Rochester Precision Optics LLC
West Henrietta, New York
Title Systems Administrator Department Information Technology (IT) Reports to Information Technology Manager SEE YOUR CAREER THROUGH A NEW LENS WITH RPO! RPO is a global leader in precision optics, optical components, and optical assemblies. We specialize in a full spectrum of products & services including - Design and Engineering, Systems Integration, Lens Assembly, Visible and Infrared Components, Glass and Plastic Molded Aspheres, and Thin Film Coating. As one of the fastest growing companies in Rochester, RPO offers exciting career paths and work on market-leading programs. See below one of many career opportunities to join the RPO team! Position Overview Rochester Precision Optics LLC. (RPO) is seeking an experienced Systems Administrator to support the day-to-day operation, stability, and continuous improvement of our enterprise infrastructure supporting approximately 300 users across both corporate and manufacturing operations. Our environment relies on someone who can confidently administer Windows Server, Active Directory, virtualization, and Microsoft 365 while also supporting the network infrastructure that connects it all. The ideal candidate has a strong systems administration foundation with hands-on experience supporting enterprise networking, including switches, firewalls, VLANs, VPNs, and wireless technologies. Working closely with the IT Manager, you'll play a key role in maintaining a secure, reliable, and high-performing IT environment while contributing to infrastructure modernization, cybersecurity initiatives, and strategic technology projects. This is an opportunity for someone who enjoys solving complex infrastructure challenges, takes ownership of their work, and wants to make a measurable impact across the organization. Key Responsibilities: Systems Administration & Infrastructure Management Administer and maintain Windows Server environments, Active Directory, Group Policy, DNS, DHCP, and core Microsoft infrastructure services. Support VMware or Hyper-V virtualization environments, server resources, storage systems, and enterprise backup solutions. Perform system maintenance including patching, upgrades, configuration changes, and troubleshooting. Support Microsoft 365 services including Exchange Online, Teams, and Entra ID. Maintain infrastructure documentation, system standards, and technical procedures. Network Infrastructure Support Support enterprise network infrastructure including switches, firewalls, VPNs, and wireless networks. Troubleshoot VLANs, routing, subnetting, network connectivity, and security controls. Assist with network upgrades, infrastructure expansion projects, and technology improvements. Support network-connected systems including VoIP, security systems, and other enterprise technologies. Security & Operational Support Assist with infrastructure security initiatives, including system hardening, vulnerability remediation, and cybersecurity best practices. Assist with compliance initiatives related to NIST 800-171 and CMMC 2.0. Serve as a Tier II/Tier III escalation resource for complex systems and infrastructure issues. Partner with the IT Manager on infrastructure projects, technology improvements, and long-term planning. Knowledge, Skills, and Abilities: Bachelor's degree in information technology, Computer Science, or a related field preferred, or equivalent combination of education and hands-on experience. 4+ years of experience supporting enterprise IT infrastructure in a Systems Administrator, Infrastructure Administrator, Network Administrator, or similar role. Strong experience administering Windows Server environments, Active Directory, Group Policy, DNS, and DHCP. Experience supporting Microsoft 365 environments, including Exchange Online, Teams, and Entra ID. Experience supporting virtualization platforms such as VMware or Hyper-V. Experience administering and troubleshooting enterprise network infrastructure, including switches, VLANs, firewalls, VPNs, and wireless technologies. Experience supporting enterprise backup solutions, such as Veeam, and disaster recovery. Familiarity with endpoint management, software deployment, and security tools. Strong troubleshooting and problem-solving skills with the ability to independently diagnose and resolve complex technical issues. Ability to effectively communicate technical information and collaborate with both technical and non-technical teams. Preferred Qualifications Experience with cybersecurity frameworks or compliance requirements such as NIST 800-171 or CMMC. Experience with Microsoft Intune, Endpoint Central, or similar endpoint management platforms. PowerShell scripting or automation experience. Experience supporting ERP systems, SQL Server environments, or other business-critical applications. Industry certifications such as Network+, Security+, Microsoft, VMware, or Cisco certifications are a plus! Additional Requirements: Pursuant to ITAR, EAR, and other export compliance laws and regulations, applicants for this position must be U.S. Persons as defined by U.S. law, i.e., U.S. citizens, lawful permanent residents ("Green Card" holders), persons granted refugee status or asylum status in the United States, or temporary residents granted amnesty. Compensation & Benefits: Competitive compensation package linked to your experience and performance. 401(k) with company match and Tuition Reimbursement opportunities. Health, dental, vision, HSA, & life insurance. Paid time off including vacation, sick time, and 11 paid company holidays Work Requirements & Physical Demands: This is an on-site, hands-on IT role supporting both corporate office and manufacturing operations. The Systems Administrator will work in a collaborative environment where technology directly supports critical business and production processes. The role requires regular interaction with computer systems, servers, network equipment, and end-user technology across the organization. Occasional movement throughout the facility may be required to support infrastructure, troubleshoot equipment, and assist with technology deployments. Physical requirements may include: Ability to sit, stand, and work at a computer for extended periods. Ability to walk throughout office and manufacturing areas. Ability to lift, carry, and install IT equipment such as computers, monitors, networking equipment, and related hardware (typically up to 50 lbs.). Ability to work in both office and manufacturing environments while following applicable safety requirements. Occasional after-hours support may be required for scheduled maintenance, upgrades, or critical infrastructure issues. Disclaimer: This job description reflects management's assignment of essential functions; it does not prescribe or restrict the tasks that may be assigned. The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not to be construed as an exhaustive list of all responsibilities, duties, and skills required of personnel so classified. All personnel may be required to perform duties outside of their normal responsibilities from time to time, as needed. Rochester Precision Optics is committed to leveraging the talent of a diverse workforce to create great opportunities for our business and our people. EOE/AA/Race/Gender/Disability/Veteran In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States, and to complete This is a full-time, on-site position based at our West Henrietta, NY facility. The standard work schedule is Monday through Friday, 7:00 AM to 3:30 PM. Participation in an occasional rotating on-call schedule is required to provide after-hours support for critical infrastructure issues, planned maintenance, and emergency response as needed. Compensation details: 0 Yearly Salary PI7aecdf9f57f7-3671
08/09/2026
Full time
Title Systems Administrator Department Information Technology (IT) Reports to Information Technology Manager SEE YOUR CAREER THROUGH A NEW LENS WITH RPO! RPO is a global leader in precision optics, optical components, and optical assemblies. We specialize in a full spectrum of products & services including - Design and Engineering, Systems Integration, Lens Assembly, Visible and Infrared Components, Glass and Plastic Molded Aspheres, and Thin Film Coating. As one of the fastest growing companies in Rochester, RPO offers exciting career paths and work on market-leading programs. See below one of many career opportunities to join the RPO team! Position Overview Rochester Precision Optics LLC. (RPO) is seeking an experienced Systems Administrator to support the day-to-day operation, stability, and continuous improvement of our enterprise infrastructure supporting approximately 300 users across both corporate and manufacturing operations. Our environment relies on someone who can confidently administer Windows Server, Active Directory, virtualization, and Microsoft 365 while also supporting the network infrastructure that connects it all. The ideal candidate has a strong systems administration foundation with hands-on experience supporting enterprise networking, including switches, firewalls, VLANs, VPNs, and wireless technologies. Working closely with the IT Manager, you'll play a key role in maintaining a secure, reliable, and high-performing IT environment while contributing to infrastructure modernization, cybersecurity initiatives, and strategic technology projects. This is an opportunity for someone who enjoys solving complex infrastructure challenges, takes ownership of their work, and wants to make a measurable impact across the organization. Key Responsibilities: Systems Administration & Infrastructure Management Administer and maintain Windows Server environments, Active Directory, Group Policy, DNS, DHCP, and core Microsoft infrastructure services. Support VMware or Hyper-V virtualization environments, server resources, storage systems, and enterprise backup solutions. Perform system maintenance including patching, upgrades, configuration changes, and troubleshooting. Support Microsoft 365 services including Exchange Online, Teams, and Entra ID. Maintain infrastructure documentation, system standards, and technical procedures. Network Infrastructure Support Support enterprise network infrastructure including switches, firewalls, VPNs, and wireless networks. Troubleshoot VLANs, routing, subnetting, network connectivity, and security controls. Assist with network upgrades, infrastructure expansion projects, and technology improvements. Support network-connected systems including VoIP, security systems, and other enterprise technologies. Security & Operational Support Assist with infrastructure security initiatives, including system hardening, vulnerability remediation, and cybersecurity best practices. Assist with compliance initiatives related to NIST 800-171 and CMMC 2.0. Serve as a Tier II/Tier III escalation resource for complex systems and infrastructure issues. Partner with the IT Manager on infrastructure projects, technology improvements, and long-term planning. Knowledge, Skills, and Abilities: Bachelor's degree in information technology, Computer Science, or a related field preferred, or equivalent combination of education and hands-on experience. 4+ years of experience supporting enterprise IT infrastructure in a Systems Administrator, Infrastructure Administrator, Network Administrator, or similar role. Strong experience administering Windows Server environments, Active Directory, Group Policy, DNS, and DHCP. Experience supporting Microsoft 365 environments, including Exchange Online, Teams, and Entra ID. Experience supporting virtualization platforms such as VMware or Hyper-V. Experience administering and troubleshooting enterprise network infrastructure, including switches, VLANs, firewalls, VPNs, and wireless technologies. Experience supporting enterprise backup solutions, such as Veeam, and disaster recovery. Familiarity with endpoint management, software deployment, and security tools. Strong troubleshooting and problem-solving skills with the ability to independently diagnose and resolve complex technical issues. Ability to effectively communicate technical information and collaborate with both technical and non-technical teams. Preferred Qualifications Experience with cybersecurity frameworks or compliance requirements such as NIST 800-171 or CMMC. Experience with Microsoft Intune, Endpoint Central, or similar endpoint management platforms. PowerShell scripting or automation experience. Experience supporting ERP systems, SQL Server environments, or other business-critical applications. Industry certifications such as Network+, Security+, Microsoft, VMware, or Cisco certifications are a plus! Additional Requirements: Pursuant to ITAR, EAR, and other export compliance laws and regulations, applicants for this position must be U.S. Persons as defined by U.S. law, i.e., U.S. citizens, lawful permanent residents ("Green Card" holders), persons granted refugee status or asylum status in the United States, or temporary residents granted amnesty. Compensation & Benefits: Competitive compensation package linked to your experience and performance. 401(k) with company match and Tuition Reimbursement opportunities. Health, dental, vision, HSA, & life insurance. Paid time off including vacation, sick time, and 11 paid company holidays Work Requirements & Physical Demands: This is an on-site, hands-on IT role supporting both corporate office and manufacturing operations. The Systems Administrator will work in a collaborative environment where technology directly supports critical business and production processes. The role requires regular interaction with computer systems, servers, network equipment, and end-user technology across the organization. Occasional movement throughout the facility may be required to support infrastructure, troubleshoot equipment, and assist with technology deployments. Physical requirements may include: Ability to sit, stand, and work at a computer for extended periods. Ability to walk throughout office and manufacturing areas. Ability to lift, carry, and install IT equipment such as computers, monitors, networking equipment, and related hardware (typically up to 50 lbs.). Ability to work in both office and manufacturing environments while following applicable safety requirements. Occasional after-hours support may be required for scheduled maintenance, upgrades, or critical infrastructure issues. Disclaimer: This job description reflects management's assignment of essential functions; it does not prescribe or restrict the tasks that may be assigned. The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not to be construed as an exhaustive list of all responsibilities, duties, and skills required of personnel so classified. All personnel may be required to perform duties outside of their normal responsibilities from time to time, as needed. Rochester Precision Optics is committed to leveraging the talent of a diverse workforce to create great opportunities for our business and our people. EOE/AA/Race/Gender/Disability/Veteran In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States, and to complete This is a full-time, on-site position based at our West Henrietta, NY facility. The standard work schedule is Monday through Friday, 7:00 AM to 3:30 PM. Participation in an occasional rotating on-call schedule is required to provide after-hours support for critical infrastructure issues, planned maintenance, and emergency response as needed. Compensation details: 0 Yearly Salary PI7aecdf9f57f7-3671
At Genworth, we empower families to navigate the aging journey with confidence. We are compassionate, experienced allies for those navigating care with guidance, products, and services that meet families where they are. Further, we are the spouses, children, siblings, friends, and neighbors of those that need care-and we bring those experiences with us to work in serving our millions of policyholders each day. We apply that same compassion and empathy as we work with each other and our local communities. Genworth values all perspectives, characteristics, and experiences so that employees can bring their full, authentic selves to work to help each other and our company succeed. We celebrate our diversity and understand that being intentional about inclusion is the only way to create a sense of belonging for all associates. We also invest in the vitality of our local communities through grants from the Genworth Foundation, event sponsorships, and employee volunteerism. Our four values guide our strategy, our decisions, and our interactions: Make it human. We care about the people that make up our customers, colleagues, and communities. Make it about others. We do what's best for our customers and collaborate to drive progress. Make it happen. We work with intention toward a common purpose and forge ways forward together. Make it better. We create fulfilling purpose-driven careers by learning from the world and each other. POSITION TITLE Senior Security Engineer, Data This role is not available for Sponsorship. POSITION LOCATION Richmond This position is available to Virginia residents as Richmond, Virginia in-office applicants A Hybrid schedule of both Remote and In-Office days is required. In office days are Tuesday, Wednesday and Thursday with working hours targeting our core business hours of 9am-5pm EST. YOUR ROLE Protecting sensitive enterprise data requires continuous visibility, governance, and enforcement across increasingly complex environments. As a Senior Security Engineer, Data, you will play a key role in operationalizing and scaling the organization's data security program. You will be responsible for managing and improving data discovery, classification, and protection capabilities. This includes tuning controls, validating effectiveness, and ensuring alignment with enterprise governance, risk, and compliance expectations. In this role, you will operate with a high degree of independence, partner with business and technical stakeholders, and contribute directly to reducing data exposure risk while enabling secure business operations. What you will be doing Own day-to-day operation of data security platforms Perform onboarding of new data sources and maintain scanning coverage across environments Continuously tune classification rules and validation processes to improve accuracy Optimize DLP policies and enforcement mechanisms to balance protection and usability Identify overexposed, misclassified, or unprotected sensitive data and drive remediation Conduct analysis of data exposure risks and recommend mitigation strategies Validate effectiveness of data protection controls (e.g., DLP, encryption, labeling) Support data-related incident investigations and provide root cause analysis Work with application, data, cloud, and business teams to improve data protection outcomes Guide stakeholders on data classification, labeling, and handling best practices Participate in working groups and governance forums to align on data security strategy Coordinate with SOC, Identity, and Privacy teams for integrated security operations Identify opportunities to automate data discovery, classification, and response workflows Improve operational processes for onboarding, tuning, and governance Stay current on evolving risks (e.g., insider threat, data leakage, AI/data misuse) Contribute to improvements in enterprise data security strategy and roadmap Support adoption of new capabilities related to data security and privacy What you bring Bachelor's degree in Cybersecurity, Computer Science, Information Systems 3 years of experience in data security, cybersecurity, or related domain Hands-on experience with at least one: o Data security platform (e.g., BigID, Varonis, Spirion) o DLP solution (e.g., Microsoft Purview, Forcepoint, Symantec) Strong understanding of: o Data classification and governance principles o Data protection techniques (DLP, encryption, tokenization) o Security frameworks (NIST, ISO 27001, CIS) Experience working in enterprise IT environments (cloud, endpoint, SaaS) Familiarity with Linux and Kubernetes environments Employee Benefits & Well-Being Genworth employees make a difference in people's lives every day. We're committed to making a difference in our employees' lives. Competitive Compensation & Total Rewards Incentives Comprehensive Healthcare Coverage Multiple 401(k) Savings Plan Options Auto Enrollment in Employer-Directed Retirement Account Feature (100% employer-funded!) Generous Paid Time Off - Including 12 Paid Holidays, Volunteer Time Off and Paid Family Leave Disability, Life, and Long Term Care Insurance Tuition Reimbursement, Student Loan Repayment and Training & Certification Support Wellness support including gym membership reimbursement and Employee Assistance Program resources (work/life support, financial & legal management) Caregiver and Mental Health Support Services ADDITIONAL INFORMATION National Range: $96,700 - $145,000 Disclaimer: This role is aligned to a national market-based pay range. Actual compensation will vary based on geographic location, experience, skills, and other job-related factors. In addition to base salary, this role is eligible to participate in a bonus incentive plan. Incentive compensation is based on individual and company performance and is not guaranteed.
