Experience level filter
Job type filter
Client history filter
Project length filter
Hours per week filter
  • Hourly: $18.00 - $31.00
  • Intermediate
  • Est. time: Less than 1 month, Less than 30 hrs/week

We are a financial services company looking for an IT specialist to help us make sure we have archiving set up in our Microsoft Business 365 Standard ecosystem. We have to have this for compliance with SEC 17a-4 and want to ensure our Teams, Email, and our VoIP phone system are journaled to the archiving. Overall would appreciate any insight to general security of our SharePoint system too. If replying to this post, please don't just paste a generic cover letter - I'll ignore your response. Leave me your first embarrassing email address handle (not the @domain, for security and Upwork compliance) to prove you read this and some fun! Thanks.

  • Hourly: $50.00 - $85.00
  • Intermediate
  • Est. time: More than 6 months, 30+ hrs/week

We are seeking a system administrator to assist with management our Windows environment. We are a digital agency and commercial printing business. We have 5 developers on staff and two are strong in network administration, but we do seek to reduce their time on our internal systems management, as well as the support of any teammates for desktop related matters. The ideal candidate would have strong experience in Windows Server and desktop. We have been with another Upwork consultant for approximately 7 years and they are no longer able to maintain our account. Our primary need to address at this time is the minimal changes to internal on-premise systems, and the user devices. Admittedly, we have very little 'help desk' support needed, but it is the more important aspect of this contract. This is a specific outline: 2 Office Locations. - 2 Servers, 1 Server each on-premise office location, (last install date was 2022 - so potentially replacing hardware in the next year) Server setup - - Each server setup as follows: Hyper V with local system vm, storage unit vm, active directory vm - Ubiquity / Unifi Device VPN - into each office location; setup for authentication based on AD (one seems to be failing) - Wifi devices driven by Unifi / Ubiquiti controller running on AD vms. - Unifi DreamPro Routers - Unifi Switches Switches Cloud Environment (11:11 Labs) - 4 Virtual Windows Servers in iLand - 1 Operations management system server (Enfocus) - 2 Terminal Server for approx 6 users, with application server - 1 MIS application server (Tharstern) 2 Linux based Infrastructure Boxes (our team manages the Linux based servers, they are mentioned here as any issues provisioning new users or updates to applications sometimes are best to utilize an outside resource). - NextCloud Server running in iLand - OpenVPN Server running in iLand Approximate Desktops: All using Avast for Antivirus All tied to active directory 15 Mac users 15 PC users Change Management... changing PCs approx every 3-4 years; macs every 4-5 years Standard User level services, not much for help desk issues. Mostly new device change outs or permission updates on AD. All users are on Okta for password and access control - this is provisioned from AD. Current project needs: - We set an agenda for the projects for the year - it may be clean-up of a network setup to consolidate switches, or a change to create a stronger backup routine, etc. Here are some on the horizon: - - Agency has large number of video files it creates daily. We have 2 DAS systems that are utilized and rotated, we want to review this and see if there are better alternatives and implement/automation and verification of the backups. - - Cleanup of some use of AD for SSO - ensure we use it where it can be on some applications. - - Implementation of a new operations server at TAG company - needs some AD folder permissioning and user permissioning work performed. We have monitoring system for servers and desktops. As a digital agency we manage over 35 servers in our data center location. Thus, we are strong on change management, process, monitoring systems, backup and redundancy. Our in-house minor technical needs and desktop are the ones we prefer to outsource, while leveraging the existing systems and technology we have for one-stop view of uptime/etc. Traditionally, over the last few years, we've had approx 3-4 hours per month of desktop and network assistance for changes or improvements. And, then 2x a year a larger program that may be 20-30 hours.

