Job Description Job Description Ideal start timeline: August 2026 Role status: Exempt Compensation: Our target hiring range is $180,000-$200,000 plus participation in our Annual Bonus Program with eligibility for $12,000 bonus. Actual compensation will be commensurate with experience and skills. Campminder's Flexible Working Location: Our employees have the option to work 100% remotely within the United States in select states where Campminder has established entities or their choice of days at home and at our office in Boulder, Colorado. We host a variety of all-company hybrid meetings and social events. We require anybody working remotely to have a very reliable, high-speed internet connection. We know the best people can choose to work anywhere. Here's a few reasons why 100+ of them choose Campminder: With 20+ years experience of serving the industry through its digital transformation, we're stable, profitable, and have developed a loyal customer base (that continues to grow). We build software for summer camps, an industry that enables meaningful experiences for kids. We work on interesting, ambitious projects that create real value for our clients. We know our team members feel their work has an impact on the organization's purpose. At the same time, we are genuinely committed to work/life balance. Our team members feel they have the flexibility to take time off when needed and feel supported in making use of flexible working arrangements. We invest in emerging technology and cutting-edge leadership and are proud to take an "AI-Enabled" approach in our solutions. We've been listed on Outside Magazine's 50 Best Places to Work for 8 consecutive years for our values-led culture and employee experience. This role's mission & overview: Camps trust Campminder to keep their data safe, and that trust is what lets them focus on running a great summer. You'll own how we protect that data end to end: architecting and hardening our security infrastructure, carrying our PCI and SOC2 programs through every audit, and setting the roadmap that keeps us ahead of real threats. You'll be the person the engineering org comes to on security and the one who defines what good looks like at Campminder. As a Senior DevSecOps Engineer on our Engineering team, you will: Partner with the DevOps team to Integrate security scanning (SAST, DAST, SCA) into CI/CD pipelines and drive remediation before code reaches production Configure, tune, and harden WAF rules across our web applications Partner with platform and IT to implement and maintain EDR, DLP, vulnerability scanning and remediation, and SIEM/XDR tooling across servers and endpoints Manage secrets and credentials in build pipelines, including vault-based storage, rotation, and least-privilege service accounts Execute PCI, SOC2, and ISO technical controls: SAQ completion, quarterly ASV scans, and disaster recovery implementation Harden containerized and cloud-native environments, including image scanning and Kubernetes configuration Coordinate pen testing engagements and drive remediation against SLA timelines Run security awareness training programs (KnowBe4, Security Journey) and maintain AI usage oversight, including approved tooling, code-gen governance, and supply-chain monitoring We think a successful candidate will bring: Experienced in security engineering or DevSecOps, with hands-on ownership of both pipeline-level and infrastructure-level security Experience configuring IAM and SSO platforms (Okta, Auth0) alongside cloud-native identity controls like Azure conditional access Comfort embedding security directly into CI/CD workflows through security and dependency scanning tooling, secrets management, and policy-as-code A track record of hardening containerized and cloud-native environments, including Kubernetes and image scanning Experience executing PCI, SOC2 or similar compliance technical controls (scans, SAQs, evidence prep); program ownership isn't required, but you know how to translate auditor requirements into engineering work Familiarity administering centralized cybersecurity solutions, endpoint security, and data loss protection Strong judgement on how to balance security risk with employee experience and velocity, how to build trust through balanced approaches to security risk mitigation, and knowledge of when to escalate versus fix directly Experience running or supporting security awareness and training programs Exposure to AI tooling governance, such as MCP inventories, code-gen release gating, or supply-chain monitoring for AI-assisted development Strong communication skills, with the ability to communicate technical concepts to technical and non-technical people A track record of working collaboratively with engineers and supporting them in learning and implementing security best practices A track record of empowering delivery teams to move quickly and unblock themselves A growth-oriented mindset Our Interview Process: 45 min - interview with People & Culture 60 min - interview with Hiring Manager Phase 3 60 min - Technical interview 30 min - Peer interview 30 min - Interview with our CTO A few of the benefits we are proud to offer: Robust medical, dental, and vision coverage options with generous employer contributions, plus a $500 employer HSA contribution for HSA-compatible plans Ability to choose where you work - remotely, in the office, or a mix! A variety of resources to support mental health and emotional well-being 12 weeks of 100% paid parental leave for all new parents, including via adoption, surrogacy, and foster care 401(k) with 4% company matching Trust-Based (flexible) PTO (and yes, we use it!) $900/year wellness allowance Company-paid subscriptions, training, and support for using AI professionally and personally. We have a team dedicated to enabling our AI capabilities for our team members and our customers! We encourage people of all backgrounds to apply: We're actively taking steps to make sure our culture is inclusive and that our processes and practices promote equity for all, including people of color, people from working-class backgrounds, women, and members of the LGBTQ+ community. We welcome and encourage applications from people with these identities or members of other historically marginalized groups. Research shows that women and people of color tend not to apply to jobs unless they believe they are 100% qualified and apply to fewer senior-level positions. With that in mind, we encourage you to apply if you're not sure whether you meet our qualifications. We'd love to have the opportunity to consider you! We encourage applications from parents, parents-to-be, and those responsible for the caretaking of others. We offer paid parental leave for birthing and non-birthing parents (including for adoption, surrogacy, and foster care placement) and paid loss leave to recover from miscarriage or stillbirth. The company's HSA and wellness allowance contributions may be used toward childcare, eldercare, adoption fees, and fertility treatments like IVF, among other expenses.
09/10/2026
Full time
Job Description Job Description Ideal start timeline: August 2026 Role status: Exempt Compensation: Our target hiring range is $180,000-$200,000 plus participation in our Annual Bonus Program with eligibility for $12,000 bonus. Actual compensation will be commensurate with experience and skills. Campminder's Flexible Working Location: Our employees have the option to work 100% remotely within the United States in select states where Campminder has established entities or their choice of days at home and at our office in Boulder, Colorado. We host a variety of all-company hybrid meetings and social events. We require anybody working remotely to have a very reliable, high-speed internet connection. We know the best people can choose to work anywhere. Here's a few reasons why 100+ of them choose Campminder: With 20+ years experience of serving the industry through its digital transformation, we're stable, profitable, and have developed a loyal customer base (that continues to grow). We build software for summer camps, an industry that enables meaningful experiences for kids. We work on interesting, ambitious projects that create real value for our clients. We know our team members feel their work has an impact on the organization's purpose. At the same time, we are genuinely committed to work/life balance. Our team members feel they have the flexibility to take time off when needed and feel supported in making use of flexible working arrangements. We invest in emerging technology and cutting-edge leadership and are proud to take an "AI-Enabled" approach in our solutions. We've been listed on Outside Magazine's 50 Best Places to Work for 8 consecutive years for our values-led culture and employee experience. This role's mission & overview: Camps trust Campminder to keep their data safe, and that trust is what lets them focus on running a great summer. You'll own how we protect that data end to end: architecting and hardening our security infrastructure, carrying our PCI and SOC2 programs through every audit, and setting the roadmap that keeps us ahead of real threats. You'll be the person the engineering org comes to on security and the one who defines what good looks like at Campminder. As a Senior DevSecOps Engineer on our Engineering team, you will: Partner with the DevOps team to Integrate security scanning (SAST, DAST, SCA) into CI/CD pipelines and drive remediation before code reaches production Configure, tune, and harden WAF rules across our web applications Partner with platform and IT to implement and maintain EDR, DLP, vulnerability scanning and remediation, and SIEM/XDR tooling across servers and endpoints Manage secrets and credentials in build pipelines, including vault-based storage, rotation, and least-privilege service accounts Execute PCI, SOC2, and ISO technical controls: SAQ completion, quarterly ASV scans, and disaster recovery implementation Harden containerized and cloud-native environments, including image scanning and Kubernetes configuration Coordinate pen testing engagements and drive remediation against SLA timelines Run security awareness training programs (KnowBe4, Security Journey) and maintain AI usage oversight, including approved tooling, code-gen governance, and supply-chain monitoring We think a successful candidate will bring: Experienced in security engineering or DevSecOps, with hands-on ownership of both pipeline-level and infrastructure-level security Experience configuring IAM and SSO platforms (Okta, Auth0) alongside cloud-native identity controls like Azure conditional access Comfort embedding security directly into CI/CD workflows through security and dependency scanning tooling, secrets management, and policy-as-code A track record of hardening containerized and cloud-native environments, including Kubernetes and image scanning Experience executing PCI, SOC2 or similar compliance technical controls (scans, SAQs, evidence prep); program ownership isn't required, but you know how to translate auditor requirements into engineering work Familiarity administering centralized cybersecurity solutions, endpoint security, and data loss protection Strong judgement on how to balance security risk with employee experience and velocity, how to build trust through balanced approaches to security risk mitigation, and knowledge of when to escalate versus fix directly Experience running or supporting security awareness and training programs Exposure to AI tooling governance, such as MCP inventories, code-gen release gating, or supply-chain monitoring for AI-assisted development Strong communication skills, with the ability to communicate technical concepts to technical and non-technical people A track record of working collaboratively with engineers and supporting them in learning and implementing security best practices A track record of empowering delivery teams to move quickly and unblock themselves A growth-oriented mindset Our Interview Process: 45 min - interview with People & Culture 60 min - interview with Hiring Manager Phase 3 60 min - Technical interview 30 min - Peer interview 30 min - Interview with our CTO A few of the benefits we are proud to offer: Robust medical, dental, and vision coverage options with generous employer contributions, plus a $500 employer HSA contribution for HSA-compatible plans Ability to choose where you work - remotely, in the office, or a mix! A variety of resources to support mental health and emotional well-being 12 weeks of 100% paid parental leave for all new parents, including via adoption, surrogacy, and foster care 401(k) with 4% company matching Trust-Based (flexible) PTO (and yes, we use it!) $900/year wellness allowance Company-paid subscriptions, training, and support for using AI professionally and personally. We have a team dedicated to enabling our AI capabilities for our team members and our customers! We encourage people of all backgrounds to apply: We're actively taking steps to make sure our culture is inclusive and that our processes and practices promote equity for all, including people of color, people from working-class backgrounds, women, and members of the LGBTQ+ community. We welcome and encourage applications from people with these identities or members of other historically marginalized groups. Research shows that women and people of color tend not to apply to jobs unless they believe they are 100% qualified and apply to fewer senior-level positions. With that in mind, we encourage you to apply if you're not sure whether you meet our qualifications. We'd love to have the opportunity to consider you! We encourage applications from parents, parents-to-be, and those responsible for the caretaking of others. We offer paid parental leave for birthing and non-birthing parents (including for adoption, surrogacy, and foster care placement) and paid loss leave to recover from miscarriage or stillbirth. The company's HSA and wellness allowance contributions may be used toward childcare, eldercare, adoption fees, and fertility treatments like IVF, among other expenses.
Job Description Job Description Work Arrangement: Dallas-based / Hybrid Visa Sponsorship: Not available. Candidates must already be authorized to work in the United States without current or future employer sponsorship. Job Summary We are seeking a highly experienced Senior MLOps Engineer with strong hands-on Snowflake experience to support enterprise machine learning platforms and production ML workloads. The ideal candidate has hands-on experience taking machine learning models from experimentation through production and building the deployment pipelines, monitoring, automation, infrastructure, and governance capabilities required to operate ML solutions reliably at enterprise scale. This role will work closely with Data Scientists, ML Engineers, Data Engineers, Cloud Engineers, and enterprise platform teams. Key Responsibilities Design, build, and maintain enterprise-grade MLOps platforms and pipelines. Operationalize machine learning models developed by Data Science teams. Build automated ML workflows covering training, validation, deployment, monitoring, retraining, and retirement. Implement CI/CD pipelines specifically for machine learning workloads. Establish model registry, versioning, lineage, artifact management, and reproducibility. Implement model monitoring, data drift detection, model drift detection, prediction-quality monitoring, and alerting. Integrate ML workloads with Snowflake-based enterprise data environments . Build and optimize Python- and SQL-based data and ML pipelines. Support Snowflake data ingestion, transformation, compute, security, and ML integrations. Containerize ML workloads using Docker and deploy workloads through Kubernetes or comparable orchestration platforms. Implement logging, observability, alerting, and production support processes. Automate deployment and infrastructure provisioning using modern DevOps and Infrastructure-as-Code practices. Support model governance, approval workflows, lineage, auditability, and access controls. Troubleshoot production ML pipelines, model-serving infrastructure, Snowflake integrations, and performance issues. Develop reusable MLOps frameworks, standards, templates, and best practices. Mandatory Qualifications Candidates must have hands-on production experience in both MLOps and Snowflake . MLOps - Required Strong production experience with: ML model deployment and operationalization Model lifecycle management ML CI/CD Experiment tracking Model registry and versioning Automated model validation Model monitoring Data and model drift detection Retraining pipelines Pipeline orchestration Production troubleshooting Experience with one or more of the following: ML flow Kubeflow AWS SageMaker Azure Machine Learning Airflow Argo Workflows Prefect Dagster Equivalent enterprise MLOps platforms Snowflake - Required Strong hands-on Snowflake experience including: Snowflake architecture Databases, schemas, tables, and views Virtual warehouses Compute management Snowflake security and RBAC Data ingestion and transformation Performance optimization Python integration Snowflake integration with ML pipelines Experience with the following is strongly preferred: Snowpark Snowpark Python Snowflake ML Snowflake Model Registry Snowflake Feature Store Snowflake Tasks and Streams Dynamic Tables Snowpipe Cortex / Snowflake AI capabilities Additional Required Technical Skills Strong Python Strong SQL Git REST APIs Linux Shell scripting Docker CI/CD Cloud platforms such as AWS, Azure, or GCP Preferred Skills Experience with: Kubernetes Terraform GitHub Actions Jenkins GitLab CI/CD Azure DevOps dbt Spark Kafka Grafana CloudWatch Evidently Education and Experience Bachelor's or Master's degree in Computer Science, Engineering, Data Science, Machine Learning, or related field. 6+ years of software, cloud, data, or ML engineering experience. 3+ years of hands-on production MLOps experience. Strong hands-on Snowflake experience. Experience deploying ML models into production. Experience implementing ML CI/CD pipelines. Strong Python and SQL skills. Experience with Docker and cloud infrastructure. Work Authorization This position does not provide visa sponsorship. Candidates must be currently authorized to work in the United States without employer sponsorship and must not require sponsorship now or in the future. Company Description About KAPI Advisors LLC KAPI Advisors LLC is a forward-thinking boutique firm at the intersection of AI, Machine Learning, Data Analytics, Generative AI, Mathematical Optimization, and Cloud Platform Engineering. We build highly personalized, cutting-edge solutions tailored to the specific needs of each client - empowering organizations with powerful tools to unlock new business opportunities, operational efficiencies, and platform reliability at scale. At KAPI Advisors, we are passionate about solving complex, real-world challenges through technology. Our capabilities span intelligent agent-based systems, advanced data analytics, optimization algorithms, and robust cloud infrastructure - all designed to work together seamlessly. Our offerings include Generative AI systems that enable automation and intelligent decision-making, ML models that surface actionable insights, Mathematical Optimization techniques for supply chain management, resource allocation, and logistics, and Site Reliability Engineering practices that ensure the platforms powering these solutions remain performant, resilient, and production-ready. We believe that great AI and data products are only as strong as the infrastructure beneath them. That's why our SRE and DevOps practice is central to everything we build - from designing observability frameworks and incident response playbooks, to implementing chaos engineering, disaster recovery, and developer productivity tooling that reduces toil and accelerates delivery. As a boutique firm, we offer the agility and depth that larger organizations simply cannot match. Our team works directly with clients to understand their unique challenges and craft tailored strategies that deliver both immediate impact and long-term resilience. Whether you're looking to scale an AI platform, modernize your cloud infrastructure, or build the reliability engineering culture your engineering team deserves - KAPI Advisors is the partner built for it. Company Description About KAPI Advisors LLC KAPI Advisors LLC is a forward-thinking boutique firm at the intersection of AI, Machine Learning, Data Analytics, Generative AI, Mathematical Optimization, and Cloud Platform Engineering. We build highly personalized, cutting-edge solutions tailored to the specific needs of each client - empowering organizations with powerful tools to unlock new business opportunities, operational efficiencies, and platform reliability at scale. At KAPI Advisors, we are passionate about solving complex, real-world challenges through technology. Our capabilities span intelligent agent-based systems, advanced data analytics, optimization algorithms, and robust cloud infrastructure - all designed to work together seamlessly. Our offerings include Generative AI systems that enable automation and intelligent decision-making, ML models that surface actionable insights, Mathematical Optimization techniques for supply chain management, resource allocation, and logistics, and Site Reliability Engineering practices that ensure the platforms powering these solutions remain performant, resilient, and production-ready. We believe that great AI and data products are only as strong as the infrastructure beneath them. That's why our SRE and DevOps practice is central to everything we build - from designing observability frameworks and incident response playbooks, to implementing chaos engineering, disaster recovery, and developer productivity tooling that reduces toil and accelerates delivery. As a boutique firm, we offer the agility and depth that larger organizations simply cannot match. Our team works directly with clients to understand their unique challenges and craft tailored strategies that deliver both immediate impact and long-term resilience. Whether you're looking to scale an AI platform, modernize your cloud infrastructure, or build the reliability engineering culture your engineering team deserves - KAPI Advisors is the partner built for it.