08/09/2026
Full time
At Genworth, we empower families to navigate the aging journey with confidence. We are compassionate, experienced allies for those navigating care with guidance, products, and services that meet families where they are. Further, we are the spouses, children, siblings, friends, and neighbors of those that need care-and we bring those experiences with us to work in serving our millions of policyholders each day. We apply that same compassion and empathy as we work with each other and our local communities. Genworth values all perspectives, characteristics, and experiences so that employees can bring their full, authentic selves to work to help each other and our company succeed. We celebrate our diversity and understand that being intentional about inclusion is the only way to create a sense of belonging for all associates. We also invest in the vitality of our local communities through grants from the Genworth Foundation, event sponsorships, and employee volunteerism. Our four values guide our strategy, our decisions, and our interactions: Make it human. We care about the people that make up our customers, colleagues, and communities. Make it about others. We do what's best for our customers and collaborate to drive progress. Make it happen. We work with intention toward a common purpose and forge ways forward together. Make it better. We create fulfilling purpose-driven careers by learning from the world and each other. POSITION TITLE Senior Security Engineer, Data This role is not available for Sponsorship. POSITION LOCATION Richmond This position is available to Virginia residents as Richmond, Virginia in-office applicants A Hybrid schedule of both Remote and In-Office days is required. In office days are Tuesday, Wednesday and Thursday with working hours targeting our core business hours of 9am-5pm EST. YOUR ROLE Protecting sensitive enterprise data requires continuous visibility, governance, and enforcement across increasingly complex environments. As a Senior Security Engineer, Data, you will play a key role in operationalizing and scaling the organization's data security program. You will be responsible for managing and improving data discovery, classification, and protection capabilities. This includes tuning controls, validating effectiveness, and ensuring alignment with enterprise governance, risk, and compliance expectations. In this role, you will operate with a high degree of independence, partner with business and technical stakeholders, and contribute directly to reducing data exposure risk while enabling secure business operations. What you will be doing Own day-to-day operation of data security platforms Perform onboarding of new data sources and maintain scanning coverage across environments Continuously tune classification rules and validation processes to improve accuracy Optimize DLP policies and enforcement mechanisms to balance protection and usability Identify overexposed, misclassified, or unprotected sensitive data and drive remediation Conduct analysis of data exposure risks and recommend mitigation strategies Validate effectiveness of data protection controls (e.g., DLP, encryption, labeling) Support data-related incident investigations and provide root cause analysis Work with application, data, cloud, and business teams to improve data protection outcomes Guide stakeholders on data classification, labeling, and handling best practices Participate in working groups and governance forums to align on data security strategy Coordinate with SOC, Identity, and Privacy teams for integrated security operations Identify opportunities to automate data discovery, classification, and response workflows Improve operational processes for onboarding, tuning, and governance Stay current on evolving risks (e.g., insider threat, data leakage, AI/data misuse) Contribute to improvements in enterprise data security strategy and roadmap Support adoption of new capabilities related to data security and privacy What you bring Bachelor's degree in Cybersecurity, Computer Science, Information Systems 3 years of experience in data security, cybersecurity, or related domain Hands-on experience with at least one: o Data security platform (e.g., BigID, Varonis, Spirion) o DLP solution (e.g., Microsoft Purview, Forcepoint, Symantec) Strong understanding of: o Data classification and governance principles o Data protection techniques (DLP, encryption, tokenization) o Security frameworks (NIST, ISO 27001, CIS) Experience working in enterprise IT environments (cloud, endpoint, SaaS) Familiarity with Linux and Kubernetes environments Employee Benefits & Well-Being Genworth employees make a difference in people's lives every day. We're committed to making a difference in our employees' lives. Competitive Compensation & Total Rewards Incentives Comprehensive Healthcare Coverage Multiple 401(k) Savings Plan Options Auto Enrollment in Employer-Directed Retirement Account Feature (100% employer-funded!) Generous Paid Time Off - Including 12 Paid Holidays, Volunteer Time Off and Paid Family Leave Disability, Life, and Long Term Care Insurance Tuition Reimbursement, Student Loan Repayment and Training & Certification Support Wellness support including gym membership reimbursement and Employee Assistance Program resources (work/life support, financial & legal management) Caregiver and Mental Health Support Services ADDITIONAL INFORMATION National Range: $96,700 - $145,000 Disclaimer: This role is aligned to a national market-based pay range. Actual compensation will vary based on geographic location, experience, skills, and other job-related factors. In addition to base salary, this role is eligible to participate in a bonus incentive plan. Incentive compensation is based on individual and company performance and is not guaranteed.
Charter Manufacturing is a fourth-generation family-owned business where our will to grow drives us to do it better. Join the team and become part of our family! The Automation team at Charter Casting is hiring a Digital Process Automation Engineer! Alternative Job Titles: Manufacturing Automation Engineer, MES & Automation Engineer, OT Systems Automation Engineer, Digital Automation Engineer, Manufacturing Systems Engineer Charter Casting is a U.S.-based manufacturer of large complex iron castings and DuraBar , the industry's leading continuous cast iron bar. Charter Casting is a member of the Charter Manufacturing family of companies. Job Summary: Lead the design and execution of advanced automation and OT solutions across the business unit. Partner with cross-functional teams to identify and solve complex production and business challenges, establish standards, and drive scalable improvements. Position specifics: Location: Woodstock IL Travel: Up to 10% to other Charter Manufacturing facilities Relocation: Relocation benefits available Applicants must be authorized to work for any employer in the U.S. Charter Manufacturing is unable to sponsor for employment visas at this time. Key responsibilities: Architect and lead MES, HMI, and production system solutions Serve as the technical authority for solution architecture across MES and software automation platforms within the business unit Define OT system architecture and integration strategies Lead complex automation initiatives across OT and IT systems using software automation platforms Establish and scale enterprise-grade automation frameworks and reusable solutions Identify and solve production, quality, and efficiency challenges Establish standards, frameworks, and best practices Oversee system integrations across MES and controls layers Lead commissioning, upgrades, and large-scale implementations Mentor engineers and develop team capabilities Drive adoption of emerging technologies and continuous improvement Lead deployment, commissioning, and validation of solutions in production environments Ensure data integrity, quality, and consistency across integrated systems and reporting solutions Drive user adoption and change management across the business unit Maintain version control, documentation, and traceability for solutions Follow Environmental, Quality, and Safety Management System procedures and requirements Support systems operating in a 24/7 manufacturing environment as required What you'll need: Bachelor's Degree in Engineering, Computer Science, or related field 6+ years of experience in OT systems, software automation platforms, or software engineering Strong experience with MES, system integration, and software automation platforms Experience with database and data tools such as Microsoft SQL Server (MSSQL), Snowflake data lake, and Alteryx Experience with GenAI platforms and tools Advanced programming and system architecture experience Experience leading projects and cross-functional initiatives Strong communication, leadership, and problem-solving skills Nice to haves: Experience with large-scale MES implementations, including Rockwell FactoryTalk ProductionCentre Deep experience with software automation platforms (RPA, low-code/no-code, workflow orchestration tools), preferably Automation Anywhere Experience with AI/GenAI-enabled automation solutions Experience managing vendors and external partners Knowledge of manufacturing standards (ISA-95, IEC/ISO 62264) Experience with cloud platforms and enterprise architectures Experience with cybersecurity principles and practices in OT and IT environments Experience applying Lean, Six Sigma, or continuous improvement methodologies Take the next step in your career, apply today! The annual hiring range for this position is: $100,000-$125,000. The actual base pay offered to the successful candidate will depend on various factors, including but not limited to job-related skills, experience, and qualifications. Compensation decisions are tailored to the unique circumstances of each position and candidate. We offer comprehensive health, dental, and vision benefits, along with a 401(k) plan that includes employer matching and profit sharing. Additionally, we offer company-paid life insurance, disability coverage, and paid time off (PTO).
08/09/2026
Full time
Charter Manufacturing is a fourth-generation family-owned business where our will to grow drives us to do it better. Join the team and become part of our family! The Automation team at Charter Casting is hiring a Digital Process Automation Engineer! Alternative Job Titles: Manufacturing Automation Engineer, MES & Automation Engineer, OT Systems Automation Engineer, Digital Automation Engineer, Manufacturing Systems Engineer Charter Casting is a U.S.-based manufacturer of large complex iron castings and DuraBar , the industry's leading continuous cast iron bar. Charter Casting is a member of the Charter Manufacturing family of companies. Job Summary: Lead the design and execution of advanced automation and OT solutions across the business unit. Partner with cross-functional teams to identify and solve complex production and business challenges, establish standards, and drive scalable improvements. Position specifics: Location: Woodstock IL Travel: Up to 10% to other Charter Manufacturing facilities Relocation: Relocation benefits available Applicants must be authorized to work for any employer in the U.S. Charter Manufacturing is unable to sponsor for employment visas at this time. Key responsibilities: Architect and lead MES, HMI, and production system solutions Serve as the technical authority for solution architecture across MES and software automation platforms within the business unit Define OT system architecture and integration strategies Lead complex automation initiatives across OT and IT systems using software automation platforms Establish and scale enterprise-grade automation frameworks and reusable solutions Identify and solve production, quality, and efficiency challenges Establish standards, frameworks, and best practices Oversee system integrations across MES and controls layers Lead commissioning, upgrades, and large-scale implementations Mentor engineers and develop team capabilities Drive adoption of emerging technologies and continuous improvement Lead deployment, commissioning, and validation of solutions in production environments Ensure data integrity, quality, and consistency across integrated systems and reporting solutions Drive user adoption and change management across the business unit Maintain version control, documentation, and traceability for solutions Follow Environmental, Quality, and Safety Management System procedures and requirements Support systems operating in a 24/7 manufacturing environment as required What you'll need: Bachelor's Degree in Engineering, Computer Science, or related field 6+ years of experience in OT systems, software automation platforms, or software engineering Strong experience with MES, system integration, and software automation platforms Experience with database and data tools such as Microsoft SQL Server (MSSQL), Snowflake data lake, and Alteryx Experience with GenAI platforms and tools Advanced programming and system architecture experience Experience leading projects and cross-functional initiatives Strong communication, leadership, and problem-solving skills Nice to haves: Experience with large-scale MES implementations, including Rockwell FactoryTalk ProductionCentre Deep experience with software automation platforms (RPA, low-code/no-code, workflow orchestration tools), preferably Automation Anywhere Experience with AI/GenAI-enabled automation solutions Experience managing vendors and external partners Knowledge of manufacturing standards (ISA-95, IEC/ISO 62264) Experience with cloud platforms and enterprise architectures Experience with cybersecurity principles and practices in OT and IT environments Experience applying Lean, Six Sigma, or continuous improvement methodologies Take the next step in your career, apply today! The annual hiring range for this position is: $100,000-$125,000. The actual base pay offered to the successful candidate will depend on various factors, including but not limited to job-related skills, experience, and qualifications. Compensation decisions are tailored to the unique circumstances of each position and candidate. We offer comprehensive health, dental, and vision benefits, along with a 401(k) plan that includes employer matching and profit sharing. Additionally, we offer company-paid life insurance, disability coverage, and paid time off (PTO).
Charter Manufacturing is a fourth-generation family-owned business where our will to grow drives us to do it better. Join the team and become part of our family! The Automation team at Charter Casting is hiring a Digital Process Automation Engineer! Alternative Job Titles: Manufacturing Automation Engineer, MES & Automation Engineer, OT Systems Automation Engineer, Digital Automation Engineer, Manufacturing Systems Engineer Charter Casting is a U.S.-based manufacturer of large complex iron castings and DuraBar , the industry's leading continuous cast iron bar. Charter Casting is a member of the Charter Manufacturing family of companies. Job Summary: Lead the design and execution of advanced automation and OT solutions across the business unit. Partner with cross-functional teams to identify and solve complex production and business challenges, establish standards, and drive scalable improvements. Position specifics: Location: Woodstock IL Travel: Up to 10% to other Charter Manufacturing facilities Relocation: Relocation benefits available Applicants must be authorized to work for any employer in the U.S. Charter Manufacturing is unable to sponsor for employment visas at this time. Key responsibilities: Architect and lead MES, HMI, and production system solutions Serve as the technical authority for solution architecture across MES and software automation platforms within the business unit Define OT system architecture and integration strategies Lead complex automation initiatives across OT and IT systems using software automation platforms Establish and scale enterprise-grade automation frameworks and reusable solutions Identify and solve production, quality, and efficiency challenges Establish standards, frameworks, and best practices Oversee system integrations across MES and controls layers Lead commissioning, upgrades, and large-scale implementations Mentor engineers and develop team capabilities Drive adoption of emerging technologies and continuous improvement Lead deployment, commissioning, and validation of solutions in production environments Ensure data integrity, quality, and consistency across integrated systems and reporting solutions Drive user adoption and change management across the business unit Maintain version control, documentation, and traceability for solutions Follow Environmental, Quality, and Safety Management System procedures and requirements Support systems operating in a 24/7 manufacturing environment as required What you'll need: Bachelor's Degree in Engineering, Computer Science, or related field 6+ years of experience in OT systems, software automation platforms, or software engineering Strong experience with MES, system integration, and software automation platforms Experience with database and data tools such as Microsoft SQL Server (MSSQL), Snowflake data lake, and Alteryx Experience with GenAI platforms and tools Advanced programming and system architecture experience Experience leading projects and cross-functional initiatives Strong communication, leadership, and problem-solving skills Nice to haves: Experience with large-scale MES implementations, including Rockwell FactoryTalk ProductionCentre Deep experience with software automation platforms (RPA, low-code/no-code, workflow orchestration tools), preferably Automation Anywhere Experience with AI/GenAI-enabled automation solutions Experience managing vendors and external partners Knowledge of manufacturing standards (ISA-95, IEC/ISO 62264) Experience with cloud platforms and enterprise architectures Experience with cybersecurity principles and practices in OT and IT environments Experience applying Lean, Six Sigma, or continuous improvement methodologies Take the next step in your career, apply today! The annual hiring range for this position is: $100,000-$125,000. The actual base pay offered to the successful candidate will depend on various factors, including but not limited to job-related skills, experience, and qualifications. Compensation decisions are tailored to the unique circumstances of each position and candidate. We offer comprehensive health, dental, and vision benefits, along with a 401(k) plan that includes employer matching and profit sharing. Additionally, we offer company-paid life insurance, disability coverage, and paid time off (PTO).