  • Hourly: $50.00 - $70.00
  • Intermediate
  • Est. time: Less than 1 month, Not sure

Summary Role Level: IC4 Senior Security Administrator I (US Contract) Reports to: Manager of Engineering Services Salary: $50/h Job Description he Security Administrator role supports BEMO managed service customers and internal teams by assisting in the implementation, management, and monitoring of security and compliance solutions across Microsoft 365 and hybrid environments. This role is focused on a security-centric customer base, and we are specifically seeking candidates with experience working in GCC High tenants. In this role, you will also have the opportunity to lead compliance frameworks, including SOC 2, ISO, and CMMC, by maintaining security and compliance requirements across regulated environments. The Security Administrator II IC4 will demonstrate the ability lead practices within the following areas: • Microsoft 365 Security Administration • Azure • GRC Platforms • AI tools • Customer Service • Managed Services • Team Communication • Data Gathering and Analysis At BEMO, the Security Administrator IC4 competencies require: • In- depth specialist knowledge in your area of expertise. • Skilled problem solver and critical thinker when faced with unfamiliar challenges. • Makes informed, data-driven decisions. • Clear and open communicator across teams and departments. • Builds highly effective working relationships across the organization. • Continuously seeks expertise from peers and external sources. Responsibilities & Primary Goals • Monitoring and Maintenance o Proactively secure Microsoft 365 and Azure environments o Monitor all security systems and provide advice on strategy and implementation for the customer base o Conduct security risk and vulnerability assessments on security package customers o Enforce data governance o Patch and vulnerability-managed life cycle o Implement updates programmatically on different security packages offered by BEMO o Send out customer communications on security improvements and maintenance • Automation and Implementation of Managed Service Solutions o Create and document repeatable processes through automation across our managed service maintenance activities o Manage internal projects, provide technical guidance o Must be comfortable performing multiple initiatives simultaneously in a fast-paced environment o Leverage AI and automation technologies to optimize processes, improve response times, and enhance overall managed service delivery • Cross-Group Collaboration and Support o Support the Customer Success team with customer-specific data for security scores and value realization efforts o Provide T1-T2 Team members support for tickets and issues relevant to managed service customers' security and compliance o Working with the BEMO IT Manager to align security policies and processes o Work collaboratively with delivery engineers, operations team members, customer success managers, support engineers, and our BEMO customers o Manage support queue during designated times • Managed Security o Triage: Working with our SOC team and Microsoft Sentinel, you will help filter the noise to prioritize incidents and alerts that matter to alleviate alert fatigue. o Investigate: Investigate and analyze the most critical incidents, and document progress and findings. You will be analyzing logs within M365 tools and Sentinel. o Respond: Contain and mitigate incidents faster with managed response and proactive remediation. o Prevent: Provide detailed recommendations and best practices to go beyond detection and response to prevent future attacks. Requirements • Educational degree or diploma in Computer Science, Engineering, or the equivalent in proven experience • 5 + years of experience administrating, managing, and implementing Microsoft Azure and Microsoft 365 as an implementation, security, or support engineer. • Experience analyzing M365 usage data to identify issues and usage patterns • Strong critical thinking, analysis, and problem-solving skills • Strong competency in core professional skills, especially attention to detail, responsiveness, follow-through, and flexibility, with a high degree of emotional intelligence and tact • Ability to work independently and collaboratively with other internal teams when needed • Proven customer service experience with clear and consistent writing, presentation, and communication skills • Azure Cloud experience Specialized Knowledge or Skills Preferred • A Bachelor of Science or Engineering in Computer Science or a related field preferred • Microsoft certifications are required (AZ-500, SC-300, SC-400, etc.)

  • Hourly: $30.00 - $41.00
  • Intermediate
  • Est. time: 1 to 3 months, Not sure