09/09/2026
Full time
Job Description Job Description Work Arrangement: Dallas-based / Hybrid Visa Sponsorship: Not available. Candidates must already be authorized to work in the United States without current or future employer sponsorship. Job Summary We are seeking a highly experienced Senior MLOps Engineer with strong hands-on Snowflake experience to support enterprise machine learning platforms and production ML workloads. The ideal candidate has hands-on experience taking machine learning models from experimentation through production and building the deployment pipelines, monitoring, automation, infrastructure, and governance capabilities required to operate ML solutions reliably at enterprise scale. This role will work closely with Data Scientists, ML Engineers, Data Engineers, Cloud Engineers, and enterprise platform teams. Key Responsibilities Design, build, and maintain enterprise-grade MLOps platforms and pipelines. Operationalize machine learning models developed by Data Science teams. Build automated ML workflows covering training, validation, deployment, monitoring, retraining, and retirement. Implement CI/CD pipelines specifically for machine learning workloads. Establish model registry, versioning, lineage, artifact management, and reproducibility. Implement model monitoring, data drift detection, model drift detection, prediction-quality monitoring, and alerting. Integrate ML workloads with Snowflake-based enterprise data environments . Build and optimize Python- and SQL-based data and ML pipelines. Support Snowflake data ingestion, transformation, compute, security, and ML integrations. Containerize ML workloads using Docker and deploy workloads through Kubernetes or comparable orchestration platforms. Implement logging, observability, alerting, and production support processes. Automate deployment and infrastructure provisioning using modern DevOps and Infrastructure-as-Code practices. Support model governance, approval workflows, lineage, auditability, and access controls. Troubleshoot production ML pipelines, model-serving infrastructure, Snowflake integrations, and performance issues. Develop reusable MLOps frameworks, standards, templates, and best practices. Mandatory Qualifications Candidates must have hands-on production experience in both MLOps and Snowflake . MLOps - Required Strong production experience with: ML model deployment and operationalization Model lifecycle management ML CI/CD Experiment tracking Model registry and versioning Automated model validation Model monitoring Data and model drift detection Retraining pipelines Pipeline orchestration Production troubleshooting Experience with one or more of the following: ML flow Kubeflow AWS SageMaker Azure Machine Learning Airflow Argo Workflows Prefect Dagster Equivalent enterprise MLOps platforms Snowflake - Required Strong hands-on Snowflake experience including: Snowflake architecture Databases, schemas, tables, and views Virtual warehouses Compute management Snowflake security and RBAC Data ingestion and transformation Performance optimization Python integration Snowflake integration with ML pipelines Experience with the following is strongly preferred: Snowpark Snowpark Python Snowflake ML Snowflake Model Registry Snowflake Feature Store Snowflake Tasks and Streams Dynamic Tables Snowpipe Cortex / Snowflake AI capabilities Additional Required Technical Skills Strong Python Strong SQL Git REST APIs Linux Shell scripting Docker CI/CD Cloud platforms such as AWS, Azure, or GCP Preferred Skills Experience with: Kubernetes Terraform GitHub Actions Jenkins GitLab CI/CD Azure DevOps dbt Spark Kafka Grafana CloudWatch Evidently Education and Experience Bachelor's or Master's degree in Computer Science, Engineering, Data Science, Machine Learning, or related field. 6+ years of software, cloud, data, or ML engineering experience. 3+ years of hands-on production MLOps experience. Strong hands-on Snowflake experience. Experience deploying ML models into production. Experience implementing ML CI/CD pipelines. Strong Python and SQL skills. Experience with Docker and cloud infrastructure. Work Authorization This position does not provide visa sponsorship. Candidates must be currently authorized to work in the United States without employer sponsorship and must not require sponsorship now or in the future. Company Description About KAPI Advisors LLC KAPI Advisors LLC is a forward-thinking boutique firm at the intersection of AI, Machine Learning, Data Analytics, Generative AI, Mathematical Optimization, and Cloud Platform Engineering. We build highly personalized, cutting-edge solutions tailored to the specific needs of each client - empowering organizations with powerful tools to unlock new business opportunities, operational efficiencies, and platform reliability at scale. At KAPI Advisors, we are passionate about solving complex, real-world challenges through technology. Our capabilities span intelligent agent-based systems, advanced data analytics, optimization algorithms, and robust cloud infrastructure - all designed to work together seamlessly. Our offerings include Generative AI systems that enable automation and intelligent decision-making, ML models that surface actionable insights, Mathematical Optimization techniques for supply chain management, resource allocation, and logistics, and Site Reliability Engineering practices that ensure the platforms powering these solutions remain performant, resilient, and production-ready. We believe that great AI and data products are only as strong as the infrastructure beneath them. That's why our SRE and DevOps practice is central to everything we build - from designing observability frameworks and incident response playbooks, to implementing chaos engineering, disaster recovery, and developer productivity tooling that reduces toil and accelerates delivery. As a boutique firm, we offer the agility and depth that larger organizations simply cannot match. Our team works directly with clients to understand their unique challenges and craft tailored strategies that deliver both immediate impact and long-term resilience. Whether you're looking to scale an AI platform, modernize your cloud infrastructure, or build the reliability engineering culture your engineering team deserves - KAPI Advisors is the partner built for it. Company Description About KAPI Advisors LLC KAPI Advisors LLC is a forward-thinking boutique firm at the intersection of AI, Machine Learning, Data Analytics, Generative AI, Mathematical Optimization, and Cloud Platform Engineering. We build highly personalized, cutting-edge solutions tailored to the specific needs of each client - empowering organizations with powerful tools to unlock new business opportunities, operational efficiencies, and platform reliability at scale. At KAPI Advisors, we are passionate about solving complex, real-world challenges through technology. Our capabilities span intelligent agent-based systems, advanced data analytics, optimization algorithms, and robust cloud infrastructure - all designed to work together seamlessly. Our offerings include Generative AI systems that enable automation and intelligent decision-making, ML models that surface actionable insights, Mathematical Optimization techniques for supply chain management, resource allocation, and logistics, and Site Reliability Engineering practices that ensure the platforms powering these solutions remain performant, resilient, and production-ready. We believe that great AI and data products are only as strong as the infrastructure beneath them. That's why our SRE and DevOps practice is central to everything we build - from designing observability frameworks and incident response playbooks, to implementing chaos engineering, disaster recovery, and developer productivity tooling that reduces toil and accelerates delivery. As a boutique firm, we offer the agility and depth that larger organizations simply cannot match. Our team works directly with clients to understand their unique challenges and craft tailored strategies that deliver both immediate impact and long-term resilience. Whether you're looking to scale an AI platform, modernize your cloud infrastructure, or build the reliability engineering culture your engineering team deserves - KAPI Advisors is the partner built for it.
Job Description Job Description About the Role Bluestaq is seeking a Senior DevSecOps Engineer to build, secure, and operate the delivery pipelines and infrastructure that move software from development to production in mission-critical environments. In this hands-on individual contributor role, you will support multiple services and environments within a program or major product area, acting as a go-to resource for pipeline and deployment questions for your teams. You will own medium-sized initiatives end to end, such as containerizing an application, adding security scanning to a pipeline, or migrating a service to GitOps, and will proactively harden the systems in your area. You will design and maintain moderately complex pipelines, manage Kubernetes-based infrastructure, and participate in incident response and root-cause analysis when pipelines, deployments, or clusters break. Responsibilities Pipelines & Automation Design and maintain moderately complex CI/CD pipelines with multi-stage builds, approvals, automated tests, and security scans. Own medium-sized initiatives end to end, such as containerizing an application, adding security scanning, or migrating a service to GitOps. Integrate CI/CD, security scanners, logging, metrics, GitOps, and artifact management tooling; automate away manual deployment steps. Kubernetes & Infrastructure Manage Kubernetes clusters, including resource requests and limits, ingress, secrets, certificates, and networking. Define infrastructure with Terraform (or similar IaC) and Ansible across multiple services and environments (e.g., dev/test/prod). Required Qualifications Experience designing and maintaining CI/CD pipelines with multi-stage builds, approvals, automated testing, and security scanning. Hands-on experience managing Kubernetes clusters, including resource management, ingress, secrets, certificates, and networking. Experience with Terraform (or similar IaC), including state management, drift, and modularization. Experience with configuration-as-code using Ansible. Experience integrating tooling across the delivery workflow: security scanners, logging, metrics, GitOps, and artifact management. Experience supporting multiple services and environments (e.g., dev/test/prod). Experience participating in incident response and root-cause analysis for pipeline, deployment, or infrastructure issues. Strong collaboration and communication skills; able to support developers and act as a resource for delivery questions. Preferred Qualifications Experience operating in regulated, mission-critical, or high-security environments. Experience with GitOps workflows and tooling. Familiarity with container security practices such as image scanning, SBOMs, and policy engines. Experience improving monitoring, alerting, and observability for services or platforms. Experience hardening infrastructure, including IAM, secrets management, and secure baselines. Experience containerizing applications and modernizing delivery workflows. Required Education & Experience High School Diploma/GED and 6+ years of relevant experience, OR Associate degree in a related field and 4+ years of relevant experience, OR Bachelor's degree in Computer Science, Engineering, or related field and 2+ years of relevant experience, OR Master's degree in a related field and 0+ years of relevant experience Salary Range (CO) $115,000-$150,000 USD Clearance Requirement: This position may require an active TS/SCI Clearance. Current clearance holders are strongly encouraged to apply. If you don't currently hold one, Bluestaq will sponsor eligible candidates through the clearance process based on program needs. About Bluestaq At Bluestaq, we build secure data platforms that matter for space missions, national defense, healthcare systems, and commercial innovation. Founded in 2018, we've become a leader in enterprise software and secure data management by staying focused on what counts: modern architecture, operational excellence, and mission impact. We're engineers, problem-solvers, and builders who take the mission seriously, but not ourselves. We automate the repeatable, question the status quo, and design systems that are as reliable as they are scalable. Whether we're supporting space, defense systems, or healthcare advancements, we build with the same principles: cloud-native solutions, security by design, and relentless simplicity. Relocation: Relocation assistance may be available for this role and is evaluated on a case-by-case basis. Date the Position Closes: Applications will be accepted for 60 days beyond the posting date, or until the position is filled, whichever comes first. Bluestaq is an Equal Opportunity Employer. We prohibit unlawful discrimination against applicants or employees on the basis age 40 and over, color, disability, gender identity, genetic information, military or veteran status, national origin, race, religion, sex, sexual orientation, or any other status protected by state or local law. Bluestaq will make reasonable accommodations for qualified individuals with known disabilities and employees whose work requirements interfere with a religious belief unless doing so would result in an undue hardship to Bluestaq or a direct threat. Employees needing such accommodation are instructed to contact Human Resources immediately at .
09/07/2026
Full time
Job Description Job Description About the Role Bluestaq is seeking a Senior DevSecOps Engineer to build, secure, and operate the delivery pipelines and infrastructure that move software from development to production in mission-critical environments. In this hands-on individual contributor role, you will support multiple services and environments within a program or major product area, acting as a go-to resource for pipeline and deployment questions for your teams. You will own medium-sized initiatives end to end, such as containerizing an application, adding security scanning to a pipeline, or migrating a service to GitOps, and will proactively harden the systems in your area. You will design and maintain moderately complex pipelines, manage Kubernetes-based infrastructure, and participate in incident response and root-cause analysis when pipelines, deployments, or clusters break. Responsibilities Pipelines & Automation Design and maintain moderately complex CI/CD pipelines with multi-stage builds, approvals, automated tests, and security scans. Own medium-sized initiatives end to end, such as containerizing an application, adding security scanning, or migrating a service to GitOps. Integrate CI/CD, security scanners, logging, metrics, GitOps, and artifact management tooling; automate away manual deployment steps. Kubernetes & Infrastructure Manage Kubernetes clusters, including resource requests and limits, ingress, secrets, certificates, and networking. Define infrastructure with Terraform (or similar IaC) and Ansible across multiple services and environments (e.g., dev/test/prod). Required Qualifications Experience designing and maintaining CI/CD pipelines with multi-stage builds, approvals, automated testing, and security scanning. Hands-on experience managing Kubernetes clusters, including resource management, ingress, secrets, certificates, and networking. Experience with Terraform (or similar IaC), including state management, drift, and modularization. Experience with configuration-as-code using Ansible. Experience integrating tooling across the delivery workflow: security scanners, logging, metrics, GitOps, and artifact management. Experience supporting multiple services and environments (e.g., dev/test/prod). Experience participating in incident response and root-cause analysis for pipeline, deployment, or infrastructure issues. Strong collaboration and communication skills; able to support developers and act as a resource for delivery questions. Preferred Qualifications Experience operating in regulated, mission-critical, or high-security environments. Experience with GitOps workflows and tooling. Familiarity with container security practices such as image scanning, SBOMs, and policy engines. Experience improving monitoring, alerting, and observability for services or platforms. Experience hardening infrastructure, including IAM, secrets management, and secure baselines. Experience containerizing applications and modernizing delivery workflows. Required Education & Experience High School Diploma/GED and 6+ years of relevant experience, OR Associate degree in a related field and 4+ years of relevant experience, OR Bachelor's degree in Computer Science, Engineering, or related field and 2+ years of relevant experience, OR Master's degree in a related field and 0+ years of relevant experience Salary Range (CO) $115,000-$150,000 USD Clearance Requirement: This position may require an active TS/SCI Clearance. Current clearance holders are strongly encouraged to apply. If you don't currently hold one, Bluestaq will sponsor eligible candidates through the clearance process based on program needs. About Bluestaq At Bluestaq, we build secure data platforms that matter for space missions, national defense, healthcare systems, and commercial innovation. Founded in 2018, we've become a leader in enterprise software and secure data management by staying focused on what counts: modern architecture, operational excellence, and mission impact. We're engineers, problem-solvers, and builders who take the mission seriously, but not ourselves. We automate the repeatable, question the status quo, and design systems that are as reliable as they are scalable. Whether we're supporting space, defense systems, or healthcare advancements, we build with the same principles: cloud-native solutions, security by design, and relentless simplicity. Relocation: Relocation assistance may be available for this role and is evaluated on a case-by-case basis. Date the Position Closes: Applications will be accepted for 60 days beyond the posting date, or until the position is filled, whichever comes first. Bluestaq is an Equal Opportunity Employer. We prohibit unlawful discrimination against applicants or employees on the basis age 40 and over, color, disability, gender identity, genetic information, military or veteran status, national origin, race, religion, sex, sexual orientation, or any other status protected by state or local law. Bluestaq will make reasonable accommodations for qualified individuals with known disabilities and employees whose work requirements interfere with a religious belief unless doing so would result in an undue hardship to Bluestaq or a direct threat. Employees needing such accommodation are instructed to contact Human Resources immediately at .
Job Description Job Description We're ALTEN Technology USA, an engineering company helping clients bring groundbreaking ideas to life-from advancing space exploration and life-saving medical devices to building autonomous electric vehicles. With 3,000+ experts across North America, we partner with leading companies in aerospace, medical devices, robotics, automotive, commercial vehicles, EVs, rail, and more. As part of the global ALTEN Group-57,000+ engineers in 30 countries-we deliver across the entire product development cycle, from consulting to full project outsourcing. When you join ALTEN Technology USA, you'll collaborate on some of the world's toughest engineering challenges, supported by mentorship, career growth opportunities, and comprehensive benefits. We take pride in fostering a culture where employees feel valued, supported, and inspired to grow. As a Sr DevSecOps Engineer you will be responsible for; Define and own the DevSecOps architecture and roadmap for embedded capital equipment platforms, including CI/CD pipelines, build infrastructure, security automation, release evidence, and long-term maintainability. Develop and maintain secure embedded platform software, build infrastructure, and reusable automation capabilities. Create and support Yocto-based embedded Linux distributions, BSP software, device drivers, hypervisors, and platform-level OS components. Establish secure software supply chain practices, including SBOM generation, SOUP/OTS component tracking, license awareness, vulnerability monitoring, end-of-support tracking, and remediation workflows. Develop reusable CI/CD templates and pipeline controls for static analysis, software composition analysis, unit test automation, artifact signing, provenance tracking, cybersecurity evidence capture, and release readiness. Lead threat modeling and cybersecurity risk analysis for embedded platform components, including asset identification, attack surface analysis, exploitability assessment, security controls, and traceability to risk mitigations. Drive CVE intake, enrichment, asset mapping, triage, risk scoring, remediation planning, validation, and reporting in partnership with Product Security, SWQA, Systems, and program teams. Design and implement secure boot, firmware signing, cryptographic configuration, key/certificate lifecycle support, authenticated update mechanisms, and secure device communication patterns. Define runtime security monitoring requirements and support post-market cybersecurity monitoring and vulnerability response workflows. Review reported anomalies, assess cybersecurity impact, and support incident-response activities as needed. Support regulatory submissions and audits by ensuring cybersecurity, software lifecycle, and DevSecOps evidence is complete, traceable, reproducible, and aligned with internal quality system expectations. Define platform-level OS and BSP maintenance strategies, including Linux kernel support, Yocto release planning, driver update strategy, patchability, and security update governance across the product lifecycle. Collaborate with external vendors and internal partners to evaluate security tooling, embedded Linux support models, vulnerability intelligence, penetration testing outputs, and long-term maintenance approaches. Provide technical leadership and mentoring to software engineers, DevOps engineers, and platform teams on secure coding, build automation, vulnerability handling, and regulated software development practices. Partner with product teams to define platform capabilities that are reusable, secure, testable, and scalable across multiple capital equipment programs. Technologies & Tools AMD Zynq and Zynq UltraScale+ SoCs, NVIDIA ORIN, SafeRTOS, FreeRTOS Yocto-based embedded Linux package development Embedded hypervisors, Linux device drivers, BSPs, and boot flows Custom build systems and CI/CD pipelines Docker, Snyk, SonarQube, and software composition analysis tools Static analysis, software composition analysis, artifact signing, and vulnerability management tools Python, Bash, and Go Atlassian tools including Bitbucket, Jira, Bamboo, and Confluence GitHub and GitLab Networking security, secure boot, firmware signing, and secure update technologies Qualifications; Strong experience in embedded Linux platform development for regulated, safety-critical, or high-reliability products. Hands-on experience with AMD/Xilinx SoC-based embedded systems, including AMD Zynq 7000 series, Zynq UltraScale+, Kria SOM, and the NVIDIA ORIN platform. Experience with real-time operating systems such as SafeRTOS and QNX Neutrino. Experience with Yocto, BSPs, OS layers, kernel configuration, boot flows, device drivers, and embedded platform security. Experience developing or governing DevSecOps practices in regulated medical device, safety-critical, aerospace, automotive, or industrial control environments. Strong understanding of FDA cybersecurity expectations, IEC 62304, ISO 14971, ISO 13485, SOUP/OTS software management, SBOM practices, and software lifecycle evidence generation. Experience implementing security automation in CI/CD pipelines, including SAST, SCA, container scanning, artifact signing, build reproducibility, traceability, and vulnerability reporting. Strong experience with threat modeling, vulnerability assessment, cybersecurity risk analysis, and secure-by-design architecture reviews. Experience with CVE triage methods that include exploitability, asset exposure, configuration applicability, runtime reachability, known exploited vulnerabilities, and remediation validation. Ability to collaborate across hardware, software, systems, product security, quality, regulatory, program management, and product management stakeholders. Demonstrated ability to influence cross-functional engineering and leadership decisions without direct authority. Experience defining reusable platform practices across multiple products, programs, hardware variants, or software release branches. Strong debugging, problem-solving, and root-cause analysis skills. Strong technical communication skills with the ability to translate cybersecurity and DevSecOps risks into actionable engineering and leadership decisions. Salary Range: $125k-$150k The actual salary offered is dependent on various factors including, but not limited to, location, the candidate's combination of job-related knowledge, qualifications, skills, education, training, and experience MANDATORY FOR ALL REMOTE/HYBRID AND/OR CALIFORNIA, DISTRICT OF COLUMBIA, HAWAII, COLORADO, MARYLAND, CONNECTICUT, ILLINOIS, MINNESOTA, VERMONT, MASSACHUSETTS, NEVADA, NEW YORK, RHODE ISLAND, WASHINGTON STATE & CINCINNATI, OHIO, JERSEY CITY, NEW JERSEY, TOLEDO, OHIO BASED ROLES. Note: Due to the nature of the work, only US Persons (citizens or permanent residents) need apply for this position. - OPTIONAL All qualified applicants will receive consideration for employment and will not be discriminated against on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, age, genetic information, or pregnancy. Please beware of job seeker scams and see this important notice on our careers page for more information about our recruiting process. Compliance Notice: Alten USA is a federal contractor subject to the requirements of the Vietnam Era Veterans' Readjustment Assistance Act (VEVRAA) and Executive Order 11246. We are an Equal Opportunity Employer and consider all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status. Drug Screening Requirement: As a federal contractor, Alten USA maintains a drug-free workplace. All candidates selected for employment will be required to successfully complete a pre-employment drug screening as a condition of hire.
