Senior Infrastructure Security Engineer
Senior
Azure Active Directory
Device Management
Identity and Access Management
Industrial Cybersecurity
Information Security
Information Technology (IT)
InfoSec
Microsoft 365
Microsoft Defender
Microsoft Intune
Microsoft Sentinel
Mobile Device Management
Security
Security Compliance
Security Standards
Solution Architecture
Zero Trust Architecture
Job Description
A-Gas Americas is looking for a Senior Infrastructure Security Engineer to help design and evolve secure, resilient infrastructure and network architectures across both IT and OT. This onsite role in Rhome, TX supports business continuity goals, reduces single points of failure, and strengthens protections for critical assets through close collaboration with internal teams and Managed Service Providers (MSPs).
With at least 7 years of infrastructure engineering experience, you will partner with the Head of Infrastructure to address cyber vulnerabilities, validate remediation outcomes, and ensure manufacturing systems and legacy environments remain available and secure.
Responsibilities
- Support the Head of Infrastructure in designing and evolving secure, resilient infrastructure and network architectures across IT and OT environments.
- Maximize business continuity by eliminating single points of failure and protecting critical assets.
- Identify cyber vulnerabilities and design appropriate mitigations.
- Work with Managed Service Providers (MSPs) to carry out remediation and validate results.
- Collaborate with OT engineers and Product Owners to ensure manufacturing systems, legacy operating systems, and critical business products stay available and secure.
Requirements
- 7+ years in infrastructure engineering with strong exposure to security and resilience design.
- Expertise in VMware virtualization and the Microsoft stack, including Entra ID / Azure AD, Windows Server, Intune, M365, Defender, and Sentinel.
- Proven experience designing redundant network architectures and implementing business continuity strategies.
- Familiarity with Meraki networking and firewall configuration for secure cross-business connectivity.
- Knowledge of CIS18 controls, NIST CSF, and Zero Trust principles.
- Strong scripting and automation skills using PowerShell and Bash, including the ability to validate MSP deliverables.
Technologies
- VMware virtualization
- Entra ID, Azure AD
- Windows Server
- Intune
- M365
- Defender
- Sentinel
- Meraki
- PowerShell, Bash
- CIS18
- NIST CSF
- Zero Trust
Benefits
- Competitive and attractive employment package
- Employer pension scheme
- Flexible working hours (depending on the role)
- Collective benefits program
- Employee Assistance Program (support for work and personal matters)
- Cycle to work scheme
- Team activities in summer and around Christmas
Desirable
- Experience with PAM solutions (CyberArk or similar), SIEM/SOAR tuning, WAF, and IDS/IPS.
- Exposure to industrial control systems (ICS) and OT security best practices.
Certifications
- AZ-500 (Azure Security Engineer)
- SC-100 (Cybersecurity Architect)
- CISSP, or equivalent