Role Level: IC3 Role Title: Security Administrator II (US Contract) Reports to: Manager of Engineering Services Salary: $41/h Job Description The Security Administrator role supports BEMO managed service customers and internal teams by assisting in the implementation, management, and monitoring of security and compliance solutions across Microsoft 365 and hybrid environments. This role is focused on a security-centric customer base, and we are specifically seeking candidates with experience working in GCC High tenants. In this role, you will also have the opportunity to lead compliance frameworks, including SOC 2, ISO, and CMMC, by maintaining security and compliance requirements across regulated environments. The Security Administrator II IC3 will demonstrate the ability to conduct routine work with specialist and commercial knowledge in the following areas: • Microsoft 365 Security Administration • Azure • GRC Platforms • AI tools • Customer Service • Managed Services • Team Communication • Data Gathering and Analysis At BEMO, the Security Administrator IC3 competencies require: • Understanding of prioritization and time management of tasks • Building effective working relationships within the team and with peers • Demonstrates skill to influence other peers • Conducts complex tasks autonomously • Works on problems of moderate scope and uses multiple known practices and procedures to solve problems with the support of manager and peers • The ability to respond to customers’ security and compliance needs proactively and reactively in the alignment of BEMO’s products and service scope • Clear and open communicator with wider teams and stakeholders • Maintains transactional communication with customers or partners • Builds self-awareness about strengths and areas of development by being open to feedback from your manager and peers. • Consistently seeks to improve technical knowledge in the Microsoft technology and security areas Responsibilities & Primary Goals • Monitoring and Maintenance o Proactively secure Microsoft 365 and Azure environments o Monitor all security systems and provide advice on strategy and implementation for the customer base o Conduct security risk and vulnerability assessments on security package customers o Enforce data governance o Patch and vulnerability-managed life cycle o Implement updates programmatically on different security packages offered by BEMO o Send out customer communications on security improvements and maintenance • Automation and Implementation of Managed Service Solutions o Create and document repeatable processes through automation across our managed service maintenance activities o Manage internal projects, provide technical guidance o Must be comfortable performing multiple initiatives simultaneously in a fast-paced environment o Leverage AI and automation technologies to optimize processes, improve response times, and enhance overall managed service delivery • Cross-Group Collaboration and Support o Support the Customer Success team with customer-specific data for security scores and value realization efforts o Provide T1-T2 Team members support for tickets and issues relevant to managed service customers' security and compliance o Working with the BEMO IT Manager to align security policies and processes o Work collaboratively with delivery engineers, operations team members, customer success managers, support engineers, and our BEMO customers o Manage support queue during designated times • Managed Security o Triage: Working with our SOC team and Microsoft Sentinel, you will help filter the noise to prioritize incidents and alerts that matter to alleviate alert fatigue. o Investigate: Investigate and analyze the most critical incidents, and document progress and findings. You will be analyzing logs within M365 tools and Sentinel. o Respond: Contain and mitigate incidents faster with managed response and proactive remediation. o Prevent: Provide detailed recommendations and best practices to go beyond detection and response to prevent future attacks Requirements • Educational degree or diploma in Computer Science, Engineering, or the equivalent in proven experience • 2 + years of experience administrating, managing, and implementing Microsoft Azure and Microsoft 365 as an implementation, security, or support engineer. • Experience analyzing M365 usage data to identify issues and usage patterns • Strong critical thinking, analysis, and problem-solving skills • Strong competency in core professional skills, especially attention to detail, responsiveness, follow-through, and flexibility, with a high degree of emotional intelligence and tact • Ability to work independently and collaboratively with other internal teams when needed • Proven customer service experience with clear and consistent writing, presentation, and communication skills • Azure Cloud experience Specialized Knowledge or Skills Preferred • A Bachelor of Science or Engineering in Computer Science or a related field preferred • Other Microsoft certifications are preferred (AZ-500, SC-300, SC-400, etc.)

  • Hourly: $40.00 - $50.00
  • Intermediate
  • Est. time: More than 6 months, Less than 30 hrs/week

We're hiring a technical operator for our MSP. We're a US-based managed services provider supporting small-business clients. We need someone remote who can own our day-to-day operations: triage, client communication, and coordinating our onsite tech. This is a managerial-level role. You'll start in the work and take on more direct responsibility for the team as you prove it out. You need to see what needs to happen and act on it. If a ticket sits, a client goes quiet, or the onsite tech needs direction, you catch it and handle it. You loop me in only when something actually needs owner level escalation. What you'll own: Remote support tickets end to end: Windows/Mac, M365 and Google Workspace, MDM, endpoint security, backups, etc. Triage of incoming work: handle it yourself, route it to our field tech, or bring it to me if necessary. SLA 2 is hours to field new tickets/inquiries and get back to customers who ask a question on a ticket. Ticket documentation: current notes, a next step with a date, and all client correspondence logged in the ticket. Client-facing calls: support calls, scoping calls, and helping close qualified leads on managed-services deals. Direction for our onsite tech, coordinating their work and keeping it moving. Our stack (experience with most expected): NinjaOne (RMM, tickets, backup) Microsoft 365 and Google Workspace administration JumpCloud and/or Intune (MDM) SentinelOne (EDR) 1Password Requirements: MSP or IT support experience. Experience leading or directing other technicians. Consistent documentation habits. Works independently. Closes out tasks and follows up without being reminded. Available during US Eastern business hours, Monday through Friday. Nice to have: Sales or scoping call experience. Hours: About 10 hours per week to start, growing to 15-20 hours per week. Ongoing, long-term role.

