Responsible for the operation, maintenance, and continuous development of our hybrid IT infrastructure (Windows Server 2022–2025, Microsoft 365 E3, Entra ID/Azure AD), Provide 1st, 2nd, and 3rd level support for all IT-relevant topics in a solution-oriented, service-conscious, and ITIL-compliant (v3) manner, Manage Active Directory and Entra ID environments, including a well-thought-out role and authorization concept, group policies (GPOs), and access controls, Administer terminal servers, print services, and file services (DFS), Handle software deployment and patch management via Microsoft Intune, as well as the automation of routine tasks, Oversee our Microsoft 365 environment, especially Exchange Online, Teams, SharePoint, and OneDrive, Monitor and secure IT systems, including vulnerability management, multi-factor authentication, conditional access, and other Microsoft security functions, Support colleagues in implementing IT security policies, especially regarding data protection, access security, and Microsoft Secure Score, Participate in internal IT security measures and awareness campaigns to sensitize employees in dealing with phishing, social engineering, etc., Collaborate closely with the IT management and internal and external project participants in the modernization and further development of our infrastructure, Standardize and document processes in the sense of ITIL v3, including system overviews and support documentation