Inventory \xe2\x80\x93 to tie assets to user (serial number, asset tag, hostname)
Hostname standardization \xe2\x80\x93 if computer is newly-reimaged
Software installation \xe2\x80\x93 specialized apps dependent on user
Onboarding Guide \xe2\x80\x93 quick guide to be included with asset
Door Access
Door access face and biometric registration for KBT users
Cessation
Active Directory
Account Cessation - Remove from AD Group Membership, Disable Account
M365 license removal from inventory
Hardware Retrieval
Retrieve back computer and accessories based on handover of clearance form
Door Access
Removal \xe2\x80\x93 removal of face recognition access and biometric data as per PDPA guidelines
Server Administration
Domain Controllers
Creation and management of directory infrastructure
Creation of all top-level OU hierarchies with KENS/KTT standard sub-OUs, groups, and appropriate security permissions. Includes setting appropriate permissions on the created objects and linking of default GPOs.
Monitoring and reporting associated with the reliability and security of the domain
Use the domain admin account only for actions that require the privilege level of this account
Monitoring changes to domain root and domain controllers OU to ensure unauthorized changes do not occur
Day-to-day management of the domain controllers
Monitoring connectivity, synchronization, replication, netlogon, time services, FSMO roles, schema, NTDS database partitions, DNS settings, SRV records, and trust relationships
Review DC event and security logs and take corrective actions
Monitor and resolve security situations at all levels of the domain
Policy monitoring and compliance
Apply and enforce KENS standard naming conventions for objects in the domain
Comply with KENS AD policies and standards as defined on the AD Web Site
Monitor compliance with KENS AD policies and standards
Provide OU Admins with assistance when requested
Coordination with KENS KCSC to ensure the KTT/KDC domain is secure
Comply with all KCSC orders regarding emergency conditions
Manage group policy at root of domain and for Domain Controllers OU
Manage the root users and the root computers OUs
Install and manage security reporting tools used to monitor changes to the Active Directory (i.e., KENS SIEM)
Plan and manage all migrations and upgrades related to the AD or the DCs
Microsoft 365 Exchange
License Provisioning for newly created AD account for email
Ad hoc Email address and SMTP address update/modification due to staff movement
Print Management Server
Manage the Windows Print Queues to ensure proper printing (Canon)
Installation and update of print drivers when new versions are released/approved
Enroll printers & de-enroll printers within the application
Perform configuration changes as required in the application (for apps that need to be linked to printer) Troubleshoot printer problems and help determine the root cause even when it is not the specific
application causing the printer functional problem
Generate reports for Keppel Group Sustainability Project for printer statistics
Cybersecurity
KTT Cyber Security Analyst (End Point controls) working with KTT Cyber Security lead
Reports and communicates details of incidents to the Keppel Group BCM team
Serves as a liaison with other Incident Response Teams and stakeholders as needed
Works with the Keppel Group BCM team to coordinate communications to external parties
Focuses primarily on coordination of incident activities, providing support for related teams and business functions, and communication of incident-related information.
Having knowledge and awareness of specific business unit and customer needs
Understanding known or potential business impacts
Acting as a liaison between the BU and Keppel Group BCM team
Lead BU\xe2\x80\x99s response effort to the cyber incident with support from Keppel Group BCM team
Intermediary for coordinating communications between BU\xe2\x80\x99s management and Keppel
Group BCM and Incident Response Team
Ensure that all post cyber crisis incident recommendations are carried out
Lead post cyber crisis incident efforts to ensure that lessons learned are documented
and follow up actions are assigned to accountable stakeholders
Cybersecurity Scheduled Reports
Submission of Quarterly Key Risk Indicators (KRI) to KDC Compliance
Review Monthly and Quarterly KCSC Cyber Operation Report (CORe), which includes EDR statistics, Bitsight reports, Cybersecurity Incidents and Events, and ongoing KCSC project status
Phishing Exercise
Prepare and review global listing for KTT/KDC on scope of phishing email recipients (Quarterly)
Apply for DNS and firewall authorization (internal and group level) of phishing email domain address
M365/O365 Administration
Add users and groups (linked with on premise Active Directory)
Assign licenses (through Service Requests to SoftwareONE and KENS Technology Services)
Manage most users\xe2\x80\x99 properties, update and/or modify within HR instruction
Create and manage user views
Update password expiration policies