08/09/2026
Full time
Charter Manufacturing is a fourth-generation family-owned business where our will to grow drives us to do it better. Join the team and become part of our family! The Automation team at Charter Casting is hiring a Digital Process Automation Engineer! Alternative Job Titles: Manufacturing Automation Engineer, MES & Automation Engineer, OT Systems Automation Engineer, Digital Automation Engineer, Manufacturing Systems Engineer Charter Casting is a U.S.-based manufacturer of large complex iron castings and DuraBar , the industry's leading continuous cast iron bar. Charter Casting is a member of the Charter Manufacturing family of companies. Job Summary: Lead the design and execution of advanced automation and OT solutions across the business unit. Partner with cross-functional teams to identify and solve complex production and business challenges, establish standards, and drive scalable improvements. Position specifics: Location: Woodstock IL Travel: Up to 10% to other Charter Manufacturing facilities Relocation: Relocation benefits available Applicants must be authorized to work for any employer in the U.S. Charter Manufacturing is unable to sponsor for employment visas at this time. Key responsibilities: Architect and lead MES, HMI, and production system solutions Serve as the technical authority for solution architecture across MES and software automation platforms within the business unit Define OT system architecture and integration strategies Lead complex automation initiatives across OT and IT systems using software automation platforms Establish and scale enterprise-grade automation frameworks and reusable solutions Identify and solve production, quality, and efficiency challenges Establish standards, frameworks, and best practices Oversee system integrations across MES and controls layers Lead commissioning, upgrades, and large-scale implementations Mentor engineers and develop team capabilities Drive adoption of emerging technologies and continuous improvement Lead deployment, commissioning, and validation of solutions in production environments Ensure data integrity, quality, and consistency across integrated systems and reporting solutions Drive user adoption and change management across the business unit Maintain version control, documentation, and traceability for solutions Follow Environmental, Quality, and Safety Management System procedures and requirements Support systems operating in a 24/7 manufacturing environment as required What you'll need: Bachelor's Degree in Engineering, Computer Science, or related field 6+ years of experience in OT systems, software automation platforms, or software engineering Strong experience with MES, system integration, and software automation platforms Experience with database and data tools such as Microsoft SQL Server (MSSQL), Snowflake data lake, and Alteryx Experience with GenAI platforms and tools Advanced programming and system architecture experience Experience leading projects and cross-functional initiatives Strong communication, leadership, and problem-solving skills Nice to haves: Experience with large-scale MES implementations, including Rockwell FactoryTalk ProductionCentre Deep experience with software automation platforms (RPA, low-code/no-code, workflow orchestration tools), preferably Automation Anywhere Experience with AI/GenAI-enabled automation solutions Experience managing vendors and external partners Knowledge of manufacturing standards (ISA-95, IEC/ISO 62264) Experience with cloud platforms and enterprise architectures Experience with cybersecurity principles and practices in OT and IT environments Experience applying Lean, Six Sigma, or continuous improvement methodologies Take the next step in your career, apply today! The annual hiring range for this position is: $100,000-$125,000. The actual base pay offered to the successful candidate will depend on various factors, including but not limited to job-related skills, experience, and qualifications. Compensation decisions are tailored to the unique circumstances of each position and candidate. We offer comprehensive health, dental, and vision benefits, along with a 401(k) plan that includes employer matching and profit sharing. Additionally, we offer company-paid life insurance, disability coverage, and paid time off (PTO).
Charter Manufacturing is a fourth-generation family-owned business where our will to grow drives us to do it better. Join the team and become part of our family! The Automation team at Charter Casting is hiring a Digital Process Automation Engineer! Alternative Job Titles: Manufacturing Automation Engineer, MES & Automation Engineer, OT Systems Automation Engineer, Digital Automation Engineer, Manufacturing Systems Engineer Charter Casting is a U.S.-based manufacturer of large complex iron castings and DuraBar , the industry's leading continuous cast iron bar. Charter Casting is a member of the Charter Manufacturing family of companies. Job Summary: Lead the design and execution of advanced automation and OT solutions across the business unit. Partner with cross-functional teams to identify and solve complex production and business challenges, establish standards, and drive scalable improvements. Position specifics: Location: Woodstock IL Travel: Up to 10% to other Charter Manufacturing facilities Relocation: Relocation benefits available Applicants must be authorized to work for any employer in the U.S. Charter Manufacturing is unable to sponsor for employment visas at this time. Key responsibilities: Architect and lead MES, HMI, and production system solutions Serve as the technical authority for solution architecture across MES and software automation platforms within the business unit Define OT system architecture and integration strategies Lead complex automation initiatives across OT and IT systems using software automation platforms Establish and scale enterprise-grade automation frameworks and reusable solutions Identify and solve production, quality, and efficiency challenges Establish standards, frameworks, and best practices Oversee system integrations across MES and controls layers Lead commissioning, upgrades, and large-scale implementations Mentor engineers and develop team capabilities Drive adoption of emerging technologies and continuous improvement Lead deployment, commissioning, and validation of solutions in production environments Ensure data integrity, quality, and consistency across integrated systems and reporting solutions Drive user adoption and change management across the business unit Maintain version control, documentation, and traceability for solutions Follow Environmental, Quality, and Safety Management System procedures and requirements Support systems operating in a 24/7 manufacturing environment as required What you'll need: Bachelor's Degree in Engineering, Computer Science, or related field 6+ years of experience in OT systems, software automation platforms, or software engineering Strong experience with MES, system integration, and software automation platforms Experience with database and data tools such as Microsoft SQL Server (MSSQL), Snowflake data lake, and Alteryx Experience with GenAI platforms and tools Advanced programming and system architecture experience Experience leading projects and cross-functional initiatives Strong communication, leadership, and problem-solving skills Nice to haves: Experience with large-scale MES implementations, including Rockwell FactoryTalk ProductionCentre Deep experience with software automation platforms (RPA, low-code/no-code, workflow orchestration tools), preferably Automation Anywhere Experience with AI/GenAI-enabled automation solutions Experience managing vendors and external partners Knowledge of manufacturing standards (ISA-95, IEC/ISO 62264) Experience with cloud platforms and enterprise architectures Experience with cybersecurity principles and practices in OT and IT environments Experience applying Lean, Six Sigma, or continuous improvement methodologies Take the next step in your career, apply today! The annual hiring range for this position is: $100,000-$125,000. The actual base pay offered to the successful candidate will depend on various factors, including but not limited to job-related skills, experience, and qualifications. Compensation decisions are tailored to the unique circumstances of each position and candidate. We offer comprehensive health, dental, and vision benefits, along with a 401(k) plan that includes employer matching and profit sharing. Additionally, we offer company-paid life insurance, disability coverage, and paid time off (PTO).
08/09/2026
Full time
Charter Manufacturing is a fourth-generation family-owned business where our will to grow drives us to do it better. Join the team and become part of our family! The Automation team at Charter Casting is hiring a Digital Process Automation Engineer! Alternative Job Titles: Manufacturing Automation Engineer, MES & Automation Engineer, OT Systems Automation Engineer, Digital Automation Engineer, Manufacturing Systems Engineer Charter Casting is a U.S.-based manufacturer of large complex iron castings and DuraBar , the industry's leading continuous cast iron bar. Charter Casting is a member of the Charter Manufacturing family of companies. Job Summary: Lead the design and execution of advanced automation and OT solutions across the business unit. Partner with cross-functional teams to identify and solve complex production and business challenges, establish standards, and drive scalable improvements. Position specifics: Location: Woodstock IL Travel: Up to 10% to other Charter Manufacturing facilities Relocation: Relocation benefits available Applicants must be authorized to work for any employer in the U.S. Charter Manufacturing is unable to sponsor for employment visas at this time. Key responsibilities: Architect and lead MES, HMI, and production system solutions Serve as the technical authority for solution architecture across MES and software automation platforms within the business unit Define OT system architecture and integration strategies Lead complex automation initiatives across OT and IT systems using software automation platforms Establish and scale enterprise-grade automation frameworks and reusable solutions Identify and solve production, quality, and efficiency challenges Establish standards, frameworks, and best practices Oversee system integrations across MES and controls layers Lead commissioning, upgrades, and large-scale implementations Mentor engineers and develop team capabilities Drive adoption of emerging technologies and continuous improvement Lead deployment, commissioning, and validation of solutions in production environments Ensure data integrity, quality, and consistency across integrated systems and reporting solutions Drive user adoption and change management across the business unit Maintain version control, documentation, and traceability for solutions Follow Environmental, Quality, and Safety Management System procedures and requirements Support systems operating in a 24/7 manufacturing environment as required What you'll need: Bachelor's Degree in Engineering, Computer Science, or related field 6+ years of experience in OT systems, software automation platforms, or software engineering Strong experience with MES, system integration, and software automation platforms Experience with database and data tools such as Microsoft SQL Server (MSSQL), Snowflake data lake, and Alteryx Experience with GenAI platforms and tools Advanced programming and system architecture experience Experience leading projects and cross-functional initiatives Strong communication, leadership, and problem-solving skills Nice to haves: Experience with large-scale MES implementations, including Rockwell FactoryTalk ProductionCentre Deep experience with software automation platforms (RPA, low-code/no-code, workflow orchestration tools), preferably Automation Anywhere Experience with AI/GenAI-enabled automation solutions Experience managing vendors and external partners Knowledge of manufacturing standards (ISA-95, IEC/ISO 62264) Experience with cloud platforms and enterprise architectures Experience with cybersecurity principles and practices in OT and IT environments Experience applying Lean, Six Sigma, or continuous improvement methodologies Take the next step in your career, apply today! The annual hiring range for this position is: $100,000-$125,000. The actual base pay offered to the successful candidate will depend on various factors, including but not limited to job-related skills, experience, and qualifications. Compensation decisions are tailored to the unique circumstances of each position and candidate. We offer comprehensive health, dental, and vision benefits, along with a 401(k) plan that includes employer matching and profit sharing. Additionally, we offer company-paid life insurance, disability coverage, and paid time off (PTO).
Charter Manufacturing is a fourth-generation family-owned business where our will to grow drives us to do it better. Join the team and become part of our family! The Automation team at Charter Casting is hiring a Digital Process Automation Engineer! Alternative Job Titles: Manufacturing Automation Engineer, MES & Automation Engineer, OT Systems Automation Engineer, Digital Automation Engineer, Manufacturing Systems Engineer Charter Casting is a U.S.-based manufacturer of large complex iron castings and DuraBar , the industry's leading continuous cast iron bar. Charter Casting is a member of the Charter Manufacturing family of companies. Job Summary: Lead the design and execution of advanced automation and OT solutions across the business unit. Partner with cross-functional teams to identify and solve complex production and business challenges, establish standards, and drive scalable improvements. Position specifics: Location: Woodstock IL Travel: Up to 10% to other Charter Manufacturing facilities Relocation: Relocation benefits available Applicants must be authorized to work for any employer in the U.S. Charter Manufacturing is unable to sponsor for employment visas at this time. Key responsibilities: Architect and lead MES, HMI, and production system solutions Serve as the technical authority for solution architecture across MES and software automation platforms within the business unit Define OT system architecture and integration strategies Lead complex automation initiatives across OT and IT systems using software automation platforms Establish and scale enterprise-grade automation frameworks and reusable solutions Identify and solve production, quality, and efficiency challenges Establish standards, frameworks, and best practices Oversee system integrations across MES and controls layers Lead commissioning, upgrades, and large-scale implementations Mentor engineers and develop team capabilities Drive adoption of emerging technologies and continuous improvement Lead deployment, commissioning, and validation of solutions in production environments Ensure data integrity, quality, and consistency across integrated systems and reporting solutions Drive user adoption and change management across the business unit Maintain version control, documentation, and traceability for solutions Follow Environmental, Quality, and Safety Management System procedures and requirements Support systems operating in a 24/7 manufacturing environment as required What you'll need: Bachelor's Degree in Engineering, Computer Science, or related field 6+ years of experience in OT systems, software automation platforms, or software engineering Strong experience with MES, system integration, and software automation platforms Experience with database and data tools such as Microsoft SQL Server (MSSQL), Snowflake data lake, and Alteryx Experience with GenAI platforms and tools Advanced programming and system architecture experience Experience leading projects and cross-functional initiatives Strong communication, leadership, and problem-solving skills Nice to haves: Experience with large-scale MES implementations, including Rockwell FactoryTalk ProductionCentre Deep experience with software automation platforms (RPA, low-code/no-code, workflow orchestration tools), preferably Automation Anywhere Experience with AI/GenAI-enabled automation solutions Experience managing vendors and external partners Knowledge of manufacturing standards (ISA-95, IEC/ISO 62264) Experience with cloud platforms and enterprise architectures Experience with cybersecurity principles and practices in OT and IT environments Experience applying Lean, Six Sigma, or continuous improvement methodologies Take the next step in your career, apply today! The annual hiring range for this position is: $100,000-$125,000. The actual base pay offered to the successful candidate will depend on various factors, including but not limited to job-related skills, experience, and qualifications. Compensation decisions are tailored to the unique circumstances of each position and candidate. We offer comprehensive health, dental, and vision benefits, along with a 401(k) plan that includes employer matching and profit sharing. Additionally, we offer company-paid life insurance, disability coverage, and paid time off (PTO).
08/09/2026
Full time
Charter Manufacturing is a fourth-generation family-owned business where our will to grow drives us to do it better. Join the team and become part of our family! The Automation team at Charter Casting is hiring a Digital Process Automation Engineer! Alternative Job Titles: Manufacturing Automation Engineer, MES & Automation Engineer, OT Systems Automation Engineer, Digital Automation Engineer, Manufacturing Systems Engineer Charter Casting is a U.S.-based manufacturer of large complex iron castings and DuraBar , the industry's leading continuous cast iron bar. Charter Casting is a member of the Charter Manufacturing family of companies. Job Summary: Lead the design and execution of advanced automation and OT solutions across the business unit. Partner with cross-functional teams to identify and solve complex production and business challenges, establish standards, and drive scalable improvements. Position specifics: Location: Woodstock IL Travel: Up to 10% to other Charter Manufacturing facilities Relocation: Relocation benefits available Applicants must be authorized to work for any employer in the U.S. Charter Manufacturing is unable to sponsor for employment visas at this time. Key responsibilities: Architect and lead MES, HMI, and production system solutions Serve as the technical authority for solution architecture across MES and software automation platforms within the business unit Define OT system architecture and integration strategies Lead complex automation initiatives across OT and IT systems using software automation platforms Establish and scale enterprise-grade automation frameworks and reusable solutions Identify and solve production, quality, and efficiency challenges Establish standards, frameworks, and best practices Oversee system integrations across MES and controls layers Lead commissioning, upgrades, and large-scale implementations Mentor engineers and develop team capabilities Drive adoption of emerging technologies and continuous improvement Lead deployment, commissioning, and validation of solutions in production environments Ensure data integrity, quality, and consistency across integrated systems and reporting solutions Drive user adoption and change management across the business unit Maintain version control, documentation, and traceability for solutions Follow Environmental, Quality, and Safety Management System procedures and requirements Support systems operating in a 24/7 manufacturing environment as required What you'll need: Bachelor's Degree in Engineering, Computer Science, or related field 6+ years of experience in OT systems, software automation platforms, or software engineering Strong experience with MES, system integration, and software automation platforms Experience with database and data tools such as Microsoft SQL Server (MSSQL), Snowflake data lake, and Alteryx Experience with GenAI platforms and tools Advanced programming and system architecture experience Experience leading projects and cross-functional initiatives Strong communication, leadership, and problem-solving skills Nice to haves: Experience with large-scale MES implementations, including Rockwell FactoryTalk ProductionCentre Deep experience with software automation platforms (RPA, low-code/no-code, workflow orchestration tools), preferably Automation Anywhere Experience with AI/GenAI-enabled automation solutions Experience managing vendors and external partners Knowledge of manufacturing standards (ISA-95, IEC/ISO 62264) Experience with cloud platforms and enterprise architectures Experience with cybersecurity principles and practices in OT and IT environments Experience applying Lean, Six Sigma, or continuous improvement methodologies Take the next step in your career, apply today! The annual hiring range for this position is: $100,000-$125,000. The actual base pay offered to the successful candidate will depend on various factors, including but not limited to job-related skills, experience, and qualifications. Compensation decisions are tailored to the unique circumstances of each position and candidate. We offer comprehensive health, dental, and vision benefits, along with a 401(k) plan that includes employer matching and profit sharing. Additionally, we offer company-paid life insurance, disability coverage, and paid time off (PTO).
