Post Job Free
Sign in

Active Directory Data Center

Location:
Troy, OH
Posted:
March 10, 2025

Contact this candidate

Resume:

Lokesh B

*************@*****.***

+1-848-***-****

OBJECTIVE:

Detail-oriented VMware Windows Administrator with a robust 8-year track record in IT infrastructure

management, seeking to leverage extensive virtualization and system administration expertise to

ensure seamless operations and strategic improvements within a forward-thinking IT environment.

PROFESSIONAL SUMMARY:

●Having 8 years of experience as a VMware, Windows Administrator and System Administrator includes diversified Experience in VMware ESXi Server on Complex Production Environments.

●Proficient in writing PowerShell scripts to automate repetitive tasks, streamline administrative workflows, and improve operational efficiency across Windows-based systems.

●performing system administration tasks using PowerShell, including user management, group policy management, software installation, and system configuration.

●Having experience in ESX/ESXi server builds and configuring it as per the customer specifications.

●Skilled in troubleshooting network issues related to Active Directory authentication, Group Policy settings, and domain membership problems on Windows-based networks.

●Performed cross platform audits of Active Directory (AD) objects and user permissions.

●Developed organizational units in Active Directory (AD) and managed user security with group policies.

●Managed Group Policy Objects (GPOs) throughout the Active Directory (AD) enterprise

●Performed AD Consolidation projects for multiple global clients.

●Extensive experience in designing, implementing, and managing Active Directory environments, including user/group management, Group Policy creation, and domain services.

●Administered and maintained multiple Domain Controllers (DCs), ensuring high availability, security, and optimal performance.

●Experienced in deploying software packages, updates, and patches to client devices using SCCM(MECM), including application packaging, distribution, and deployment scheduling.

●Managed software updates and patches for Windows operating systems and third-party applications using SCCM Software Update Management (SUM), including update synchronization, deployment rules, and compliance monitoring.

●Successfully deployed and configured over 50 Windows Server 2016/2019 instances, ensuring optimal performance and security.

●Successfully planned and executed end-to-end migration of VMware-based workloads to Microsoft Azure, ensuring minimal downtime and disruption to business operations.

●Configuring and maintaining hardware and software inventory policies in SCCM(MECM), collecting and reporting on inventory data, and managing asset lifecycle information.

●Developed and maintained PowerShell scripts to automate routine administrative tasks, reducing manual effort and improving efficiency.

●Managing mobile devices (iOS, Android, Windows) using Microsoft Intune, including device enrollment, configuration, and compliance management.

●Creating and managing the disk group and managing the disk health check using DELL EMC VxRail manager/vCenter.

●Administered DNS, DHCP and WINS.

●Proficient in deploying Microsoft 365 for organizations, including planning, configuring, and executing migrations from on-premises environments to the cloud.

●Experienced in utilizing and supporting Office 365 applications such as Word, Excel, PowerPoint, Outlook, and OneDrive, including troubleshooting and user training.

●Proficient in administering Microsoft Exchange Server environments, including installation, configuration, and maintenance of Exchange servers and services.

●Upgrading the ESXi5.x to ESXi5.5,6.0,7.0

●Having experience in Implementing and Managing VMware DRS/HA Clusters.

●Managing Patching of the servers using VMware update Manager.

●Ability to learn and support new technologies to adjust to a Dynamic work environment.

●Responsible for adding the patch in the template once approved by the QEteam.

●Creating collections, boundaries, and branch distribution points in Ivanti Shavlik.

●Scheduling patch activity for 1000 thousand Customers all over the globe.

●Installation of Windows patches over twenty thousand servers.

●Integrated Azure AD with on-prem AD forests using Azure AD Connect, ensuring hybrid identity synchronization.

●Coordinated and on boarded 1000+ customers ICAP, PACS, VUE, ISEE Environment.

●Installing patches on Windows Server 2003, Windows Server 2008 R2 and 2012 R2 approved by QE Team.

●Provide complex installation, integration, configuration, administration, and maintenance support for department information and network systems.

●Knowledgeable in Linux networking concepts, including TCP/IP, DNS, DHCP, and firewalls (iptables), with hands-on experience in network troubleshooting.

●Skilled in performing system installation, configuration, and maintenance tasks, including kernel tuning, package management, and system updates.

SKILLS

Virtualization : VMware vSphere 6.0,6.5,6.7,7.0,8.0.

Operating Systems : Windows Server 2016,19, Windows Server2022.

Server Hardware : HP C7000, BL460c Gen8, Gen9, Gen10, Synergy.