Posted 2 weeks ago
  • Hourly: $16.50 - $40.00
  • Intermediate
  • Est. time: More than 6 months, Hours to be determined

Overview L1/L2 (optional L3) Help Desk Tech supporting our clients on day to day computing tasks. Business hours coverage needed 9 AM–1 PM PM EST (M-F) Daily. Our standard: answer fast, never leave a ticket sitting past 4 business hours. Skills Needed Methodical troubleshooting skills and fundementals. Friendly to work with. No short answers to customers always offer to help Management ability of other techs on the team Ability to priorotize and communicate effectively and honestly Responsibilities Make the customer happy — clear communication, genuine care, strong relationships. First-response triage and end-user support via phone and email. Office 365 admin — users, licensing, mailboxes; plus SMB shares, email, and printers. Email deliverability/security — spoofed senders, phishing, fraud checks, AV scans. Methodical troubleshooting to root cause; own tickets end-to-end and follow up until closed. Provision/configure Windows Servers; basic networking. Willing to work beyond your comfort zone and lear Use AI as needed for better productivity Requirements Passion for technology 2+ years IT/helpdesk/MSP support on a real ticketing SLA. Hands-on Windows Server / RDS (Linux a plus) and Microsoft 365 admin. QuickBooks multi-user troubleshooting (strong plus). Email security basics (SPF/DKIM, phishing triage). Excellent communication; self-directed and reliable, able to run the early shift solo. Available nights/weekends for urgent matters (not expected too much) BA/BS in CS/Engineering or equivalent experience.

  • Hourly: $100.00 - $125.00
  • Expert
  • Est. time: 1 to 3 months, Less than 30 hrs/week

We are a US healthcare software company.    We are looking for an experienced IT professional to plan and propose an ISP to migrate from our existing colocation and implement a lift-and-shift. We are rehosting multiple VMs on an as-is migration from Rackspace Hyper-V onto another platform. You have experience in lift-and-shifts and have high level experience with IT budgeting. This objective of this contract is to improve performance and optimize consumption costs. This requires understanding of AWS, Azure and Google Cloud and other cloud providers. The consulting aspect of the contract is assisting to ascertain the best hosting or co-location for this V2V project. We are looking for you to develop a focused assessment evaluating the potential cloud providers looking to identify risks, assumptions, rollback planning, and post project validation. The considerations in evaluating your recommendations will be managing downtime, protecting data integrity, configuring security correctly, providing VM backup capability, validating performance, controlling costs, maintaining compliance, and documenting the architecture for ongoing operations. The expected phases for this contract are: colocation cost report migration plan architecture plan access configuration post project validation Absolutely no third party companies please Requirements You have evaluated ISP's on their ability to rent and sell colocation services Candidates should have at least 7 years of DevSecOps and cloud engineering experience Solid foundational knowledge of the costs of the major ISPs Excellent spoken and written English communication skills V2V Cloud migration experience from Microsoft Hyper-V Solid understanding of networking concepts, security principles, and best practices in cloud computing All meeting will be during the business day (do not apply if you have another full time job) You must be a US citizen or have a valid work permit to work in the US Must be physically located in the United States You must be able to start immediately DO NOT CONTACT US IF YOU REPRESENT A COMPANY. ONLY INDIVIDUAL CANDIDATES WILL BE CONSIDERED.

  • Fixed price
  • Expert
  • Est. budget: $150.00

I am a solo attorney running a boutique law firm in New York. My professional business email was purchased through GoDaddy and currently sits on GoDaddy-managed Microsoft 365.I am completely escaping the GoDaddy ecosystem and need an experienced IT specialist to perform a standard "Defederation". Project Objectives: Detach my Microsoft 365 tenant completely from GoDaddy's reseller portal and move it to direct Microsoft billing. Ensure there is absolute zero data loss. My existing inbox, folder structures, archive vaults, and calendar data must remain completely intact and untouched. Ensure my active Outlook desktop application and mobile email sync seamlessly once the transition is complete. Coordinate briefly with my web developer during the final week of our project to ensure the DNS/MX records point correctly to our new server layout on launch day. Technical Constraints: My active business domain must remain live during the process. This must be handled with the highest level of security and professional confidentiality. Project Type: Fixed Price ($150)Timeline: The defederation can be executed immediately this week, with a quick 10-minute coordination call with my web developer in 3 weeks during site deployment. Please confirm your experience with GoDaddy-to-Microsoft-Direct migrations in your proposal.

