Title: IT Support Engineer
Company Name: ITCheers BD
Vacancy: 1
Age: 27 to 32 years
Job Location: Dhaka
Salary: Tk. 30000 - 32000 (Monthly)
Experience:
We are seeking a skilled IT Support Engineer responsible for daily enterprise end-user technical support, Microsoft cloud platform administration, endpoint deployment & security management, and on-premises Active Directory domain maintenance. The role will handle break-fix support, device lifecycle management, identity access control, security compliance enforcement, and collaborative troubleshooting across end-user, endpoint, cloud identity, and corporate domain environments. You will ensure stable operation of Microsoft 365 ecosystem, enforce endpoint security via Microsoft Defender for Endpoint and Intune, and maintain secure identity governance with Entra ID and traditional AD domain services.
Key Responsibilities
End-User IT Support
Provide tier 1 & tier 2 technical support for employees on desktop/laptop hardware, software installation, network connectivity, email, printing, and office productivity issues.
Resolve Microsoft 365 service incidents: Outlook mail issues, SharePoint access, Teams collaboration, OneDrive sync, Office suite activation and licensing problems.
Log, track, escalate and close support tickets via IT service management system, maintain clear troubleshooting records and resolution documentation.
Microsoft 365 Administration & Deployment
Manage Microsoft 365 tenant core services: user licensing assignment, mailbox configuration, shared mailbox distribution group setup, SharePoint site permission, Teams team creation and access control.
Assist in Microsoft 365 tenant configuration, service health monitoring, and routine platform maintenance to minimize service downtime.
Participate in enterprise-wide Office deployment, upgrade, and patch rollout for company devices.
Microsoft Intune Deployment & Endpoint Management
Design, configure and execute device enrollment via Intune for Windows, macOS mobile endpoints; complete bulk device deployment, provisioning, and post-setup configuration.
Create and assign Intune compliance policies, configuration profiles, app deployment policies, Wi-Fi/VPN certificate policies to standardize corporate endpoint settings.
Manage device inventory, remote wipe, lock, and deprovisioning for lost/retired company assets, optimize endpoint onboarding workflow for new hires.
Microsoft Defender for Endpoint Security Operations
Monitor Defender for Endpoint security alerts, threat detections, malware incidents, and suspicious endpoint behaviors.
Perform threat investigation, isolate compromised endpoints, run remediation actions, deploy antivirus signature updates and security baseline policies.
Enforce enterprise security rules to reduce attack surface, generate periodic endpoint security compliance reports.
Entra ID (Azure AD) Identity & Access Management
Administer Entra ID user creation, deletion, disablement, password reset, multi-factor authentication (MFA) enforcement, and conditional access policy management.
Manage security groups, app registration, enterprise application SSO access, guest user access control, and privileged identity basic governance.
Troubleshoot Entra ID authentication failures, sync issues between Entra ID and on-prem AD, and permission access errors for cloud resources.
Active Directory Domain (On-Prem AD) Management
Maintain corporate Windows Server Active Directory domain: OU structure, group policy object (GPO) creation & deployment, user/group permission inheritance, computer object management.
Troubleshoot domain join failures, GPO application errors, DNS resolution, domain controller replication health, and user profile domain authentication issues.
Collaborate with infrastructure team to monitor domain server health, apply security patches, and maintain domain service high availability.
Documentation & Process Improvement
Update technical runbooks, standard operating procedures (SOPs) for Intune deployment, M365 troubleshooting, AD identity management, and security incident response.
Propose optimization for device deployment process, user onboarding/offboarding automation, and endpoint security hardening standards.
Required Qualifications & Technical Skills
Mandatory Technical Competencies
Proficient in English is a must
Solid hands-on experience with Microsoft 365 administration: Exchange Online, SharePoint Online, Microsoft Teams, OneDrive for Business, license management.
Proficient in Microsoft Intune: device enrollment, policy deployment, app packaging, compliance rules, bulk device provisioning & remote management.
Familiar with Microsoft Defender for Endpoint: threat alert triage, malware remediation, endpoint security policy configuration, security compliance auditing.
Expertise in Entra ID (Azure Active Directory): user identity lifecycle, MFA, Conditional Access, group management, cloud-on-prem AD sync troubleshooting.
Strong knowledge of Windows Active Directory Domain Services: user/computer objects, GPO, OU management, domain join, DNS, AD replication, permission troubleshooting.
Hands-on Windows 10/11 desktop support, basic networking knowledge (TCP/IP, DNS, DHCP, VPN).
Soft Skills & Basic Requirements
1+ year professional experience in enterprise IT support with Microsoft cloud stack focus.
Excellent problem-solving skills, ability to prioritize multiple support tickets under tight timeframes.
Clear verbal and written English communication for internal cross-team coordination and documentation.
Customer-oriented mindset, responsible attitude, ability to work rotating on-call support when required.
Preferred Certifications
Microsoft 365 Certified: Enterprise Administrator Expert
Microsoft Intune / Security Associate certifications
Azure AD / Entra ID Administrator Associate
MD100, MD101, SC-200, AZ-104 relevant Microsoft certifications