IT Systems Engineer (m/w/d) – Microsoft 365, Endpoint Security & Automation
- Role
- DevOps
- Employment
- Full-time
Open to DE only. Set where you work from to check your eligibility.
No BS summary
IT Systems Engineer with focus on Azure, PowerShell, DevOps, and Infrastructure as Code. Responsible for developing and automating the Microsoft 365 and Azure environment, including endpoint security, Windows client management, and recurring IT processes. Requires experience with Azure, M365, Windows Server, PowerShell, and IaC. Good German and English skills are necessary.
Core skills
Required skills
Optional skills
Required languages
Raya Diagnostics entwickelt Lösungen für die moderne Diagnostik und ist dabei auf eine zuverlässige, sichere und gut automatisierte IT-Infrastruktur angewiesen. Zur Verstärkung unseres IT-Teams suchen wir einen IT Systems Engineer (m/w/d) mit Schwerpunkt auf Azure, PowerShell, DevOps und Infrastructure as Code , der unsere Azure- und Microsoft-365-Umgebung aktiv weiterentwickelt und den Betrieb unserer Systeme nachhaltig automatisiert und verbessert. Administration, Absicherung und kontinuierliche Weiterentwicklung unserer Microsoft-365- und Azure-Umgebung Konzeption und Umsetzung von Endpoint-Security-Maßnahmen im Microsoft-365-Ökosystem, insbesondere mit Microsoft Intune, Microsoft Defender und Entra ID Verwaltung und Härtung von Windows-Clients sowie Umsetzung von Richtlinien für Identitäten, Geräte, Zugriffe und OIDC/SSO Planung und Automatisierung wiederkehrender IT-Prozesse mit PowerShell und geeigneten Microsoft-365- beziehungsweise Azure-Diensten Administration, Überwachung und Weiterentwicklung unserer Windows-Server-Umgebung Mitarbeit bei Updates, Patches, Backups, Monitoring und Wiederanlaufkonzepten Verwaltung von Software- und Cloud-Lizenzen einschließlich Bestandskontrolle, Optimierung und Nachweisführung Aufbau und Weiterentwicklung standardisierterDeployment-Prozesse nach DevOps-Prinzipien, unter anderem mit Infrastructure as Code Bearbeitung komplexer Anfragen und Störungen im 2nd- und 3rd-Level-Support sowie strukturierte Fehleranalyse Erstellung technischer Dokumentationen und Sicherheitskonzepte sowie Zusammenarbeit mit internen Teams und externen Dienstleistern Abgeschlossene Ausbildung oder Studium im IT-Umfeld, z.B. im Bereich Fachinformatik für Systemintegration, IT-Systemelektronik oder eine vergleichbare Qualifikation Berufserfahrung in der Administration von Microsoft Azure, Microsoft 365 und Windows-Umgebungen Fundierte Kenntnisse in mind. mehreren der folgenden Bereiche: Microsoft Intune undEndpointManagement Microsoft Defender forEndpointbeziehungsweise Microsoft Defender XDR Microsoft Entra ID,ConditionalAccess und Identity & Access Management Exchange Online, SharePoint Online, Teams oder weitere Microsoft-365-Dienste Windows Server,ActiveDirectory, Gruppenrichtlinien und DNS Gute Kenntnisse in PowerShell und Erfahrung mit der Automatisierung administrativer Aufgaben Verständnis für moderne Deployment-Prozesse, DevOps und CI/CD Praktische Erfahrung mit Infrastructure as Code und idealerweise mit Bicep, Terraform, Azure DevOps oder GitHub Actions Erfahrung im 2nd- und 3rd-Level-Support sowie in der strukturierten Fehleranalyse Selbstständige, lösungsorientierte und sorgfältige Arbeitsweise Gute Kommunikationsfähigkeiten und Freude an der Zusammenarbeit im Team Sehr gute Deutschkenntnisse und gute Englischkenntnisse Von Vorteil Erfahrung mit Microsoft Graph, REST-APIs oder PowerShell-Modulen für Azure und Microsoft 365 Kenntnisse in Git, Azure DevOps, GitHub oder vergleichbaren Versionsverwaltungssystemen Erfahrung mit Endpoint Hardening,Vulnerability Management oder Incident Response Kenntnisse in Netzwerken, Virtualisierung, Backup- und Monitoring-Lösungen Erfahrung in regulierten Branchen, wie bspw. Medizintechnik, Diagnostik