
Infrastructure & Security Engineer
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in United States.
• Design, implement, manage, and enhance a secure, scalable, resilient, and maintainable infrastructure across corporate and program environments.
• Oversee cloud services, servers, virtual machines, networks, firewalls, identity platforms, endpoints, VPN services, backups, collaboration tools, and monitoring solutions.
• Carry out provisioning, configuration, patching, upgrading, monitoring, troubleshooting, backup validation, capacity planning, and systems administration tasks.
• Create scripts, automation, and repeatable processes for deployment, configuration, monitoring, evidence collection, and administration.
• Maintain comprehensive system documentation, inventories, diagrams, configuration records, operating procedures, and IT service management workflows.
• Assist with disaster recovery, business continuity, and Continuity of Operations planning, documentation, testing, and corrective measures.
• Assess technologies and collaborate with vendors and service providers to enhance performance, security, reliability, service quality, and cost-effectiveness.
• Implement, maintain, evaluate, and document cybersecurity controls.
• Facilitate Risk Management Framework activities, including control implementation, assessment, authorization, and ongoing monitoring.
• Develop and sustain ATO packages, security plans, control implementation statements, network and data-flow diagrams, configuration evidence, POA&Ms, and associated artifacts.
• Execute system hardening and oversee vulnerability identification, prioritization, remediation, validation, and reporting processes.
• Analyze security scans, alerts, logs, and configuration findings; coordinate corrective actions and assist with incident investigation, containment, remediation, and lessons learned.
• Organize security assessments, penetration tests, tabletop exercises, internal audits, and reviews by customers or third parties.
• Support the secure management of CUI, PII, and other sensitive information, including Zero Trust, least privilege, MFA, identity and access management, endpoint security, and permission reviews.
• Assess proposed technologies, system changes, and integrations for security and compliance implications.
• Collect and evaluate operational, business, cybersecurity, and technical requirements and convert them into infrastructure and security solutions.
• Collaborate with software engineers and DevOps personnel to embed security into development, deployment, system integration, and CI/CD processes.
• Communicate technical risks, constraints, recommendations, and alternatives to both technical and non-technical stakeholders.
• Perform other related duties as required by organizational and program needs.
• Bachelor's degree in computer science, information technology, cybersecurity, engineering, or a related field.
• A combination of education, certifications, training, and experience may be considered equivalent.
• Seven or more years of progressively responsible experience in IT infrastructure, systems engineering, cloud administration, cybersecurity, or a closely related discipline.
• Proven experience designing, implementing, administering, and securing enterprise infrastructure.
• Practical experience with Microsoft Azure or Azure Government, Microsoft 365 and Entra ID, AWS or AWS GovCloud, as well as virtualization, networking, endpoint management, backup, and monitoring technologies.
• Familiarity with implementing or assessing controls under NIST SP 800-53, NIST SP 800-171, RMF, CMMC, FedRAMP, FISMA, or similar federal cybersecurity standards.
• Experience in developing or maintaining ATO documentation, security control evidence, Plans of Action and Milestones, and audit-ready technical documents.
• Strong skills in troubleshooting, scripting or automation, communication, and engaging with stakeholders.
• Solid understanding of enterprise infrastructure, cloud computing, systems administration, networking, identity and access management, endpoint management, vulnerability management, and cybersecurity basics.
• Working knowledge of IaaS and PaaS services, logging and monitoring, storage, backup, virtualization, firewalls, switching, routing, VPN technologies, and endpoint security.
• Ability to produce clear, accurate, and audit-ready technical and cybersecurity documentation.
• Experience with PowerShell, Python, or similar scripting and automation tools; familiarity with infrastructure as code, configuration management, and DevSecOps practices.
• Demonstrated capability to diagnose complex technical issues, identify root causes, implement sustainable solutions, and manage competing priorities independently.
• Excellent organizational, analytical, communication, technical writing, and documentation abilities.
• U.S. citizenship and a current CompTIA Security+ (or higher) certification at the time of hiring.
• Capability to obtain and maintain a government security clearance and meet applicable DoD 8140 qualification requirements.
• Willingness to support occasional maintenance, incident response, or system restoration activities beyond standard business hours.
• Preferred: Experience supporting systems operating under a DoD ATO or within Azure Government, AWS GovCloud, NIPRNet, or other federal environments.
• Preferred: Experience with Terraform, Bicep, CloudFormation, Ansible, security scanning, EDR, SIEM, cloud security posture management, or automated compliance tools.
• Preferred: Experience aiding CMMC assessments or implementing NIST SP 800-171 requirements.
• Preferred: Relevant certifications such as CISSP or Microsoft Certified Azure certifications.
• 100% employee ownership through our ESOP.
• Comprehensive medical, dental, and vision coverage.
• Generous PTO policy with 11 paid holidays each year.
• Paid family leave.
• 401(k) retirement plan.
• Monthly reimbursement for high-speed internet.
• Fully remote work with flexible scheduling options.
• Sponsored professional development and training opportunities.
• A fun and inclusive culture with regular virtual team events.
Sony Interactive Entertainment
Squads
Neo4j
PingWind Inc. (SDVOSB)
Get handpicked remote jobs straight to your inbox weekly.