**Core Responsibilities: Endpoint Management \& Device Operations** * Administer and troubleshoot Windows, macOS, Android, iOS/iPadOS, and shared operational devices across the Brazil Corporate IT environmen * Manage device provisioning, enrollment, staging, policy deployment, compliance validation, and lifecycle using Workspace ONE UEM, Google MDM, Android Zero Touch, and Lenovo provisioning flow * Support corporate laptops, shared warehouse devices, PDAs, Zebra/Newland scanners, iPads, Zoom Rooms equipment, printers, and other operational endpoint * Resolve endpoint issues involving enrollment failures, policy conflicts, device ownership and user assignment, Wi\-Fi and certificate profiles, kiosk/launcher behavior, VPN access, application behavior, and OS configuratio * Maintain standardized profiles, sensors, and operational procedures to keep endpoint configuration consistent and auditabl **Systems Administration \& Infrastructure Support** * Support and troubleshoot core infrastructure services: Active Directory, Entra ID / Azure AD synchronization, DNS, DHCP, NPS, VPN, certificates, VLANs, and wireless network * Administer virtualization and server infrastructure including ESXi/vCenter, iDRAC, and FOG imaging, and coordinate on Meraki and Cisco WLC network service * Manage server backup and recovery — monitoring backup jobs, diagnosing failures, and validating restores — using Veeam and related backup/troubleshooting tool * Investigate incidents involving DHCP scope behavior, VPN connectivity, wireless authentication, firewall/proxy restrictions, SSL/port conflicts, site\-to\-site connectivity, and server reachabilit * Work with local and regional infrastructure teams to validate service availability, collect evidence, execute diagnostics, interpret logs, and drive escalation when require * Maintain infrastructure governance by documenting service owners, dependencies, operational risks, and troubleshooting runbooks **Security Operations \& Compliance Support** * Support vulnerability management, endpoint security, EDR visibility, patch tracking, and security baseline validation across Windows and macOs * Assist with CrowdStrike Falcon investigations and Tenable/Nessus reporting, and enforce browser and endpoint hardening policie * Identify which findings are addressable through OS/application updates, configuration changes, ownership transfers, compensating controls, or vendor limitations * Produce vulnerability reports that separate actionable items from exceptions, no\-fix scenarios, expired/reopened findings, and ownership constraints * Support security\-related access flows: VPN access, corporate device validation, system/network access tickets, certificate/NPS troubleshooting, and Zero Trust investigations **Scripting \& Operational Tooling** * Maintain and extend operational scripts and integrations using PowerShell, Python, shells scripting, and platform APIs to keep recurring tasks reliable and repeatable * Support endpoint inventory reporting, SLA/ticket analysis, device diagnostics, and operational notification * Build scripting with logging, error handling, and clear documentation so processes can be handed over to and maintained by Helpdesk analysts and other IT team * Integrate operational data across systems such as Meraki APIs, Workspace ONE, and vCenter where it improves visibility and reduces manual effort **Reporting, Documentation \& Governance** * Produce structured reports and dashboards for Corporate IT leadership, local management, Helpdesk teams, and regional stakeholders * Report on SLA breaches, ticket volume, vulnerability posture, patch status, onboarding readiness, device health, and recurring incident patterns * Translate raw technical data into management\-ready summaries with clear status, impact, ownership, next steps, and recommended action * Use documentation and reporting to improve accountability, demonstrate operational control, and track responsibility across team **Required** * 4\+ years in IT systems administration or infrastructure support, with Level 2 / escalation\-capable experience * Strong hands\-on knowledge of Windows and macOS endpoint administration and enterprise MDM (Workspace ONE or comparable) * Solid TCP/IP networking fundamentals: DNS, DHCP, VLANs, VPN, and wireless authentication * Working experience with directory and identity services (Active Directory, Entra ID) and access/certificate flows * Experience administering and troubleshooting server backup and recovery (e.g., Veeam), including restore validation * Scripting ability (PowerShell and/or Python) for operational tasks, reporting, and diagnostics * Proven ability to independently troubleshoot complex, cross\-domain technical issues * Strong documentation and reporting skills; able to turn technical findings into clear management summaries * Portuguese fluency and working English for regional and headquarters collaboration