Rochester Precision Optics LLC
West Henrietta, New York
Title Systems Administrator Department Information Technology (IT) Reports to Information Technology Manager SEE YOUR CAREER THROUGH A NEW LENS WITH RPO! RPO is a global leader in precision optics, optical components, and optical assemblies. We specialize in a full spectrum of products & services including - Design and Engineering, Systems Integration, Lens Assembly, Visible and Infrared Components, Glass and Plastic Molded Aspheres, and Thin Film Coating. As one of the fastest growing companies in Rochester, RPO offers exciting career paths and work on market-leading programs. See below one of many career opportunities to join the RPO team! Position Overview Rochester Precision Optics LLC. (RPO) is seeking an experienced Systems Administrator to support the day-to-day operation, stability, and continuous improvement of our enterprise infrastructure supporting approximately 300 users across both corporate and manufacturing operations. Our environment relies on someone who can confidently administer Windows Server, Active Directory, virtualization, and Microsoft 365 while also supporting the network infrastructure that connects it all. The ideal candidate has a strong systems administration foundation with hands-on experience supporting enterprise networking, including switches, firewalls, VLANs, VPNs, and wireless technologies. Working closely with the IT Manager, you'll play a key role in maintaining a secure, reliable, and high-performing IT environment while contributing to infrastructure modernization, cybersecurity initiatives, and strategic technology projects. This is an opportunity for someone who enjoys solving complex infrastructure challenges, takes ownership of their work, and wants to make a measurable impact across the organization. Key Responsibilities: Systems Administration & Infrastructure Management Administer and maintain Windows Server environments, Active Directory, Group Policy, DNS, DHCP, and core Microsoft infrastructure services. Support VMware or Hyper-V virtualization environments, server resources, storage systems, and enterprise backup solutions. Perform system maintenance including patching, upgrades, configuration changes, and troubleshooting. Support Microsoft 365 services including Exchange Online, Teams, and Entra ID. Maintain infrastructure documentation, system standards, and technical procedures. Network Infrastructure Support Support enterprise network infrastructure including switches, firewalls, VPNs, and wireless networks. Troubleshoot VLANs, routing, subnetting, network connectivity, and security controls. Assist with network upgrades, infrastructure expansion projects, and technology improvements. Support network-connected systems including VoIP, security systems, and other enterprise technologies. Security & Operational Support Assist with infrastructure security initiatives, including system hardening, vulnerability remediation, and cybersecurity best practices. Assist with compliance initiatives related to NIST 800-171 and CMMC 2.0. Serve as a Tier II/Tier III escalation resource for complex systems and infrastructure issues. Partner with the IT Manager on infrastructure projects, technology improvements, and long-term planning. Knowledge, Skills, and Abilities: Bachelor's degree in information technology, Computer Science, or a related field preferred, or equivalent combination of education and hands-on experience. 4+ years of experience supporting enterprise IT infrastructure in a Systems Administrator, Infrastructure Administrator, Network Administrator, or similar role. Strong experience administering Windows Server environments, Active Directory, Group Policy, DNS, and DHCP. Experience supporting Microsoft 365 environments, including Exchange Online, Teams, and Entra ID. Experience supporting virtualization platforms such as VMware or Hyper-V. Experience administering and troubleshooting enterprise network infrastructure, including switches, VLANs, firewalls, VPNs, and wireless technologies. Experience supporting enterprise backup solutions, such as Veeam, and disaster recovery. Familiarity with endpoint management, software deployment, and security tools. Strong troubleshooting and problem-solving skills with the ability to independently diagnose and resolve complex technical issues. Ability to effectively communicate technical information and collaborate with both technical and non-technical teams. Preferred Qualifications Experience with cybersecurity frameworks or compliance requirements such as NIST 800-171 or CMMC. Experience with Microsoft Intune, Endpoint Central, or similar endpoint management platforms. PowerShell scripting or automation experience. Experience supporting ERP systems, SQL Server environments, or other business-critical applications. Industry certifications such as Network+, Security+, Microsoft, VMware, or Cisco certifications are a plus! Additional Requirements: Pursuant to ITAR, EAR, and other export compliance laws and regulations, applicants for this position must be U.S. Persons as defined by U.S. law, i.e., U.S. citizens, lawful permanent residents ("Green Card" holders), persons granted refugee status or asylum status in the United States, or temporary residents granted amnesty. Compensation & Benefits: Competitive compensation package linked to your experience and performance. 401(k) with company match and Tuition Reimbursement opportunities. Health, dental, vision, HSA, & life insurance. Paid time off including vacation, sick time, and 11 paid company holidays Work Requirements & Physical Demands: This is an on-site, hands-on IT role supporting both corporate office and manufacturing operations. The Systems Administrator will work in a collaborative environment where technology directly supports critical business and production processes. The role requires regular interaction with computer systems, servers, network equipment, and end-user technology across the organization. Occasional movement throughout the facility may be required to support infrastructure, troubleshoot equipment, and assist with technology deployments. Physical requirements may include: Ability to sit, stand, and work at a computer for extended periods. Ability to walk throughout office and manufacturing areas. Ability to lift, carry, and install IT equipment such as computers, monitors, networking equipment, and related hardware (typically up to 50 lbs.). Ability to work in both office and manufacturing environments while following applicable safety requirements. Occasional after-hours support may be required for scheduled maintenance, upgrades, or critical infrastructure issues. Disclaimer: This job description reflects management's assignment of essential functions; it does not prescribe or restrict the tasks that may be assigned. The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not to be construed as an exhaustive list of all responsibilities, duties, and skills required of personnel so classified. All personnel may be required to perform duties outside of their normal responsibilities from time to time, as needed. Rochester Precision Optics is committed to leveraging the talent of a diverse workforce to create great opportunities for our business and our people. EOE/AA/Race/Gender/Disability/Veteran In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States, and to complete This is a full-time, on-site position based at our West Henrietta, NY facility. The standard work schedule is Monday through Friday, 7:00 AM to 3:30 PM. Participation in an occasional rotating on-call schedule is required to provide after-hours support for critical infrastructure issues, planned maintenance, and emergency response as needed. Compensation details: 0 Yearly Salary PIbc2cfe6-
08/09/2026
Full time
Title Systems Administrator Department Information Technology (IT) Reports to Information Technology Manager SEE YOUR CAREER THROUGH A NEW LENS WITH RPO! RPO is a global leader in precision optics, optical components, and optical assemblies. We specialize in a full spectrum of products & services including - Design and Engineering, Systems Integration, Lens Assembly, Visible and Infrared Components, Glass and Plastic Molded Aspheres, and Thin Film Coating. As one of the fastest growing companies in Rochester, RPO offers exciting career paths and work on market-leading programs. See below one of many career opportunities to join the RPO team! Position Overview Rochester Precision Optics LLC. (RPO) is seeking an experienced Systems Administrator to support the day-to-day operation, stability, and continuous improvement of our enterprise infrastructure supporting approximately 300 users across both corporate and manufacturing operations. Our environment relies on someone who can confidently administer Windows Server, Active Directory, virtualization, and Microsoft 365 while also supporting the network infrastructure that connects it all. The ideal candidate has a strong systems administration foundation with hands-on experience supporting enterprise networking, including switches, firewalls, VLANs, VPNs, and wireless technologies. Working closely with the IT Manager, you'll play a key role in maintaining a secure, reliable, and high-performing IT environment while contributing to infrastructure modernization, cybersecurity initiatives, and strategic technology projects. This is an opportunity for someone who enjoys solving complex infrastructure challenges, takes ownership of their work, and wants to make a measurable impact across the organization. Key Responsibilities: Systems Administration & Infrastructure Management Administer and maintain Windows Server environments, Active Directory, Group Policy, DNS, DHCP, and core Microsoft infrastructure services. Support VMware or Hyper-V virtualization environments, server resources, storage systems, and enterprise backup solutions. Perform system maintenance including patching, upgrades, configuration changes, and troubleshooting. Support Microsoft 365 services including Exchange Online, Teams, and Entra ID. Maintain infrastructure documentation, system standards, and technical procedures. Network Infrastructure Support Support enterprise network infrastructure including switches, firewalls, VPNs, and wireless networks. Troubleshoot VLANs, routing, subnetting, network connectivity, and security controls. Assist with network upgrades, infrastructure expansion projects, and technology improvements. Support network-connected systems including VoIP, security systems, and other enterprise technologies. Security & Operational Support Assist with infrastructure security initiatives, including system hardening, vulnerability remediation, and cybersecurity best practices. Assist with compliance initiatives related to NIST 800-171 and CMMC 2.0. Serve as a Tier II/Tier III escalation resource for complex systems and infrastructure issues. Partner with the IT Manager on infrastructure projects, technology improvements, and long-term planning. Knowledge, Skills, and Abilities: Bachelor's degree in information technology, Computer Science, or a related field preferred, or equivalent combination of education and hands-on experience. 4+ years of experience supporting enterprise IT infrastructure in a Systems Administrator, Infrastructure Administrator, Network Administrator, or similar role. Strong experience administering Windows Server environments, Active Directory, Group Policy, DNS, and DHCP. Experience supporting Microsoft 365 environments, including Exchange Online, Teams, and Entra ID. Experience supporting virtualization platforms such as VMware or Hyper-V. Experience administering and troubleshooting enterprise network infrastructure, including switches, VLANs, firewalls, VPNs, and wireless technologies. Experience supporting enterprise backup solutions, such as Veeam, and disaster recovery. Familiarity with endpoint management, software deployment, and security tools. Strong troubleshooting and problem-solving skills with the ability to independently diagnose and resolve complex technical issues. Ability to effectively communicate technical information and collaborate with both technical and non-technical teams. Preferred Qualifications Experience with cybersecurity frameworks or compliance requirements such as NIST 800-171 or CMMC. Experience with Microsoft Intune, Endpoint Central, or similar endpoint management platforms. PowerShell scripting or automation experience. Experience supporting ERP systems, SQL Server environments, or other business-critical applications. Industry certifications such as Network+, Security+, Microsoft, VMware, or Cisco certifications are a plus! Additional Requirements: Pursuant to ITAR, EAR, and other export compliance laws and regulations, applicants for this position must be U.S. Persons as defined by U.S. law, i.e., U.S. citizens, lawful permanent residents ("Green Card" holders), persons granted refugee status or asylum status in the United States, or temporary residents granted amnesty. Compensation & Benefits: Competitive compensation package linked to your experience and performance. 401(k) with company match and Tuition Reimbursement opportunities. Health, dental, vision, HSA, & life insurance. Paid time off including vacation, sick time, and 11 paid company holidays Work Requirements & Physical Demands: This is an on-site, hands-on IT role supporting both corporate office and manufacturing operations. The Systems Administrator will work in a collaborative environment where technology directly supports critical business and production processes. The role requires regular interaction with computer systems, servers, network equipment, and end-user technology across the organization. Occasional movement throughout the facility may be required to support infrastructure, troubleshoot equipment, and assist with technology deployments. Physical requirements may include: Ability to sit, stand, and work at a computer for extended periods. Ability to walk throughout office and manufacturing areas. Ability to lift, carry, and install IT equipment such as computers, monitors, networking equipment, and related hardware (typically up to 50 lbs.). Ability to work in both office and manufacturing environments while following applicable safety requirements. Occasional after-hours support may be required for scheduled maintenance, upgrades, or critical infrastructure issues. Disclaimer: This job description reflects management's assignment of essential functions; it does not prescribe or restrict the tasks that may be assigned. The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not to be construed as an exhaustive list of all responsibilities, duties, and skills required of personnel so classified. All personnel may be required to perform duties outside of their normal responsibilities from time to time, as needed. Rochester Precision Optics is committed to leveraging the talent of a diverse workforce to create great opportunities for our business and our people. EOE/AA/Race/Gender/Disability/Veteran In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States, and to complete This is a full-time, on-site position based at our West Henrietta, NY facility. The standard work schedule is Monday through Friday, 7:00 AM to 3:30 PM. Participation in an occasional rotating on-call schedule is required to provide after-hours support for critical infrastructure issues, planned maintenance, and emergency response as needed. Compensation details: 0 Yearly Salary PIbc2cfe6-
Position Summary The Organization is seeking a highly skilled Senior Enterprise Architect with deep expertise in application modernization, cloud-native design, and enterprise application portfolio management. This role focuses on hands on architecture execution-developing modern solutions, guiding cloud migrations, creating reusable standards, and partnering with engineering teams to modernize and streamline the application landscape. The architect will work primarily on both AWS, Azure and hybrid environments, supporting modernization roadmaps, technical debt reduction, and application lifecycle governance. Key Responsibilities 1. Architecture Standards, Patterns & Modernization Frameworks Develop, publish, and maintain application and integration architecture standards. Create reusable modernization patterns (microservices, APIs, event-driven, containerization). Contribute to reference architectures and ensure consistency across engineering teams. Support solution architects and delivery teams in applying approved standards. 2. Application Modernization Execution Design modernization paths for legacy applications: rehost, replatform, refactor, retire. Architect cloud native and hybrid solutions primarily on Azure (AKS, Functions, APIM, PaaS). Work hands on with engineering teams during design, PoCs, and early build phases. Guide workload decomposition, domain boundaries, service design, and modernization roadmaps. 3. Cloud Architecture & Platform Enablement Build and evolve Azure landing zone components and cloud governance configurations. Define infrastructure, integration, API, and data patterns for cloud adoption. Support hybrid cloud integrations with Azure, AWS, and GCP where applicable. Evaluate new cloud capabilities (AI, observability, DevSecOps, automation tools). 4. Application Portfolio Management & Rationalization Perform architecture led assessments using frameworks such as TIME or 6R. Identify consolidation, migration, and retirement opportunities to reduce redundancy. Partner with ServiceNow APM/CMDB to ensure accurate application inventory and lifecycle data. Develop architecture metrics and dashboards supporting modernization progress. 5. Technical Debt Analysis & Remediation Support Maintain application level technical debt insights across the portfolio. Partner with product teams to prioritize remediation aligned with risk, business value, and modernization sequencing. Provide guidance on remediation strategies, patterns, and target-state architecture alignment. 6. Infrastructure as Code (IaC) & Automation Enablement Contribute to IaC templates using Terraform, Bicep/ARM, or Pulumi. Support CI/CD pipeline architecture using GitHub Actions, GitLab, or Jenkins. Partner with DevOps teams to apply automation and configuration management practices (Ansible, Chef, Puppet). 7. Security, Compliance & Optimization Apply cloud security best practices and integrate IAM/RBAC, network security, and Key Vault usage into designs. Ensure alignment with CIS, NIST, ISO 27001, and security requirements. Support cloud cost optimization efforts using Azure Advisor and FinOps guidelines. 8. Cross Functional Collaboration & Communication Work closely with DevOps, Networking, Cybersecurity, Infrastructure, Finance, and Procurement teams. Translate complex modernization concepts into clear, actionable guidance for business and technical stakeholders. Participate in strategic planning, cloud strategy working sessions, and solution design workshops.
