Senior Infrastructure & Cybersecurity Engineer
Job Description
A-Gas is seeking a Senior Infrastructure & Cybersecurity Engineer based in Rhome, TX to strengthen secure and resilient IT/OT infrastructure and network architectures. Working alongside the Head of Infrastructure, you will help remove single points of failure, improve business continuity, and identify cyber vulnerabilities while supporting the availability and security of manufacturing and critical systems.
This onsite role is designed for an engineer who can balance infrastructure evolution with practical security outcomes, partnering with Managed Service Providers (MSPs) and OT or product stakeholders to ensure remediation is executed effectively and validated after changes.
Key Responsibilities
- Support the Head of Infrastructure in designing and evolving secure, resilient infrastructure and network architectures.
- Maximize business continuity and eliminate single points of failure.
- Protect critical assets.
- Identify cyber vulnerabilities and design mitigations.
- Work closely with Managed Service Providers (MSPs) to execute remediation and validate outcomes.
- Collaborate with OT engineers and Product Owners to ensure manufacturing systems, legacy operating systems, and critical business products remain available and secure.
Requirements
- 7+ years of infrastructure engineering experience with strong exposure to security and resilience design.
- Expertise in VMware virtualization and the Microsoft stack, including Entra ID/Azure AD, Windows Server, Intune, M365, Defender, and Sentinel.
- Proven experience designing redundant network architectures and implementing business continuity strategies.
- Familiarity with Meraki networking and firewall configuration to enable secure cross-business connectivity.
- Knowledge of CIS18 controls, NIST CSF, and Zero Trust principles.
- Strong scripting and automation skills, including PowerShell and Bash, plus the ability to validate MSP deliverables.
Technologies
- VMware, Entra ID/Azure AD, Windows Server, Intune, M365, Defender, Sentinel
- Meraki, PowerShell, Bash, CIS18, NIST CSF, Zero Trust
- CyberArk, SIEM, SOAR, WAF, IDS/IPS, ICS
Benefits
- Competitive and attractive employment package
- Employer pension scheme
- Flexible working hours (depending on the role)
- Collective benefits program
- Employee Assistance Program (support for work and personal matters)
- Cycle to work scheme
- Team activities in summer and around Christmas
Desirable
- Experience with PAM solutions (CyberArk or similar), SIEM/SOAR tuning, WAF, and IDS/IPS.
- Exposure to industrial control systems (ICS) and OT security best practices.
Certifications
- AZ-500 (Azure Security Engineer), SC-100 (Cybersecurity Architect), CISSP, or equivalent