Responsibilities:
The Windows Infrastructure Engineer will be responsible for:
- Implement & maintain Integration of Laminar into Azure Cloud & Windows environments, operationalize issue
remediation workflows - Implement Azure Sensitive Data Identification workflows according to the data classification policy
- Integrate with SaaS Security Posture Management (SSPM) platform Integration (Such as AppOmni)
- Create a semiannual IAM report and drive entitlement review in the Azure cloud & Windows environment
- Implement Azure identity clean-up (tag, labels, identifying resource and identity owners, etc. Especially focusing on Azure Guest Accounts
- Remediation vulnerability management of significant volume of findings impacting on premise systems
- Address backlog of system patching updates
- Address backlog of 3rd party patching updates
- Upgrade of obsolete operating systems
- Assist with remediation/validation for various Cyber Ops SRE Core issues.
- Lead Network Segmentation of Windows and Linux servers
- Perform other duties, as needed
Qualifications:
- 5+ years in Windows Server engineering and Active Directory Services
- Computer Science Degree (B.S) or an equivalent with extensive work experience
- ADFS, Azure AD & Active Directory IAM & Azure Cloud Privileged Access management
- Experience in PowerShell, Python and or Azure CLI
- Knowledge of GDPR, ISO27001:2002 and HIPAA
- Azure Data encryption at rest and transmission
- Data Classification and Technology support and integration (Laminar)
- SaaS Security Posture Management (SSPM) platform Integration (Such as AppOmni)
- Ability to design and manage robust business continuity & disaster recovery plans and ensure business continuity in Azure and Windows environments
- Expertise of file system protocols such as NFS, SMB, and HDFS as they pertain to Isilon storage solutions, ensuring proper integration with various applications and systems
- Experience with Isilon's API and CLI for scripting and automation of storage tasks, enhancing operational efficiency
- Azure AD group policy expertise as it relates to security
- Windows patching and OS hardening for member servers and servers running services such as IIS, Certificate Services, DNS, DHCP, Exchange and SQL Server