08/08/2026
Full time
Position Summary The Organization is seeking a highly skilled Senior Enterprise Architect with deep expertise in application modernization, cloud-native design, and enterprise application portfolio management. This role focuses on hands on architecture execution-developing modern solutions, guiding cloud migrations, creating reusable standards, and partnering with engineering teams to modernize and streamline the application landscape. The architect will work primarily on both AWS, Azure and hybrid environments, supporting modernization roadmaps, technical debt reduction, and application lifecycle governance. Key Responsibilities 1. Architecture Standards, Patterns & Modernization Frameworks Develop, publish, and maintain application and integration architecture standards. Create reusable modernization patterns (microservices, APIs, event-driven, containerization). Contribute to reference architectures and ensure consistency across engineering teams. Support solution architects and delivery teams in applying approved standards. 2. Application Modernization Execution Design modernization paths for legacy applications: rehost, replatform, refactor, retire. Architect cloud native and hybrid solutions primarily on Azure (AKS, Functions, APIM, PaaS). Work hands on with engineering teams during design, PoCs, and early build phases. Guide workload decomposition, domain boundaries, service design, and modernization roadmaps. 3. Cloud Architecture & Platform Enablement Build and evolve Azure landing zone components and cloud governance configurations. Define infrastructure, integration, API, and data patterns for cloud adoption. Support hybrid cloud integrations with Azure, AWS, and GCP where applicable. Evaluate new cloud capabilities (AI, observability, DevSecOps, automation tools). 4. Application Portfolio Management & Rationalization Perform architecture led assessments using frameworks such as TIME or 6R. Identify consolidation, migration, and retirement opportunities to reduce redundancy. Partner with ServiceNow APM/CMDB to ensure accurate application inventory and lifecycle data. Develop architecture metrics and dashboards supporting modernization progress. 5. Technical Debt Analysis & Remediation Support Maintain application level technical debt insights across the portfolio. Partner with product teams to prioritize remediation aligned with risk, business value, and modernization sequencing. Provide guidance on remediation strategies, patterns, and target-state architecture alignment. 6. Infrastructure as Code (IaC) & Automation Enablement Contribute to IaC templates using Terraform, Bicep/ARM, or Pulumi. Support CI/CD pipeline architecture using GitHub Actions, GitLab, or Jenkins. Partner with DevOps teams to apply automation and configuration management practices (Ansible, Chef, Puppet). 7. Security, Compliance & Optimization Apply cloud security best practices and integrate IAM/RBAC, network security, and Key Vault usage into designs. Ensure alignment with CIS, NIST, ISO 27001, and security requirements. Support cloud cost optimization efforts using Azure Advisor and FinOps guidelines. 8. Cross Functional Collaboration & Communication Work closely with DevOps, Networking, Cybersecurity, Infrastructure, Finance, and Procurement teams. Translate complex modernization concepts into clear, actionable guidance for business and technical stakeholders. Participate in strategic planning, cloud strategy working sessions, and solution design workshops.
Job Title: Benchtop Support Specialist Location: Bothell, WA (100% Onsite) Duration: Contract - 12 months Pay Range: $26-32/hr (W2) About TSR TSR is a trusted staffing and workforce solutions partner with more than 50 years of experience delivery highly qualified talent to support clients' most critical business and technology initiatives. Through a disciplined approach to sourcing, candidate vetting, and delivery, TSR helps organizations scale teams quickly while maintaining quality and reliability. TSR operates with a global delivery model, leveraging specialized teams to support enterprise clients across North America and beyond. In June 2024, TSR was acquired by Justin Christian, founder and CEO of BCforward, a global provider of professional services and workforce solutions. This partnership expands TSR's ability to deliver broader capabilities, global delivery resources, and enhanced opportunities for both clients and consultants. Job Description We are seeking a Benchtop Support Specialist to join our Digital Plant team. The ideal candidate will have strong experience in GxP benchtop instrumentation, laboratory and quality systems, and regulated IT support and a proven ability to maintain compliance, resolve technical issues, and lead small to medium projects in a GMP environment. Responsibilities: Provide administration and support for benchtop instruments and applications across labs and manufacturing, including PCs and IT tools in a GxP environment. Support quality and laboratory applications through the full software development life cycle and deliver technical troubleshooting. Own asset management and utilize enterprise systems for changes, incidents, problems, and configuration management. Create, execute, and maintain documentation to ensure reliability, accessibility, and security of benchtop and lab systems. Lead or support multiple projects and act as point of contact for stakeholders, including validation and training activities. Support quality management processes in Infinity and partner with global teams to align on solutions and implementations. Perform installations, configurations, administration, and validation lifecycle activities for benchtop systems and applications. Provide local admin support for site quality systems including periodic reviews, user access reviews, and account administration. Serve as Digital Plant SME to advise on configurations, data integrity, cybersecurity, and defend work before regulatory bodies. Drive technology improvements and operational efficiency while ensuring alignment with directives and industry guidelines. Provide on-call support for commercial operations as needed. Required Skills & Qualifications: Comprehensive knowledge of data integrity, GxP compliance, SDLC, and good documentation practices. Strong understanding of SOPs, cGMPs, and regulatory guidelines (FDA, EU) with experience working in a regulated environment. Proven technical support and troubleshooting for Windows-based instruments and PCs in labs and manufacturing. Experience with Active Directory environments, networking fundamentals, servers, databases, and PCs. Project management capability to plan and lead small to medium initiatives and cross-functional efforts. Excellent verbal and written communication with strong technical writing and documentation skills. Self-driven with effective prioritization and time management skills. Bachelor's degree in life sciences, engineering, computer science, or equivalent experience. Preferred Skills: Experience in biotech, pharmaceutical, medical devices, or hospital/lab environments following GMP processes. Familiarity with TFF systems, nucleic counters, mixers, fillers, FIT, Veeva Document Management System, Infinity, and ServiceNow. Knowledge of data management, backups, storage, recovery, system security, access control, and cybersecurity practices. Ability to apply Lean and OpEx principles to drive efficiency and compliance. Work Schedule & Conditions: 40 hours per week. Initial shift 8:00 AM-4:00 PM for approximately one month, then 11:00 AM-7:00 PM for training, transitioning to 3:00 PM-11:00 PM. Office and lab/clean room environments. PPE required at times. Physical ability to move computers and monitors between rooms and labs, up to 25 lbs. Why TSR? At TSR, we believe in advancing lives and careers. When you join our team, you gain access to: Competitive compensation and benefits. Opportunities for growth with global clients. A supportive, inclusive culture that values innovation and people. Exposure to cutting-edge technologies and projects. About Our Commitment TSR is an equal opportunity employer. We value diversity and are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, gender identity, national origin, age, disability, or veteran status. Interested? Apply Now! If this sounds like the right opportunity for you, please apply with your most recent resume
08/08/2026
Full time
Job Title: Benchtop Support Specialist Location: Bothell, WA (100% Onsite) Duration: Contract - 12 months Pay Range: $26-32/hr (W2) About TSR TSR is a trusted staffing and workforce solutions partner with more than 50 years of experience delivery highly qualified talent to support clients' most critical business and technology initiatives. Through a disciplined approach to sourcing, candidate vetting, and delivery, TSR helps organizations scale teams quickly while maintaining quality and reliability. TSR operates with a global delivery model, leveraging specialized teams to support enterprise clients across North America and beyond. In June 2024, TSR was acquired by Justin Christian, founder and CEO of BCforward, a global provider of professional services and workforce solutions. This partnership expands TSR's ability to deliver broader capabilities, global delivery resources, and enhanced opportunities for both clients and consultants. Job Description We are seeking a Benchtop Support Specialist to join our Digital Plant team. The ideal candidate will have strong experience in GxP benchtop instrumentation, laboratory and quality systems, and regulated IT support and a proven ability to maintain compliance, resolve technical issues, and lead small to medium projects in a GMP environment. Responsibilities: Provide administration and support for benchtop instruments and applications across labs and manufacturing, including PCs and IT tools in a GxP environment. Support quality and laboratory applications through the full software development life cycle and deliver technical troubleshooting. Own asset management and utilize enterprise systems for changes, incidents, problems, and configuration management. Create, execute, and maintain documentation to ensure reliability, accessibility, and security of benchtop and lab systems. Lead or support multiple projects and act as point of contact for stakeholders, including validation and training activities. Support quality management processes in Infinity and partner with global teams to align on solutions and implementations. Perform installations, configurations, administration, and validation lifecycle activities for benchtop systems and applications. Provide local admin support for site quality systems including periodic reviews, user access reviews, and account administration. Serve as Digital Plant SME to advise on configurations, data integrity, cybersecurity, and defend work before regulatory bodies. Drive technology improvements and operational efficiency while ensuring alignment with directives and industry guidelines. Provide on-call support for commercial operations as needed. Required Skills & Qualifications: Comprehensive knowledge of data integrity, GxP compliance, SDLC, and good documentation practices. Strong understanding of SOPs, cGMPs, and regulatory guidelines (FDA, EU) with experience working in a regulated environment. Proven technical support and troubleshooting for Windows-based instruments and PCs in labs and manufacturing. Experience with Active Directory environments, networking fundamentals, servers, databases, and PCs. Project management capability to plan and lead small to medium initiatives and cross-functional efforts. Excellent verbal and written communication with strong technical writing and documentation skills. Self-driven with effective prioritization and time management skills. Bachelor's degree in life sciences, engineering, computer science, or equivalent experience. Preferred Skills: Experience in biotech, pharmaceutical, medical devices, or hospital/lab environments following GMP processes. Familiarity with TFF systems, nucleic counters, mixers, fillers, FIT, Veeva Document Management System, Infinity, and ServiceNow. Knowledge of data management, backups, storage, recovery, system security, access control, and cybersecurity practices. Ability to apply Lean and OpEx principles to drive efficiency and compliance. Work Schedule & Conditions: 40 hours per week. Initial shift 8:00 AM-4:00 PM for approximately one month, then 11:00 AM-7:00 PM for training, transitioning to 3:00 PM-11:00 PM. Office and lab/clean room environments. PPE required at times. Physical ability to move computers and monitors between rooms and labs, up to 25 lbs. Why TSR? At TSR, we believe in advancing lives and careers. When you join our team, you gain access to: Competitive compensation and benefits. Opportunities for growth with global clients. A supportive, inclusive culture that values innovation and people. Exposure to cutting-edge technologies and projects. About Our Commitment TSR is an equal opportunity employer. We value diversity and are committed to creating an inclusive environment for all employees. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, gender identity, national origin, age, disability, or veteran status. Interested? Apply Now! If this sounds like the right opportunity for you, please apply with your most recent resume
Billable Hours: 80% of worked hours Travel: Minimal The Cybersecurity Engineer to serve as a subject matter expert in many areas of security, able to describe and document in business terms the impact of security policies, standards, and architecture. This person plays a vital dual role in our organization, with time being spent facilitating our Cybersecurity offering as well as focusing on CMMC Compliance. The Cybersecurity Engineer provides security direction to the business and project stakeholders to ensure that security is a key focus for all projects and new business initiatives, as well as technical expertise on assigned clients, tickets, and CMMC Compliance projects. ESSENTIAL FUNCTIONS: Project engagement during the initiation, requirements, and design stages to ensure that security has been considered and is included into the design at the appropriate level based on the risks Security review and design of complex applications and technologies Evaluation and maintenance of security system plans and procedures to safeguard internal information systems Researching and recommendation/implementation of changes to procedures and systems to enhance security aligned with corporate policies Accountable for ensuring that key risks and issues are identified, addressed and resolved in a manner that satisfies the business Perform security risk assessments to determine level of security services to include: Document Customers' Systems Liaison between ComTec and Cybersecurity Vendors Weekly review and analysis of Cybersecurity Reports ADDITIONAL RESPONSIBILITIES: Monitor assigned tickets and tasks and provide service or escalation as necessary. Develop tasks & milestones for security projects. Able to translate business and non-functional requirements to establish security controls so that a proper security design can be architected and to document the security solution for communication and publication. Demonstrated analytical skills - continuously identifies problems, collect or interpret data, establish facts, anticipate obstacles, and develops plans to resolve; strong problem-solving skills while communicating in a clear and succinct manner effectively evaluating information and data to make decisions. Proven understanding of the current vulnerabilities, response, and mitigation strategies used in Cybersecurity. Experience of designing and incorporating technical security controls that align to NIST 800-171, and/or CMMC. Prepared to challenge business and IT colleagues and have the "difficult conversations" where needed in the interests of the company. Demonstrated customer focus - evaluate decisions through the eyes of the customer; build strong customer relationships and create processes from the customer viewpoint. Able to operate as a highly independent worker and as part of a strong team/collaborative approach. Accurately enter and maintain ticket information including notes and resolution. Adhere to departmental policies for reporting and managing requests and change controls. Maintain daily timesheet and expense report entries and submit them accurately and timely. Other duties as required. TECHNICAL SKILLS: Strong background in security architecture including a deep knowledge of IT network security (secure LAN, WAN, vLAN, MPLS, and secure network zoning and restricted network design) and cloud-based technologies. Strong background in Network Engineering including a deep understanding of Windows Server architecture, Windows Virtualization, Networking, Backup Solutions, and Disaster Recovery Strong background in Microsoft security architecture including a deep knowledge of server and workstation security. Ability to troubleshoot server based software issues with: Microsoft Windows Server operating systems On Premise Microsoft Exchange and hosted Microsoft Office 365 Microsoft Remote Desktop Services Microsoft Hyper-V and VMWare Enterprise EDR and MDR solutions Enterprise class backup solutions Knowledgeable of various server/workstation peripherals such as NAS/SAN solutions. In depth knowledge of workstation/server hardware and software troubleshooting abilities Strong understanding of networking equipment such as Switches, Firewalls, and Wireless Access Points SOFT SKILLS & ABILITIES: Strong written and verbal communication skills. Pleasant and professional demeanor in all client and internal communications. Ability to multi task. Independent worker and able to work effectively on daily tasks without direct supervision. Strong organization skills and ability to operate efficiently throughout daily tasks. Work well with clients at all levels, from executive to IT to end user. EDUCATION, EXPERIENCE, & KNOWLEDGE: (5) years working in Information Technology (2) years in Cybersecurity (1) year in CMMC compliance Information Security Qualifications such as CISSP, CISM, CISA, and ISSAP, a plus. Certified CMMC Professional (CCP) Familiarity with NIST SP 800-171, or 800-53 Vulnerability Management ADDITIONAL REQUIREMENTS: Ability to schedule for evening or weekend work occasionally Valid driver's license in your state of residence and reliable personal vehicle WORK ENVIRONMENT/PHYSICAL DEMANDS: Use of computer and office equipment Ability to remain calm in stressful situations Performs all administrative functions expected at this level PIedea33ca061f-1570
08/08/2026
Full time