oder Gesundheitswesen Attraktive Vergütung: Wettbewerbsfähiges Gehalt, das deiner Qualifikation und Erfahrung entspricht. Flexible Arbeitszeitmodelle: Wir ermöglichen flexible Arbeitszeiten für eine bessere Work-Life-Balance. Erholungsurlaub: 30 Tage bezahlter Urlaub, um neue Energie zu tanken inkl. Sonderurlaub für bspw. Hochzeit, Umzug etc. Und weil Erholung auch zum Jahresende dazugehört, schenken wir dir an Weihnachten und Silvester jeweils einen halben Tag extra frei. Elternzeit: Willkommen und unterstützt! Arbeitsortwahl: Homeoffice oder ein modernes Büro im Herzen Münchens – du entscheidest. Fortbildung: Individuelle Weiterbildungsmöglichkeiten, um dich fachlich und persönlich weiterzuentwickeln. Team- und Company Events: Regelmäßige Onsites und Events fördern den Austausch und das Teamgefühl.
What you'll do
- Administration, security, and continuous development of our Microsoft 365 and Azure environment
- Conception and implementation of endpoint security measures within the Microsoft 365 ecosystem, especially with Microsoft Intune, Microsoft Defender, and Entra ID
- Management and hardening of Windows clients, as well as implementation of policies for identities, devices, access, and OIDC/SSO
- Planning and automation of recurring IT processes with PowerShell and suitable Microsoft 365 or Azure services
- Administration, monitoring, and further development of our Windows Server environment
- Assistance with updates, patches, backups, monitoring, and recovery concepts
- Management of software and cloud licenses, including inventory control, optimization, and record-keeping
- Setup and development of standardized deployment processes according to DevOps principles, including Infrastructure as Code
- Handling complex requests and incidents in 2nd and 3rd level support, as well as structured error analysis
- Creation of technical documentation and security concepts, as well as collaboration with internal teams and external service providers
What they require
- Completed vocational training or degree in an IT field, e.g., in System Integration, IT System Electronics, or a comparable qualification
- Professional experience in the administration of Microsoft Azure, Microsoft 365, and Windows environments
- In-depth knowledge in at least several of the following areas: Microsoft Intune and Endpoint Management, Microsoft Defender for Endpoint or Microsoft Defender XDR, Microsoft Entra ID, Conditional Access and Identity & Access Management, Exchange Online, SharePoint Online, Teams or other Microsoft 365 services, Windows Server, Active Directory, Group Policies and DNS
- Good knowledge of PowerShell and experience with automating administrative tasks
- Understanding of modern deployment processes, DevOps, and CI/CD
- Practical experience with Infrastructure as Code and ideally with Bicep, Terraform, Azure DevOps, or GitHub Actions
- Experience in 2nd and 3rd level support, as well as in structured error analysis
- Independent, solution-oriented, and meticulous way of working
- Good communication skills and enjoyment of teamwork
Benefits
- Attractive remuneration: Competitive salary that matches your qualifications and experience.
- Flexible working time models: We enable flexible working hours for better work-life balance.
- Vacation: 30 days of paid vacation to recharge your batteries, including special leave for e.g. wedding, moving etc. And because rest is also important at the end of the year, we give you an extra half day off on Christmas and New Year's Eve.
- Parental leave: Welcome and supported!
- Work location choice: Home office or a modern office in the heart of Munich – you decide.
- Further training: Individual further training opportunities to develop you professionally and personally.
- Team and company events: Regular on-sites and events promote exchange and team spirit.