Cloud Infrastructure Engineer
ATL Medical · Minnesota, United States · 1 wk ago
Information TechnologyFull-time
Key Responsibilities
- Cloud & Identity
- Administer Azure and Entra ID, including identity governance and access controls
- Manage employee lifecycle processes (joiner, mover, leaver) integrated with Workday
- Implement and maintain Conditional Access, MFA, and PIM
- Maintain role-based access and least privileged models
- Endpoint & Device Management
- Own Microsoft Intune platform (enrollment, policies, compliance, deployments)
- Standardize endpoint configurations across all sites
- Manage patching coordination and endpoint security controls
- Troubleshoot device and application deployment issues
- Infrastructure & Hybrid Systems
- Support and maintain hybrid infrastructure including Azure-hosted and on-prem environments
- Administer and support Windows Server environments and Hyper‑V virtualization platforms
- Manage core services such as Active Directory, DNS, DHCP, and file services
- Monitor system performance, availability, and security across cloud and on-prem systems
- Support server lifecycle management including upgrades, migrations, and decommissioning
- Assist with workload transitions between on-prem and cloud environments where appropriate
- Backup & Disaster Recovery
- Support and help drive global backup and recovery strategy execution
- Ensure reliable backup coverage for critical systems across cloud and on-prem environments
- Validate backup integrity through periodic restore testing
- Partner with IT leadership to maintain recovery objectives and improve resiliency
- Maintain documentation and visibility into backup configurations and coverage
- Network & Connectivity
- Support and maintain site-to-site VPNs and global connectivity
- Configure and troubleshoot firewalls with a preference for SonicWall platforms
- Apply best practices for firewall rules, segmentation, and access control
- Support network standardization and secure connectivity across all sites
- Manufacturing & ICS Support
- Support plant automation initiatives that rely on segmented ICS (Industrial Control Systems) networks
- Work with IT and engineering teams to ensure proper separation between enterprise and ICS environments
- Assist in implementing secure connectivity models between business systems and production systems
- Support firewall layering and segmentation strategies for manufacturing environments
- Security & Compliance
- Enforce security controls across identity, endpoints, and infrastructure
- Support MDR, endpoint protection, and audit readiness
- Maintain alignment with FDA, ISO 13485, and internal standards
- Global Support & Operations
- Act as Tier 2/3 escalation point
- Support and guide site IT teams
- Drive standardization across regions
- Automation & Documentation
- Develop PowerShell automation for administration and provisioning
- Maintain SOPs, runbooks, and documentation
- Support audit and operational readiness
Qualifications
- 5+ years in cloud, infrastructure, or systems engineering roles
- Strong experience with Azure, Entra ID, and Microsoft 365
- Experience supporting hybrid environments (cloud + on-prem)
- Hands-on experience with Windows Server and Hyper‑V virtualization (required)
- Experience with Microsoft Intune endpoint management
- Strong understanding of firewalls and network security (SonicWall preferred)
- Experience supporting or working alongside ICS or segmented network environments is strongly preferred
- Experience with backup systems and disaster recovery processes
- Experience with identity lifecycle management and Workday integration (preferred)
- PowerShell scripting and automation experience
Benefits
- Competitive salary and bonus compensation
- Medical, Dental, Vision, and HSA plans
- Life, AD&D, STD, LTD plans to help protect you and your loved ones
- Generous 401k plan with Employer Match
- Paid Holidays, PTO, and other leave programs to support your time off needs