling
• Define and maintain patching standards, baselines, and compliance reporting
• Support vulnerability remediation in collaboration with Security teams
• Ensure full auditability and regulatory compliance of patching activities
Messaging & Email Platform
• Operate and maintain enterprise email platform (Exchange Online / Hybrid Exchange)
• Act as technical lead for mail flow, transport rules, and security controls
• Support troubleshooting of complex messaging issues (mail routing, delivery, hygiene)
• Contribute to email platform improvements, migrations, and decommissioning initiatives
Core Infrastructure Services
• Maintain and evolve Active Directory & core Microsoft services (DNS, GPO, authentication)
• Support hybrid identity (Entra ID / Azure AD) integrations and governance
• Ensure stability and performance of Windows Server environments
• Contribute to infrastructure design and standardization
Security, Compliance & Audit
• Apply system hardening and baseline configurations
• Ensure alignment with regulatory frameworks (BaFin / CSSF / DORA)
• Provide technical evidence for internal/external audits
Server Lifecycle & Configuration Management
• Manage and maintain Windows Server lifecycle management, including:
• Patching baselines
• OS configuration standards
• Hardening policies
• Operate and optimize SCCM (or any 3rd party tooling) for server management, including:
• Server patch orchestration (ADR tuning, phased deployments)
• Configuration baselines and compliance enforcement
• Ensure consistency and standardization across core server platforms
• Support automation and reporting for server patching and compliance
• Contribute to transition and integration with modern management approaches (e.g., Intune / Azure Update Manager) where relevant for servers
Operations & Continuous Improvement
• Provide 3rd-level support for infrastructure and messaging-related incidents
• Lead root cause analysis and problem management for critical issues
• Automate administrative and operational tasks using PowerShell
• Continuously improving service reliability, performance, and operational processes
Certificates & Secure Messaging
• Manage and support certificate-based services across infrastructure systems
• Operate and maintain S/MIME (Secure Email) capabilities, including:
• Certificate deployment and lifecycle management
• User and server certificate configuration
• Troubleshooting encryption, signing, and trust issues
• Ensure proper integration of certificates within:
• Exchange Online / Hybrid email flows
• Internal PKI / external certificate authorities
• Support certificate renewal, automation, and compliance processes
• Contribute to improving secure communication standards across the organization
Required Skills & Experience
• Strong hands-on experience with:
o Microsoft Exchange (Online / Hybrid)
o Windows Server & Active Directory
o SCCM / Microsoft Endpoint Configuration Manager (server-focused usage)
• Solid knowledge of:
o Entra ID (Azure AD) and hybrid identity architectures
o Group Policy and authentication mechanisms
o Core infrastructure services (DNS, networking fundamentals)
• Strong PowerShell scripting and automation skills
Nice to Have
• Experience with:
o Exchange migrations or email platform transformations
o Modern management approaches (e.g., Intune, Azure-based services)
o Security tools (e.g., Defender suite, vulnerability management platforms)
o Monitoring solutions such as SCOM, PRTG, or equivalents
Experience & Education
• 5–10 years of experience in IT infrastructure or system engineering roles
• Experience supporting enterprise IT environments
• Degree in Information Technology, Computer Science, or equivalent professional experience
Language Requirements
• German – professional working proficiency (required)
• English – professional working proficiency (required)
Personal Competencies
• Structured and reliable working style
• Strong sense of responsibility and attention to detail
• Ability to work independently within defined frameworks
• Clear communication and documentation skills
• Team-oriented mindset with strong service orientation
• Ability to work effectively in a hybrid working model, combining remote work with regular on‑site presence at the Frankfurt office as required
Empfohlene Jobs
Senior PPA Originator (m/w/d)
Um den Übergang zu einer sauberen Energiezukunft zu beschleunigen, erwirbt, betreibt und vermarktet Tion erneuerbare Energieanlagen in ganz Europa. Aufbauend auf unserem Portfolio von rund 800 MW aus…
Field Sales Executive (m/f/d)
At Saltz, we believe the finest ingredients should be available in one marketplace. For too long, the culinary world has been tangled in a web of distributors and hidden costs, separating passionate c…
IT-Spezialist (m/w/d) in der Pharmabranche - hybrides Arbeiten (Remote & Präsenz)
Sind Sie bereit Ihre Karriere auf das nächste Level zu bringen? Dann haben wir genau das Richtige für Sie! In dem kollegialen Team, bei unseren Kunden aus der Pharmabranche, können Sie Ihre Expe…
EV Charging Infrastructure Project & Deployment Manager -...
Role Summary The Project Manager & Network Operations – HPC / Flash Charging leads the end-to-end deployment and operational integration of BYD’s High-Power Charging (HPC) / Flash Charging station…
Consultant - SAP S/4HANA Plant Maintenance (m/w/d) - Ingenieur, Consulting
Deloitte bietet führende Prüfungs- und Beratungsleistungen in Audit & Assurance, Tax & Legal, Consulting und Advisory – für nahezu 90 % der Fortune Global 500® und zahlreiche private Unternehmen. Wir…
Büroadministration im Bankenwesen (m/w/d) - hybrides Arbeiten (Remote & Präsenz)
Sie haben Freude an Service- und administrativem Arbeiten, sind organisiert und arbeiten selbstständig? Dann suchen wir genau Sie! Wir, der Geschäftsbereich Financial Services der DIS AG, suchen …
Department Manager (m/w/d)
MAKE IT YOURS! WIR SUCHEN DICH ALS DEPARTMENT MANAGER (m/w/d) Für unseren PULL&BEAR Store in Frankfurt - Skyline Plaza in Vollzeit | unbefristet Aufgaben Du hältst den Store in Bewegung - auch hinter …
Senior IT-Expert Business Integration (m/w/d) 80% Remote
Senior IT-Expert Business Integration (m/w/d) 80% Remote in Frankfurt am Main Als prämierter Engineering - Dienstleister sind wir in zukunftsweisende und spannende branchenübergreifende Entwicklung…
Database Architect (m/w/d) - Ingenieur, Datenbankentwicklung/BI
Aufgaben Design von Datenbankarchitekturen, insbesondere für Skalierbarkeit und Sicherheit Auswahl geeigneter Datenbanktechnologien (relational, NoSQL, Cloud-Dienste) Unterstützung bei Datenm…
Senior Software Engineer Defense (w/m/d) - Ingenieur, Anwendungsentwicklung
Wenn du dich für Capgemini entscheidest, wählst du ein Unternehmen, in dem du die Möglichkeit hast, deinen Karriereweg selbst zu gestalten. Du wirst von einem kollaborativen Netzwerk von Kolleg*innen…