The Senior IT Infrastructure Engineer is responsible for designing, implementing, supporting, and maintaining the organization’s core IT infrastructure across network, server, cloud, cybersecurity, identity, endpoint, and backup/disaster recovery environments. This role supports reliable, secure, and scalable IT operations while helping protect business systems, users, and data.
The position requires hands-on technical experience with enterprise infrastructure technologies, including firewalls, Fortinet, virtualization platforms, Nutanix, VMware, cloud services, identity platforms, endpoint management, cybersecurity tools, and IT service management systems.
Responsibilities
Network Infrastructure
- Design, configure, monitor, and support enterprise network infrastructure, including LAN, WAN, VPN, wireless, routing, switching, and firewall environments.
- Administer and troubleshoot Fortinet firewalls, VPNs, security policies, NAT rules, routing, IPS/IDS, and network segmentation.
- Support secure remote access technologies, including ZTNA solutions.
- Assist with network performance monitoring, capacity planning, and availability improvement.
- Maintain accurate network diagrams, firewall rules documentation, and infrastructure standards.
Server, Virtualization, and Data Center Infrastructure
- Manage Windows and Linux server environments, including patching, monitoring, performance tuning, and troubleshooting.
- Administer virtualization platforms such as VMware and Nutanix.
- Support compute, storage, and hyperconverged infrastructure environments.
- Perform system upgrades, migrations, lifecycle replacements, and infrastructure optimization.
- Maintain server hardening standards, baseline configurations, and operational documentation.
Cloud Infrastructure
- Support cloud environments in Microsoft Azure and AWS.
- Assist with cloud networking, identity integration, storage, compute, backup, security, and monitoring.
- Support hybrid infrastructure integrations between on-premises environments and cloud platforms.
- Assist with cloud security controls, access management, logging, and cost optimization.
Identity, Access, and Endpoint Management
- Administer Active Directory, Group Policy, DNS, DHCP, and related Windows infrastructure services.
- Support identity and access management platforms such as Okta and Microsoft Entra ID.
- Assist with SSO, MFA, conditional access, role-based access, and account lifecycle management.
- Support Microsoft Intune for endpoint enrollment, configuration profiles, compliance policies, application deployment, device security, and remote wipe.
- Maintain endpoint standards for laptops, desktops, and servers.
Cybersecurity Operations
- Support cybersecurity tools and processes across endpoint, email, network, identity, and cloud environments.
- Administer or support tools such as EDR/XDR, Darktrace, Mimecast, Microsoft Purview, Okta, Fortinet security features, and related monitoring platforms.
- Assist with vulnerability management, patch compliance, security alert triage, incident response, and remediation.
- Support data protection initiatives, including DLP, retention, classification, encryption, and secure file handling.
- Help maintain security documentation, evidence, and controls aligned with company policies and compliance requirements.
Backup, Disaster Recovery, and Business Continuity
- Manage backup and recovery platforms for servers, cloud systems, file shares, and critical applications.
- Support Backup/DR planning, testing, documentation, and recovery validation.
- Monitor backup jobs, troubleshoot failures, and ensure recovery objectives are met.
- Assist with disaster recovery exercises and infrastructure resilience improvements.
IT Operations and Service Management
- Use ServiceNow or similar ITSM platforms to manage incidents, requests, changes, problems, and operational tasks.
- Participate in change management, maintenance windows, root cause analysis, and escalation processes.
- Provide Tier 2/Tier 3 technical support for infrastructure-related issues.
- Collaborate with IT support teams, security teams, vendors, MSPs, and business stakeholders.
- Create and maintain technical documentation, runbooks, diagrams, standards, and procedures.
Qualifications
- 8+ years of hands-on experience in IT infrastructure, network, systems, cloud, or cybersecurity engineering.
- Strong experience supporting enterprise network and firewall environments, preferably Fortinet.
- Experience with VMware, Nutanix, or other virtualization/hyperconverged infrastructure platforms.
- Strong knowledge of Windows Server, Active Directory, Group Policy, DNS, DHCP, and file services.
- Experience with cloud platforms such as Microsoft Azure and AWS.
- Experience with identity platforms such as Okta, Microsoft Entra ID, SSO, and MFA.
- Experience with endpoint management tools such as Microsoft Intune.
- Working knowledge of cybersecurity tools, including EDR, email security, DLP, SIEM/NDR, and vulnerability management.
- Experience with backup, disaster recovery, and infrastructure monitoring tools.
- Familiarity with ITSM platforms such as ServiceNow.
- Strong troubleshooting, documentation, communication, and project execution skills.
- Experience with Fortinet firewalls, FortiGate VPN, FortiAnalyzer, or FortiManager.
- Experience with ZTNA platforms and secure remote access architectures.
- Experience with Microsoft Purview for data loss prevention, retention, classification, or compliance.
- Experience with Mimecast email security administration.
- Experience with Darktrace or similar network detection and response tools.
- Experience supporting regulated environments such as CMMC, NIST 800-171, ISO 27001, SOC 2, or ITAR-controlled environments.
- Experience with ServiceNow change, incident, and problem management.