Job Description
Job Description
Plan Group is a leader in delivering Smart Building Technology in both Commercial Real Estate and in Smart Hospitals and we are looking to grow our Technology team. Our focus, to connect the building and the people who work and or live within them together by optimizing the building operations and the way upon which the occupants interact with the building to improve their overall experience.
As part of this goal, the Technology team supports these projects with IT infrastructure and systems used by the client and vendors involved, each with their own set of requirements. Leveraging your understanding of IT systems and infrastructure, along with your experience with systems deployment, configuration and support, you will take a technical role in solution deployment.
As our System Administrator you will :
Core Responsibilities
- Infrastructure Availability and Security Ensure reliable operation, security, and uptime of project-specific IT infrastructure (on-prem and cloud). Maintain servers, virtualization hosts, storage, network segmentation, and security controls to meet SLAs.
- Server and Virtualization Administration Install, configure, and maintain physical servers and virtualization platforms including VMware ESXi , vCenter , Microsoft Hyper-V , and Nutanix AHV . Provision and manage virtual machines, templates, snapshots, and resource pools.
- Directory Services and Identity Management Administer Active Directory Domain Services , Group Policy Objects (GPO), DNS, DHCP, AD FS, and LDAP integrations. Manage domain joins, OU structure, service accounts, and delegated administration.
- Cloud Platform Operations Deploy and manage cloud resources across Azure , AWS , and Google Cloud Platform for hybrid and cloud-native workloads. Implement IaaS, PaaS, identity federation, and secure connectivity (VPN / ExpressRoute / VPC).
- Networking and Connectivity Configure and troubleshoot Layer 2 / Layer 3 networking : VLANs , subnetting, routing, DHCP, DNS, and IP addressing. Support VPNs (site-to-site and client VPN), firewall rules, and network segmentation for building systems and vendor access.
- Security and Perimeter Controls Implement and maintain firewalls, IDS / IPS, endpoint protection, and hardening standards. Manage VPN access, MFA, role-based access control, and patching cadence to protect sensitive systems.
- Backup, DR, and Recovery Design and operate backup and recovery solutions (e.g., Veeam , image-based backups, snapshots). Validate recovery plans, perform restores, and maintain RPO / RTO documentation.
- Monitoring, Logging, and Performance Deploy and maintain monitoring and logging tools (e.g., SolarWinds, Nagios, Prometheus, ELK) to track system health, capacity, and performance. Identify bottlenecks and implement remediation.
- User and Vendor Access Management Manage user accounts, permissions, password policies, service accounts, and vendor access (least privilege). Administer VPN credentials, jump hosts, and secure remote access procedures.
- Troubleshooting and Incident Response Diagnose and resolve server, virtualization, storage, network, and application issues. Participate in incident response, root cause analysis, and post-incident remediation.
- Documentation and Change Control Maintain technical runbooks, network diagrams, configuration baselines, and change logs. Follow ITIL-aligned change control and configuration management practices.
Required Technical Skills
Virtualization : VMware ESXi / vCenter, Microsoft Hyper-V, Nutanix AHV; VM lifecycle management and resource tuning.Directory and Identity : Active Directory Domain administration, GPO, DNS, DHCP, LDAP.Cloud : Practical experience with Azure , AWS , or GCP for hybrid deployments and cloud services.Networking : VLAN design, IP subnetting, basic routing, DHCP / DNS troubleshooting, VPN configuration, and IP address troubleshooting.Storage : SAN / NAS fundamentals, iSCSI / NFS, storage provisioning and performance considerations.Security : Firewall and VPN configuration, endpoint protection, patch management, MFA, RBAC.Backup and DR : Backup solution administration and recovery testing.Monitoring and Automation : Familiarity with monitoring stacks and scripting for automation (PowerShell, Bash).Protocols and Services : TCP / IP, HTTP / S, RDP, SSH, SNMP, NTP, SMTP.Qualifications and Experience
Experience : 3–5+ years administering server infrastructure, virtualization, and networked services in production environments.Education : Bachelor’s degree in Computer Science, Information Technology, or equivalent experience.Certifications : MCSA / MCSE, Microsoft Azure Administrator, VMware VCP, Cisco CCNA , RHCE, or equivalent are assets.Soft Skills : Strong written and verbal communication, documentation, and stakeholder presentation skills.Availability : Willingness to travel to project sites as required.On-Call : Participate in a 24 / 7 on-call rotation (approx. 1–2 weeks per month). Must respond to critical alerts within 45 minutes and be available to work remotely or on-site. On-call compensation includes a standby stipend plus hourly pay for work performed.Nice to Have
Experience with Veeam or enterprise backup suites.Familiarity with building automation system integrations and protocols (BACnet, Modbus) or vendor APIs.Experience with configuration management and IaC tools (Ansible, Terraform).Knowledge of compliance frameworks and secure deployment practices for healthcare environments.