Yoh, A Day & Zimmermann Company is seeking a Senior Windows Engineer specializing in Azure and Hyper-V. This role involves managing a Windows environment and automating processes across Azure, VMware, and Hyper-V to ensure secure and efficient operations.
Responsibilities:
- Windows automation at scale: Build and maintain Ansible roles/playbooks (via AWX) and PowerShell to provision, configure, harden, and remediate Windows servers/desktops (idempotent, version-controlled, secret-safe)
- VSphere/Hyper-V automation : Deploy from templates, customize/rename hosts, join domain, install software, handle reboots with verification, and manage capacity/lifecycle using Ansible + vSphere APIs and PowerShell/Hyper-V cmdlets
- Azure integration: Automate Azure resource changes (CLI/PowerShell) and hybrid identity tasks tied to AD/Entra; enforce RBAC via code
- AD/GPO engineering: Operate AD DS, DNS/DHCP, GPO/gMSA; codify and enforce baselines (RDP, password/lockout, firewall, registry) with compliance evidence
- Patching & compliance: Orchestrate Windows patch workflows and post-patch reviews; track drift and remediation (SCCM/Intune)
- Observability & DR: Integrate automation with Zabbix for actionable alerts and with ServiceNow for tickets; script Zerto/Cohesity/Wasabi runbooks and test drills
- Zero-touch: Contribute to Autopilot/Intune zero touch deployments of endpoints
Requirements:
- 3-5 years in enterprise Windows engineering (desktop/server) with solid Ansible, PowerShell, vSphere/Hyper-V experience
- Solid AD/GPO knowledge; ability to translate security baselines into code and support audit requirements
- Habitual use of Git, CI-style testing, idempotence, least-privilege, and safe rollbacks
- Good troubleshooting skills across WinRM, GPO/application of policy, networking, and virtualization
- Microsoft (Azure-focused), VMware VCP, or Hyper-V certifications; experience with Zerto, Cohesity, Wasabi, Zabbix, SCCM/Intune