Senior Infrastructure Engineer (with Cybersecurity exposure) (USD 4-4.5K/month FTE)
[h2]Job Overview[/h2] As an Infrastructure & cybersecurity Engineer, you will be responsible for designing, implementing, maintaining, and optimizing the organization’s IT infrastructure (on-premises and cloud environments, networks, servers, storage, and end-user systems) to ensure high availability, performance, and reliability. You will evaluate and deploy technology solutions, manage cloud platforms, and drive infrastructure modernization initiatives aligned with client and business goals. You will also ensure that infrastructure is built and maintained with security best practices in mind, supporting compliance with regulatory requirements and incorporating appropriate controls into the technology stack. You will be a strategic technical leader, mentoring team members while partnering with other leaders to advance infrastructure capabilities and operational excellence across the organization. [h2]Responsibilities and Duties [/h2]Design, implement, and manage comprehensive IT infrastructure solutions, including standardized processes for system provisioning, configuration management, performance monitoring, capacity planning, and lifecycle management.Architect and deploy scalable, highly available infrastructure solutions including server environments, networking, storage, and cloud platforms to meet evolving client requirements.Evaluate and recommend IT solutions for projects, offering insights into systems, hardware, and software that align with client goals.Plan and execute infrastructure projects end-to-end, including data center builds, cloud migrations, and platform upgrades, ensuring on-time delivery and minimal business disruption.Monitor and benchmark server, and cloud performance, proactively identifying bottlenecks and implementing improvements to meet or exceed established SLAs and performance metrics.Design and implement robust disaster recovery, business continuity, and backup strategies to ensure data integrity and rapid recovery across client environments.Support and maintain core infrastructure solutions including backup systems, email and productivity platforms, endpoint management, mobile device management (MDM), and identity and access management systems, ensuring reliability and operational continuity.Develop and maintain infrastructure runbooks, operational playbooks, and escalation procedures to ensure consistent, efficient responses to system incidents and outages.Collaborate with internal teams, clients, and external technology partners to ensure timely delivery of infrastructure services, maintaining service level agreements and meeting contractual requirements.Serve as a trusted infrastructure advisor to clients, ensuring technology architectures are designed for scalability, resilience, and operational efficiency, with security best practices embedded throughout.Develop and deliver technology onboarding and training programs for clients, providing knowledge transfer on infrastructure platforms, tools, and operational best practices.Manage and support on-premises and cloud-based IT infrastructure components such as virtual server environments (VMware, Hyper-V), SAN/NAS storage, Windows Active Directory, DNS, DHCP, AWS, Azure, Google Cloud, and Microsoft 365 environments, tailored to operational needs.Maintain detailed asset inventories, assist in audits, and manage the life cycle of technology assets, from acquisition to decommissioning.Manage user accounts and enforce security policies, including password policies and access controls.Coordinate with vendors for procuring and managing technology solutions, ensuring that equipment meets the needs of the business.Escalate critical issues to management as necessary, ensuring prompt resolution and minimal impact on operations.Work in alignment with Pacific Standard Time (PST) to meet the operational demands, with flexibility for night and weekend support as required.[h2]Qualifications [/h2]5+ years designing, deploying, and managing enterprise IT infrastructure, including on-premises, cloud, and hybrid environments.Hands-on experience with virtualization platforms (VMware, Hyper-V), SAN/NAS storage systems, Windows Server, Active Directory, DNS, DHCP, and cloud IaaS/PaaS services across AWS, Azure, and Google Cloud.Strong technical background in systems administration, network engineering, and cloud architecture, including experience with server technologies, cloud-based SaaS applications, and IaaS platforms such as AWS, Azure, and Google Cloud.Demonstrated experience with disaster recovery planning and execution, backup and recovery technologies, business continuity strategies, and infrastructure documentation and change management processes.Excellent organizational, communication and customer service skills with active-listening skills.Strong knowledge of networking fundamentals would be a plus; including LAN/WAN, SD-WAN, VLANs, routing protocols, firewalls, load balancers, and network monitoring tools, with experience implementing and troubleshooting complex network environments.Knowledge of regulatory and compliance requirements relevant to the biotech industry (CCPA, SOX, GxP) is a plus; relevant infrastructure certifications (AWS, Azure, VMware, CCNA/CCNP) are highly desirable.Experienced with implementing, managing, and supporting the following technology platforms: (or equivalent expertise)o Cloud Services: VM instances, VPC configuration, Transfer Family (SFTP), IAM (Identity & Access Management), cold/warm storage, blob storage, S3 buckets, and related managed services across AWS, Azure, and GCP o Identity management & SSO: Microsoft EntraID, Okta o Email/Productivity: Microsoft 365, Google Workspaces o Email/Productivity: Microsoft 365, Google Workspace, Mimecast, Proofpoint o Endpoint Management & Security: Intune (MDM/MAM), Jamf, Kandji, Microsoft Defender, Crowdstrike o MDM: Intune (MDM/MAM), Jamf, Kandji, Addigy, Workspace One, o Monitoring & ITSM: Auvik, PRTG, Datadog, ServiceNow, SolarWinds, or similar platforms o Data Backup and Recovery: Druva, Backblaze, Cloudally, Veeam o SASE/DLP: Zscaler ZIA, ZPA, DLP o Networking: Meraki, Cisco (Firepower, ASA, Catalyst), PaloAlto Networks, SonicWALL