09/07/2026
Full time
Job Description Job Description We're ALTEN Technology USA, an engineering company helping clients bring groundbreaking ideas to life-from advancing space exploration and life-saving medical devices to building autonomous electric vehicles. With 3,000+ experts across North America, we partner with leading companies in aerospace, medical devices, robotics, automotive, commercial vehicles, EVs, rail, and more. As part of the global ALTEN Group-57,000+ engineers in 30 countries-we deliver across the entire product development cycle, from consulting to full project outsourcing. When you join ALTEN Technology USA, you'll collaborate on some of the world's toughest engineering challenges, supported by mentorship, career growth opportunities, and comprehensive benefits. We take pride in fostering a culture where employees feel valued, supported, and inspired to grow. As a Sr DevSecOps Engineer you will be responsible for; Define and own the DevSecOps architecture and roadmap for embedded capital equipment platforms, including CI/CD pipelines, build infrastructure, security automation, release evidence, and long-term maintainability. Develop and maintain secure embedded platform software, build infrastructure, and reusable automation capabilities. Create and support Yocto-based embedded Linux distributions, BSP software, device drivers, hypervisors, and platform-level OS components. Establish secure software supply chain practices, including SBOM generation, SOUP/OTS component tracking, license awareness, vulnerability monitoring, end-of-support tracking, and remediation workflows. Develop reusable CI/CD templates and pipeline controls for static analysis, software composition analysis, unit test automation, artifact signing, provenance tracking, cybersecurity evidence capture, and release readiness. Lead threat modeling and cybersecurity risk analysis for embedded platform components, including asset identification, attack surface analysis, exploitability assessment, security controls, and traceability to risk mitigations. Drive CVE intake, enrichment, asset mapping, triage, risk scoring, remediation planning, validation, and reporting in partnership with Product Security, SWQA, Systems, and program teams. Design and implement secure boot, firmware signing, cryptographic configuration, key/certificate lifecycle support, authenticated update mechanisms, and secure device communication patterns. Define runtime security monitoring requirements and support post-market cybersecurity monitoring and vulnerability response workflows. Review reported anomalies, assess cybersecurity impact, and support incident-response activities as needed. Support regulatory submissions and audits by ensuring cybersecurity, software lifecycle, and DevSecOps evidence is complete, traceable, reproducible, and aligned with internal quality system expectations. Define platform-level OS and BSP maintenance strategies, including Linux kernel support, Yocto release planning, driver update strategy, patchability, and security update governance across the product lifecycle. Collaborate with external vendors and internal partners to evaluate security tooling, embedded Linux support models, vulnerability intelligence, penetration testing outputs, and long-term maintenance approaches. Provide technical leadership and mentoring to software engineers, DevOps engineers, and platform teams on secure coding, build automation, vulnerability handling, and regulated software development practices. Partner with product teams to define platform capabilities that are reusable, secure, testable, and scalable across multiple capital equipment programs. Technologies & Tools AMD Zynq and Zynq UltraScale+ SoCs, NVIDIA ORIN, SafeRTOS, FreeRTOS Yocto-based embedded Linux package development Embedded hypervisors, Linux device drivers, BSPs, and boot flows Custom build systems and CI/CD pipelines Docker, Snyk, SonarQube, and software composition analysis tools Static analysis, software composition analysis, artifact signing, and vulnerability management tools Python, Bash, and Go Atlassian tools including Bitbucket, Jira, Bamboo, and Confluence GitHub and GitLab Networking security, secure boot, firmware signing, and secure update technologies Qualifications; Strong experience in embedded Linux platform development for regulated, safety-critical, or high-reliability products. Hands-on experience with AMD/Xilinx SoC-based embedded systems, including AMD Zynq 7000 series, Zynq UltraScale+, Kria SOM, and the NVIDIA ORIN platform. Experience with real-time operating systems such as SafeRTOS and QNX Neutrino. Experience with Yocto, BSPs, OS layers, kernel configuration, boot flows, device drivers, and embedded platform security. Experience developing or governing DevSecOps practices in regulated medical device, safety-critical, aerospace, automotive, or industrial control environments. Strong understanding of FDA cybersecurity expectations, IEC 62304, ISO 14971, ISO 13485, SOUP/OTS software management, SBOM practices, and software lifecycle evidence generation. Experience implementing security automation in CI/CD pipelines, including SAST, SCA, container scanning, artifact signing, build reproducibility, traceability, and vulnerability reporting. Strong experience with threat modeling, vulnerability assessment, cybersecurity risk analysis, and secure-by-design architecture reviews. Experience with CVE triage methods that include exploitability, asset exposure, configuration applicability, runtime reachability, known exploited vulnerabilities, and remediation validation. Ability to collaborate across hardware, software, systems, product security, quality, regulatory, program management, and product management stakeholders. Demonstrated ability to influence cross-functional engineering and leadership decisions without direct authority. Experience defining reusable platform practices across multiple products, programs, hardware variants, or software release branches. Strong debugging, problem-solving, and root-cause analysis skills. Strong technical communication skills with the ability to translate cybersecurity and DevSecOps risks into actionable engineering and leadership decisions. Salary Range: $125k-$150k The actual salary offered is dependent on various factors including, but not limited to, location, the candidate's combination of job-related knowledge, qualifications, skills, education, training, and experience MANDATORY FOR ALL REMOTE/HYBRID AND/OR CALIFORNIA, DISTRICT OF COLUMBIA, HAWAII, COLORADO, MARYLAND, CONNECTICUT, ILLINOIS, MINNESOTA, VERMONT, MASSACHUSETTS, NEVADA, NEW YORK, RHODE ISLAND, WASHINGTON STATE & CINCINNATI, OHIO, JERSEY CITY, NEW JERSEY, TOLEDO, OHIO BASED ROLES. Note: Due to the nature of the work, only US Persons (citizens or permanent residents) need apply for this position. - OPTIONAL All qualified applicants will receive consideration for employment and will not be discriminated against on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, age, genetic information, or pregnancy. Please beware of job seeker scams and see this important notice on our careers page for more information about our recruiting process. Compliance Notice: Alten USA is a federal contractor subject to the requirements of the Vietnam Era Veterans' Readjustment Assistance Act (VEVRAA) and Executive Order 11246. We are an Equal Opportunity Employer and consider all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status. Drug Screening Requirement: As a federal contractor, Alten USA maintains a drug-free workplace. All candidates selected for employment will be required to successfully complete a pre-employment drug screening as a condition of hire.
Senior Lead AI Engineer (MLXT) Overview: At Capital One, we are creating responsible and reliable AI systems, changing banking for good. For years, Capital One has been an industry leader in using machine learning to create real-time, personalized customer experiences. Our investments in technology infrastructure and world-class talent - along with our deep experience in machine learning - position us to be at the forefront of enterprises leveraging AI. From informing customers about unusual charges to answering their questions in real time, our applications of AI & ML are bringing humanity and simplicity to banking. We are committed to continuing to build world-class applied science and engineering teams to deliver our industry leading capabilities with breakthrough product experiences and scalable, high-performance AI infrastructure. At Capital One, you will help bring the transformative power of emerging AI capabilities to reimagine how we serve our customers and businesses who have come to love the products and services we build. Team Description: The Intelligent Foundations and Experiences (IFX) team is at the center of bringing our vision for AI at Capital One to life. We work hand-in-hand with our partners across the company to advance the state of the art in science and AI engineering, and we build and deploy proprietary solutions that are central to our business and deliver value to millions of customers. Our AI models and platforms empower teams across Capital One to enhance their products with the transformative power of AI, in responsible and scalable ways for the highest leverage impact. As a Senior Lead AI Engineer, you will drive critical technical initiatives that shape the future of enterprise AIML infrastructure targeted to transform the business analysis experience in a highly regulated environment. You will play a pivotal role in modernizing our core Analyst & AIML workflow orchestration layer and user interface, integrating frontier generative AI capabilities and self-serve tooling to enable no-code/low-code, well-governed model development for business domain experts. In this role, you will: Modernize Workflows: Advance the orchestration layer and UI with generative AI capabilities and self-serve tooling to democratize AI development through governed, low-code/no-code tools for business domain experts. Build Agentic-Driven Infrastructure: Modernize our platform services with agentic infrastructure that is reliable, scalable, secure, and seamlessly adheres to enterprise guardrails. Drive AutoML Innovation: Scale enterprise-grade managed AutoML offerings for tabular and time-series data to radically reduce solution time-to-market from weeks to days. Engineer AI-Driven Controls: Evolve the core component marketplace by engineering cutting-edge, automated governance frameworks The Ideal Candidate: You love to build systems, take pride in the quality of your work, and also share our passion to do the right thing. You want to work on problems that will help change banking for good. Passion for staying abreast of the latest research, and an ability to intuitively understand scientific publications and judiciously apply novel techniques in production. You adapt quickly and thrive on bringing clarity to big, undefined problems. You love asking questions and digging deep to uncover the root of problems and can articulate your findings concisely with clarity. You have the courage to share new ideas even when they are unproven. You are deeply Technical. You possess a strong foundation in engineering and mathematics, and your expertise in hardware, software, and AI enable you to see and exploit optimization opportunities that others miss. You are a resilient trail blazer who can forge new paths to achieve business goals when the route is unknown. Basic Qualifications: Bachelor's degree in Computer Science, AI, Electrical Engineering, Computer Engineering, or related fields plus at least 6 years of experience developing AI and ML algorithms or technologies, or a Master's degree in Computer Science, AI, Electrical Engineering, Computer Engineering, or related fields plus at least 4 years of experience developing AI and ML algorithms or technologies At least 6 years of experience programming with Python, Go, Scala, or Java Preferred Qualifications: 7 years of experience deploying scalable and responsible AI solutions on cloud platforms (e.g. AWS, Google Cloud, Azure, or equivalent private cloud) Experience designing, developing, integrating, delivering, and supporting complex AI systems Demonstrated ability to lead and mentor an engineering team and influence cross-functional stakeholders Experience developing AI and ML algorithms or technologies (e.g. LLM Inference, Similarity Search and VectorDBs, Guardrails, Memory) using Python, C++, C#, Java, or Golang Experience developing and applying state-of-the-art techniques for optimizing training and inference software to improve hardware utilization, latency, throughput, and cost Passion for staying abreast of the latest AI research and AI systems, and judiciously apply novel techniques in production Excellent communication and presentation skills, with the ability to articulate complex AI concepts to peers Capital One will consider sponsoring a new qualified applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. Cambridge, MA: $229,900 - $262,400 for Sr. Lead AI Engineer McLean, VA: $229,900 - $262,400 for Sr. Lead AI Engineer New York, NY: $250,800 - $286,200 for Sr. Lead AI Engineer San Francisco, CA: $250,800 - $286,200 for Sr. Lead AI Engineer San Jose, CA: $250,800 - $286,200 for Sr. Lead AI Engineer Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
09/07/2026
Full time
Senior Lead AI Engineer (MLXT) Overview: At Capital One, we are creating responsible and reliable AI systems, changing banking for good. For years, Capital One has been an industry leader in using machine learning to create real-time, personalized customer experiences. Our investments in technology infrastructure and world-class talent - along with our deep experience in machine learning - position us to be at the forefront of enterprises leveraging AI. From informing customers about unusual charges to answering their questions in real time, our applications of AI & ML are bringing humanity and simplicity to banking. We are committed to continuing to build world-class applied science and engineering teams to deliver our industry leading capabilities with breakthrough product experiences and scalable, high-performance AI infrastructure. At Capital One, you will help bring the transformative power of emerging AI capabilities to reimagine how we serve our customers and businesses who have come to love the products and services we build. Team Description: The Intelligent Foundations and Experiences (IFX) team is at the center of bringing our vision for AI at Capital One to life. We work hand-in-hand with our partners across the company to advance the state of the art in science and AI engineering, and we build and deploy proprietary solutions that are central to our business and deliver value to millions of customers. Our AI models and platforms empower teams across Capital One to enhance their products with the transformative power of AI, in responsible and scalable ways for the highest leverage impact. As a Senior Lead AI Engineer, you will drive critical technical initiatives that shape the future of enterprise AIML infrastructure targeted to transform the business analysis experience in a highly regulated environment. You will play a pivotal role in modernizing our core Analyst & AIML workflow orchestration layer and user interface, integrating frontier generative AI capabilities and self-serve tooling to enable no-code/low-code, well-governed model development for business domain experts. In this role, you will: Modernize Workflows: Advance the orchestration layer and UI with generative AI capabilities and self-serve tooling to democratize AI development through governed, low-code/no-code tools for business domain experts. Build Agentic-Driven Infrastructure: Modernize our platform services with agentic infrastructure that is reliable, scalable, secure, and seamlessly adheres to enterprise guardrails. Drive AutoML Innovation: Scale enterprise-grade managed AutoML offerings for tabular and time-series data to radically reduce solution time-to-market from weeks to days. Engineer AI-Driven Controls: Evolve the core component marketplace by engineering cutting-edge, automated governance frameworks The Ideal Candidate: You love to build systems, take pride in the quality of your work, and also share our passion to do the right thing. You want to work on problems that will help change banking for good. Passion for staying abreast of the latest research, and an ability to intuitively understand scientific publications and judiciously apply novel techniques in production. You adapt quickly and thrive on bringing clarity to big, undefined problems. You love asking questions and digging deep to uncover the root of problems and can articulate your findings concisely with clarity. You have the courage to share new ideas even when they are unproven. You are deeply Technical. You possess a strong foundation in engineering and mathematics, and your expertise in hardware, software, and AI enable you to see and exploit optimization opportunities that others miss. You are a resilient trail blazer who can forge new paths to achieve business goals when the route is unknown. Basic Qualifications: Bachelor's degree in Computer Science, AI, Electrical Engineering, Computer Engineering, or related fields plus at least 6 years of experience developing AI and ML algorithms or technologies, or a Master's degree in Computer Science, AI, Electrical Engineering, Computer Engineering, or related fields plus at least 4 years of experience developing AI and ML algorithms or technologies At least 6 years of experience programming with Python, Go, Scala, or Java Preferred Qualifications: 7 years of experience deploying scalable and responsible AI solutions on cloud platforms (e.g. AWS, Google Cloud, Azure, or equivalent private cloud) Experience designing, developing, integrating, delivering, and supporting complex AI systems Demonstrated ability to lead and mentor an engineering team and influence cross-functional stakeholders Experience developing AI and ML algorithms or technologies (e.g. LLM Inference, Similarity Search and VectorDBs, Guardrails, Memory) using Python, C++, C#, Java, or Golang Experience developing and applying state-of-the-art techniques for optimizing training and inference software to improve hardware utilization, latency, throughput, and cost Passion for staying abreast of the latest AI research and AI systems, and judiciously apply novel techniques in production Excellent communication and presentation skills, with the ability to articulate complex AI concepts to peers Capital One will consider sponsoring a new qualified applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. Cambridge, MA: $229,900 - $262,400 for Sr. Lead AI Engineer McLean, VA: $229,900 - $262,400 for Sr. Lead AI Engineer New York, NY: $250,800 - $286,200 for Sr. Lead AI Engineer San Francisco, CA: $250,800 - $286,200 for Sr. Lead AI Engineer San Jose, CA: $250,800 - $286,200 for Sr. Lead AI Engineer Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Senior Lead AI Engineer (MLXT) Overview: At Capital One, we are creating responsible and reliable AI systems, changing banking for good. For years, Capital One has been an industry leader in using machine learning to create real-time, personalized customer experiences. Our investments in technology infrastructure and world-class talent - along with our deep experience in machine learning - position us to be at the forefront of enterprises leveraging AI. From informing customers about unusual charges to answering their questions in real time, our applications of AI & ML are bringing humanity and simplicity to banking. We are committed to continuing to build world-class applied science and engineering teams to deliver our industry leading capabilities with breakthrough product experiences and scalable, high-performance AI infrastructure. At Capital One, you will help bring the transformative power of emerging AI capabilities to reimagine how we serve our customers and businesses who have come to love the products and services we build. Team Description: The Intelligent Foundations and Experiences (IFX) team is at the center of bringing our vision for AI at Capital One to life. We work hand-in-hand with our partners across the company to advance the state of the art in science and AI engineering, and we build and deploy proprietary solutions that are central to our business and deliver value to millions of customers. Our AI models and platforms empower teams across Capital One to enhance their products with the transformative power of AI, in responsible and scalable ways for the highest leverage impact. As a Senior Lead AI Engineer, you will drive critical technical initiatives that shape the future of enterprise AIML infrastructure targeted to transform the business analysis experience in a highly regulated environment. You will play a pivotal role in modernizing our core Analyst & AIML workflow orchestration layer and user interface, integrating frontier generative AI capabilities and self-serve tooling to enable no-code/low-code, well-governed model development for business domain experts. In this role, you will: Modernize Workflows: Advance the orchestration layer and UI with generative AI capabilities and self-serve tooling to democratize AI development through governed, low-code/no-code tools for business domain experts. Build Agentic-Driven Infrastructure: Modernize our platform services with agentic infrastructure that is reliable, scalable, secure, and seamlessly adheres to enterprise guardrails. Drive AutoML Innovation: Scale enterprise-grade managed AutoML offerings for tabular and time-series data to radically reduce solution time-to-market from weeks to days. Engineer AI-Driven Controls: Evolve the core component marketplace by engineering cutting-edge, automated governance frameworks The Ideal Candidate: You love to build systems, take pride in the quality of your work, and also share our passion to do the right thing. You want to work on problems that will help change banking for good. Passion for staying abreast of the latest research, and an ability to intuitively understand scientific publications and judiciously apply novel techniques in production. You adapt quickly and thrive on bringing clarity to big, undefined problems. You love asking questions and digging deep to uncover the root of problems and can articulate your findings concisely with clarity. You have the courage to share new ideas even when they are unproven. You are deeply Technical. You possess a strong foundation in engineering and mathematics, and your expertise in hardware, software, and AI enable you to see and exploit optimization opportunities that others miss. You are a resilient trail blazer who can forge new paths to achieve business goals when the route is unknown. Basic Qualifications: Bachelor's degree in Computer Science, AI, Electrical Engineering, Computer Engineering, or related fields plus at least 6 years of experience developing AI and ML algorithms or technologies, or a Master's degree in Computer Science, AI, Electrical Engineering, Computer Engineering, or related fields plus at least 4 years of experience developing AI and ML algorithms or technologies At least 6 years of experience programming with Python, Go, Scala, or Java Preferred Qualifications: 7 years of experience deploying scalable and responsible AI solutions on cloud platforms (e.g. AWS, Google Cloud, Azure, or equivalent private cloud) Experience designing, developing, integrating, delivering, and supporting complex AI systems Demonstrated ability to lead and mentor an engineering team and influence cross-functional stakeholders Experience developing AI and ML algorithms or technologies (e.g. LLM Inference, Similarity Search and VectorDBs, Guardrails, Memory) using Python, C++, C#, Java, or Golang Experience developing and applying state-of-the-art techniques for optimizing training and inference software to improve hardware utilization, latency, throughput, and cost Passion for staying abreast of the latest AI research and AI systems, and judiciously apply novel techniques in production Excellent communication and presentation skills, with the ability to articulate complex AI concepts to peers Capital One will consider sponsoring a new qualified applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. Cambridge, MA: $229,900 - $262,400 for Sr. Lead AI Engineer McLean, VA: $229,900 - $262,400 for Sr. Lead AI Engineer New York, NY: $250,800 - $286,200 for Sr. Lead AI Engineer San Francisco, CA: $250,800 - $286,200 for Sr. Lead AI Engineer San Jose, CA: $250,800 - $286,200 for Sr. Lead AI Engineer Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
