The Enterprise Systems Engineer is a technical resource responsible for designing, implementing, and supporting enterprise-grade infrastructure solutions for both internal operations and managed service clients. This role combines deep technical expertise with consultative skills to deliver secure, scalable, and cost-effective solutions across on-premises and cloud environments. Core Responsibilities Infrastructure Design & Deployment
- Architect, implement, and maintain hybrid environments leveraging Microsoft Azure, AWS, and on-premises systems. Ensure solutions meet performance, security, and compliance requirements.
Cloud & Virtualization Expertise
- Manage Azure subscriptions, resource groups, networking, identity, and security policies. Provide guidance on AWS services for workloads requiring multi-cloud strategies.
Access & Security Management
- Define and enforce identity and access policies across enterprise systems and cloud platforms. Administer user security, MFA, and role-based access controls.
Performance & Reliability
- Monitor system health, analyze logs, and optimize performance. Generate reports and recommend improvements for high availability and disaster recovery.
Solution Evaluation & Vendor Engagement
- Research and evaluate hardware, software, and cloud services. Provide recommendations aligned with client requirements and industry best practices.
Project Scoping & Sales Engineering
- Collaborate with account managers and clients to define technical requirements, scope projects, and develop proposals. Participate in pre-sales discussions to ensure solution alignment.
Mentorship & Knowledge Sharing
- Guide junior engineers and support staff. Document architectures, workflows, and operational procedures. Deliver training sessions for internal teams and clients.
Lifecycle Management
- Coordinate system upgrades, migrations, and integrations. Test and validate new technologies before deployment.
Strategic Planning
- Contribute to long-term infrastructure roadmaps, including cloud adoption strategies and emerging technology evaluations.
Other Duties as Assigned
- Adapt to evolving client needs and organizational priorities.
Technical Skills Required: Cloud Platforms (Azure & AWS)
- Azure: Tenant/subscription governance (RBAC, Policy), VNet/Firewall/Private Link, VM/Scale Sets/App Services, Key Vault & Defender/Sentinel.
- AWS: Multi-account governance (Organizations, SCPs), VPC/TGW/PrivateLink, EC2/ASG/EKS, KMS/GuardDuty/CloudWatch.
Microsoft 365 / Modern Workplace
- Identity & security: Entra ID (Azure AD), Conditional Access, MFA/PIM, Purview (DLP, retention).
- Collaboration: Exchange Online, SharePoint/OneDrive sharing governance, Teams (policies/voice basics).
- Endpoint management: Intune/Autopilot, Compliance, Legal Discovery
Identity & Directory Services
- AD: domain design, GPO strategy, DNS/DHCP, sites & services.
- SSO/federation: SAML/OIDC/OAuth integrations; password less/MFA.
- PKI: cert lifecycle.
Networking & Edge Security
- Routing & switching: VLANs, Routing fundementals
- Firewalls/VPN: Fortinet/SonicWall/Meraki policy/NAT, IPsec remote access, HA pairs.
- Secure DNS/Web: Umbrella/DNS filtering, email security (SPF/DKIM/DMARC).
Datacenter & VMware Virtualization
- VMware vSphere: ESXi/vCenter, clusters/DRS/HA, templates & automation.
- Storage: SAN/NAS (SMB/NFS), snapshots/replication, performance tuning.
- Server OS: Windows Server roles (Failover/FS)
Backup, BCDR & Resilience
- DR: RPO/RTO planning, runbooks, crossregion cloud failover.
- Testing: scheduled restore tests, tabletop exercises.
Security Engineering & Compliance
- Frameworks: CIS/NIST/ISO; baseline hardening and audits.
Automation
Project Scoping & Sales Engineering
- Discovery & design: requirements, constraints, risk; reference architectures.
- Proposals: SOW/BOM, levelofeffort, milestones, migration plans.
- Value framing: ROI/TCO, licensing models (M365, Azure/AWS), executive presentations.
Education/Experience Required
- Requires minimum 4 years of related experience in designing, implementing, and supporting enterprise systems
- Industry Certifications Recommended
Additional Information:
- This job description is subject to change and may be adjusted to meet the company's needs.
- Upon receiving an offer of employment, candidates will be required to undergo a background check and drug screening.
- Depending on the role, additional industry-specific skills testing may also be necessary prior to placement.
The Aleron family of companies-Acara Solutions, Aleron Shared Resources, Broadleaf Results, Lume Strategies, TalentRise, and Viaduct-are proud to be Equal Employment Opportunity and Affirmative Action Employers. We consider all qualified applicants for employment without regard to race, color, religion, gender identity, sexual orientation, national origin, genetic information, sex, age, disability, veteran status, or any other legally protected characteristic. We encourage and welcome applications from diverse candidates, including those with disabilities. Accommodations are available upon request for individuals participating in all stages of the selection process. Please note that applicants must be legally authorized to work in the United States. This position does not qualify for F-1 OPT STEM work authorization.
Aleron companies (Acara Solutions, Aleron Shared Resources, Broadleaf Results, Lume Strategies, TalentRise, Viaduct) are an Equal Opportunity Employer. Race/Color/Gender/Religion/National Origin/Disability/Veteran.
* The compensation rage provided represents our good faith representation of the high and low pay range for this position.
Applicants for this position must be legally authorized to work in the United States. This position does not meet the employment requirements for individuals with F-1 OPT STEM work authorization status.
Apply
|