  • Hourly: $60.00 - $90.00
  • Intermediate
  • Est. time: More than 6 months, 30+ hrs/week

About us We are a small, independent cardiology and cardiac electrophysiology practice in the Los Angeles area — a solo physician plus a small support staff, including remote team members. The office is new and mostly cloud-based: cloud EHR, Google Workspace, VoIP phones, a handful of Windows workstations, and connected clinical devices (ECG, cardiac ultrasound). We are starting from zero. We do not have a security program, written policies, a risk analysis, formal backups, endpoint management, or network segmentation in place. The systems work — they just haven't been set up or documented with security and HIPAA in mind. We want that built properly, from the ground up, by someone who has done it before for medical practices. We are not looking for a helpdesk. We're looking for one experienced person to design and stand up our IT security and HIPAA program, document it so it's audit-ready, and then stay on as our ongoing IT resource. Prior hands-on experience supporting medical practices is a hard requirement. A clinic is not a generic small business: PHI, EHR tenants, connected clinical devices, lab and clearinghouse interfaces, business associate agreements, and audit obligations all change what "secure" means. If your background is general small-business or startup IT without healthcare clients, this isn't the right fit and we'd rather not waste your time. Applications that don't name specific medical practices or clinics you've supported will not be reviewed. Because everything we run is cloud or network-based, we expect the vast majority of this work to be done remotely — screen share, remote access, and admin consoles. Occasional coordination with our on-site office coordinator or a local cabling vendor is fine, but you should be able to accomplish nearly all of it without being physically present. How this works This is an ongoing hourly engagement, not a fixed-price project. We expect it to start heavy — the initial build-out is real work — and then settle into a few hours a month for maintenance, monitoring, onboarding/offboarding, and keeping documentation current. Before you start billing significant hours, we'd like a short written plan: what you'd do, in what order, and a rough hour estimate per stage, so we both know what we're signing up for. We'd rather pay for a good plan than discover the scope halfway through. Roughly the order we'd expect: Discovery & risk analysis — inventory what we actually have, then a HIPAA Security Rule risk analysis with findings, risk ratings, and a prioritized plan Foundation — network, identity, backup, and endpoints. The things that hurt most if they're missing. Clinical systems & vendors — EHR configuration, connected devices, vendor/BAA review Remote worker security — choosing and locking down how offsite staff access our systems Documentation & training — the audit-ready package and staff security awareness Ongoing — patching, monitoring, access reviews, annual re-review If you'd sequence it differently, tell us why — that's a signal you've done this before. Scope of work Network & endpoint security Design and configure business-grade firewall/router; recommend equipment where what we have isn't adequate Network segmentation — separate VLANs for clinical devices, workstations, guest Wi-Fi, and printers/IoT Secure Wi-Fi configuration; secure remote access / VPN where appropriate Workstation hardening, full-disk encryption, screen-lock and idle-timeout policy Endpoint protection / EDR selection and deployment; centralized patch management for OS and applications Basic monitoring and alerting so we find out about problems before a patient does Identity, email, and backup Google Workspace security hardening: admin roles, MFA enforcement, context-aware access, data-loss prevention, retention, audit logging, third-party app access review Role-based access controls and a clean joiner/mover/leaver process across all systems Email security — SPF/DKIM/DMARC, phishing protection, secure/encrypted email for PHI Encrypted, tested backup and disaster recovery — including a documented restore test, not just "backups are on" Clinical systems & vendors Configure our cloud EHR/practice-management tenant (AdvancedMD) securely: user permissions and roles, MFA, session settings, audit-log review practice Place and secure connected clinical devices (ECG, cardiac ultrasound) on the network — segmentation, credentials, physical and network access Vendor risk review and BAA coverage for every third-party service that touches PHI (To be clear: we are not asking you to build or evaluate software integrations. That's separate expertise and we'll handle it elsewhere. This is about securing the systems and devices we run.) Remote worker security & privacy compliance Recommend and stand up a secure access method for remote team members, including offshore contractors — we have not settled on