Ticketing Tools : Service Now, Remedy

Backup Tools : NetBackup installation.

Patching Tools : Shavlik and SCCM.

Monitoring tools : Tivoli and vRops.

EDUCATION

Bachelor’s in computer science - Indian Institute of Engineers

Delhi • India.

Certifications/Achievements:

VMware: VMWare Certified Professional Data Center Virtualization 2023.

Google: Google Cloud Certified Associate Cloud Engineer.

EXPERIENCE:

Senior System Engineer (August 2024 - Present)

Client: Northern Trust

Project Description: Led the design, deployment, and management of a highly available VMware virtualized environment supporting Windows-based enterprise applications. Implemented best practices for virtualization, automation, and security while ensuring optimal performance, scalability, and disaster recovery.

Key Roles & Responsibilities:

Designed and deployed VMware vSphere environments (ESXi, vCenter) to host Windows Server-based workloads, ensuring high availability and resource optimization.

configuring and managing endpoint protection policies and antivirus definitions for client devices using SCCM Endpoint Protection, including malware detection, remediation, and reporting.

Proficient in configuring role-based administration in SCCM, defining security roles, scopes, and security policies to control access to SCCM features and functions based on user roles and responsibilities.

Configured and managed Windows Server roles (Active Directory, DNS, DHCP, IIS, File Servers) within the virtual environment, ensuring efficient enterprise operations.

Collaborated with stakeholders to design a robust, scalable, and secure server architecture based on Windows Server 2022, incorporating best practices for performance, redundancy, and disaster recovery.

Led the deployment of Windows Server 2022 virtual machines (VMs) on a VMware environment, ensuring proper configuration of CPU, RAM, storage, and networking to meet application needs.

Utilized Microsoft Visio to create comprehensive and detailed architecture diagrams for Windows Server 2022deployment, including server topology, network configurations, storage solutions, and security setups.

Managed AD FS (Active Directory Federation Services) and SSO (Single Sign-On) configurations for cloud authentication.

Deployed and maintained Azure Active Directory Domain Services (AADDS) for legacy applications.

Created and managed Group Policy Objects (GPOs) for security hardening, compliance, and user environment standardization.

Designed and maintained AD Disaster Recovery (DR) plans, including AD Forest Recovery and System State backups.

Created network architecture diagrams in Visio to show firewall settings, load balancers, Active Directory, DNS/DHCP configurations, and other essential services integrated into the server environment.

Ensured that VMs deployed through Service Broker adhered to best practices for security, performance, and compliance by predefining configuration policies within the broker templates.

Prepared and configured Windows Server environments based on application team requirements, ensuring optimal resource allocation, network settings, and storage configurations for applications to function smoothly.

Installed and configured key server components like IIS, SQL Server, .NET Framework, and other application-specific prerequisites to ensure compatibility with the applications being deployed.

Assisted application teams with the installation of critical enterprise applications, ensuring the proper setup of server roles and features (e.g., Active Directory, DNS, DHCP) required by the applications.

I was responsible for managing and executing in-place upgrades from Windows Server 2016 and Windows Server 2019 to Windows Server 2022 across the enterprise infrastructure.

Conducted a thorough assessment of the current environment to identify eligible systems running Windows Server 2016/2019 for upgrade to Windows Server 2022.

Created a comprehensive upgrade strategy, including backup plans, downtime windows, and rollback

procedures in case of upgrade failure.

Utilized SCCM to manage the in-place upgrade process from Windows Server 2016/2019 to Windows Server 2022 across multiple servers in a controlled and efficient manner.

After successful completion of the in-place upgrade, performed post-upgrade tasks to ensure all services (e.g.,Active Directory, DNS, DHCP, File Services) were functioning correctly.

Verified application compatibility, network connectivity, and system performance post-upgrade to confirmthat the upgrade met organizational standards.

Professional 1 System Administrator (September 2021 – August 2024)

Client: Deutsche Bank

Project Description: About 15,000 Virtual Machines have been migrated from HPE C7000 hardware to Synergy. Upgrade of ESXi version from ESXi 6.7 to ESXi 7.0. Providing 24x7 support for the customer and working on Incidents and Changes whenever required.

Key Roles & Responsibilities:

●Providing end to end solutions based on the customer requirements.

●Deploying and managing Windows Server-based virtual machines (VMs) in the cloud, including OS installation, configuration, patch management, and monitoring, to support diverse workloads and applications.

