System
Administrator
Server, identity and infrastructure administration that keep systems healthy — from $14/hr + GST.
What a System Administrator does
A system administrator keeps the lights on — servers, identity, backups and monitoring — so your infrastructure stays secure, patched and available.
Every StaffingSolutions.io system administrator is recruited, hired and managed by us — reference-checked for your tools, working your business hours, and backed by our zero-risk promise: no placement fee, money-back first week, and a free replacement if the fit isn't right.
What they handle
- Server administration — Windows/Linux.
- Identity & access — AD/M365.
- Backups & recovery — verified.
- Patching — scheduled.
- Monitoring — alerts actioned.
- Documentation — maintained.
A week in the role
Infrastructure most people only notice when it stops. The week runs on a maintenance rhythm — patch rings, backup verification, certificate expiries, monitoring alerts — plus the escalations the service desk cannot close. Works across Microsoft 365, Entra ID, Windows Server, the hypervisor and whatever still runs in your comms room.
Clears overnight alerts in the RMM or monitoring platform — disk thresholds, stopped services, offline agents, failed backup jobs — resolving what is actionable and raising a ticket with diagnostics attached for anything needing a maintenance window or a vendor support case.
Approves and stages Windows and third-party updates in Intune, Datto RMM or ConnectWise Automate, releases to the pilot ring first, chases failed installs and reboot-pending devices, then promotes to the production ring once the pilot group reports clean.
Checks nightly Veeam or Datto job results, investigates warning-state jobs rather than only failures, and runs test restores of a file, a mailbox item and a full VM into an isolated network — recording the result so recovery is evidenced, not assumed.
Creates the Entra ID account, assigns licences and group memberships from the role template, enrols the device in Intune under the right compliance policy, and on exit converts the mailbox to shared, revokes active sessions and reclaims the licence.
Keeps a register of SSL certificates, domain renewals and Entra ID application secrets, renews replacements ahead of expiry, and re-binds them across IIS sites, load balancers and the firewall's remote access portal before anything starts throwing browser warnings.
Reviews VMware or Hyper-V host health, clears snapshot sprawl, checks datastore free space and cluster resource usage, applies VM tools and firmware updates in a scheduled window, and records pre- and post-change state on the ticket.
Audits conditional access policies, risky sign-in detections and stale accounts in Entra ID, reports on users with no MFA method registered, and drafts policy changes for your IT lead to approve before they move from report-only to enforced.
Prepares firewall rules, VPN profiles and DNS records against a written request, stages the configuration on the Fortinet, Sophos or Meraki device, takes a config backup, and applies it inside an approved window with a documented rollback.
Takes the tickets the service desk cannot close — corrupted profiles, mapped drives failing on specific subnets, stuck print server queues, Outlook connectivity breaking for particular mailboxes — works them to root cause through event logs, and writes up the fix.
Keeps runbooks, network diagrams, credential entries and hardware asset records current in IT Glue or Hudu after every change, so the next person on the ticket is not reverse-engineering the environment from the firewall configuration.
Reviews NTFS and SharePoint permissions against the requested access matrix, replaces direct user grants with security groups, reports folders shared to everyone or to anonymous links, and archives stale data ahead of any storage expansion.
Investigates impossible-travel sign-ins, unauthorised mailbox forwarding rules and endpoint detection alerts, isolates the affected device and gathers logs, then escalates to your nominated security contact. Breach assessment and any notification decision remains with your business.