Reset passwords and/or unlock accounts (linked with on premise Active Directory)
Manage service requests and monitor service health
Hardware and Network
Wireless Administration (KBT)
Maintain AD Group for KBT ISE User Group for each business unit
Consult with KENS Technology Services on Wired/Wireless maintenance and faults/issues
Meeting Room Audio/Video and Desk phones (KBT)
Manage meeting room Teams or Webex accounts
Manage meeting room firmware updates if available
Assign desk phones and link to MDM for Teams direct users if enabled
Manage desk phones firmware updates if available
Help Desk
L1-L2-L3 Support services for computer hardware issues
Raise tickets to corresponding service providers for laptop/computer/server repair (e.g., HP Support, Lenovo, Dell Customer Care)
Provide immediate fix on ad hoc issues
VIP Support
On-Call availability for VIP/VVIP users on hardware, software, mobile, and account-related issues
White glove support on any device issues and manage communication with VIP personal assistants/secretaries
IT Procurement
Asset Management
Responsible for product support and warranties, leasing, maintenance, and software contracts, as well as hardware purchases, and license information
Create purchase requisitions for KTT and KDC/KN(Keppel Networks) and purchase orders (KTT HQ)
Receiving and tagging equipment
Inventorise asset information into asset tracking software system (Sharepoint)
Coordinate with selected vendors on supply and delivery of purchased items
Tech-refresh or End of life (EOL) management
Responsible for decommissioning IT assets and oversee surplus removal as needed
Project Management (for any Technology Refresh for KBT/KDC HQ /Keppel Networks LAN/ISP and Firewalls)
IT Project Management/ IT Vendor Management
Consulting with stakeholders such as project personnel, vendors, and end-users regarding project requirements
Implementing document control policies and documentation templates in accordance with Keppel Group IT Project Management guidelines
Maintaining a good working knowledge of assigned component projects
Monitoring project progress and implementing changes where necessary
Ensuring compliance with objectives, organizational policies, procedures, and standards and monitoring expenditures in accordance with the budget
Compiling project reports and informing management regarding problems
Baseline the Performance of the Most commonly used Office Applications and Group Applications.
Propose any upgrade of LAN/WAN(ISP) AND Wi-Fi LAN pro-actively when there are performance issues reported after Deep Analysis of the current LAN/WAN/Wi-FI /Video conferencing Infrastructure issues
Support GIA audit and other Certifications Audit ( ISO 27K, OSPAR, ISO 9000)
Monitoring and reporting associated with the reliability and security of the domain
Use the domain admin account only for actions that require the privilege level of this account
Monitoring changes to domain root and domain controllers OU to ensure unauthorized changes do not occur
Day-to-day management of the domain controllers
Monitoring connectivity, synchronization, replication, netlogon, time services, FSMO roles, schema, NTDS database partitions, DNS settings, SRV records, and trust relationships
Review DC event and security logs and take corrective actions
Monitor and resolve security situations at all levels of the domain
Manage group policy at root of domain and for Domain Controllers OU
Manage the root users and the root computers OUs
Install and manage security reporting tools used to monitor changes to the Active Directory
Plan and manage all migrations and upgrades related to the AD or the DCs
Microsoft 365 Exchange
License Provisioning for newly created AD account for email
Ad hoc Email address and SMTP address update/modification due to staff movement
Print Management Server
Manage the Windows Print Queues to ensure proper printing (Canon)
Installation and update of print drivers when new versions are released/approved
Enroll printers & de-enroll printers within the application
Perform configuration changes as required in the application (for apps that need to be linked to printer) Troubleshoot printer problems and help determine the root cause even when it is not the specific
application causing the printer functional problem
Generate reports for Keppel Group Sustainability Project for printer statistics
JOB REQUIREMENTS
Diploma /Bachelor\xe2\x80\x99s degree in Computer Science or related field. With 7-9 Years\xe2\x80\x99 Experience with Windows /Desktop/LAN/O365/AZURE Infrastructure Administration. Operations and Support
Experience as an Engineer providing support for large projects from requirements through implementation and or worked under Managed services Provider for Larger Enterprise Accounts
Able to analyze, develop, and enhance engineering workflow processes
Ability to multi-task. Excellent analytical abilities
Good co-ordination and organization skills.
Strong oral and written communication skills
Professional relevant Microsoft windows/O365/Azure Infrastructure Administration