09/07/2026
Full time
Senior Lead AI Engineer (MLXT) Overview: At Capital One, we are creating responsible and reliable AI systems, changing banking for good. For years, Capital One has been an industry leader in using machine learning to create real-time, personalized customer experiences. Our investments in technology infrastructure and world-class talent - along with our deep experience in machine learning - position us to be at the forefront of enterprises leveraging AI. From informing customers about unusual charges to answering their questions in real time, our applications of AI & ML are bringing humanity and simplicity to banking. We are committed to continuing to build world-class applied science and engineering teams to deliver our industry leading capabilities with breakthrough product experiences and scalable, high-performance AI infrastructure. At Capital One, you will help bring the transformative power of emerging AI capabilities to reimagine how we serve our customers and businesses who have come to love the products and services we build. Team Description: The Intelligent Foundations and Experiences (IFX) team is at the center of bringing our vision for AI at Capital One to life. We work hand-in-hand with our partners across the company to advance the state of the art in science and AI engineering, and we build and deploy proprietary solutions that are central to our business and deliver value to millions of customers. Our AI models and platforms empower teams across Capital One to enhance their products with the transformative power of AI, in responsible and scalable ways for the highest leverage impact. As a Senior Lead AI Engineer, you will drive critical technical initiatives that shape the future of enterprise AIML infrastructure targeted to transform the business analysis experience in a highly regulated environment. You will play a pivotal role in modernizing our core Analyst & AIML workflow orchestration layer and user interface, integrating frontier generative AI capabilities and self-serve tooling to enable no-code/low-code, well-governed model development for business domain experts. In this role, you will: Modernize Workflows: Advance the orchestration layer and UI with generative AI capabilities and self-serve tooling to democratize AI development through governed, low-code/no-code tools for business domain experts. Build Agentic-Driven Infrastructure: Modernize our platform services with agentic infrastructure that is reliable, scalable, secure, and seamlessly adheres to enterprise guardrails. Drive AutoML Innovation: Scale enterprise-grade managed AutoML offerings for tabular and time-series data to radically reduce solution time-to-market from weeks to days. Engineer AI-Driven Controls: Evolve the core component marketplace by engineering cutting-edge, automated governance frameworks The Ideal Candidate: You love to build systems, take pride in the quality of your work, and also share our passion to do the right thing. You want to work on problems that will help change banking for good. Passion for staying abreast of the latest research, and an ability to intuitively understand scientific publications and judiciously apply novel techniques in production. You adapt quickly and thrive on bringing clarity to big, undefined problems. You love asking questions and digging deep to uncover the root of problems and can articulate your findings concisely with clarity. You have the courage to share new ideas even when they are unproven. You are deeply Technical. You possess a strong foundation in engineering and mathematics, and your expertise in hardware, software, and AI enable you to see and exploit optimization opportunities that others miss. You are a resilient trail blazer who can forge new paths to achieve business goals when the route is unknown. Basic Qualifications: Bachelor's degree in Computer Science, AI, Electrical Engineering, Computer Engineering, or related fields plus at least 6 years of experience developing AI and ML algorithms or technologies, or a Master's degree in Computer Science, AI, Electrical Engineering, Computer Engineering, or related fields plus at least 4 years of experience developing AI and ML algorithms or technologies At least 6 years of experience programming with Python, Go, Scala, or Java Preferred Qualifications: 7 years of experience deploying scalable and responsible AI solutions on cloud platforms (e.g. AWS, Google Cloud, Azure, or equivalent private cloud) Experience designing, developing, integrating, delivering, and supporting complex AI systems Demonstrated ability to lead and mentor an engineering team and influence cross-functional stakeholders Experience developing AI and ML algorithms or technologies (e.g. LLM Inference, Similarity Search and VectorDBs, Guardrails, Memory) using Python, C++, C#, Java, or Golang Experience developing and applying state-of-the-art techniques for optimizing training and inference software to improve hardware utilization, latency, throughput, and cost Passion for staying abreast of the latest AI research and AI systems, and judiciously apply novel techniques in production Excellent communication and presentation skills, with the ability to articulate complex AI concepts to peers Capital One will consider sponsoring a new qualified applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. Cambridge, MA: $229,900 - $262,400 for Sr. Lead AI Engineer McLean, VA: $229,900 - $262,400 for Sr. Lead AI Engineer New York, NY: $250,800 - $286,200 for Sr. Lead AI Engineer San Francisco, CA: $250,800 - $286,200 for Sr. Lead AI Engineer San Jose, CA: $250,800 - $286,200 for Sr. Lead AI Engineer Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Senior Lead Machine Learning Engineer As a Capital One Machine Learning Engineer (MLE), you'll be part of an Agile team dedicated to productionizing machine learning applications and systems at scale. You'll participate in the detailed technical design, development, and implementation of machine learning applications using existing and emerging technology platforms. You'll focus on machine learning architectural design, develop and review model and application code, and ensure high availability and performance of our machine learning applications. You'll have the opportunity to continuously learn and apply the latest innovations and best practices in machine learning engineering. This team in particular is focused on supporting the enterprise-wide AI coding tools. What You'll Do: The MLE role overlaps with many disciplines, such as Ops, Modeling, and Data Engineering. In this role, you'll be expected to perform many ML engineering activities, including one or more of the following: Design, build, and/or deliver ML models and components that solve real-world business problems, while working in collaboration with the Product and Data Science teams Inform your ML infrastructure decisions using your understanding of ML modeling techniques and issues, including choice of model, data, and feature selection, model training, hyperparameter tuning, dimensionality, bias/variance, and validation) Solve complex problems by writing and testing application code, developing and validating ML models, and automating tests and deployment Collaborate as part of a cross-functional Agile team to create and enhance software that enables state-of-the-art big data and ML applications Retrain, maintain, and monitor models in production Leverage or build cloud-based architectures, technologies, and/or platforms to deliver optimized ML models at scale. Construct optimized data pipelines to feed ML models Leverage continuous integration and continuous deployment best practices, including test automation and monitoring, to ensure successful deployment of ML models and application code Ensure all code is well-managed to reduce vulnerabilities, models are well-governed from a risk perspective, and the ML follows best practices in Responsible and Explainable AI Use programming languages like Python, Scala, or Java Basic Qualifications: Bachelor's Degree At least 8 years of experience designing and building data-intensive solutions using distributed computing (Internship experience does not apply) At least 4 years of experience programming with Python, Scala, or Java At least 3 years of experience building, scaling, and optimizing ML systems At least 2 years of experience leading teams developing ML solutions Preferred Qualifications: Master's or Doctoral Degree in computer science, electrical engineering, mathematics, or a similar field Experience developing and deploying ML solutions in a public cloud such as AWS, Azure, or Google Cloud Platform 4+ years of on-the-job experience with an industry recognized ML framework such as scikit-learn, PyTorch, Dask, Spark, or TensorFlow 3+ years of experience developing performant, resilient, and maintainable code 3+ years of experience with data gathering and preparation for ML models 3+ years of people management experience ML industry impact through conference presentations, papers, blog posts, open source contributions, or patents 3+ years of experience building production-ready data pipelines that feed ML models Ability to communicate complex technical concepts clearly to a variety of audiences Experience leveraging interactive AI tooling to accelerate productivity, utilizing capabilities beyond basic code completion Capital One will consider sponsoring a new qualified applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. Sales Territory: $209,000 - $238,500 for Sr. Lead Machine Learning Engineer McLean, VA: $229,900 - $262,400 for Sr. Lead Machine Learning Engineer New York, NY: $250,800 - $286,200 for Sr. Lead Machine Learning Engineer Plano, TX: $209,000 - $238,500 for Sr. Lead Machine Learning Engineer Richmond, VA: $209,000 - $238,500 for Sr. Lead Machine Learning Engineer San Jose, CA: $250,800 - $286,200 for Sr. Lead Machine Learning Engineer Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
09/07/2026
Full time
Senior Lead Machine Learning Engineer As a Capital One Machine Learning Engineer (MLE), you'll be part of an Agile team dedicated to productionizing machine learning applications and systems at scale. You'll participate in the detailed technical design, development, and implementation of machine learning applications using existing and emerging technology platforms. You'll focus on machine learning architectural design, develop and review model and application code, and ensure high availability and performance of our machine learning applications. You'll have the opportunity to continuously learn and apply the latest innovations and best practices in machine learning engineering. This team in particular is focused on supporting the enterprise-wide AI coding tools. What You'll Do: The MLE role overlaps with many disciplines, such as Ops, Modeling, and Data Engineering. In this role, you'll be expected to perform many ML engineering activities, including one or more of the following: Design, build, and/or deliver ML models and components that solve real-world business problems, while working in collaboration with the Product and Data Science teams Inform your ML infrastructure decisions using your understanding of ML modeling techniques and issues, including choice of model, data, and feature selection, model training, hyperparameter tuning, dimensionality, bias/variance, and validation) Solve complex problems by writing and testing application code, developing and validating ML models, and automating tests and deployment Collaborate as part of a cross-functional Agile team to create and enhance software that enables state-of-the-art big data and ML applications Retrain, maintain, and monitor models in production Leverage or build cloud-based architectures, technologies, and/or platforms to deliver optimized ML models at scale. Construct optimized data pipelines to feed ML models Leverage continuous integration and continuous deployment best practices, including test automation and monitoring, to ensure successful deployment of ML models and application code Ensure all code is well-managed to reduce vulnerabilities, models are well-governed from a risk perspective, and the ML follows best practices in Responsible and Explainable AI Use programming languages like Python, Scala, or Java Basic Qualifications: Bachelor's Degree At least 8 years of experience designing and building data-intensive solutions using distributed computing (Internship experience does not apply) At least 4 years of experience programming with Python, Scala, or Java At least 3 years of experience building, scaling, and optimizing ML systems At least 2 years of experience leading teams developing ML solutions Preferred Qualifications: Master's or Doctoral Degree in computer science, electrical engineering, mathematics, or a similar field Experience developing and deploying ML solutions in a public cloud such as AWS, Azure, or Google Cloud Platform 4+ years of on-the-job experience with an industry recognized ML framework such as scikit-learn, PyTorch, Dask, Spark, or TensorFlow 3+ years of experience developing performant, resilient, and maintainable code 3+ years of experience with data gathering and preparation for ML models 3+ years of people management experience ML industry impact through conference presentations, papers, blog posts, open source contributions, or patents 3+ years of experience building production-ready data pipelines that feed ML models Ability to communicate complex technical concepts clearly to a variety of audiences Experience leveraging interactive AI tooling to accelerate productivity, utilizing capabilities beyond basic code completion Capital One will consider sponsoring a new qualified applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. Sales Territory: $209,000 - $238,500 for Sr. Lead Machine Learning Engineer McLean, VA: $229,900 - $262,400 for Sr. Lead Machine Learning Engineer New York, NY: $250,800 - $286,200 for Sr. Lead Machine Learning Engineer Plano, TX: $209,000 - $238,500 for Sr. Lead Machine Learning Engineer Richmond, VA: $209,000 - $238,500 for Sr. Lead Machine Learning Engineer San Jose, CA: $250,800 - $286,200 for Sr. Lead Machine Learning Engineer Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Job Description Job Description ABOUT LVT LVT is redefining how businesses operate in the physical world, moving beyond traditional security solutions to deliver AI-driven, actionable intelligence that makes sites smarter, safer, and more secure. Since pioneering our first mobile, solar-powered units, our commitment to scrappy, hands-on innovation has made us an established leader and one of the fastest-growing companies in intelligent site technology. We are building the next generation of solutions-from our physical units in the field to a powerful Agentic AI platform-that allows our customers to gain unprecedented visibility and control over safety, compliance, and operations. This is your chance to join a cutting-edge team that isn't just watching the world change, but actively building the technology that is changing it. We're a team that's focused on growth and innovation, and we're proud that our crew, products, and leadership are being recognized for it. A Top-Tier Growth Company: Named one of the Financial Times' Fastest Growing Companies 2025 and on the Inc. 5000 Rocky Mountain Regional list for 2025. Innovative Leadership: Our CEO, Ryan Porter, was named an EY Entrepreneur of the Year 2025 , and our CTO, Steve Lindsey, was inducted into the Silicon Slopes CTO Hall of Fame in 2024. Product & Software Excellence: We were named one of The Software Report's Top 100 Software Companies of 2023 and are a winner of the Security Today Govies Award for 2025. Security engineering at LVT centers on building durable capabilities rather than performing manual operations. As an individual contributor on our security engineering team, you will own two critical domains: how we detect and respond to security events, and how exposure across our infrastructure, cloud, and endpoints is identified, prioritized, and remediated. You will build these systems as version-controlled code inside our Infrastructure and DevOps workflows, setting the technical bar and defining guardrails for LVT's internal AI ecosystem. This role reports to the Director of Security Engineering and participates in the security on-call rotation. This role is based in-office out of our Headquarters in American Fork, Utah. ROLE RESPONSIBILITIES Lead technical security incident response, driving both immediate containment and the engineering work required to prevent recurring incident classes. Build, maintain, and scale detections as code, aligned to a documented threat model and optimized for signal quality rather than alert volume. Own the logging and telemetry pipelines supporting detection and investigation, ensuring consistent coverage, quality, and retention across environments. Automate routine security operations workflows-including triage, enrichment, containment, and case management-to minimize manual overhead. Expand LVT's security capabilities across EDR, DLP, and AI-assisted SOC tooling through code integrations, detection logic, and policy automation rather than console administration. Define and maintain visibility and technical guardrails for LVT's internal AI usage, including agent connectivity and AI-assisted development tools. Own exposure management end-to-end, delivering unified coverage across infrastructure, cloud, and endpoints prioritized by exploitability and reachability over raw scanner severity. Correlate vulnerability, cloud posture, and data loss findings into a single, prioritized backlog that partner engineering teams accept and execute against. Deliver measurable outcomes within 12 months: threat-mapped detections managed as code, automated response workflows, a reduced exposure baseline, and automated compliance evidence generation. OUR IDEAL CANDIDATE 5+ years of experience engineering detection, response, and exposure systems, with deep expertise in security operations, incident response, or vulnerability management. Hands-on incident response experience leading technical investigations through containment and eradication, backed by a track record of implementing post-incident remediations. Proven experience in detection engineering and security data pipelines, including managing detections as code and operating SIEM or logging systems at scale. Strong software engineering skills in at least one language (such as Python or Go) alongside hands-on experience with infrastructure-as-code and CI/CD pipelines. Demonstrated ability to synthesize conflicting vulnerability findings into a single, clear risk model that software engineering teams trust and execute. Broad technical depth across cloud, host, and network security to distinguish actionable, exploitable threats from theoretical risks. High self-direction with the ability to operate effectively in ambiguous environments, decide technical priorities, and defend execution roadmaps. Strong written communication skills, capable of influencing peer engineers and raising team technical standards through clear, written technical arguments. Preferred experience: Incident command, risk prioritization frameworks (such as EPSS or attack-path analysis), policy-as-code, compliance automation (FedRAMP, SOC 2, or ISO 27001), or enterprise AI security controls. BENEFITS We believe you do your best work when your whole life is supported. We invest in our crew's health, families, and financial futures with a benefits package designed to support you inside and outside the office. Full-time benefits include, but not limited to: Comprehensive health, dental and vision coverage, retirement benefits (401k match up to 4%), and flexible PTO. LVT IS PROUD TO BE AN EQUAL OPPORTUNITY EMPLOYER. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status. All candidates must pass a drug screening and background check upon employment. Some roles may also require passing a federal background check and fingerprinting. Must be authorized to work in the U.S. If reasonable accommodation is needed to participate in the job application or interview process, and/or to perform essential job functions, please reach out to your recruiter.