an approach yet and want your recommendation (cloud VDI, managed remote desktop, or another option), then the configuration to go with it: session policies, clipboard/print/USB redirection controls, MFA, conditional access Written remote-work security policy: acceptable use, home network requirements, physical privacy of the workspace, device standards, prohibited actions Confidentiality/HIPAA language and workforce training appropriate to remote and international contractors Logging and monitoring so remote access is auditable HIPAA documentation (this is the part we most need built, because none of it exists) HIPAA Security Rule risk analysis, written up properly Security policies and procedures, network diagram, asset/device inventory Access control matrix, BAA tracker, incident response plan Workforce security awareness training plan and record-keeping Our environment (so you can size this accurately) Cloud EHR / practice management: AdvancedMD Google Workspace for email, docs, and identity Spectrum 1 Gig business internet at the office VoIP phone system A small number of Windows workstations; office printers/scanners; fax handled through a cloud pipeline Connected clinical equipment: GE ECG system and cardiac ultrasound Remote team members, including an offshore contractor — secure access method not yet chosen, and we want your recommendation Practice size: solo physician plus a small support staff — a small environment, but a real one with real PHI What we're looking for Required Medical office / clinic IT experience is mandatory. You have supported physician practices, clinics, or ambulatory healthcare organizations as clients, and you can name them and describe the environments. General small-business IT experience alone does not qualify. US-based. We are only considering US-based individuals or firms for this role. Demonstrable hands-on experience applying the HIPAA Security Rule in a live clinical environment — not just theory or a certificate. Please describe at least one practice you've built or secured end to end. Strong practical networking: firewalls, VLANs, VPN, Wi-Fi, DNS (Ubiquiti/UniFi, Meraki, Fortinet, SonicWall, or similar) Google Workspace admin and security experience Endpoint management, patching, EDR, and backup/DR experience Ability to write clear, audit-ready documentation and policies that a non-technical physician can actually understand Working familiarity with how a medical office runs: cloud EHR tenants, clinical devices on the network, front-desk and back-office workflows, and the fact that downtime during clinic hours is not acceptable Willing to sign a Business Associate Agreement and an NDA Comfortable working independently with minimal hand-holding, and communicating in plain English rather than jargon Availability for at least a few hours of overlap with Pacific business hours Nice to have Security certifications (CISSP, CISA, HCISPP, Security+, CEH) or HIPAA-specific credentials Prior work with AdvancedMD or comparable cloud EHRs Experience with Azure AD/Entra, Intune, and virtual desktop / remote access policy management Experience putting medical devices and imaging equipment on a clinical network safely Familiarity with California-specific health privacy requirements (CMIA, CCPA/CPRA) Budget $60–100/hour, depending on experience. All work is hourly and tracked. Tell us your rate and your estimate of the hours needed for the initial build-out — a well-reasoned rate outside this range won't be dismissed out of hand, but we'll weigh it against your estimate. We'll agree on an initial hour cap for the discovery and planning stage before expanding scope. To apply, please include The medical practices or clinics you've supported — names or at least specialty, size, and dates — and what you actually did for one of them. Your approach to a HIPAA security risk analysis — what framework or methodology do you use, and what does the written deliverable look like? Which tools you'd expect to standardize us on for firewall, endpoint protection, patching, and backup, and roughly what those cost annually. Your hourly rate, and your estimate of the hours needed to get us from nothing to a properly set-up, documented environment. Your availability over the next month, and your typical response time for an urgent issue. Confirmation that you are US-based and willing to sign a BAA.

  • Hourly: $64.00 - $125.00
  • Intermediate
  • Est. time: 1 to 3 months, Not sure

We are seeking an experienced Microsoft Intune specialist to assist in the complete configuration and onboarding of devices. Our partial implementation requires guidance to optimize policies, troubleshoot integration issues, and ensure a smooth transition. The ideal candidate should have a strong background in device management and security, as well as familiarity with Intune best practices. Your expertise will help us enhance our device management strategy and achieve our deployment goals efficiently.

Jobs Per Page: Â