Title
System & Network Administrator
Department
Information Technology
Reports to
Information Technology Manager
SEE YOUR CAREER THROUGH A NEW LENS WITH RPO!
RPO is a global leader in precision optics, optical components, and optical assemblies. We specialize in a full spectrum of products & services including - Design and Engineering, Systems Integration, Lens Assembly, Visible and Infrared Components, Glass and Plastic Molded Aspheres, and Thin Film Coating. As one of the fastest growing companies in Rochester, RPO offers exciting career paths and work on market-leading programs. See below one of many career opportunities to join the RPO team!
Job Summary:
Rochester Precision Optics, LLC is seeking a Systems & Network Administrator to support and operate the company's core IT infrastructure within a regulated manufacturing environment. This role is responsible for the administration and operational stability of server, network, cloud, and enterprise infrastructure platforms supporting approximately 300 users across corporate and manufacturing operations. The Systems & Network Administrator works closely with the IT Manager to maintain a secure, reliable, and compliant infrastructure, including implementation of technical controls aligned with NIST 800-171 and CMMC 2.0 requirements.
This is a hands-on role where the successful candidate will take ownership of infrastructure operations, contribute to the ongoing improvement and modernization of the organization's infrastructure platforms, and serve as an escalation resource for complex technical issues.
Summary of Essential Job Duties:
Infrastructure & Systems Administration
- Administer and maintain Windows Server environments and enterprise infrastructure systems
- Manage Active Directory, DNS, DHCP, Group Policy, and identity infrastructure
- Support virtualization platforms such as VMware or Hyper-V
- Provision and maintain virtual machines and server resources
- Monitor infrastructure performance, system capacity, and service availability
- Perform patch management and security updates for servers and infrastructure systems
- Maintain file services, storage systems, and system health monitoring
- Administer enterprise backup platforms and validate backup integrity through periodic recovery testing
- Administer enterprise software deployment platforms including PDQ Deploy and related deployment tooling
- Create and maintain standardized software deployment packages for enterprise applications and operating system updates
- Coordinate controlled rollout of software updates and application upgrades across managed systems
- Maintain infrastructure documentation including system configuration standards and architecture diagrams
Network Infrastructure Administration
- Maintain & support network infrastructure including switches, firewalls, VPN, and wireless networks
- Configure and support VLANs, routing, and subnetting
- Configure and maintain firewall policies, access rules, and network security controls
- Maintain network authentication systems supporting secure wired and wireless access
- Support VoIP and network-connected infrastructure including cameras and related technologies
- Maintain and troubleshoot DNS, DHCP, routing, and other core network services
- Support structured cabling, patch panel management, and infrastructure expansion projects
- Maintain network diagrams, segmentation documentation, and infrastructure configuration records
Microsoft 365 GCC High Administration
- Administer Microsoft 365 GCC High tenant services including Exchange Online, Microsoft Teams, and Entra ID
- Configure and maintain Conditional Access policies and secure authentication configurations
- Support identity lifecycle integration between on-premises Active Directory and Entra ID
- Provide Tier 2/3 escalation support for advanced Exchange Online and Teams issues
- Assist with Microsoft Purview administration including eDiscovery searches, retention policies, and litigation hold support
- Maintain secure messaging and collaboration configurations aligned with regulatory requirements
Endpoint & Mobile Device Management Platform Administration
- Administer enterprise device management platforms including Microsoft Intune and Endpoint Central
- Configure and maintain device enrollment policies, compliance policies, and security baselines
- Integrate device compliance enforcement with Conditional Access authentication policies
- Provide Tier 3 escalation support for complex endpoint and mobile device management issues
- Support device security posture aligned with organizational security and compliance requirements
Enterprise Infrastructure Platforms
- Maintain backend infrastructure supporting enterprise applications including ERP, SQL Server, and FileMaker hosting environments
- Support infrastructure stability for unified communications platforms such as 3CX VoIP
- Maintain backend infrastructure supporting physical security platforms including badge access control and video surveillance systems
- Maintain infrastructure supporting enterprise print services and related systems
- Support infrastructure used for digital signage, IoT devices, and other network-connected systems
Security & Compliance Operations
- Implement and maintain infrastructure security controls aligned with NIST 800-171 and CMMC 2.0 requirements
- Partner with internal leadership and external compliance advisors on cybersecurity initiatives
- Maintain secure configuration baselines and infrastructure hardening standards
- Ensure infrastructure systems generate and forward logs to centralized monitoring platforms
- Support vulnerability remediation across infrastructure platforms
- Assist with investigation of infrastructure-level security alerts and anomalies
- Support audit readiness activities and collection of technical compliance evidence
Collaboration & Operational Support
- Serve as Tier 2 / Tier 3 escalation resource for complex infrastructure and systems issues
- Collaborate with IT leadership on infrastructure improvements and modernization initiatives
- Assist with enterprise application upgrades and infrastructure lifecycle projects
- Provide mentorship and technical guidance to IT support staff
Participate in rotating on-call coverage for infrastructure alerts and critical incidents Qualifications:
- Bachelor's degree in Information Technology, Computer Science, or related field preferred, or equivalent combination of education and experience.
- Relevant industry certifications such as Network+, Security+, Microsoft, or VMware certifications are a plus.
- 5+ years of experience in systems administration, infrastructure engineering, or related roles
- Strong knowledge of Windows Server, Active Directory, and Microsoft enterprise environments
- Experience managing network infrastructure including VLANs, switching, firewalls, and VPN technologies
- Experience supporting Microsoft 365 environments (GCC High experience preferred)
- Experience with virtualization platforms such as VMware or Hyper-V
- Experience administering enterprise endpoint management platforms (Intune, Endpoint Central, or similar)
- Experience supporting enterprise backup platforms and disaster recovery planning
- Familiarity with enterprise deployment tools and automation scripting (PowerShell preferred)
- Experience supporting infrastructure hosting enterprise applications or ERP systems preferred
- Familiarity with NIST 800-171 or CMMC security frameworks preferred
You Are:
- Results-Oriented: Motivated, hard-working and ready to level-up;
- Curious: You never stop learning and have an insatiable desire to gain new skills and knowledge;
- Process Oriented: Well organized, demonstrating attention to detail;
- Analytical: Possess a"If there's a problem, I'll find a solution" attitude;
- Accountable: Demanding the highest quality from yourself and team members;
- Detail-Oriented: Have excellent time management and organizational skills;
- A Team Player: Reliable, collaborative, flexible with a positive 'get things done' attitude;
- A U.S. Person: Compliant with ITAR, EAR and other laws and regulations as defined: "U.S. citizens, lawful permanent residents ("Green Card" holders), persons granted refugee status or asylum status in the United States, or temporary residents granted amnesty."
You Will Enjoy:
- Growth: The opportunity to learn and advance your career;
- Wealth: Competitive compensation package linked to your experience and performance, a 401(k) with company match;
- Wellness: Health, dental, vision & life insurance;
- Balance: 11 paid holidays, generous paid vacation and sick -time;
- Culture: an energetic, caring, fun, value-driven team.
Work environment & Physical Demands:While performing the duties of this job, the employee is regularly required to stand, use hands & fingers, handle or feel, and reach with hands and arms. The employee frequently is required to stand, walk, stoop, kneel, crouch, talk and hear.
- Specific vision abilities required by this job include close vision, distance vision, peripheral vision, depth perception . click apply for full job details