09/07/2026
Full time
Job Description Job Description ABOUT LVT LVT is redefining how businesses operate in the physical world, moving beyond traditional security solutions to deliver AI-driven, actionable intelligence that makes sites smarter, safer, and more secure. Since pioneering our first mobile, solar-powered units, our commitment to scrappy, hands-on innovation has made us an established leader and one of the fastest-growing companies in intelligent site technology. We are building the next generation of solutions-from our physical units in the field to a powerful Agentic AI platform-that allows our customers to gain unprecedented visibility and control over safety, compliance, and operations. This is your chance to join a cutting-edge team that isn't just watching the world change, but actively building the technology that is changing it. We're a team that's focused on growth and innovation, and we're proud that our crew, products, and leadership are being recognized for it. A Top-Tier Growth Company: Named one of the Financial Times' Fastest Growing Companies 2025 and on the Inc. 5000 Rocky Mountain Regional list for 2025. Innovative Leadership: Our CEO, Ryan Porter, was named an EY Entrepreneur of the Year 2025 , and our CTO, Steve Lindsey, was inducted into the Silicon Slopes CTO Hall of Fame in 2024. Product & Software Excellence: We were named one of The Software Report's Top 100 Software Companies of 2023 and are a winner of the Security Today Govies Award for 2025. Security engineering at LVT centers on building durable capabilities rather than performing manual operations. As an individual contributor on our security engineering team, you will own two critical domains: how we detect and respond to security events, and how exposure across our infrastructure, cloud, and endpoints is identified, prioritized, and remediated. You will build these systems as version-controlled code inside our Infrastructure and DevOps workflows, setting the technical bar and defining guardrails for LVT's internal AI ecosystem. This role reports to the Director of Security Engineering and participates in the security on-call rotation. This role is based in-office out of our Headquarters in American Fork, Utah. ROLE RESPONSIBILITIES Lead technical security incident response, driving both immediate containment and the engineering work required to prevent recurring incident classes. Build, maintain, and scale detections as code, aligned to a documented threat model and optimized for signal quality rather than alert volume. Own the logging and telemetry pipelines supporting detection and investigation, ensuring consistent coverage, quality, and retention across environments. Automate routine security operations workflows-including triage, enrichment, containment, and case management-to minimize manual overhead. Expand LVT's security capabilities across EDR, DLP, and AI-assisted SOC tooling through code integrations, detection logic, and policy automation rather than console administration. Define and maintain visibility and technical guardrails for LVT's internal AI usage, including agent connectivity and AI-assisted development tools. Own exposure management end-to-end, delivering unified coverage across infrastructure, cloud, and endpoints prioritized by exploitability and reachability over raw scanner severity. Correlate vulnerability, cloud posture, and data loss findings into a single, prioritized backlog that partner engineering teams accept and execute against. Deliver measurable outcomes within 12 months: threat-mapped detections managed as code, automated response workflows, a reduced exposure baseline, and automated compliance evidence generation. OUR IDEAL CANDIDATE 5+ years of experience engineering detection, response, and exposure systems, with deep expertise in security operations, incident response, or vulnerability management. Hands-on incident response experience leading technical investigations through containment and eradication, backed by a track record of implementing post-incident remediations. Proven experience in detection engineering and security data pipelines, including managing detections as code and operating SIEM or logging systems at scale. Strong software engineering skills in at least one language (such as Python or Go) alongside hands-on experience with infrastructure-as-code and CI/CD pipelines. Demonstrated ability to synthesize conflicting vulnerability findings into a single, clear risk model that software engineering teams trust and execute. Broad technical depth across cloud, host, and network security to distinguish actionable, exploitable threats from theoretical risks. High self-direction with the ability to operate effectively in ambiguous environments, decide technical priorities, and defend execution roadmaps. Strong written communication skills, capable of influencing peer engineers and raising team technical standards through clear, written technical arguments. Preferred experience: Incident command, risk prioritization frameworks (such as EPSS or attack-path analysis), policy-as-code, compliance automation (FedRAMP, SOC 2, or ISO 27001), or enterprise AI security controls. BENEFITS We believe you do your best work when your whole life is supported. We invest in our crew's health, families, and financial futures with a benefits package designed to support you inside and outside the office. Full-time benefits include, but not limited to: Comprehensive health, dental and vision coverage, retirement benefits (401k match up to 4%), and flexible PTO. LVT IS PROUD TO BE AN EQUAL OPPORTUNITY EMPLOYER. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status. All candidates must pass a drug screening and background check upon employment. Some roles may also require passing a federal background check and fingerprinting. Must be authorized to work in the U.S. If reasonable accommodation is needed to participate in the job application or interview process, and/or to perform essential job functions, please reach out to your recruiter.
Intelligent Network & Communication Systems
Grand Blanc, Michigan
Job Description Job Description Tier 2 Technician (A.K.A. The Technical Heavy-Hitter We've Been Looking For) Job Summary At INC Systems, we're not your typical Managed Service Provider (MSP). We've been helping businesses and non-profits wrangle their technology since 2004, and along the way we figured out a secret: people matter more than servers. Technology is just the tool we use to make lives easier, and occasionally to justify buying really cool gadgets. We're on the hunt for a seasoned Tier 2 Technician. The kind of person who sees a flashing red light on a firewall and gets curious instead of concerned. You're the technical backbone of our service team: part engineer, part detective, part mentor, and part "wait, how did you fix that so fast?" You'll own the tough tickets, lift up our Tier 1 team, own projects from kickoff to handoff, and help push our tools, processes, and automations forward. If you get a small dopamine hit from a clean PowerShell script, have opinions about VLAN design, and think "Office 365 admin" is a fun Saturday, keep reading. A Day in the Life Your day starts with a 15-minute team huddle where we talk priorities, escalations, overnight alerts, and (inevitably) someone makes a joke that's way too early for HR to hear about. From there, you're off. The morning might kick off with a backup job that threw a tantrum overnight. You'll dig into logs, pull in the vendor if you have to, and make sure our client's data is safe before they've even had their second coffee. Then a Tier 1 tech pings you: a user's Conditional Access policy is blocking them from a legitimate app. You walk the tech through the fix, explain the "why" (not just the "what"), and everyone leaves 2% smarter. By mid-morning you're on-site at a client. Maybe standing up a new server, cutting them over to our VOIP platform, or scoping a firewall replacement. You take notes like a hawk, because future-you will thank present-you when the ticket comes back in six months. Lunch happens. Opinions are shared. Someone defends a questionable streaming show. The darts may or may not start flying. Afternoon shifts into project and improvement mode. Sales needs your input on a network refresh quote: how many hours, what gear, what gotchas? A client is rolling out new software and wants to know if their infrastructure can handle it (spoiler: probably, with a nudge). And if there's a repetitive task draining hours out of the team's week, you're the type to ask, "why aren't we automating this?" and then actually do it. By end-of-day, you've closed tough tickets, made the Tier 1 team better, moved a project forward, and maybe shaved 20 minutes off a process that'll compound into weeks of reclaimed time. Victory dance optional. Encouraged. What You'll Be Doing (AKA Your Superpowers) Technical Heavy Lifting: Where the Tickets Get Real Own escalated tickets from Tier 1: the gnarly ones, the weird ones, the "this has never happened before" ones. Troubleshoot network issues end-to-end: DNS, DHCP, NAT, firewall rules, VLANs, routing, VPN tunnels, and the occasional haunted switch. Administer, troubleshoot, and optimize Microsoft 365 tenants (Entra ID, Exchange Online, Teams, SharePoint, Intune, Conditional Access, the whole family). Support Windows Server environments (AD, Group Policy, DNS, DHCP, file services, RDS) and keep virtualization hosts happy. Own backup and disaster recovery, because the job isn't done until you've verified the restore actually works. Stand up, migrate, and maintain firewalls, switches, wireless, and VPN infrastructure across our client base. Roll out new clients and projects (onboarding, migrations, VOIP cutovers, hardware refreshes) with the kind of planning that makes the cutover day boring (in the best way). Making the Team Better: Because No One Levels Up Alone Coach and mentor the Tier 1 team. Walk them through the fix and the reasoning, so next time they've got it. Be the technical partner to our sales team: scope projects, estimate time and equipment, and flag the gotchas before they become change orders. Contribute to documentation like your future self is going to read it (because they will, at 11pm, on a Tuesday). Spot broken processes and fix them. Spot tedious processes and automate them. Spot tribal knowledge and write it down. Client-Facing Work: Yes, You'll Talk to Humans Work directly with clients to untangle issues, recommend solutions, and translate "IT" into English. Advise clients on hardware, software, and network changes when they're rolling out something new. Be the calm in the storm when things go sideways, because someone has to be, and you're really good at it. You Have (The Non-Negotiables) A genuine drive to deliver great customer service and help people. This is the whole job, honestly. Strong verbal and written communication, with the patience of a saint when things get chaotic. The ability to explain complicated tech to your grandmother and have her actually get it. Sharp problem-solving chops and a brain that likes logic puzzles. 5+ years working in IT (or a degree in a computer field plus serious hands-on time). 4+ years hands-on with VLANs, routing, firewall support, and VPN connectivity. 4+ years supporting server hardware (CPU/RAID/storage) and Windows Server environments. 4+ years of data backup and recovery work, plus corporate antivirus/EDR support. Strong working knowledge of network domains, Active Directory, and security tooling. Solid wireless technology chops (design, deployment, troubleshooting). Deep comfort with Microsoft 365 administration. Entra ID, Exchange Online, Teams, SharePoint, and Intune should all feel like home. Real troubleshooting skills around DNS, DHCP, NAT, and firewall rules (not just reading about them on Reddit). Strongly Preferred (A.K.A. You'll Fit Right In) PowerShell scripting and a general love for automating the boring stuff. If you've ever written a script just to avoid doing something twice, we're your people. Experience building automations that connect systems together (Power Automate, Graph API, webhooks, or similar). A habit of asking "why are we doing this manually?" and then doing something about it. Would Also Be Great If You Have Experience with ConnectWise Manage (our PSA). Bonus points if you've lived in it daily. Experience with NinjaOne RMM (or comparable RMM platforms like Datto, N-able, Kaseya). A+, Network+, Security+, and any Microsoft certifications (MS-900, AZ-104, MS-102, etc.). The ability to type 50+ wpm without staring at your keyboard. A passion for learning: new tools, new platforms, new anything. A love for technology, Star Wars, science, and gadgets. (Strong opinions welcome. Defending them at lunch is encouraged.) What You Get Starting salary depends on experience, certifications, and overall technical ability. $50k to $70k per year Quarterly and Annual Bonuses based on performance An opportunity to learn and expand your knowledge with the best team around We Have (Because We Actually Care) Paid vacation, PTO, and holiday pay. Unused vacation can be rolled over or sold back to the company. Great health insurance with a portion paid by INC, plus options for supplemental insurance and other payroll deduction plans. Matching retirement contributions. We match 4% of what you invest. Annual profit sharing. When the company wins, you win. This isn't a "maybe someday" perk, it's a real chunk of change that shows up every year based on how we do as a team. Quarterly and Annual bonuses that let you earn above your target pay. Family First Approach. Your family is the priority. When they need you, work waits. Casual, fun work atmosphere: ping pong table, dart board, comfortable break room, and a standing recommendation to keep a Nerf gun handy (you'll know why eventually). Snacks, food, ice cream, and plenty of coffee/tea options. The fridge gets restocked monthly. Where You Go From Here The Tier 2 Technician role is the second level of technical ability at INC Systems, and it's a real one. You're the support our Tier 1 team leans on and the person clients trust with the hard stuff. You'll know our processes, procedures, and tools inside and out. From here, there are a few paths. You might lean deeper into the technical track and grow into a Senior Engineer role, owning the hardest tickets, leading R&D on new technology, and shaping what we deploy next. Or you might lean toward account management, working closely with clients to make sure they're getting everything they should out of their technology. Every level has more responsibility, more perks, and a clear path for growth. We'd rather help you level up than lose you. Company Description In business since 2004, INC Systems is a technology services and consulting company that has been involved in vast number of diverse projects. Until 2013, there were two divisions of the company with one focused on I.T. services and the other on low-voltage wiring, audio video projects and home automation. A tremendous amount of knowledge was gained during our first decade, not only on the technical work but in managing client expectations and delivering value. Today we only work with businesses and non-profits that view I.T. as critical to their success. . click apply for full job details
09/07/2026
Full time
Job Description Job Description Tier 2 Technician (A.K.A. The Technical Heavy-Hitter We've Been Looking For) Job Summary At INC Systems, we're not your typical Managed Service Provider (MSP). We've been helping businesses and non-profits wrangle their technology since 2004, and along the way we figured out a secret: people matter more than servers. Technology is just the tool we use to make lives easier, and occasionally to justify buying really cool gadgets. We're on the hunt for a seasoned Tier 2 Technician. The kind of person who sees a flashing red light on a firewall and gets curious instead of concerned. You're the technical backbone of our service team: part engineer, part detective, part mentor, and part "wait, how did you fix that so fast?" You'll own the tough tickets, lift up our Tier 1 team, own projects from kickoff to handoff, and help push our tools, processes, and automations forward. If you get a small dopamine hit from a clean PowerShell script, have opinions about VLAN design, and think "Office 365 admin" is a fun Saturday, keep reading. A Day in the Life Your day starts with a 15-minute team huddle where we talk priorities, escalations, overnight alerts, and (inevitably) someone makes a joke that's way too early for HR to hear about. From there, you're off. The morning might kick off with a backup job that threw a tantrum overnight. You'll dig into logs, pull in the vendor if you have to, and make sure our client's data is safe before they've even had their second coffee. Then a Tier 1 tech pings you: a user's Conditional Access policy is blocking them from a legitimate app. You walk the tech through the fix, explain the "why" (not just the "what"), and everyone leaves 2% smarter. By mid-morning you're on-site at a client. Maybe standing up a new server, cutting them over to our VOIP platform, or scoping a firewall replacement. You take notes like a hawk, because future-you will thank present-you when the ticket comes back in six months. Lunch happens. Opinions are shared. Someone defends a questionable streaming show. The darts may or may not start flying. Afternoon shifts into project and improvement mode. Sales needs your input on a network refresh quote: how many hours, what gear, what gotchas? A client is rolling out new software and wants to know if their infrastructure can handle it (spoiler: probably, with a nudge). And if there's a repetitive task draining hours out of the team's week, you're the type to ask, "why aren't we automating this?" and then actually do it. By end-of-day, you've closed tough tickets, made the Tier 1 team better, moved a project forward, and maybe shaved 20 minutes off a process that'll compound into weeks of reclaimed time. Victory dance optional. Encouraged. What You'll Be Doing (AKA Your Superpowers) Technical Heavy Lifting: Where the Tickets Get Real Own escalated tickets from Tier 1: the gnarly ones, the weird ones, the "this has never happened before" ones. Troubleshoot network issues end-to-end: DNS, DHCP, NAT, firewall rules, VLANs, routing, VPN tunnels, and the occasional haunted switch. Administer, troubleshoot, and optimize Microsoft 365 tenants (Entra ID, Exchange Online, Teams, SharePoint, Intune, Conditional Access, the whole family). Support Windows Server environments (AD, Group Policy, DNS, DHCP, file services, RDS) and keep virtualization hosts happy. Own backup and disaster recovery, because the job isn't done until you've verified the restore actually works. Stand up, migrate, and maintain firewalls, switches, wireless, and VPN infrastructure across our client base. Roll out new clients and projects (onboarding, migrations, VOIP cutovers, hardware refreshes) with the kind of planning that makes the cutover day boring (in the best way). Making the Team Better: Because No One Levels Up Alone Coach and mentor the Tier 1 team. Walk them through the fix and the reasoning, so next time they've got it. Be the technical partner to our sales team: scope projects, estimate time and equipment, and flag the gotchas before they become change orders. Contribute to documentation like your future self is going to read it (because they will, at 11pm, on a Tuesday). Spot broken processes and fix them. Spot tedious processes and automate them. Spot tribal knowledge and write it down. Client-Facing Work: Yes, You'll Talk to Humans Work directly with clients to untangle issues, recommend solutions, and translate "IT" into English. Advise clients on hardware, software, and network changes when they're rolling out something new. Be the calm in the storm when things go sideways, because someone has to be, and you're really good at it. You Have (The Non-Negotiables) A genuine drive to deliver great customer service and help people. This is the whole job, honestly. Strong verbal and written communication, with the patience of a saint when things get chaotic. The ability to explain complicated tech to your grandmother and have her actually get it. Sharp problem-solving chops and a brain that likes logic puzzles. 5+ years working in IT (or a degree in a computer field plus serious hands-on time). 4+ years hands-on with VLANs, routing, firewall support, and VPN connectivity. 4+ years supporting server hardware (CPU/RAID/storage) and Windows Server environments. 4+ years of data backup and recovery work, plus corporate antivirus/EDR support. Strong working knowledge of network domains, Active Directory, and security tooling. Solid wireless technology chops (design, deployment, troubleshooting). Deep comfort with Microsoft 365 administration. Entra ID, Exchange Online, Teams, SharePoint, and Intune should all feel like home. Real troubleshooting skills around DNS, DHCP, NAT, and firewall rules (not just reading about them on Reddit). Strongly Preferred (A.K.A. You'll Fit Right In) PowerShell scripting and a general love for automating the boring stuff. If you've ever written a script just to avoid doing something twice, we're your people. Experience building automations that connect systems together (Power Automate, Graph API, webhooks, or similar). A habit of asking "why are we doing this manually?" and then doing something about it. Would Also Be Great If You Have Experience with ConnectWise Manage (our PSA). Bonus points if you've lived in it daily. Experience with NinjaOne RMM (or comparable RMM platforms like Datto, N-able, Kaseya). A+, Network+, Security+, and any Microsoft certifications (MS-900, AZ-104, MS-102, etc.). The ability to type 50+ wpm without staring at your keyboard. A passion for learning: new tools, new platforms, new anything. A love for technology, Star Wars, science, and gadgets. (Strong opinions welcome. Defending them at lunch is encouraged.) What You Get Starting salary depends on experience, certifications, and overall technical ability. $50k to $70k per year Quarterly and Annual Bonuses based on performance An opportunity to learn and expand your knowledge with the best team around We Have (Because We Actually Care) Paid vacation, PTO, and holiday pay. Unused vacation can be rolled over or sold back to the company. Great health insurance with a portion paid by INC, plus options for supplemental insurance and other payroll deduction plans. Matching retirement contributions. We match 4% of what you invest. Annual profit sharing. When the company wins, you win. This isn't a "maybe someday" perk, it's a real chunk of change that shows up every year based on how we do as a team. Quarterly and Annual bonuses that let you earn above your target pay. Family First Approach. Your family is the priority. When they need you, work waits. Casual, fun work atmosphere: ping pong table, dart board, comfortable break room, and a standing recommendation to keep a Nerf gun handy (you'll know why eventually). Snacks, food, ice cream, and plenty of coffee/tea options. The fridge gets restocked monthly. Where You Go From Here The Tier 2 Technician role is the second level of technical ability at INC Systems, and it's a real one. You're the support our Tier 1 team leans on and the person clients trust with the hard stuff. You'll know our processes, procedures, and tools inside and out. From here, there are a few paths. You might lean deeper into the technical track and grow into a Senior Engineer role, owning the hardest tickets, leading R&D on new technology, and shaping what we deploy next. Or you might lean toward account management, working closely with clients to make sure they're getting everything they should out of their technology. Every level has more responsibility, more perks, and a clear path for growth. We'd rather help you level up than lose you. Company Description In business since 2004, INC Systems is a technology services and consulting company that has been involved in vast number of diverse projects. Until 2013, there were two divisions of the company with one focused on I.T. services and the other on low-voltage wiring, audio video projects and home automation. A tremendous amount of knowledge was gained during our first decade, not only on the technical work but in managing client expectations and delivering value. Today we only work with businesses and non-profits that view I.T. as critical to their success. . click apply for full job details