Billable Hours: 80% of worked hours Travel: Minimal The Cybersecurity Engineer to serve as a subject matter expert in many areas of security, able to describe and document in business terms the impact of security policies, standards, and architecture. This person plays a vital dual role in our organization, with time being spent facilitating our Cybersecurity offering as well as focusing on CMMC Compliance. The Cybersecurity Engineer provides security direction to the business and project stakeholders to ensure that security is a key focus for all projects and new business initiatives, as well as technical expertise on assigned clients, tickets, and CMMC Compliance projects. ESSENTIAL FUNCTIONS: Project engagement during the initiation, requirements, and design stages to ensure that security has been considered and is included into the design at the appropriate level based on the risks Security review and design of complex applications and technologies Evaluation and maintenance of security system plans and procedures to safeguard internal information systems Researching and recommendation/implementation of changes to procedures and systems to enhance security aligned with corporate policies Accountable for ensuring that key risks and issues are identified, addressed and resolved in a manner that satisfies the business Perform security risk assessments to determine level of security services to include: Document Customers' Systems Liaison between ComTec and Cybersecurity Vendors Weekly review and analysis of Cybersecurity Reports ADDITIONAL RESPONSIBILITIES: Monitor assigned tickets and tasks and provide service or escalation as necessary. Develop tasks & milestones for security projects. Able to translate business and non-functional requirements to establish security controls so that a proper security design can be architected and to document the security solution for communication and publication. Demonstrated analytical skills - continuously identifies problems, collect or interpret data, establish facts, anticipate obstacles, and develops plans to resolve; strong problem-solving skills while communicating in a clear and succinct manner effectively evaluating information and data to make decisions. Proven understanding of the current vulnerabilities, response, and mitigation strategies used in Cybersecurity. Experience of designing and incorporating technical security controls that align to NIST 800-171, and/or CMMC. Prepared to challenge business and IT colleagues and have the "difficult conversations" where needed in the interests of the company. Demonstrated customer focus - evaluate decisions through the eyes of the customer; build strong customer relationships and create processes from the customer viewpoint. Able to operate as a highly independent worker and as part of a strong team/collaborative approach. Accurately enter and maintain ticket information including notes and resolution. Adhere to departmental policies for reporting and managing requests and change controls. Maintain daily timesheet and expense report entries and submit them accurately and timely. Other duties as required. TECHNICAL SKILLS: Strong background in security architecture including a deep knowledge of IT network security (secure LAN, WAN, vLAN, MPLS, and secure network zoning and restricted network design) and cloud-based technologies. Strong background in Network Engineering including a deep understanding of Windows Server architecture, Windows Virtualization, Networking, Backup Solutions, and Disaster Recovery Strong background in Microsoft security architecture including a deep knowledge of server and workstation security. Ability to troubleshoot server based software issues with: Microsoft Windows Server operating systems On Premise Microsoft Exchange and hosted Microsoft Office 365 Microsoft Remote Desktop Services Microsoft Hyper-V and VMWare Enterprise EDR and MDR solutions Enterprise class backup solutions Knowledgeable of various server/workstation peripherals such as NAS/SAN solutions. In depth knowledge of workstation/server hardware and software troubleshooting abilities Strong understanding of networking equipment such as Switches, Firewalls, and Wireless Access Points SOFT SKILLS & ABILITIES: Strong written and verbal communication skills. Pleasant and professional demeanor in all client and internal communications. Ability to multi task. Independent worker and able to work effectively on daily tasks without direct supervision. Strong organization skills and ability to operate efficiently throughout daily tasks. Work well with clients at all levels, from executive to IT to end user. EDUCATION, EXPERIENCE, & KNOWLEDGE: (5) years working in Information Technology (2) years in Cybersecurity (1) year in CMMC compliance Information Security Qualifications such as CISSP, CISM, CISA, and ISSAP, a plus. Certified CMMC Professional (CCP) Familiarity with NIST SP 800-171, or 800-53 Vulnerability Management ADDITIONAL REQUIREMENTS: Ability to schedule for evening or weekend work occasionally Valid driver's license in your state of residence and reliable personal vehicle WORK ENVIRONMENT/PHYSICAL DEMANDS: Use of computer and office equipment Ability to remain calm in stressful situations Performs all administrative functions expected at this level PIedea33ca061f-1570
Job Description Job Description Butcher Power Products (BPP) designs and manufactures mission critical and industrial power solutions for essential infrastructure nationwide. Headquartered in Sacramento, CA, our teams collaborate closely across engineering, manufacturing, and operations to build reliable, high quality systems and take pride in delivering work that truly matters. Job Summary: Butcher Power Products (BPP) is seeking a Senior Infrastructure & Security Engineer to join our growing Information Technology team. This is a unique opportunity for an experienced technology professional to help shape the future of IT operations within a rapidly evolving organization. BPP has recently completed a significant transformation to a modern Microsoft enterprise platform, including Microsoft 365 E5, Entra ID, Intune, Defender, Azure services, and a Cisco-based network infrastructure. The successful candidate will serve as the primary technical owner and subject matter expert for networking, infrastructure, cloud operations, identity security, and cybersecurity initiatives. Working alongside existing IT staff and strategic service providers, this individual will help establish internal ownership of critical technology platforms and reduce long-term reliance on managed service providers. This is a highly visible, hands-on engineering role that combines architecture, administration, operational support, security, project leadership, and technology strategy. Key Responsibilities: Infrastructure & Network Engineering: Own and administer Cisco Meraki networking environments, including switching, wireless, SD-WAN, VPN, and firewall services. Manage Cisco Umbrella, Duo MFA, and related network security technologies. Design, implement, and maintain network architecture standards. Manage network performance, availability, monitoring, and troubleshooting. Lead network expansion and modernization initiatives. Serve as primary escalation point for complex infrastructure issues. Maintain network diagrams, standards, and technical documentation. Security Engineering & Operations: Own operational administration of Microsoft Defender security solutions. Administer Microsoft Entra ID security controls, Conditional Access, and identity protection capabilities. Manage privileged access controls, RBAC, and security governance processes. Coordinate vulnerability management and remediation activities. Partner with eSentire and other security providers for incident response and threat management. Conduct risk assessments and security reviews. Lead implementation of security best practices aligned to Zero Trust principles. Develop and maintain cybersecurity policies, standards, and operational procedures. Microsoft Cloud & Identity Administration: Administer Microsoft 365, Entra ID, Intune, and Azure environments. Support cloud architecture and platform governance initiatives. Manage identity lifecycle processes and authentication services. Support compliance, device management, and endpoint security initiatives. Participate in future cloud modernization and automation projects. Evaluate and implement improvements to Microsoft security and infrastructure platforms. Technical Leadership & MSP Transition: Act as technical owner for infrastructure and security vendors. Develop plans to transition operational responsibilities from managed service providers to internal IT resources. Validate vendor recommendations and architectural decisions. Identify opportunities to improve service quality, operational efficiency, and cost effectiveness. Provide technical mentorship to engineers and support staff. Service Delivery & Support: Serve as Tier III escalation resource. Participate in troubleshooting complex user and infrastructure issues. Support major incidents and problem management activities. Contribute to continuous improvement of support processes and documentation. Utilize Jira Service Management and established ITIL-style processes. Qualifications: Required: 7+ years of experience in systems, infrastructure, networking, or cybersecurity roles. Experience administering Microsoft 365 environments. Experience with Microsoft Entra ID and identity security. Experience with Microsoft Defender security platforms. Strong networking fundamentals including routing, switching, VLANs, VPNs, wireless, and firewall technologies. Experience supporting Cisco or Meraki environments. Strong troubleshooting and analytical skills. Experience creating technical documentation and operational procedures. Ability to work independently and drive technical initiatives. Preferred: Experience transitioning services from MSP-supported environments to internal ownership. Experience with Cisco Meraki, Cisco Umbrella, and Duo. Experience with Microsoft Intune and endpoint management. Experience supporting Azure environments. Security Operations Center (SOC) collaboration experience. Manufacturing or multi-site environment experience. Certifications Preferred: CCNA Security+ SC-300 AZ-500 CISSP Meraki certifications Core Competencies: Technical Infrastructure & Networking Cybersecurity & Risk Management Microsoft Cloud & Endpoint Management Technical Leadership & Strategic Ownership Operational Excellence & Service Delivery CompensationThe base pay range for this role is $150,000 - $160,000 per year. Equal Opportunity Employer Butcher Power Products is an equal opportunity employer and considers all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other protected characteristic. If you require a reasonable accommodation during the application or interview process, please let us know. Compensation ranges are provided in accordance with applicable state and local pay transparency laws. PIa685a912f9ec-4263
08/08/2026
Full time
Job Description Job Description Butcher Power Products (BPP) designs and manufactures mission critical and industrial power solutions for essential infrastructure nationwide. Headquartered in Sacramento, CA, our teams collaborate closely across engineering, manufacturing, and operations to build reliable, high quality systems and take pride in delivering work that truly matters. Job Summary: Butcher Power Products (BPP) is seeking a Senior Infrastructure & Security Engineer to join our growing Information Technology team. This is a unique opportunity for an experienced technology professional to help shape the future of IT operations within a rapidly evolving organization. BPP has recently completed a significant transformation to a modern Microsoft enterprise platform, including Microsoft 365 E5, Entra ID, Intune, Defender, Azure services, and a Cisco-based network infrastructure. The successful candidate will serve as the primary technical owner and subject matter expert for networking, infrastructure, cloud operations, identity security, and cybersecurity initiatives. Working alongside existing IT staff and strategic service providers, this individual will help establish internal ownership of critical technology platforms and reduce long-term reliance on managed service providers. This is a highly visible, hands-on engineering role that combines architecture, administration, operational support, security, project leadership, and technology strategy. Key Responsibilities: Infrastructure & Network Engineering: Own and administer Cisco Meraki networking environments, including switching, wireless, SD-WAN, VPN, and firewall services. Manage Cisco Umbrella, Duo MFA, and related network security technologies. Design, implement, and maintain network architecture standards. Manage network performance, availability, monitoring, and troubleshooting. Lead network expansion and modernization initiatives. Serve as primary escalation point for complex infrastructure issues. Maintain network diagrams, standards, and technical documentation. Security Engineering & Operations: Own operational administration of Microsoft Defender security solutions. Administer Microsoft Entra ID security controls, Conditional Access, and identity protection capabilities. Manage privileged access controls, RBAC, and security governance processes. Coordinate vulnerability management and remediation activities. Partner with eSentire and other security providers for incident response and threat management. Conduct risk assessments and security reviews. Lead implementation of security best practices aligned to Zero Trust principles. Develop and maintain cybersecurity policies, standards, and operational procedures. Microsoft Cloud & Identity Administration: Administer Microsoft 365, Entra ID, Intune, and Azure environments. Support cloud architecture and platform governance initiatives. Manage identity lifecycle processes and authentication services. Support compliance, device management, and endpoint security initiatives. Participate in future cloud modernization and automation projects. Evaluate and implement improvements to Microsoft security and infrastructure platforms. Technical Leadership & MSP Transition: Act as technical owner for infrastructure and security vendors. Develop plans to transition operational responsibilities from managed service providers to internal IT resources. Validate vendor recommendations and architectural decisions. Identify opportunities to improve service quality, operational efficiency, and cost effectiveness. Provide technical mentorship to engineers and support staff. Service Delivery & Support: Serve as Tier III escalation resource. Participate in troubleshooting complex user and infrastructure issues. Support major incidents and problem management activities. Contribute to continuous improvement of support processes and documentation. Utilize Jira Service Management and established ITIL-style processes. Qualifications: Required: 7+ years of experience in systems, infrastructure, networking, or cybersecurity roles. Experience administering Microsoft 365 environments. Experience with Microsoft Entra ID and identity security. Experience with Microsoft Defender security platforms. Strong networking fundamentals including routing, switching, VLANs, VPNs, wireless, and firewall technologies. Experience supporting Cisco or Meraki environments. Strong troubleshooting and analytical skills. Experience creating technical documentation and operational procedures. Ability to work independently and drive technical initiatives. Preferred: Experience transitioning services from MSP-supported environments to internal ownership. Experience with Cisco Meraki, Cisco Umbrella, and Duo. Experience with Microsoft Intune and endpoint management. Experience supporting Azure environments. Security Operations Center (SOC) collaboration experience. Manufacturing or multi-site environment experience. Certifications Preferred: CCNA Security+ SC-300 AZ-500 CISSP Meraki certifications Core Competencies: Technical Infrastructure & Networking Cybersecurity & Risk Management Microsoft Cloud & Endpoint Management Technical Leadership & Strategic Ownership Operational Excellence & Service Delivery CompensationThe base pay range for this role is $150,000 - $160,000 per year. Equal Opportunity Employer Butcher Power Products is an equal opportunity employer and considers all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other protected characteristic. If you require a reasonable accommodation during the application or interview process, please let us know. Compensation ranges are provided in accordance with applicable state and local pay transparency laws. PIa685a912f9ec-4263
Job Description Job Description Butcher Power Products (BPP) designs and manufactures mission critical and industrial power solutions for essential infrastructure nationwide. Headquartered in Sacramento, CA, our teams collaborate closely across engineering, manufacturing, and operations to build reliable, high quality systems and take pride in delivering work that truly matters. Job Summary: Butcher Power Products (BPP) is seeking a Senior Infrastructure & Security Engineer to join our growing Information Technology team. This is a unique opportunity for an experienced technology professional to help shape the future of IT operations within a rapidly evolving organization. BPP has recently completed a significant transformation to a modern Microsoft enterprise platform, including Microsoft 365 E5, Entra ID, Intune, Defender, Azure services, and a Cisco-based network infrastructure. The successful candidate will serve as the primary technical owner and subject matter expert for networking, infrastructure, cloud operations, identity security, and cybersecurity initiatives. Working alongside existing IT staff and strategic service providers, this individual will help establish internal ownership of critical technology platforms and reduce long-term reliance on managed service providers. This is a highly visible, hands-on engineering role that combines architecture, administration, operational support, security, project leadership, and technology strategy. Key Responsibilities: Infrastructure & Network Engineering: Own and administer Cisco Meraki networking environments, including switching, wireless, SD-WAN, VPN, and firewall services. Manage Cisco Umbrella, Duo MFA, and related network security technologies. Design, implement, and maintain network architecture standards. Manage network performance, availability, monitoring, and troubleshooting. Lead network expansion and modernization initiatives. Serve as primary escalation point for complex infrastructure issues. Maintain network diagrams, standards, and technical documentation. Security Engineering & Operations: Own operational administration of Microsoft Defender security solutions. Administer Microsoft Entra ID security controls, Conditional Access, and identity protection capabilities. Manage privileged access controls, RBAC, and security governance processes. Coordinate vulnerability management and remediation activities. Partner with eSentire and other security providers for incident response and threat management. Conduct risk assessments and security reviews. Lead implementation of security best practices aligned to Zero Trust principles. Develop and maintain cybersecurity policies, standards, and operational procedures. Microsoft Cloud & Identity Administration: Administer Microsoft 365, Entra ID, Intune, and Azure environments. Support cloud architecture and platform governance initiatives. Manage identity lifecycle processes and authentication services. Support compliance, device management, and endpoint security initiatives. Participate in future cloud modernization and automation projects. Evaluate and implement improvements to Microsoft security and infrastructure platforms. Technical Leadership & MSP Transition: Act as technical owner for infrastructure and security vendors. Develop plans to transition operational responsibilities from managed service providers to internal IT resources. Validate vendor recommendations and architectural decisions. Identify opportunities to improve service quality, operational efficiency, and cost effectiveness. Provide technical mentorship to engineers and support staff. Service Delivery & Support: Serve as Tier III escalation resource. Participate in troubleshooting complex user and infrastructure issues. Support major incidents and problem management activities. Contribute to continuous improvement of support processes and documentation. Utilize Jira Service Management and established ITIL-style processes. Qualifications: Required: 7+ years of experience in systems, infrastructure, networking, or cybersecurity roles. Experience administering Microsoft 365 environments. Experience with Microsoft Entra ID and identity security. Experience with Microsoft Defender security platforms. Strong networking fundamentals including routing, switching, VLANs, VPNs, wireless, and firewall technologies. Experience supporting Cisco or Meraki environments. Strong troubleshooting and analytical skills. Experience creating technical documentation and operational procedures. Ability to work independently and drive technical initiatives. Preferred: Experience transitioning services from MSP-supported environments to internal ownership. Experience with Cisco Meraki, Cisco Umbrella, and Duo. Experience with Microsoft Intune and endpoint management. Experience supporting Azure environments. Security Operations Center (SOC) collaboration experience. Manufacturing or multi-site environment experience. Certifications Preferred: CCNA Security+ SC-300 AZ-500 CISSP Meraki certifications Core Competencies: Technical Infrastructure & Networking Cybersecurity & Risk Management Microsoft Cloud & Endpoint Management Technical Leadership & Strategic Ownership Operational Excellence & Service Delivery CompensationThe base pay range for this role is $150,000 - $160,000 per year. Equal Opportunity Employer Butcher Power Products is an equal opportunity employer and considers all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other protected characteristic. If you require a reasonable accommodation during the application or interview process, please let us know. Compensation ranges are provided in accordance with applicable state and local pay transparency laws. PIa685a912f9ec-4263