●Developed and enforced server security policies, reducing security incidents by 40% through regular patch management and proactive monitoring.

●Knowledgeable in configuring device settings and profiles using Intune, including Wi-Fi, VPN, email, and certificate configurations, to ensure devices are compliant with organizational standards and requirements.

●Used PowerShell to extract and analyze data from various systems, generating comprehensive reports for management.

●Created PowerShell scripts to automate the monitoring and maintenance of server health, performance, and availability.

●Configured Azure Migrate Appliance for automatic discovery, replication, and migration of VMware workloads to Azure.

●Implemented data replication strategies using Azure Site Recovery (ASR) for VMware-to-Azure migrations, ensuring data consistency and availability.

●Conducted post-migration validation to ensure the successful operation of applications, services, and dependencies in Azure.

●Very good knowledge of Data Center architecture.

●Having good work experience in a physical datacenter in one of the biggest data centers in India.

●Implemented access management solutions, including single sign-on (SSO), multi-factor authentication (MFA), and federation services (e.g., SAML, OAuth) to provide seamless and secure access to applications.

●Designed and implemented IDAM workflows and lifecycle management processes to automate user onboarding, offboarding, and role-based access control (RBAC).

●Managed enterprise directory services such as Active Directory, LDAP, and Azure AD to maintain user identities, groups, and attributes for authentication and authorization.

●Creation of different port groups like VMkernel and VM port groups.

●Managing a wide range/Biggest vSAN environment.

●Installation configuration of VSAN cluster.

●Experience in handling the team and all Datacenter Operational support activities.

●Generating daily, weekly and monthly report as per Management requirement

●Experience in Installation, Configuration and Administration of Operating Systems Windows Server 2003/2008/2012 and 2016.

●Handling DNS and IIS servers

●Updating code in IIS server.

●Troubleshooting in VM’s.

●Dell/HP/Cisco Hardware updates like BIOS, Firmware.

●Proficient in deploying and configuring Cisco UCS hardware, including UCS blade servers, rack servers, fabric interconnects, and UCS Manager, to build scalable and highly available data center infrastructures.

●Skilled in configuring and managing Cisco UCS Fabric Interconnects, including networking configurations, VLANs, port channels, and uplink configurations, to provide network connectivity to UCS servers and external networks.

●Experienced in configuring and troubleshooting network interfaces, IP addressing, routing, DNS, DHCP, firewalls (iptables, firewall), and other network-related services on Linux systems.

●monitoring Linux system performance, resource utilization, and health using tools like Grafana, and implementing performance tuning measures to optimize system performance and scalability.

●Proficient in Linux system administration tasks, including installation, configuration, maintenance, and troubleshooting of Linux-based servers and workstations.

System Engineer (August 2020 - August 2021)

Client: Honeywell

Project Description: Provide L2\L3 technical support and administration support to all the users and different sites spread across the globe. Documenting and maintaining all necessary IT-related Documents and reports. Administration of Ivanti Shavlik.

Key Roles & Responsibilities:

●Experienced in troubleshooting network services running on Windows Server platforms, such as DNS, DHCP, Active Directory, and file sharing services, to ensure reliable network operations.

●Proficient in designing, implementing, and managing Dell EMC storage solutions, including Dell EMC Unity, PowerMax, VMAX to meet the storage requirements of enterprise applications and workloads.

●Skilled in providing technical support and troubleshooting assistance for Dell EMC storage and data protection solutions, collaborating with Dell EMC support teams and leveraging knowledge base resources to resolve issues promptly.

●Managed user accounts, groups, and group memberships within Active Directory, including creation, modification, and deletion of user accounts, password resets, and group policy assignments.

●Configuring identity and access management solutions on Windows Server platforms, including Azure AD, Active Directory Federation Services (ADFS), and Azure Multi-Factor Authentication (MFA), to ensure secure authentication and authorization for cloud services.

●Experienced in creating and managing service profiles in Cisco UCS Manager, including server identity, hardware configurations, firmware settings, and boot policies, to provision and manage server resources efficiently.

●Skilled in integrating Cisco UCS with virtualization platforms such as VMware vSphere, Microsoft Hyper-V, and Citrix XenServer, including hypervisor host provisioning, VM lifecycle management, and resource optimization.

●Integrated ADFS with external identity providers (IdPs) such as Azure AD, Okta, or PingFederate to establish trust relationships and enable seamless access to federated applications.

●Experienced in monitoring EOP performance, fine-tuning configurations, and implementing best practices to ensure ongoing effectiveness and resilience against evolving email threats.