Job Description At Boeing, we innovate and collaborate to make the world a better place. We're committed to fostering an environment for every teammate that's welcoming, respectful and inclusive, with great opportunity for professional growth. Find your future with us. The Boeing Company is looking for a Site Reliability Engineer (Associate, Experienced or Senior) to join the Air Dominance Site Reliability Engineering team located in Berkeley, MO. We are seeking a highly talented, motivated, and creative individual to operate, improve, and sustain mission-critical developer platforms used by Air Dominance engineering teams. This role will provide hands-on technical ownership for GitLab, GitLab CI/CD runners, Jira, Confluence, PostgreSQL, and related software delivery tools such as Artifactory and SonarQube. The selected candidate will drive reliability improvements, automate operational workflows, troubleshoot complex incidents, lead planned maintenance activities, and help establish mature Site Reliability Engineering practices for the team. Our teams are currently hiring for a broad range of experience levels including Associate, Experienced and/or Senior Level Software Engineers. Position Responsibilities: Operate and maintain GitLab, GitLab CI/CD runners, Jira, Confluence, PostgreSQL, and related developer tooling infrastructure Support GitLab runner registration, runner health checks, runner queue troubleshooting, and basic capacity, KPI, and error budget reporting Support software development tool administration, maintenance, version upgrades, patch management, and integration between tools such as Jira, GitLab, Artifactory, Confluence, and SonarQube Serve as a technical owner for platform reliability, availability, performance, capacity, backup, recovery, and operational readiness Develop and maintain Infrastructure as Code (IaC), Ansible, and other automation for provisioning, configuration, platform scaling, health checks, reporting, backup validation, and routine operational tasks Plan and execute approved changes, including application upgrades, security patches, database maintenance, runner lifecycle activities, and infrastructure updates Define, collect, analyze, and refine software delivery and platform reliability metrics to support data-driven decision making Support incident response, root cause analysis, corrective action tracking, and post-incident reviews Partner with developers, project administrators, cybersecurity personnel, infrastructure teams, database administrators, and program stakeholders Improve runbooks, standard operating procedures, architecture documentation, and disaster recovery procedures Evaluate platform risks, capacity trends, recurring incidents, and operational toil, then recommend and implement improvements Participate in after-hours support for urgent or mission-impacting issues as required Monitor application, runner, database, storage, and host health using approved monitoring and alerting tools Triage and resolve routine service requests, access issues, pipeline infrastructure issues, and platform support tickets Assist with incident response during primary support hours and participate in after-hours support when required by mission need Help maintain operational runbooks, troubleshooting guides, architecture notes, and standard operating procedures Assist with backup monitoring, restore validation, patching, upgrades, and planned maintenance activities Create and maintain Infrastructure as Code (IaC), Ansible, and other scripts and automation to simplify infrastructure administration and software deployment under the guidance of more senior engineers Assist in setting up and maintaining development and production-like environments for developer tools and supporting application devices Contribute to metrics and dashboards that monitor system performance, software delivery health, and operational efficiency Follow approved change management, security, access control, and configuration management processes Collaborate with developers, project administrators, cybersecurity personnel, infrastructure teams, and program stakeholders Learn and apply Site Reliability Engineering practices, including incident management, service objectives, root cause analysis, automation, and continuous improvement Contribute to process improvements that help operationally field higher-quality end-to-end system software more frequently This position is expected to be 100% onsite. The selected candidate will be required to work onsite at one of the listed location options. Basic Qualifications (Required Skills/ Experience): Bachelor's Degree This position requires the ability to obtain a US Security Clearance for which the US Government requires US Citizenship as a condition of employment (An interim and/or final U.S. Secret Clearance Post-Start may be required) This position requires the ability to obtain access to Special Access Programs (SAP), for which the US Government requires US Citizenship as a condition of employment 2+ years of experience with software development and/or troubleshooting software 2+ years of experience with Git-based source control workflows including branching strategies, code reviews, and pull request processes 2+ years of experience developing software products in a cloud computing environment e.g. Azure/AWS/Google Cloud Preferred Qualifications (Desired Skills/Experience): Level 3: 5 or more years' related work experience or an equivalent combination of education and experience Level 4: 9 or more years' related work experience or an equivalent combination of education and experience Active clearance Linux system administration, software development, DevOps, DevSecOps, IT operations, or related technical work Experience or coursework with Agile software development Basic understanding of networking, operating systems, databases, software build processes, and secure system administration Ability to follow documented procedures and communicate technical status clearly Experience with Jira, Confluence, or other Atlassian administration and support activities Experience with PostgreSQL administration, SQL troubleshooting, backups, or restore procedures Experience writing scripts in Bash, Python, PowerShell, Java, C#, C++, or a similar language Experience with Artifactory, SonarQube, Jenkins, or similar software delivery tools Familiarity with monitoring, alerting, logging, incident response, and operational metrics Ability to obtain Security+ certification Experience designing or improving monitoring, alerting, dashboards, operational metrics, and SLOs Experience supporting Air Dominance, classified, air-gapped, or highly regulated engineering environments Experience with disaster recovery planning, continuity of operations, backup validation, and restore testing Experience leading technical investigations, post-incident reviews, and corrective action plans Demonstrated ability to balance customer urgency, system reliability, security requirements, and change control Strong customer service mindset and ability to support engineering teams in a mission-focused environment Strong written and verbal communication skills Travel: 5% Drug Free Workplace: Boeing is a Drug Free Workplace (DFW) where post offer applicants and employees are subject to testing for marijuana, cocaine, opioids, amphetamines, PCP, and alcohol when criteria is met as outlined in our policies. Conflict of Interest: Successful candidates for this job must satisfy the Company's Conflict of Interest (COI) assessment process. CodeVue Coding Challenge: To be considered for this position you will be required to complete a technical assessment as part of the selection process. Failure to complete the assessment will remove you from consideration. Pay & Benefits: At Boeing, we strive to deliver a Total Rewards package that will attract, engage and retain the top talent. Elements of the Total Rewards package include competitive base pay and variable compensation opportunities. The Boeing Company also provides eligible employees with an opportunity to enroll in a variety of benefit programs, generally including health insurance, flexible spending accounts, health savings accounts, retirement savings plans, life and disability insurance programs, and a number of programs that provide for both paid and unpaid time away from work. The specific programs and options available to any given employee may vary depending on eligibility factors such as geographic location, date of hire, and the applicability of collective bargaining agreements. Pay is based upon candidate experience and qualifications, as well as market and business considerations. Summary Pay Range for Associate level (Level 2): $99,450 - $134,550 Summary Pay Range for Experienced level (Level 3): $126,650 - $171,350 Summary Pay Range for Senior level (Level 4): $160,650 - $217,350 Applications for this position will be accepted until Sept. 17, 2026 Export Control Requirements: This position must meet U.S. export control compliance requirements. To meet U.S. export control compliance requirements, a "U.S . click apply for full job details
09/06/2026
Full time
Job Description At Boeing, we innovate and collaborate to make the world a better place. We're committed to fostering an environment for every teammate that's welcoming, respectful and inclusive, with great opportunity for professional growth. Find your future with us. The Boeing Company is looking for a Site Reliability Engineer (Associate, Experienced or Senior) to join the Air Dominance Site Reliability Engineering team located in Berkeley, MO. We are seeking a highly talented, motivated, and creative individual to operate, improve, and sustain mission-critical developer platforms used by Air Dominance engineering teams. This role will provide hands-on technical ownership for GitLab, GitLab CI/CD runners, Jira, Confluence, PostgreSQL, and related software delivery tools such as Artifactory and SonarQube. The selected candidate will drive reliability improvements, automate operational workflows, troubleshoot complex incidents, lead planned maintenance activities, and help establish mature Site Reliability Engineering practices for the team. Our teams are currently hiring for a broad range of experience levels including Associate, Experienced and/or Senior Level Software Engineers. Position Responsibilities: Operate and maintain GitLab, GitLab CI/CD runners, Jira, Confluence, PostgreSQL, and related developer tooling infrastructure Support GitLab runner registration, runner health checks, runner queue troubleshooting, and basic capacity, KPI, and error budget reporting Support software development tool administration, maintenance, version upgrades, patch management, and integration between tools such as Jira, GitLab, Artifactory, Confluence, and SonarQube Serve as a technical owner for platform reliability, availability, performance, capacity, backup, recovery, and operational readiness Develop and maintain Infrastructure as Code (IaC), Ansible, and other automation for provisioning, configuration, platform scaling, health checks, reporting, backup validation, and routine operational tasks Plan and execute approved changes, including application upgrades, security patches, database maintenance, runner lifecycle activities, and infrastructure updates Define, collect, analyze, and refine software delivery and platform reliability metrics to support data-driven decision making Support incident response, root cause analysis, corrective action tracking, and post-incident reviews Partner with developers, project administrators, cybersecurity personnel, infrastructure teams, database administrators, and program stakeholders Improve runbooks, standard operating procedures, architecture documentation, and disaster recovery procedures Evaluate platform risks, capacity trends, recurring incidents, and operational toil, then recommend and implement improvements Participate in after-hours support for urgent or mission-impacting issues as required Monitor application, runner, database, storage, and host health using approved monitoring and alerting tools Triage and resolve routine service requests, access issues, pipeline infrastructure issues, and platform support tickets Assist with incident response during primary support hours and participate in after-hours support when required by mission need Help maintain operational runbooks, troubleshooting guides, architecture notes, and standard operating procedures Assist with backup monitoring, restore validation, patching, upgrades, and planned maintenance activities Create and maintain Infrastructure as Code (IaC), Ansible, and other scripts and automation to simplify infrastructure administration and software deployment under the guidance of more senior engineers Assist in setting up and maintaining development and production-like environments for developer tools and supporting application devices Contribute to metrics and dashboards that monitor system performance, software delivery health, and operational efficiency Follow approved change management, security, access control, and configuration management processes Collaborate with developers, project administrators, cybersecurity personnel, infrastructure teams, and program stakeholders Learn and apply Site Reliability Engineering practices, including incident management, service objectives, root cause analysis, automation, and continuous improvement Contribute to process improvements that help operationally field higher-quality end-to-end system software more frequently This position is expected to be 100% onsite. The selected candidate will be required to work onsite at one of the listed location options. Basic Qualifications (Required Skills/ Experience): Bachelor's Degree This position requires the ability to obtain a US Security Clearance for which the US Government requires US Citizenship as a condition of employment (An interim and/or final U.S. Secret Clearance Post-Start may be required) This position requires the ability to obtain access to Special Access Programs (SAP), for which the US Government requires US Citizenship as a condition of employment 2+ years of experience with software development and/or troubleshooting software 2+ years of experience with Git-based source control workflows including branching strategies, code reviews, and pull request processes 2+ years of experience developing software products in a cloud computing environment e.g. Azure/AWS/Google Cloud Preferred Qualifications (Desired Skills/Experience): Level 3: 5 or more years' related work experience or an equivalent combination of education and experience Level 4: 9 or more years' related work experience or an equivalent combination of education and experience Active clearance Linux system administration, software development, DevOps, DevSecOps, IT operations, or related technical work Experience or coursework with Agile software development Basic understanding of networking, operating systems, databases, software build processes, and secure system administration Ability to follow documented procedures and communicate technical status clearly Experience with Jira, Confluence, or other Atlassian administration and support activities Experience with PostgreSQL administration, SQL troubleshooting, backups, or restore procedures Experience writing scripts in Bash, Python, PowerShell, Java, C#, C++, or a similar language Experience with Artifactory, SonarQube, Jenkins, or similar software delivery tools Familiarity with monitoring, alerting, logging, incident response, and operational metrics Ability to obtain Security+ certification Experience designing or improving monitoring, alerting, dashboards, operational metrics, and SLOs Experience supporting Air Dominance, classified, air-gapped, or highly regulated engineering environments Experience with disaster recovery planning, continuity of operations, backup validation, and restore testing Experience leading technical investigations, post-incident reviews, and corrective action plans Demonstrated ability to balance customer urgency, system reliability, security requirements, and change control Strong customer service mindset and ability to support engineering teams in a mission-focused environment Strong written and verbal communication skills Travel: 5% Drug Free Workplace: Boeing is a Drug Free Workplace (DFW) where post offer applicants and employees are subject to testing for marijuana, cocaine, opioids, amphetamines, PCP, and alcohol when criteria is met as outlined in our policies. Conflict of Interest: Successful candidates for this job must satisfy the Company's Conflict of Interest (COI) assessment process. CodeVue Coding Challenge: To be considered for this position you will be required to complete a technical assessment as part of the selection process. Failure to complete the assessment will remove you from consideration. Pay & Benefits: At Boeing, we strive to deliver a Total Rewards package that will attract, engage and retain the top talent. Elements of the Total Rewards package include competitive base pay and variable compensation opportunities. The Boeing Company also provides eligible employees with an opportunity to enroll in a variety of benefit programs, generally including health insurance, flexible spending accounts, health savings accounts, retirement savings plans, life and disability insurance programs, and a number of programs that provide for both paid and unpaid time away from work. The specific programs and options available to any given employee may vary depending on eligibility factors such as geographic location, date of hire, and the applicability of collective bargaining agreements. Pay is based upon candidate experience and qualifications, as well as market and business considerations. Summary Pay Range for Associate level (Level 2): $99,450 - $134,550 Summary Pay Range for Experienced level (Level 3): $126,650 - $171,350 Summary Pay Range for Senior level (Level 4): $160,650 - $217,350 Applications for this position will be accepted until Sept. 17, 2026 Export Control Requirements: This position must meet U.S. export control compliance requirements. To meet U.S. export control compliance requirements, a "U.S . click apply for full job details
