We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.

Job posting has expired

#alert
Back to search results
New

Senior Systems Administrator MS Ops

Church Pension Group Services Corporation
life insurance, 401(k)
United States, New York, New York
19 East 34th Street (Show on map)
Jul 16, 2025
Description
Department: Information Technology

Job Type: Regular Full Time

Education Level: BA/BS or combination of education and experience

Required Years Experience: 7
Church Pension Group (CPG) is a financial services organization that serves the Episcopal Church, located in Midtown Manhattan. CPG was founded in 1917 to provide pension benefits to eligible clergy of the Episcopal Church. Since then, its mission has expanded to include life and disability insurance, health benefits, property & casualty insurance, and publishing.
The Senior Systems Administrator (MS Ops) provides expert-level system support, administration, and strategic leadership across Microsoft 365 and Identity and Access Management (IAM) platforms. This role demonstrates advanced technical knowledge in configuring, securing, and optimizing M365 environments, identity and access management, and Windows computing systems. The Senior Systems Administrator (MS Ops) drives technical innovation, engages in complex troubleshooting, and contributes to long-term technology planning and service reliability.
ESSENTIAL DUTIES AND RESPONSIBILITIES include the following. Other duties may be assigned.
  • Lead administration of the Microsoft 365 tenant, including Exchange Online, SharePoint, Teams, OneDrive, and other core services
  • Oversee Azure Active Directory and Microsoft Entra ID, including role assignments, Conditional Access, MFA, and access reviews
  • Implement and maintain Identity and Access Management system (IAM) including lifecycle policies, provisioning, deprovisioning, and entitlement management
  • Drives innovation, automation, and scripting expertise using PowerShell, PowerAutomate, and Bash to streamline operations and ensure compliance.
  • Oversee Windows fleet configuration, imaging, and policy enforcement using tools such as Intune, Ivanti, Jamf, SCCM
  • Configure and manage Group Policy Objects (GPO), Windows endpoints, and server infrastructure
  • Perform root-cause analysis and lead response efforts for high-impact incidents and system interruptions
  • Collaborate with cloud and infrastructure teams to optimize performance, availability, and security of Microsoft and hybrid services
  • Support federated identity configurations and Single Sign-On (SSO) integrations using SAML, OAuth, or OpenID Connect
  • Assist with system upgrades, patch management, and cloud infrastructure modernization
  • Participate in the security incident management process, including endpoint threat response (CrowdStrike, Duo, ISE)
  • Respond to escalated help desk requests, including limited after-hours support
  • Guide and mentor junior team members and promote best practices in operations and identity management
  • Effective performance of the essential functions of this position requires regular in-person, on-site interaction with colleagues, both for purposes of relationship building and meaningful collaboration.
QUALIFICATIONS
Competencies
  • Expert problem solver with advanced analytical and troubleshooting skills
  • High attention to detail and risk-awareness in critical system environments
  • Ability to find root causes of problems and quickly determine efficient solution
  • Ability to anticipate risks and mitigate in the moment
  • Ability to perform calmly and effectively in high-stress scenarios
Required Qualifications
  • Excellent oral, written, and communication skills
  • Experience in light programming, project management of small initiatives, and troubleshooting
  • Experience in relevant business systems, operating systems, and servers
  • Experience with Microsoft Intune, SCCM, Ivanti, and Jamf for device management
  • Powershell scripting experience
  • PowerAutomate experience
  • Bash scripting experience
  • Experience with Microsoft Active Directory, DNS and GPO
  • Experience administrating Office 365
  • Experience with Azure AD
  • Experience responding to security incidents and supporting Zero Trust implementations
  • Experience with Windows Server Administration
  • Willingness to respond to escalations and after-hours issues as needed
Preferred Qualifications
  • Expertise with Microsoft Entra ID and ClearSkye IAM system
  • Knowledge of federated identity and SSO technologies
  • Experience working with cloud and virtualization technologies
  • Experience working with containers and immutable infrastructure
  • Experience with Mac and Jamf Administration
EDUCATION & EXPERIENCE
  • BA/BS in Computer Science, Information Systems, or related field preferred. Combination of education and experience considered
  • 7+ years in systems administration or Microsoft cloud platform environments
PHYSICAL DEMANDS
Extensive use of a computer keyboard is a demand of the position to perform the essential functions of this job successfully.
WORK ENVIRONMENT
Currently, hybrid work environment, which requires working in CPG's office Tuesdays through Thursdays and flexibility to work remotely on Mondays and Fridays. Church Pension Group employees must maintain a professional, compassionate, and trustworthy work environment always. Reasonable accommodations may be made to enable someone with a disability to perform the essential functions of the job within this environment.

Salary Range: $107,000 - $140,000

Join us and Create A Better Future For Yourself!

Flexible Benefits available to eligible employees:

  • Medical (including Vision)
  • Dental
  • Supplemental Dental

Core Benefits automatically provided to eligible employees:

  • Employer funded defined benefit pension plan (five year vesting)
  • Employee Life Insurance
  • Spouse and Dependent Life Insurance
  • Accidental Death and Dismemberment (AD&D) Insurance
  • Short-Term Disability (STD) coverage
  • Long-Term Disability (LTD) coverage (elected as either pre-tax or after-tax)
  • Business Travel Accident Insurance
  • Worker's Compensation
  • Employee Assistance Program
  • Retiree health insurance (eligible after 10 years)
  • Retiree life insurance

Elective Benefits available to eligible employees:

  • 401(k) with matching contributions (immediate vesting)
  • Flexible Spending Accounts (FSAs)
  • Commuter Benefits
  • New York's 529 College Savings Program (NY State residents)

Educational Assistance Program available to eligible employees

Maternity/Paternity Leave available to eligible employees

Time Off available to eligible employees: Vacation, Sick, Personal and Holidays

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

In compliancewith federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification document form upon hire. Please understand that, as a general policy, CPG does not sponsor visas.

EOE: Minorities/Female/Disability/Vet/Sexual Orientation

If you are a CPG employee, please use your CPG email address when creating your profile to apply.

(web-8588dfb-vpc2p)