●Proficient in deploying Microsoft 365 for organizations, including planning, configuring, and executing migrations from on-premises environments to the cloud.

●Experienced in defining and configuring DMARC policies to instruct email receivers on how to handle messages that fail SPF (Sender Policy Framework) and DKIM (DomainKeys Identified Mail) checks.

●collaborating with cross-functional teams, including IT, security, and compliance, to implement DMARC best practices and enhance overall email security posture.

●Creating and managing users on AZURE AD.

●Managing users from on premises to Azure AD.

●Azure MFA conditional Access Policy security features in Azure portal.

●Proficient in administering Microsoft Exchange Server environments, including installation, configuration, and maintenance of Exchange servers and services.

●Integrated SailPoint with identity sources such as Active Directory, LDAP, HR systems, and application APIs to automate user provisioning and deprovisioning.

●Implemented identity lifecycle management processes within SailPoint to manage user onboarding, transfers, role changes, and offboarding in alignment with HR processes and organizational policies.

●Proficient in implementing DKIM for organizations to enhance email security and validate the authenticity of email messages.

●Experienced in adding digital signatures to outgoing email messages using DKIM keys to verify the sender's identity and ensure message integrity.

●Troubleshooting DKIM authentication issues, such as key rotation, DNS record misconfigurations, or email server configuration errors.

●Installation, Configuration, Administration and Troubleshooting of ESXi 5.5, ESX 6.0/6.5, Virtual Center, VI Client.

●Creating and Managing Virtual Machines and Templates.

●Creating Clusters for High Availability (HA) and Distributive Resource Scheduling (DRS).

●Configuring Resource Pool, Motion, Alerts, Alarms, NTP.

●Migrate Physical Servers to Virtual Server using VMware Converter (P2V Converter).

●Migrating of Virtual Machines using vMotion Performing Snapshots, Cloning, Cold Migrations and Hot Migrations.

●Expert in Installing, Configuration and Troubleshooting of all Desktops, Laptops, Operating systems such as ESXi Server, Win XP/Vista/Windows7, RHEL 4.0/5.0.

●Expert in installing, configuring and Administering Microsoft Windows platform.

●Expert on Installation of all corporate software’s and applications.

●Good Knowledge of Installing and Configure VDI (VMware View) Environment.

●Good Knowledge on Installing and configuring Citrix Xen desktop 6.0.

●VMWare ESXI 5.5/6.0/6.5

● Virtual Center, Web Client, P2V, Cloning, VMotion, HA & DRS

●Administering Linux-based systems, with extensive experience in CentOS and Ubuntu distributions.

●performing system installation, configuration, and maintenance tasks, including kernel tuning, package management, and system updates.

●Coordinated and executed regular system updates and patch management for RHEL servers, minimizing vulnerabilities and ensuring compliance with security standards.

Analyst (September 2019 - July 2020)

Client: KPMG Global Services

Project Description: Managing Data Center and services by using vSphere Web Client, vSphere client & VMware horizon. Installing & managing issues related to the OS (windows server 2012, windows 7, 8.1, 10, Red hat, Centos, Ubuntu).

Key Roles & Responsibilities:

●Maintaining the infrastructure of virtualized servers and backup of virtual machines, based on VMware.

●Installation, configuration & troubleshooting of ESXi5.5.

●Integrated WSUS with System Center Configuration Manager (SCCM) to enhance patch management capabilities. Leveraged SCCM and WSUS together to automate and streamline the update deployment process.

●Migrate physical servers to virtual servers using VMware converter.

●Monitoring virtual machines and ESXI servers (CPU, memory, Disk and network utilization) with the help of monitoring tools and migration of virtual machines using VMotion.

●Creating the VM’s and assigning VDI to respective users.

●Skilled in configuring printer sharing and permissions on Microsoft Print Servers, including setting up shared printers, defining access permissions for users and groups, and managing printer queues and spooling.

●Managing Data Center and services by using vSphere Web Client, vSphere client & VMware horizon.

●Configuring WSUS Server.

●Proficient in troubleshooting common issues and providing technical support for Cisco UCS deployments, collaborating with Cisco TAC (Technical Assistance Center) and leveraging knowledge base resources to resolve complex problems efficiently.

●Proficient in deploying and configuring Microsoft Print Servers on Windows Server operating systems, including Windows Server 2012, 2016, and 2019, to provide centralized print management for network printers.

●Managing the Dell Chassis M1000e, Dell NAS NX3230 & Blade server (Dell R620, R520, R2950).