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Sr. Associate, Cloud - GCP for our Consulting practice. Responsibilities: Lead the design and implementation of Google Cloud Platform (GCP) infrastructure using Terraform, following best practices for modularity, reusability, and long-term maintainability. Demonstrate deep expertise in GCP networking, including network design standards and Network Connectivity Center (NCC) hub-and-spoke architectures. Architect and manage secure, reliable hybrid cloud integrations between on-premises environments and GCP, enabling seamless connectivity across platforms. Design, build, and support scalable data platforms on GCP, leveraging services such as BigQuery, Dataflow, Dataproc, and Pub/Sub to enable advanced analytics and data processing. Enable Generative AI initiatives by supporting development teams in the use of GCP AI/ML services, with a strong focus on Vertex AI for model development, training, and deployment. Implement and maintain robust security controls and compliance policies across the GCP environment, with a strong understanding of IAM/RBAC and industry regulatory standards. Design and build automated CI/CD pipelines for provisioning and managing GCP resources using tools such as Jenkins, GitLab CI, or Google Cloud Build. Implement comprehensive monitoring, logging, and operational tooling to ensure platform reliability, performance, and proactive cost optimization. Provide technical leadership and mentorship to junior team members, fostering a culture of continuous learning, engineering excellence, and operational rigor. Qualifications: Minimum three years of recent Google Cloud Platform (GCP) or equivalent cloud systems development experience Bachelor's degree from an accredited college/university Experience in designing cloud architectures and implementing production infrastructures and applications in one or more of the following cloud environments/technologies: GCP using infrastructure as code approach, experience in developing data and analytics platforms and applications on cloud is a plus and experience with cloud native container technologies such as Kubernetes, OpenShift, or Docker experience with Terraform, Ansible, Chef and Puppet is preferred Basic software development skills/experience; scripting experience is preferred with a proficiency in Unix/Linux environments and ability to develop in terminal environments; experience with source code management systems like GIT and SVN and the ability to communicate technical concepts to non-technical team members Strong understanding of networking, identity management, monitoring, logging, vulnerability management and concepts; depth of understanding with security concepts, protocols and configuration (authentication, authorization, encryption, PKI) with knowledge of IT operating models and processes and experience hardening infrastructures & systems and developing highly available & scalable systems is a plus Ability to travel as required Applicants must be authorized to work in the U.S. without the need for employment based visa sponsorship now or in the future. KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment based visa) KPMG LLP and its affiliates and subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work . Follow this link to obtain salary ranges by city outside of CA: KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please. KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
09/05/2026
Full time
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Sr. Associate, Cloud - GCP for our Consulting practice. Responsibilities: Lead the design and implementation of Google Cloud Platform (GCP) infrastructure using Terraform, following best practices for modularity, reusability, and long-term maintainability. Demonstrate deep expertise in GCP networking, including network design standards and Network Connectivity Center (NCC) hub-and-spoke architectures. Architect and manage secure, reliable hybrid cloud integrations between on-premises environments and GCP, enabling seamless connectivity across platforms. Design, build, and support scalable data platforms on GCP, leveraging services such as BigQuery, Dataflow, Dataproc, and Pub/Sub to enable advanced analytics and data processing. Enable Generative AI initiatives by supporting development teams in the use of GCP AI/ML services, with a strong focus on Vertex AI for model development, training, and deployment. Implement and maintain robust security controls and compliance policies across the GCP environment, with a strong understanding of IAM/RBAC and industry regulatory standards. Design and build automated CI/CD pipelines for provisioning and managing GCP resources using tools such as Jenkins, GitLab CI, or Google Cloud Build. Implement comprehensive monitoring, logging, and operational tooling to ensure platform reliability, performance, and proactive cost optimization. Provide technical leadership and mentorship to junior team members, fostering a culture of continuous learning, engineering excellence, and operational rigor. Qualifications: Minimum three years of recent Google Cloud Platform (GCP) or equivalent cloud systems development experience Bachelor's degree from an accredited college/university Experience in designing cloud architectures and implementing production infrastructures and applications in one or more of the following cloud environments/technologies: GCP using infrastructure as code approach, experience in developing data and analytics platforms and applications on cloud is a plus and experience with cloud native container technologies such as Kubernetes, OpenShift, or Docker experience with Terraform, Ansible, Chef and Puppet is preferred Basic software development skills/experience; scripting experience is preferred with a proficiency in Unix/Linux environments and ability to develop in terminal environments; experience with source code management systems like GIT and SVN and the ability to communicate technical concepts to non-technical team members Strong understanding of networking, identity management, monitoring, logging, vulnerability management and concepts; depth of understanding with security concepts, protocols and configuration (authentication, authorization, encryption, PKI) with knowledge of IT operating models and processes and experience hardening infrastructures & systems and developing highly available & scalable systems is a plus Ability to travel as required Applicants must be authorized to work in the U.S. without the need for employment based visa sponsorship now or in the future. KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment based visa) KPMG LLP and its affiliates and subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work . Follow this link to obtain salary ranges by city outside of CA: KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please. KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
Job Description Job Description Senior Security Engineer Are you a security engineer who wants to build a program from the foundation up - not inherit and babysit someone else's? Do you thrive in a fast-paced, AI-native environment where security's job is to enable speed safely, not slow it down out of fear? Are you energized by the idea that the systems you protect hold the most sensitive health data of real people trying to get their lives back from chronic GI conditions? If so, you might be a perfect fit for our team of professionals dedicated to eliminating the impact of digestive health conditions through innovative GI care. The Role As Oshi Health's first dedicated Senior Security Engineer, you will own the technical security of a fully remote, SaaS- and cloud-native healthcare platform - and you'll do it as a hands-on builder, not a policy desk. Reporting to the Sr. Director, Security & IT, you will set the security architecture standards for our product and AWS environments, harden how we manage identity and secrets, and build security into our engineering and AI workflows from the start. This is a uniquely forward-looking role. Oshi is transitioning to an agentic software development lifecycle in which AI agents help plan, build, review, and eventually deploy code against a data platform that touches regulated data. You will design the guardrails that make that transition safe: the security gates in the pipeline, the controls on agent-written code, and the lifecycle management for the non-human identities those agents use. You'll partner closely with Product & Engineering to keep the path paved - moving fast with confidence rather than slow out of fear - and with the Sr. Director on HIPAA, SOC 2, and audit readiness. If you want a security role where the work is genuinely novel and your fingerprints are on the foundation, this is it. What you'll do Own application and product security: threat modeling, secure design review, and secure code review, with a focus on the authorization and access-control flaw classes (IDOR, broken access control, exposed secrets, insecure upload) that matter most for a member-facing healthcare app and its APIs. Make our existing tooling do real work: enforce and tune GitHub Advanced Security (CodeQL, secret scanning, push protection) as required status checks, with branch protection and CODEOWNERS-enforced human review on security-sensitive paths. Design and own the security architecture for our agentic SDLC - phase-gate criteria for each stage of the AI transition, deterministic out-of-band controls so that agent-written code is never its own security gate of record, and tested "clawback" procedures for when risk spikes. Build and run non-human identity (NHI) and secrets management at scale: service accounts, scoped tokens, OAuth grants, and machine credentials - provisioning, rotation, least privilege, and decommissioning across our SaaS and AWS estate. Secure our AWS environment: IAM/IC, network segmentation, logging, configuration baselines, encryption, and workload protection across S3, EKS and Terraform (and supporting services in coordination with our DevOps team) Run security review of AI and third-party vendor integrations before they touch PHI - evaluating data flows, retention, and data-loss-prevention needs, and applying healthy skepticism to AI-native vendors' security claims. Stand up and tune detection and response Leverage AI and build behavioral baselines and anomaly detection for identity, SaaS, AWS, and AI/agent usage logs. Support HIPAA Security Rule technical safeguards in partnership with the Sr. Director - encryption at rest, audit controls and activity logging, vulnerability scanning, and asset inventory. Own the vulnerability management and penetration-testing cadence: Own the relationship with an external pen tester, drive findings to closure, shrink time-to-remediation, and move recurring issues left into the development process. Reduce attack surface through SaaS and identity rationalization, and write the security policies, standards, and runbooks the program needs as it matures. Build automation (scripting, infrastructure-as-code) so that a small security function operates with outsized leverage. Who you are 6+ years in security engineering, with demonstrated depth in application/product security and cloud security (AWS). Experience in healthcare, fintech, or another regulated, data-sensitive environment is a strong plus. Hands-on with secure SDLC tooling: SAST/DAST, GitHub Advanced Security / CodeQL, secret scanning, and software supply-chain / dependency security. Strong in identity and access management: Okta, OAuth/OIDC, SAML, phishing-resistant MFA, and the management of non-human identities and secrets (e.g., AWS Secrets Manager, or equivalents). Familiarity with - or genuine drive to go deep on - securing AI/LLM and agentic systems: prompt injection, agent authorization and over-permissioning, NHI sprawl, and model/supply-chain risk. You don't need to have done it for a decade; almost no one has. You do need to be the kind of engineer who runs toward a problem the industry hasn't solved yet. Comfortable being the sole security specialist on a small, cross-functional team - you prioritize ruthlessly by risk, you're pragmatic about cost, and you can explain a tradeoff to both an engineer and a non-technical executive without changing the truth of it. Working knowledge of the HIPAA Security Rule, SOC 2, and the NIST Cybersecurity Framework. Experience operating a compliance-automation platform is a plus. Proficient with scripting and automation (Python and at least one shell) to scale yourself. A curious, builder's mindset - you'd rather pave a safe path than post a "do not enter" sign, and you find the right technology to increase both security and velocity. Bachelor's degree in Computer Science or equivalent practical experience. Certifications (nice to have, not required): one or more of OSCP, GIAC (e.g., GWAPT, GCSA, GCLD), AWS Certified Security - Specialty, CISSP, or Okta Certified Professional. We make healthcare more equitable and accessible: Mission-driven organization focused on innovative digestive care. Thrive on diversity with monthly DEIB discussions and activities. Virtual-first culture: Work from home anywhere in the U.S. Live our core values: Own the outcome, Do the right thing, Be direct & open, Learn & improve, Team, Thrive on diversity. We take care of our people: Competitive compensation and meaningful equity. Employer-sponsored medical, dental, and vision plans. Access to a "Life Concierge" through Overalls, because we know life happens. Tailored professional development opportunities to help you grow. We rest, recharge, and re-energize: Flexible paid time off - take what you need, when you need it. 13 paid company holidays to power down. Team events, such as virtual cooking classes, games, and more. Recognition of professional and personal accomplishments. Oshi Health's Core Values: Own the Outcome Do the Right Thing Be Direct & Open Learn & Improve TEAM - Together Everyone Achieves More Thrive on Diversity If you're ready to lead Oshi Health's security and IT operations and help revolutionize healthcare technology, we'd love to hear from you! Oshi Health is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. Compensation Range $170,000-$190,000 USD Note: This job description serves as a general overview and may be subject to change based on organizational needs and requirements. Oshi Health is an equal opportunity employer that is committed to creating a diverse work environment. To do that, we champion a workplace where each and every person is treated with dignity and respect and is valued for their unique perspective and contributions. Oshi Health's policy is to maintain a working environment that encourages mutual respect, promotes harmonious and congenial relationships between employees, and is free from all forms of discrimination and harassment of any employee (or applicant for employment or service provider) by anyone, including supervisors, co-workers, vendors, or clients. Harassment and discrimination in any manner or form is expressly prohibited. There is no tolerance for discrimination or unequal treatment of any kind on the basis of race, color, religion, creed, gender, sex, sexual orientation, gender identity or expression, pregnancy, sexual and reproductive health decisions, national origin, age, disability, genetic information, marital status or civil partnership/union status, familial status, military or veteran status, predisposition or carrier status, domestic violence victim status, alienage or citizenship status, unemployment status, sexual violence or stalking victim status, caregiver status, or any other characteristic protected by law. This practice applies to all terms, conditions and privileges of employment including . click apply for full job details
09/03/2026
Full time
Job Description Job Description Senior Security Engineer Are you a security engineer who wants to build a program from the foundation up - not inherit and babysit someone else's? Do you thrive in a fast-paced, AI-native environment where security's job is to enable speed safely, not slow it down out of fear? Are you energized by the idea that the systems you protect hold the most sensitive health data of real people trying to get their lives back from chronic GI conditions? If so, you might be a perfect fit for our team of professionals dedicated to eliminating the impact of digestive health conditions through innovative GI care. The Role As Oshi Health's first dedicated Senior Security Engineer, you will own the technical security of a fully remote, SaaS- and cloud-native healthcare platform - and you'll do it as a hands-on builder, not a policy desk. Reporting to the Sr. Director, Security & IT, you will set the security architecture standards for our product and AWS environments, harden how we manage identity and secrets, and build security into our engineering and AI workflows from the start. This is a uniquely forward-looking role. Oshi is transitioning to an agentic software development lifecycle in which AI agents help plan, build, review, and eventually deploy code against a data platform that touches regulated data. You will design the guardrails that make that transition safe: the security gates in the pipeline, the controls on agent-written code, and the lifecycle management for the non-human identities those agents use. You'll partner closely with Product & Engineering to keep the path paved - moving fast with confidence rather than slow out of fear - and with the Sr. Director on HIPAA, SOC 2, and audit readiness. If you want a security role where the work is genuinely novel and your fingerprints are on the foundation, this is it. What you'll do Own application and product security: threat modeling, secure design review, and secure code review, with a focus on the authorization and access-control flaw classes (IDOR, broken access control, exposed secrets, insecure upload) that matter most for a member-facing healthcare app and its APIs. Make our existing tooling do real work: enforce and tune GitHub Advanced Security (CodeQL, secret scanning, push protection) as required status checks, with branch protection and CODEOWNERS-enforced human review on security-sensitive paths. Design and own the security architecture for our agentic SDLC - phase-gate criteria for each stage of the AI transition, deterministic out-of-band controls so that agent-written code is never its own security gate of record, and tested "clawback" procedures for when risk spikes. Build and run non-human identity (NHI) and secrets management at scale: service accounts, scoped tokens, OAuth grants, and machine credentials - provisioning, rotation, least privilege, and decommissioning across our SaaS and AWS estate. Secure our AWS environment: IAM/IC, network segmentation, logging, configuration baselines, encryption, and workload protection across S3, EKS and Terraform (and supporting services in coordination with our DevOps team) Run security review of AI and third-party vendor integrations before they touch PHI - evaluating data flows, retention, and data-loss-prevention needs, and applying healthy skepticism to AI-native vendors' security claims. Stand up and tune detection and response Leverage AI and build behavioral baselines and anomaly detection for identity, SaaS, AWS, and AI/agent usage logs. Support HIPAA Security Rule technical safeguards in partnership with the Sr. Director - encryption at rest, audit controls and activity logging, vulnerability scanning, and asset inventory. Own the vulnerability management and penetration-testing cadence: Own the relationship with an external pen tester, drive findings to closure, shrink time-to-remediation, and move recurring issues left into the development process. Reduce attack surface through SaaS and identity rationalization, and write the security policies, standards, and runbooks the program needs as it matures. Build automation (scripting, infrastructure-as-code) so that a small security function operates with outsized leverage. Who you are 6+ years in security engineering, with demonstrated depth in application/product security and cloud security (AWS). Experience in healthcare, fintech, or another regulated, data-sensitive environment is a strong plus. Hands-on with secure SDLC tooling: SAST/DAST, GitHub Advanced Security / CodeQL, secret scanning, and software supply-chain / dependency security. Strong in identity and access management: Okta, OAuth/OIDC, SAML, phishing-resistant MFA, and the management of non-human identities and secrets (e.g., AWS Secrets Manager, or equivalents). Familiarity with - or genuine drive to go deep on - securing AI/LLM and agentic systems: prompt injection, agent authorization and over-permissioning, NHI sprawl, and model/supply-chain risk. You don't need to have done it for a decade; almost no one has. You do need to be the kind of engineer who runs toward a problem the industry hasn't solved yet. Comfortable being the sole security specialist on a small, cross-functional team - you prioritize ruthlessly by risk, you're pragmatic about cost, and you can explain a tradeoff to both an engineer and a non-technical executive without changing the truth of it. Working knowledge of the HIPAA Security Rule, SOC 2, and the NIST Cybersecurity Framework. Experience operating a compliance-automation platform is a plus. Proficient with scripting and automation (Python and at least one shell) to scale yourself. A curious, builder's mindset - you'd rather pave a safe path than post a "do not enter" sign, and you find the right technology to increase both security and velocity. Bachelor's degree in Computer Science or equivalent practical experience. Certifications (nice to have, not required): one or more of OSCP, GIAC (e.g., GWAPT, GCSA, GCLD), AWS Certified Security - Specialty, CISSP, or Okta Certified Professional. We make healthcare more equitable and accessible: Mission-driven organization focused on innovative digestive care. Thrive on diversity with monthly DEIB discussions and activities. Virtual-first culture: Work from home anywhere in the U.S. Live our core values: Own the outcome, Do the right thing, Be direct & open, Learn & improve, Team, Thrive on diversity. We take care of our people: Competitive compensation and meaningful equity. Employer-sponsored medical, dental, and vision plans. Access to a "Life Concierge" through Overalls, because we know life happens. Tailored professional development opportunities to help you grow. We rest, recharge, and re-energize: Flexible paid time off - take what you need, when you need it. 13 paid company holidays to power down. Team events, such as virtual cooking classes, games, and more. Recognition of professional and personal accomplishments. Oshi Health's Core Values: Own the Outcome Do the Right Thing Be Direct & Open Learn & Improve TEAM - Together Everyone Achieves More Thrive on Diversity If you're ready to lead Oshi Health's security and IT operations and help revolutionize healthcare technology, we'd love to hear from you! Oshi Health is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. Compensation Range $170,000-$190,000 USD Note: This job description serves as a general overview and may be subject to change based on organizational needs and requirements. Oshi Health is an equal opportunity employer that is committed to creating a diverse work environment. To do that, we champion a workplace where each and every person is treated with dignity and respect and is valued for their unique perspective and contributions. Oshi Health's policy is to maintain a working environment that encourages mutual respect, promotes harmonious and congenial relationships between employees, and is free from all forms of discrimination and harassment of any employee (or applicant for employment or service provider) by anyone, including supervisors, co-workers, vendors, or clients. Harassment and discrimination in any manner or form is expressly prohibited. There is no tolerance for discrimination or unequal treatment of any kind on the basis of race, color, religion, creed, gender, sex, sexual orientation, gender identity or expression, pregnancy, sexual and reproductive health decisions, national origin, age, disability, genetic information, marital status or civil partnership/union status, familial status, military or veteran status, predisposition or carrier status, domestic violence victim status, alienage or citizenship status, unemployment status, sexual violence or stalking victim status, caregiver status, or any other characteristic protected by law. This practice applies to all terms, conditions and privileges of employment including . click apply for full job details
