Featured

System Engineer

Posted 17 April 2025
Salary HKD550000 - HKD750000 per annum
LocationHong Kong
Job type Permanent
Discipline Technology
ReferenceBH-2403-1

Job description

We are looking for a skilled System Engineer to join the team. This role is responsible for ensuring the reliability, security, and optimal performance of our Active Directory infrastructure while managing secure access to corporate systems and data.

Responsibilities
  • Lead the design, deployment, and migration of Windows Active Directory in a global logistics environment.
  • Develop and enforce AD best practices, including OU structure, Group Policy (GPO), DNS, DHCP, and domain controllers (DC) placement.
  • Plan and execute AD consolidation, domain upgrades , and hybrid Azure AD integrations.
  • Ensure the security, integrity, and availability of the Active Directory infrastructure.
  • Perform regular maintenance tasks, including backups and system updates.
  • Conduct health checks on domain controllers and replication status.
  • Implement and maintain secure authentication systems (including multi-factor solutions)
  • Administer privileged access controls and permission structures
  • Conduct regular access reviews to ensure compliance with security policies
  • Manage integration between on-premises AD and cloud identity systems
  • Respond to and investigate access-related security incidents
  • System Integration & Optimization
  • Automate routine tasks using PowerShell or other scripting tools
  • Document system configurations and operational procedures
  • Collaborate with infrastructure teams on directory service improvements
  • Stay current with Microsoft security updates and best practices
 
Requirements
  • Bachelor’s degree in Information Technology, Cybersecurity, or a related field.
  • Strong understanding of Active Directory architecture and components.
  • Experience with Windows Server environments and Group Policy Management.
  • Experience implementing and managing IAM solutions (e.g., Azure AD, Okta, Ping Identity, AWS IAM, or similar).
  • Experience with hybrid identity environments (on-prem AD integrated with Azure AD or other cloud IAM solutions).Strong analytical, problem-solving, and presentation skills
  • Microsoft certificate e.g., Azure Administrator, Identity and Access Administrator
  • Security certificate (Optional) e.g. CISSP, CISA, CEH
  • Knowledge of Zero Trust principles and their application in identity security
  • Excellent communication and interpersonal skills to collaborate with cross-functional teams
  • Proficiency in both written and spoken English and Chinese, including Mandarin
 
We apologies that only shortlisted candidates will be contacted.
For more details, please feel free to ping me for a chat or send me an email at hfong@captarpartners.com📩Please let me know if you have any referrals or if you are interested in the role.