●Installing & managing issues related to the OS (windows server 2012, windows 7, 8.1, 10, Red hat, Centos, Ubuntu).

●Implementing, Managing and Creating users, Groups, OUs, Permissions, Group policies, roaming profiles, WSUS, DNS, DHCP and WDS on server 2012.

●Managed and deployed patches and updates using WSUS, ensuring all systems were up-to-date and secure. Reduced vulnerabilities by maintaining regular update schedules and monitoring compliance.

●Managing Cyberoam (CR500ING) & SonicWALL (3500) firewall by creating inbound and outbound rules (like application, web filtering and NAT).

●Ensure that systems are updated with latest patches and virus definitions.

●Creating & managing the Email accounts (POP3, IMAP and ActiveSync (MAPI)) with email clients like MS Outlook, Outlook Express, Thunderbird & Windows live mail etc.

System Administrator

April 2017 - September 2019)

Client: LTI

Project Description: SAN operations and configuration settings in the Data Center for Election Commission of India. Providing L1 and L2 Support for VMware and Windows Environment. Handling Incidents on a daily basis generated automatically or by Clients in Service Now Ticketing tool. Creating and Managing Domain User accounts and Groups in Active Directory.

Key Roles & Responsibilities:

●Worked as team member with Dell for SAN operations and configuration settings in the Data Center for Election Commission of India.

●SAN Zone configurations settings and Symantec backup exec.

●Proficient in deploying Microsoft 365 for organizations, including planning, configuring, and executing migrations from on-premises environments to the cloud.

●Designed and implemented a scalable WSUS infrastructure to support the organization's growth.

●Configured Group Policies to control WSUS client behavior, ensuring consistent update settings across all endpoints.

●Configured WSUS clients to ensure they reported correctly to WSUS servers.

●Experienced in utilizing and supporting Office 365 applications such as Word, Excel, PowerPoint, Outlook, and OneDrive, including troubleshooting and user training.

●Proficient in administering Microsoft Exchange Server environments, including installation, configuration, and maintenance of Exchange servers and services.

●Troubleshooting DKIM authentication issues, such as key rotation, DNS record misconfigurations, or email server configuration errors.

●Radware configuration (App Director) support.

●Supporting all levels of infrastructure and application Administrators from different locations connecting to the Data Center for remote configurations. PAN India support.

●Involved in application support configuration with CMC for Election Commission of India

●Installation of Servers and maintenance.

●Coordinating teams through phone and mails.

●Installation, configuration and administration of Windows XP/7/8/8.1 Professional.

●Managing & Administering Users through group policy (Group Policy, Password Settings/Account Restrictions/Profile Settings).

●Analyzing Events Logs for resolving Blue Screen Death Issues.

●Troubleshooting Network related problems.

●Troubleshoot and resolve end-user hardware and software computer problems.

●Installing and troubleshooting applications.

●Troubleshoot and resolve end-user hardware and software computer problems.

●Aiding for the users when required.

●TREND MICRO, QUICK HEAL and ESCAN antiviruses installing, monitoring and maintaining.

●Installation, Configuration and Administration of Network Printers and standalone ones.

●Implementation and maintenance of firewalls on Windows platform.

●Supporting users based in other offices through phone, email, remote connections.

●VMware (ESXi) Installation and Maintenance.

●Implemented high availability and disaster recovery solutions for Citrix VDI environments.

●Implemented security policies to secure Citrix VDI environments, including encryption, access control, multi-factor authentication, and integration with endpoint security solutions.

●LAN Maintenance (Enabling/Disabling of network Ports).

●Configuring and Installing network printers and fax machines.

●Troubleshooting roaming, local profile issues, Network, Application, and FTP links.

●Implementation and Managing Wireless APs and Wireless Routers.

●Installation, Licensing and Troubleshooting the Peripheral Devices including Cameras, Fingerprint Devices, Laser-jet printers etc.

●Monitoring Network Performance and Tracking system capacity (CPU, memory, disk space, etc.) and reporting /correcting any issues.

●Maintaining an inventory of all network devices and LAN/WAN documentation.

●Deployed Citrix VDI solutions to provide remote access to desktop environments and applications for distributed teams or remote workers.

●Hands on experience in implementation of Citrix Virtual Apps and Desktops (formerly XenApp and XenDesktop) for a large-scale virtual desktop infrastructure (VDI) deployment.

Declaration:

I hereby acknowledge that the above-given information is true to the best of my knowledge and belief.

(Lokesh B)



Contact this candidate