Intelligent Network & Communication Systems
Grand Blanc, Michigan
Job Description Job Description Tier 2 Technician (A.K.A. The Technical Heavy-Hitter We've Been Looking For) Job Summary At INC Systems, we're not your typical Managed Service Provider (MSP). We've been helping businesses and non-profits wrangle their technology since 2004, and along the way we figured out a secret: people matter more than servers. Technology is just the tool we use to make lives easier, and occasionally to justify buying really cool gadgets. We're on the hunt for a seasoned Tier 2 Technician. The kind of person who sees a flashing red light on a firewall and gets curious instead of concerned. You're the technical backbone of our service team: part engineer, part detective, part mentor, and part "wait, how did you fix that so fast?" You'll own the tough tickets, lift up our Tier 1 team, own projects from kickoff to handoff, and help push our tools, processes, and automations forward. If you get a small dopamine hit from a clean PowerShell script, have opinions about VLAN design, and think "Office 365 admin" is a fun Saturday, keep reading. A Day in the Life Your day starts with a 15-minute team huddle where we talk priorities, escalations, overnight alerts, and (inevitably) someone makes a joke that's way too early for HR to hear about. From there, you're off. The morning might kick off with a backup job that threw a tantrum overnight. You'll dig into logs, pull in the vendor if you have to, and make sure our client's data is safe before they've even had their second coffee. Then a Tier 1 tech pings you: a user's Conditional Access policy is blocking them from a legitimate app. You walk the tech through the fix, explain the "why" (not just the "what"), and everyone leaves 2% smarter. By mid-morning you're on-site at a client. Maybe standing up a new server, cutting them over to our VOIP platform, or scoping a firewall replacement. You take notes like a hawk, because future-you will thank present-you when the ticket comes back in six months. Lunch happens. Opinions are shared. Someone defends a questionable streaming show. The darts may or may not start flying. Afternoon shifts into project and improvement mode. Sales needs your input on a network refresh quote: how many hours, what gear, what gotchas? A client is rolling out new software and wants to know if their infrastructure can handle it (spoiler: probably, with a nudge). And if there's a repetitive task draining hours out of the team's week, you're the type to ask, "why aren't we automating this?" and then actually do it. By end-of-day, you've closed tough tickets, made the Tier 1 team better, moved a project forward, and maybe shaved 20 minutes off a process that'll compound into weeks of reclaimed time. Victory dance optional. Encouraged. What You'll Be Doing (AKA Your Superpowers) Technical Heavy Lifting: Where the Tickets Get Real Own escalated tickets from Tier 1: the gnarly ones, the weird ones, the "this has never happened before" ones. Troubleshoot network issues end-to-end: DNS, DHCP, NAT, firewall rules, VLANs, routing, VPN tunnels, and the occasional haunted switch. Administer, troubleshoot, and optimize Microsoft 365 tenants (Entra ID, Exchange Online, Teams, SharePoint, Intune, Conditional Access, the whole family). Support Windows Server environments (AD, Group Policy, DNS, DHCP, file services, RDS) and keep virtualization hosts happy. Own backup and disaster recovery, because the job isn't done until you've verified the restore actually works. Stand up, migrate, and maintain firewalls, switches, wireless, and VPN infrastructure across our client base. Roll out new clients and projects (onboarding, migrations, VOIP cutovers, hardware refreshes) with the kind of planning that makes the cutover day boring (in the best way). Making the Team Better: Because No One Levels Up Alone Coach and mentor the Tier 1 team. Walk them through the fix and the reasoning, so next time they've got it. Be the technical partner to our sales team: scope projects, estimate time and equipment, and flag the gotchas before they become change orders. Contribute to documentation like your future self is going to read it (because they will, at 11pm, on a Tuesday). Spot broken processes and fix them. Spot tedious processes and automate them. Spot tribal knowledge and write it down. Client-Facing Work: Yes, You'll Talk to Humans Work directly with clients to untangle issues, recommend solutions, and translate "IT" into English. Advise clients on hardware, software, and network changes when they're rolling out something new. Be the calm in the storm when things go sideways, because someone has to be, and you're really good at it. You Have (The Non-Negotiables) A genuine drive to deliver great customer service and help people. This is the whole job, honestly. Strong verbal and written communication, with the patience of a saint when things get chaotic. The ability to explain complicated tech to your grandmother and have her actually get it. Sharp problem-solving chops and a brain that likes logic puzzles. 5+ years working in IT (or a degree in a computer field plus serious hands-on time). 4+ years hands-on with VLANs, routing, firewall support, and VPN connectivity. 4+ years supporting server hardware (CPU/RAID/storage) and Windows Server environments. 4+ years of data backup and recovery work, plus corporate antivirus/EDR support. Strong working knowledge of network domains, Active Directory, and security tooling. Solid wireless technology chops (design, deployment, troubleshooting). Deep comfort with Microsoft 365 administration. Entra ID, Exchange Online, Teams, SharePoint, and Intune should all feel like home. Real troubleshooting skills around DNS, DHCP, NAT, and firewall rules (not just reading about them on Reddit). Strongly Preferred (A.K.A. You'll Fit Right In) PowerShell scripting and a general love for automating the boring stuff. If you've ever written a script just to avoid doing something twice, we're your people. Experience building automations that connect systems together (Power Automate, Graph API, webhooks, or similar). A habit of asking "why are we doing this manually?" and then doing something about it. Would Also Be Great If You Have Experience with ConnectWise Manage (our PSA). Bonus points if you've lived in it daily. Experience with NinjaOne RMM (or comparable RMM platforms like Datto, N-able, Kaseya). A+, Network+, Security+, and any Microsoft certifications (MS-900, AZ-104, MS-102, etc.). The ability to type 50+ wpm without staring at your keyboard. A passion for learning: new tools, new platforms, new anything. A love for technology, Star Wars, science, and gadgets. (Strong opinions welcome. Defending them at lunch is encouraged.) What You Get Starting salary depends on experience, certifications, and overall technical ability. $50k to $70k per year Quarterly and Annual Bonuses based on performance An opportunity to learn and expand your knowledge with the best team around We Have (Because We Actually Care) Paid vacation, PTO, and holiday pay. Unused vacation can be rolled over or sold back to the company. Great health insurance with a portion paid by INC, plus options for supplemental insurance and other payroll deduction plans. Matching retirement contributions. We match 4% of what you invest. Annual profit sharing. When the company wins, you win. This isn't a "maybe someday" perk, it's a real chunk of change that shows up every year based on how we do as a team. Quarterly and Annual bonuses that let you earn above your target pay. Family First Approach. Your family is the priority. When they need you, work waits. Casual, fun work atmosphere: ping pong table, dart board, comfortable break room, and a standing recommendation to keep a Nerf gun handy (you'll know why eventually). Snacks, food, ice cream, and plenty of coffee/tea options. The fridge gets restocked monthly. Where You Go From Here The Tier 2 Technician role is the second level of technical ability at INC Systems, and it's a real one. You're the support our Tier 1 team leans on and the person clients trust with the hard stuff. You'll know our processes, procedures, and tools inside and out. From here, there are a few paths. You might lean deeper into the technical track and grow into a Senior Engineer role, owning the hardest tickets, leading R&D on new technology, and shaping what we deploy next. Or you might lean toward account management, working closely with clients to make sure they're getting everything they should out of their technology. Every level has more responsibility, more perks, and a clear path for growth. We'd rather help you level up than lose you. Company Description In business since 2004, INC Systems is a technology services and consulting company that has been involved in vast number of diverse projects. Until 2013, there were two divisions of the company with one focused on I.T. services and the other on low-voltage wiring, audio video projects and home automation. A tremendous amount of knowledge was gained during our first decade, not only on the technical work but in managing client expectations and delivering value. Today we only work with businesses and non-profits that view I.T. as critical to their success. . click apply for full job details
09/02/2026
Full time
Job Description Job Description Tier 2 Technician (A.K.A. The Technical Heavy-Hitter We've Been Looking For) Job Summary At INC Systems, we're not your typical Managed Service Provider (MSP). We've been helping businesses and non-profits wrangle their technology since 2004, and along the way we figured out a secret: people matter more than servers. Technology is just the tool we use to make lives easier, and occasionally to justify buying really cool gadgets. We're on the hunt for a seasoned Tier 2 Technician. The kind of person who sees a flashing red light on a firewall and gets curious instead of concerned. You're the technical backbone of our service team: part engineer, part detective, part mentor, and part "wait, how did you fix that so fast?" You'll own the tough tickets, lift up our Tier 1 team, own projects from kickoff to handoff, and help push our tools, processes, and automations forward. If you get a small dopamine hit from a clean PowerShell script, have opinions about VLAN design, and think "Office 365 admin" is a fun Saturday, keep reading. A Day in the Life Your day starts with a 15-minute team huddle where we talk priorities, escalations, overnight alerts, and (inevitably) someone makes a joke that's way too early for HR to hear about. From there, you're off. The morning might kick off with a backup job that threw a tantrum overnight. You'll dig into logs, pull in the vendor if you have to, and make sure our client's data is safe before they've even had their second coffee. Then a Tier 1 tech pings you: a user's Conditional Access policy is blocking them from a legitimate app. You walk the tech through the fix, explain the "why" (not just the "what"), and everyone leaves 2% smarter. By mid-morning you're on-site at a client. Maybe standing up a new server, cutting them over to our VOIP platform, or scoping a firewall replacement. You take notes like a hawk, because future-you will thank present-you when the ticket comes back in six months. Lunch happens. Opinions are shared. Someone defends a questionable streaming show. The darts may or may not start flying. Afternoon shifts into project and improvement mode. Sales needs your input on a network refresh quote: how many hours, what gear, what gotchas? A client is rolling out new software and wants to know if their infrastructure can handle it (spoiler: probably, with a nudge). And if there's a repetitive task draining hours out of the team's week, you're the type to ask, "why aren't we automating this?" and then actually do it. By end-of-day, you've closed tough tickets, made the Tier 1 team better, moved a project forward, and maybe shaved 20 minutes off a process that'll compound into weeks of reclaimed time. Victory dance optional. Encouraged. What You'll Be Doing (AKA Your Superpowers) Technical Heavy Lifting: Where the Tickets Get Real Own escalated tickets from Tier 1: the gnarly ones, the weird ones, the "this has never happened before" ones. Troubleshoot network issues end-to-end: DNS, DHCP, NAT, firewall rules, VLANs, routing, VPN tunnels, and the occasional haunted switch. Administer, troubleshoot, and optimize Microsoft 365 tenants (Entra ID, Exchange Online, Teams, SharePoint, Intune, Conditional Access, the whole family). Support Windows Server environments (AD, Group Policy, DNS, DHCP, file services, RDS) and keep virtualization hosts happy. Own backup and disaster recovery, because the job isn't done until you've verified the restore actually works. Stand up, migrate, and maintain firewalls, switches, wireless, and VPN infrastructure across our client base. Roll out new clients and projects (onboarding, migrations, VOIP cutovers, hardware refreshes) with the kind of planning that makes the cutover day boring (in the best way). Making the Team Better: Because No One Levels Up Alone Coach and mentor the Tier 1 team. Walk them through the fix and the reasoning, so next time they've got it. Be the technical partner to our sales team: scope projects, estimate time and equipment, and flag the gotchas before they become change orders. Contribute to documentation like your future self is going to read it (because they will, at 11pm, on a Tuesday). Spot broken processes and fix them. Spot tedious processes and automate them. Spot tribal knowledge and write it down. Client-Facing Work: Yes, You'll Talk to Humans Work directly with clients to untangle issues, recommend solutions, and translate "IT" into English. Advise clients on hardware, software, and network changes when they're rolling out something new. Be the calm in the storm when things go sideways, because someone has to be, and you're really good at it. You Have (The Non-Negotiables) A genuine drive to deliver great customer service and help people. This is the whole job, honestly. Strong verbal and written communication, with the patience of a saint when things get chaotic. The ability to explain complicated tech to your grandmother and have her actually get it. Sharp problem-solving chops and a brain that likes logic puzzles. 5+ years working in IT (or a degree in a computer field plus serious hands-on time). 4+ years hands-on with VLANs, routing, firewall support, and VPN connectivity. 4+ years supporting server hardware (CPU/RAID/storage) and Windows Server environments. 4+ years of data backup and recovery work, plus corporate antivirus/EDR support. Strong working knowledge of network domains, Active Directory, and security tooling. Solid wireless technology chops (design, deployment, troubleshooting). Deep comfort with Microsoft 365 administration. Entra ID, Exchange Online, Teams, SharePoint, and Intune should all feel like home. Real troubleshooting skills around DNS, DHCP, NAT, and firewall rules (not just reading about them on Reddit). Strongly Preferred (A.K.A. You'll Fit Right In) PowerShell scripting and a general love for automating the boring stuff. If you've ever written a script just to avoid doing something twice, we're your people. Experience building automations that connect systems together (Power Automate, Graph API, webhooks, or similar). A habit of asking "why are we doing this manually?" and then doing something about it. Would Also Be Great If You Have Experience with ConnectWise Manage (our PSA). Bonus points if you've lived in it daily. Experience with NinjaOne RMM (or comparable RMM platforms like Datto, N-able, Kaseya). A+, Network+, Security+, and any Microsoft certifications (MS-900, AZ-104, MS-102, etc.). The ability to type 50+ wpm without staring at your keyboard. A passion for learning: new tools, new platforms, new anything. A love for technology, Star Wars, science, and gadgets. (Strong opinions welcome. Defending them at lunch is encouraged.) What You Get Starting salary depends on experience, certifications, and overall technical ability. $50k to $70k per year Quarterly and Annual Bonuses based on performance An opportunity to learn and expand your knowledge with the best team around We Have (Because We Actually Care) Paid vacation, PTO, and holiday pay. Unused vacation can be rolled over or sold back to the company. Great health insurance with a portion paid by INC, plus options for supplemental insurance and other payroll deduction plans. Matching retirement contributions. We match 4% of what you invest. Annual profit sharing. When the company wins, you win. This isn't a "maybe someday" perk, it's a real chunk of change that shows up every year based on how we do as a team. Quarterly and Annual bonuses that let you earn above your target pay. Family First Approach. Your family is the priority. When they need you, work waits. Casual, fun work atmosphere: ping pong table, dart board, comfortable break room, and a standing recommendation to keep a Nerf gun handy (you'll know why eventually). Snacks, food, ice cream, and plenty of coffee/tea options. The fridge gets restocked monthly. Where You Go From Here The Tier 2 Technician role is the second level of technical ability at INC Systems, and it's a real one. You're the support our Tier 1 team leans on and the person clients trust with the hard stuff. You'll know our processes, procedures, and tools inside and out. From here, there are a few paths. You might lean deeper into the technical track and grow into a Senior Engineer role, owning the hardest tickets, leading R&D on new technology, and shaping what we deploy next. Or you might lean toward account management, working closely with clients to make sure they're getting everything they should out of their technology. Every level has more responsibility, more perks, and a clear path for growth. We'd rather help you level up than lose you. Company Description In business since 2004, INC Systems is a technology services and consulting company that has been involved in vast number of diverse projects. Until 2013, there were two divisions of the company with one focused on I.T. services and the other on low-voltage wiring, audio video projects and home automation. A tremendous amount of knowledge was gained during our first decade, not only on the technical work but in managing client expectations and delivering value. Today we only work with businesses and non-profits that view I.T. as critical to their success. . click apply for full job details