08/08/2026
Full time
Job Description Job Description Butcher Power Products (BPP) designs and manufactures mission critical and industrial power solutions for essential infrastructure nationwide. Headquartered in Sacramento, CA, our teams collaborate closely across engineering, manufacturing, and operations to build reliable, high quality systems and take pride in delivering work that truly matters. Job Summary: Butcher Power Products (BPP) is seeking a Senior Infrastructure & Security Engineer to join our growing Information Technology team. This is a unique opportunity for an experienced technology professional to help shape the future of IT operations within a rapidly evolving organization. BPP has recently completed a significant transformation to a modern Microsoft enterprise platform, including Microsoft 365 E5, Entra ID, Intune, Defender, Azure services, and a Cisco-based network infrastructure. The successful candidate will serve as the primary technical owner and subject matter expert for networking, infrastructure, cloud operations, identity security, and cybersecurity initiatives. Working alongside existing IT staff and strategic service providers, this individual will help establish internal ownership of critical technology platforms and reduce long-term reliance on managed service providers. This is a highly visible, hands-on engineering role that combines architecture, administration, operational support, security, project leadership, and technology strategy. Key Responsibilities: Infrastructure & Network Engineering: Own and administer Cisco Meraki networking environments, including switching, wireless, SD-WAN, VPN, and firewall services. Manage Cisco Umbrella, Duo MFA, and related network security technologies. Design, implement, and maintain network architecture standards. Manage network performance, availability, monitoring, and troubleshooting. Lead network expansion and modernization initiatives. Serve as primary escalation point for complex infrastructure issues. Maintain network diagrams, standards, and technical documentation. Security Engineering & Operations: Own operational administration of Microsoft Defender security solutions. Administer Microsoft Entra ID security controls, Conditional Access, and identity protection capabilities. Manage privileged access controls, RBAC, and security governance processes. Coordinate vulnerability management and remediation activities. Partner with eSentire and other security providers for incident response and threat management. Conduct risk assessments and security reviews. Lead implementation of security best practices aligned to Zero Trust principles. Develop and maintain cybersecurity policies, standards, and operational procedures. Microsoft Cloud & Identity Administration: Administer Microsoft 365, Entra ID, Intune, and Azure environments. Support cloud architecture and platform governance initiatives. Manage identity lifecycle processes and authentication services. Support compliance, device management, and endpoint security initiatives. Participate in future cloud modernization and automation projects. Evaluate and implement improvements to Microsoft security and infrastructure platforms. Technical Leadership & MSP Transition: Act as technical owner for infrastructure and security vendors. Develop plans to transition operational responsibilities from managed service providers to internal IT resources. Validate vendor recommendations and architectural decisions. Identify opportunities to improve service quality, operational efficiency, and cost effectiveness. Provide technical mentorship to engineers and support staff. Service Delivery & Support: Serve as Tier III escalation resource. Participate in troubleshooting complex user and infrastructure issues. Support major incidents and problem management activities. Contribute to continuous improvement of support processes and documentation. Utilize Jira Service Management and established ITIL-style processes. Qualifications: Required: 7+ years of experience in systems, infrastructure, networking, or cybersecurity roles. Experience administering Microsoft 365 environments. Experience with Microsoft Entra ID and identity security. Experience with Microsoft Defender security platforms. Strong networking fundamentals including routing, switching, VLANs, VPNs, wireless, and firewall technologies. Experience supporting Cisco or Meraki environments. Strong troubleshooting and analytical skills. Experience creating technical documentation and operational procedures. Ability to work independently and drive technical initiatives. Preferred: Experience transitioning services from MSP-supported environments to internal ownership. Experience with Cisco Meraki, Cisco Umbrella, and Duo. Experience with Microsoft Intune and endpoint management. Experience supporting Azure environments. Security Operations Center (SOC) collaboration experience. Manufacturing or multi-site environment experience. Certifications Preferred: CCNA Security+ SC-300 AZ-500 CISSP Meraki certifications Core Competencies: Technical Infrastructure & Networking Cybersecurity & Risk Management Microsoft Cloud & Endpoint Management Technical Leadership & Strategic Ownership Operational Excellence & Service Delivery CompensationThe base pay range for this role is $150,000 - $160,000 per year. Equal Opportunity Employer Butcher Power Products is an equal opportunity employer and considers all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other protected characteristic. If you require a reasonable accommodation during the application or interview process, please let us know. Compensation ranges are provided in accordance with applicable state and local pay transparency laws. PIa685a912f9ec-4263
EBMUD Job Title: Senior Information Technology Engineer, IT Security (IT/OT Firewall Administration) Salary Info: $157,488 - $191,424 Annually, Plus Excellent Benefits + Retirement Opens online at on Monday, July 27, 2026 Online applications must be received by 4:30 p.m., Friday, August 14, 2026 The East Bay Municipal Utility District's (EBMUD) Information Systems Department is currently seeking a Senior Information Technology Engineer with deep experience administering firewalls in mission-critical, highly available enterprise environments. The role focuses on securing both internal and perimeter networks, supporting business continuity and strengthening cyber resilience across business networks (IT) and operational technology networks (OT) and the implementation and oversight of cybersecurity policies, standards, and best practices. Applicants must reside within commuting distance of EBMUD's Oakland, CA Administration building. This is a hybrid position which requires office presence in accordance with EBMUD's telecommuting guidelines (minimum 2-day per week physical office presence currently required but is subject to change). Telecommuting policies are subject to change. EBMUD will not provide relocation assistance. We are seeking candidates with advanced IT/OT security experience and skills. Experience is desired in three or more of the following disciplines: At least five years of hands-on experience administering firewalls in enterprise-scale, high-availability production environments, including policy management, troubleshooting, and rule lifecycle maintenance. Experience with enterprise-grade firewalls: e.g. Palo Alto Networks, Cisco, FortiNet, Checkpoint. Expertise in troubleshooting network issues. Solid understanding of TCP/IP protocols. Experience configuring, supporting and managing routing- BGP, OSPF, EIGRP, static. Experience with analyzing firewall logs and packet captures. Experience managing virtual firewalls in AWS, Azure and/or GCP. Understanding of IAAS concepts. Experience implementing and supporting ssl-inspection in a production environment. Experience managing VPN's: IPSEC site to site and end user remote access. Experience working with firewall policies, implementing changes, testing changes, submitting changes through change control processes. Experience with automating firewall rule analysis or change workflows using scripts or APIs is a plus. And the ability to: Create and maintain network diagrams and documentation for new and existing firewall deployments- depicting logical and physical environments. Communicate complex topics to non-technical users. Ability and willingness to share knowledge and information with others. Create documentation detailing implementation steps, tracking changes. Work across teams to investigate and respond to incidents. Lead or participate in IT/OT security projects by creating project plans and technical requirements. Track and report on incident handling and response metrics. Participate in annual tabletop cyber incident response exercises. Establish and maintain positive working relationships; teamwork attitude. Balance project deliverables among day-to-day operational demands. Perform independent research and share knowledge effectively. Maintain calm and focus during emergency operations. Work in a hybrid work environment. The most competitive candidates for the Senior IT Security Engineer position will possess strong working knowledge of firewall administration in a highly available production environment; networking experience; threat intelligence; experience in critical infrastructure-including ICS/OT firewall management; and project management principles and practices and cybersecurity best practices. Your experience will include demonstrated success working in many of the following areas: Experience managing firewall changes including: NAT, routing, VPN, access policies, troubleshooting, deployment, upgrades. Experience reviewing, analyzing and responding to firewall alerts: security and operational. Ability to perform and analyze network captures utilizing wireshark. Experience working within a ticketing system to track requests, changes, approvals Experience participating in Blue/Red team exercises. Log and systems analysis, troubleshooting, documentation techniques and procedures. Change control concepts and procedures supporting a production environment. Knowledge of network based attack methods and defense: DDOS, C2, data exfiltration, brute-force attacks, OWASP, etc. Familiarity with Industrial Control Systems (ICS) and Operational Technology (OT) environments is a plus. Project management. The salary range is $13,124 per month increasing to $13,780, $14,469, $15,192, and $15,952 after 6, 18, 30, and 42 months, respectively. EBMUD is an Equal Opportunity Employer. All qualified candidates will receive consideration for employment without regard to race, color, religious creed, sex, gender, gender identity, gender expression, marital or registered domestic partnership status, age for individuals over forty years of age, national origin, ancestry, disability (mental or physical, including AIDS and HIV), medical condition (cancer and genetic characteristics), genetic information, sexual orientation, military and veterans status, family or medical leave status, pregnancy, pregnancy disability leave status, or any other status protected by federal, state and/or local laws. Requirements: 1. A bachelor's degree; and 2. Two years of experience in information technology engineering, one year of which was at a level comparable to or higher than the EBMUD class of Information Technology (IT) Engineer II. 3. Willingness to participate in a rotating on-call schedule to support 24/7 network security operations, including incident response and critical issue resolution. 4. Overtime will be required on an as needed basis. Working environment is indoors and may require sitting for prolonged periods of time and repetitive hand motions. Additional years of experience (beyond the minimum requirement) may be substituted for the education on a year for year basis, only if the experience is at the level of the job for which the applicant is applying. (i.e., Four additional years of experience, at the level of the Senior IT Engineer classification, will be considered equivalent to a bachelor's degree). A graduate level degree in a directly related field may be substituted for one year of experience. To be considered under the "equivalent combination of education and experience" provision, it is your responsibility to include in your application materials written evidence of employment performed at the level of the typical duties of this position and/or coursework in subject areas directly related to this position. For more information, see our FAQ page at Submit a completed EBMUD application and the required supplemental questions responses online at by 4:30 p.m., Friday, August 14, 2026. Only application materials submitted online during the filing period will be accepted. EBMUD is an Equal Opportunity Employer: Females/Minorities/Veterans/Disability Job Hotline:
08/08/2026
Full time
EBMUD Job Title: Senior Information Technology Engineer, IT Security (IT/OT Firewall Administration) Salary Info: $157,488 - $191,424 Annually, Plus Excellent Benefits + Retirement Opens online at on Monday, July 27, 2026 Online applications must be received by 4:30 p.m., Friday, August 14, 2026 The East Bay Municipal Utility District's (EBMUD) Information Systems Department is currently seeking a Senior Information Technology Engineer with deep experience administering firewalls in mission-critical, highly available enterprise environments. The role focuses on securing both internal and perimeter networks, supporting business continuity and strengthening cyber resilience across business networks (IT) and operational technology networks (OT) and the implementation and oversight of cybersecurity policies, standards, and best practices. Applicants must reside within commuting distance of EBMUD's Oakland, CA Administration building. This is a hybrid position which requires office presence in accordance with EBMUD's telecommuting guidelines (minimum 2-day per week physical office presence currently required but is subject to change). Telecommuting policies are subject to change. EBMUD will not provide relocation assistance. We are seeking candidates with advanced IT/OT security experience and skills. Experience is desired in three or more of the following disciplines: At least five years of hands-on experience administering firewalls in enterprise-scale, high-availability production environments, including policy management, troubleshooting, and rule lifecycle maintenance. Experience with enterprise-grade firewalls: e.g. Palo Alto Networks, Cisco, FortiNet, Checkpoint. Expertise in troubleshooting network issues. Solid understanding of TCP/IP protocols. Experience configuring, supporting and managing routing- BGP, OSPF, EIGRP, static. Experience with analyzing firewall logs and packet captures. Experience managing virtual firewalls in AWS, Azure and/or GCP. Understanding of IAAS concepts. Experience implementing and supporting ssl-inspection in a production environment. Experience managing VPN's: IPSEC site to site and end user remote access. Experience working with firewall policies, implementing changes, testing changes, submitting changes through change control processes. Experience with automating firewall rule analysis or change workflows using scripts or APIs is a plus. And the ability to: Create and maintain network diagrams and documentation for new and existing firewall deployments- depicting logical and physical environments. Communicate complex topics to non-technical users. Ability and willingness to share knowledge and information with others. Create documentation detailing implementation steps, tracking changes. Work across teams to investigate and respond to incidents. Lead or participate in IT/OT security projects by creating project plans and technical requirements. Track and report on incident handling and response metrics. Participate in annual tabletop cyber incident response exercises. Establish and maintain positive working relationships; teamwork attitude. Balance project deliverables among day-to-day operational demands. Perform independent research and share knowledge effectively. Maintain calm and focus during emergency operations. Work in a hybrid work environment. The most competitive candidates for the Senior IT Security Engineer position will possess strong working knowledge of firewall administration in a highly available production environment; networking experience; threat intelligence; experience in critical infrastructure-including ICS/OT firewall management; and project management principles and practices and cybersecurity best practices. Your experience will include demonstrated success working in many of the following areas: Experience managing firewall changes including: NAT, routing, VPN, access policies, troubleshooting, deployment, upgrades. Experience reviewing, analyzing and responding to firewall alerts: security and operational. Ability to perform and analyze network captures utilizing wireshark. Experience working within a ticketing system to track requests, changes, approvals Experience participating in Blue/Red team exercises. Log and systems analysis, troubleshooting, documentation techniques and procedures. Change control concepts and procedures supporting a production environment. Knowledge of network based attack methods and defense: DDOS, C2, data exfiltration, brute-force attacks, OWASP, etc. Familiarity with Industrial Control Systems (ICS) and Operational Technology (OT) environments is a plus. Project management. The salary range is $13,124 per month increasing to $13,780, $14,469, $15,192, and $15,952 after 6, 18, 30, and 42 months, respectively. EBMUD is an Equal Opportunity Employer. All qualified candidates will receive consideration for employment without regard to race, color, religious creed, sex, gender, gender identity, gender expression, marital or registered domestic partnership status, age for individuals over forty years of age, national origin, ancestry, disability (mental or physical, including AIDS and HIV), medical condition (cancer and genetic characteristics), genetic information, sexual orientation, military and veterans status, family or medical leave status, pregnancy, pregnancy disability leave status, or any other status protected by federal, state and/or local laws. Requirements: 1. A bachelor's degree; and 2. Two years of experience in information technology engineering, one year of which was at a level comparable to or higher than the EBMUD class of Information Technology (IT) Engineer II. 3. Willingness to participate in a rotating on-call schedule to support 24/7 network security operations, including incident response and critical issue resolution. 4. Overtime will be required on an as needed basis. Working environment is indoors and may require sitting for prolonged periods of time and repetitive hand motions. Additional years of experience (beyond the minimum requirement) may be substituted for the education on a year for year basis, only if the experience is at the level of the job for which the applicant is applying. (i.e., Four additional years of experience, at the level of the Senior IT Engineer classification, will be considered equivalent to a bachelor's degree). A graduate level degree in a directly related field may be substituted for one year of experience. To be considered under the "equivalent combination of education and experience" provision, it is your responsibility to include in your application materials written evidence of employment performed at the level of the typical duties of this position and/or coursework in subject areas directly related to this position. For more information, see our FAQ page at Submit a completed EBMUD application and the required supplemental questions responses online at by 4:30 p.m., Friday, August 14, 2026. Only application materials submitted online during the filing period will be accepted. EBMUD is an Equal Opportunity Employer: Females/Minorities/Veterans/Disability Job Hotline:
GENERAL SUMMARY The Forward Deployed Platform Application Developer builds, configures, tests, and supports user-facing solutions within Skypoint, Salesforce Nonprofit Cloud, and other approved enterprise platforms. This field-facing role works closely with operational users and the Forward Deployed Process Lead to translate workflow and business needs into practical technology solutions, including workflows, automation, AI agents, dashboards, data visualizations, and other user-facing tools that improve efficiency, data quality, and user experience. ESSENTIAL RESPONSIBILITIES Builds, configures, and supports solutions within Skypoint, Salesforce Nonprofit Cloud, and other approved enterprise platforms Develops and maintains workflows, automation, AI agents, dashboards, reports, and user-facing tools Translates operational and business requirements into practical platform solutions in partnership with operational leaders and end users Tests, refines, deploys, documents, and supports platform solutions to ensure usability, reliability, security, and adoption Administers Salesforce Nonprofit Cloud including users, permissions, workflows, reports, dashboards, and automation tools Collaborates with BI, data, and technical teams to support reporting, integration, and data quality requirements Troubleshoots issues and escalates advanced infrastructure, cybersecurity, integration, or data engineering needs as appropriate Supports continuous improvement of workflows, system usability, automation, and user experience across enterprise platforms Follows organizational governance, security, change management, and documentation standards Performs other duties as assigned JOB SPECIFICATION Bachelor's degree in Computer Science, Information Systems, Business, or related field preferred; equivalent experience considered Experience administering, configuring, or supporting enterprise application platforms required Experience with Salesforce administration, configuration, or platform development preferred Experience or strong interest in Skypoint, AI platforms, automation tools, dashboards, analytics, or data visualization preferred Ability to build workflows, automation, dashboards, AI agents, and user-facing tools using low-code or no-code platforms Strong technical problem-solving skills and practical application development mindset Basic understanding of data structures, reporting, integrations, governance, and system-to-system data flow Ability to translate business requirements into effective platform solutions Experience testing changes, troubleshooting issues, supporting users, and documenting configurations preferred Salesforce Administrator or Developer certification preferred Local travel required Healthcare, payer/provider, PACE, senior care, value-based care, or HIPAA experience preferred Covid vaccine preferred. EEO Statement Element Care is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, sex, color, religion, national origin, sexual orientation, protected veteran status, or on the basis of disability. Element Care is committed to valuing diversity and contributing to an inclusive working environment. Compensation details: 00 Yearly Salary PIef07d8c50c1e-5870
08/07/2026
Full time
GENERAL SUMMARY The Forward Deployed Platform Application Developer builds, configures, tests, and supports user-facing solutions within Skypoint, Salesforce Nonprofit Cloud, and other approved enterprise platforms. This field-facing role works closely with operational users and the Forward Deployed Process Lead to translate workflow and business needs into practical technology solutions, including workflows, automation, AI agents, dashboards, data visualizations, and other user-facing tools that improve efficiency, data quality, and user experience. ESSENTIAL RESPONSIBILITIES Builds, configures, and supports solutions within Skypoint, Salesforce Nonprofit Cloud, and other approved enterprise platforms Develops and maintains workflows, automation, AI agents, dashboards, reports, and user-facing tools Translates operational and business requirements into practical platform solutions in partnership with operational leaders and end users Tests, refines, deploys, documents, and supports platform solutions to ensure usability, reliability, security, and adoption Administers Salesforce Nonprofit Cloud including users, permissions, workflows, reports, dashboards, and automation tools Collaborates with BI, data, and technical teams to support reporting, integration, and data quality requirements Troubleshoots issues and escalates advanced infrastructure, cybersecurity, integration, or data engineering needs as appropriate Supports continuous improvement of workflows, system usability, automation, and user experience across enterprise platforms Follows organizational governance, security, change management, and documentation standards Performs other duties as assigned JOB SPECIFICATION Bachelor's degree in Computer Science, Information Systems, Business, or related field preferred; equivalent experience considered Experience administering, configuring, or supporting enterprise application platforms required Experience with Salesforce administration, configuration, or platform development preferred Experience or strong interest in Skypoint, AI platforms, automation tools, dashboards, analytics, or data visualization preferred Ability to build workflows, automation, dashboards, AI agents, and user-facing tools using low-code or no-code platforms Strong technical problem-solving skills and practical application development mindset Basic understanding of data structures, reporting, integrations, governance, and system-to-system data flow Ability to translate business requirements into effective platform solutions Experience testing changes, troubleshooting issues, supporting users, and documenting configurations preferred Salesforce Administrator or Developer certification preferred Local travel required Healthcare, payer/provider, PACE, senior care, value-based care, or HIPAA experience preferred Covid vaccine preferred. EEO Statement Element Care is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, sex, color, religion, national origin, sexual orientation, protected veteran status, or on the basis of disability. Element Care is committed to valuing diversity and contributing to an inclusive working environment. Compensation details: 00 Yearly Salary PIef07d8c50c1e-5870
Tomorrow RNG is a renewable natural gas (RNG) producer focused on reducing emissions and creating a greener future. With cutting-edge facilities and a dedicated team of over 125 professionals, we seamlessly integrate the RNG value chain to ensure excellence for our landfill partners and the communities we serve. Guided by values of integrity and sustainability, Tomorrow RNG is backed by Enbridge's 175+ year pedigree in the natural gas industry, delivering top-tier assets that exceed customer and partner expectations. Position Summary The IIoT Systems Architect is responsible for the strategy, design, implementation, and lifecycle management of industrial automation, control systems, and digital infrastructure supporting renewable natural gas (RNG) production facilities. This position serves as the technical lead for PLC, HMI, SCADA, instrumentation, industrial networking, and IIoT initiatives while driving standardization, cybersecurity, operational reliability, and digital transformation across multiple operating facilities. Working closely with Operations, Engineering, Maintenance, IT/OT, and project teams, the IIoT Systems Architect develops scalable automation solutions, leads controls projects, and provides hands-on technical expertise to improve plant performance, system reliability, and operational efficiency. Key Responsibilities Design, develop, maintain, and optimize PLC, HMI, and SCADA systems supporting RNG plant operations. Develop control logic, sequencing, interlocks, permissives, shutdowns, alarming, and process automation strategies. Lead commissioning, startup, troubleshooting, and optimization of control systems. Maintain controller backups, version control, change management, and system lifecycle planning. Develop and maintain the organization's IIoT architecture, digital infrastructure, and automation standards. Design edge-to-cloud data collection, visualization, historian, reporting, and remote-monitoring solutions. Standardize automation architecture, device naming, tag structures, alarm philosophies, and system integration methods across facilities. Identify and implement technologies that improve operational efficiency, plant reliability, uptime, and decision-making. Design, configure, document, and support industrial Ethernet and operational technology network infrastructure. Manage communications among PLCs, RTUs, VFDs, analyzers, instrumentation, HMIs, SCADA platforms, historians, and enterprise systems. Support secure remote connectivity, network segmentation, access controls, backup practices, and cybersecurity standards. Maintain current network diagrams, IP addressing plans, device inventories, and system documentation. Support instrumentation integration, calibration coordination, signal validation, and long-term maintainability of measurement systems. Develop and maintain control narratives, I/O lists, cause-and-effect matrices, alarm lists, and control philosophies. Assist with P&ID reviews, panel design, loop checks, field verification, device checkout, and system integration. Develop preventive, predictive, and corrective maintenance strategies for automation, controls, instrumentation, and industrial network assets. Support root cause investigations and corrective actions for recurring control system, instrumentation, and communication failures. Establish and monitor system health metrics, alarm analytics, downtime reporting, and reliability performance indicators. Train and mentor maintenance and operations personnel on system functionality, troubleshooting techniques, and change-management practices. Lead automation and controls projects from initial concept and scope development through design, procurement, implementation, commissioning, and closeout. Develop project scopes, technical specifications, schedules, budgets, resource plans, and management updates. Coordinate contractors, system integrators, panel builders, vendors, IT resources, and internal stakeholders. Lead or support factory acceptance testing, site acceptance testing, site walkdowns, punch-list resolution, startup planning, and operational turnover. Ensure project deliverables include complete documentation, system backups, as-built drawings, training materials, and operational support requirements. Provide hands-on field support for control panels, industrial network devices, instrumentation, PLCs, HMIs, and SCADA-connected infrastructure. Support emergency troubleshooting and restoration activities involving critical automation or process control systems. Partner with Engineering, Operations, Maintenance, IT/OT, EHS, and external vendors to support capital projects, plant reliability, and continuous improvement initiatives. Evaluate emerging technologies, software platforms, and hardware solutions for operational suitability, cybersecurity alignment, and return on investment. Support regulatory, quality, and internal audit requirements related to automation records, alarm history, data retention, system access, and change documentation. Perform other related automation, controls, project, and technical leadership duties as assigned. Qualifications Bachelor's degree in Electrical Engineering, Automation Engineering, Computer Engineering, Engineering Technology, Computer Science, or a closely related technical discipline is preferred. Equivalent combinations of education, military training, technical certifications, and progressively responsible industry experience will be considered. 5 - 8 years of experience supporting industrial automation, PLCs, HMI/SCADA systems, instrumentation, industrial networking, or process control systems in manufacturing, energy, RNG, oil & gas, chemical, or other industrial process environments. Experience with PLC programming, HMI/SCADA configuration, instrumentation, and industrial Ethernet networks. Experience supporting commissioning, troubleshooting, maintenance, and continuous improvement of industrial control systems. Strong understanding of industrial automation best practices and a commitment to safe, reliable plant operations. Preferred Qualifications Rockwell Automation (Studio 5000/FactoryTalk) certifications Ignition by Inductive Automation experience/certification Cisco CCNA or Industrial Networking certification ISA Certified Automation Professional (CAP) CompTIA Security+ or ISA/IEC 62443 Cybersecurity training PMP certification (preferred but not required). Requirements Up to 40% of travel to field and corporate locations is required. Work Environment & Travel Work Location: This position is based in a regional office with travel to field sites as needed. Schedule/Shift: Benefits: Benefits: 401(k) Health, Dental & Vision Insurance Life Insurance PTO Supplemental Pay: Bonus Pay PIfe03e29888e5-7316
08/07/2026
Full time
Tomorrow RNG is a renewable natural gas (RNG) producer focused on reducing emissions and creating a greener future. With cutting-edge facilities and a dedicated team of over 125 professionals, we seamlessly integrate the RNG value chain to ensure excellence for our landfill partners and the communities we serve. Guided by values of integrity and sustainability, Tomorrow RNG is backed by Enbridge's 175+ year pedigree in the natural gas industry, delivering top-tier assets that exceed customer and partner expectations. Position Summary The IIoT Systems Architect is responsible for the strategy, design, implementation, and lifecycle management of industrial automation, control systems, and digital infrastructure supporting renewable natural gas (RNG) production facilities. This position serves as the technical lead for PLC, HMI, SCADA, instrumentation, industrial networking, and IIoT initiatives while driving standardization, cybersecurity, operational reliability, and digital transformation across multiple operating facilities. Working closely with Operations, Engineering, Maintenance, IT/OT, and project teams, the IIoT Systems Architect develops scalable automation solutions, leads controls projects, and provides hands-on technical expertise to improve plant performance, system reliability, and operational efficiency. Key Responsibilities Design, develop, maintain, and optimize PLC, HMI, and SCADA systems supporting RNG plant operations. Develop control logic, sequencing, interlocks, permissives, shutdowns, alarming, and process automation strategies. Lead commissioning, startup, troubleshooting, and optimization of control systems. Maintain controller backups, version control, change management, and system lifecycle planning. Develop and maintain the organization's IIoT architecture, digital infrastructure, and automation standards. Design edge-to-cloud data collection, visualization, historian, reporting, and remote-monitoring solutions. Standardize automation architecture, device naming, tag structures, alarm philosophies, and system integration methods across facilities. Identify and implement technologies that improve operational efficiency, plant reliability, uptime, and decision-making. Design, configure, document, and support industrial Ethernet and operational technology network infrastructure. Manage communications among PLCs, RTUs, VFDs, analyzers, instrumentation, HMIs, SCADA platforms, historians, and enterprise systems. Support secure remote connectivity, network segmentation, access controls, backup practices, and cybersecurity standards. Maintain current network diagrams, IP addressing plans, device inventories, and system documentation. Support instrumentation integration, calibration coordination, signal validation, and long-term maintainability of measurement systems. Develop and maintain control narratives, I/O lists, cause-and-effect matrices, alarm lists, and control philosophies. Assist with P&ID reviews, panel design, loop checks, field verification, device checkout, and system integration. Develop preventive, predictive, and corrective maintenance strategies for automation, controls, instrumentation, and industrial network assets. Support root cause investigations and corrective actions for recurring control system, instrumentation, and communication failures. Establish and monitor system health metrics, alarm analytics, downtime reporting, and reliability performance indicators. Train and mentor maintenance and operations personnel on system functionality, troubleshooting techniques, and change-management practices. Lead automation and controls projects from initial concept and scope development through design, procurement, implementation, commissioning, and closeout. Develop project scopes, technical specifications, schedules, budgets, resource plans, and management updates. Coordinate contractors, system integrators, panel builders, vendors, IT resources, and internal stakeholders. Lead or support factory acceptance testing, site acceptance testing, site walkdowns, punch-list resolution, startup planning, and operational turnover. Ensure project deliverables include complete documentation, system backups, as-built drawings, training materials, and operational support requirements. Provide hands-on field support for control panels, industrial network devices, instrumentation, PLCs, HMIs, and SCADA-connected infrastructure. Support emergency troubleshooting and restoration activities involving critical automation or process control systems. Partner with Engineering, Operations, Maintenance, IT/OT, EHS, and external vendors to support capital projects, plant reliability, and continuous improvement initiatives. Evaluate emerging technologies, software platforms, and hardware solutions for operational suitability, cybersecurity alignment, and return on investment. Support regulatory, quality, and internal audit requirements related to automation records, alarm history, data retention, system access, and change documentation. Perform other related automation, controls, project, and technical leadership duties as assigned. Qualifications Bachelor's degree in Electrical Engineering, Automation Engineering, Computer Engineering, Engineering Technology, Computer Science, or a closely related technical discipline is preferred. Equivalent combinations of education, military training, technical certifications, and progressively responsible industry experience will be considered. 5 - 8 years of experience supporting industrial automation, PLCs, HMI/SCADA systems, instrumentation, industrial networking, or process control systems in manufacturing, energy, RNG, oil & gas, chemical, or other industrial process environments. Experience with PLC programming, HMI/SCADA configuration, instrumentation, and industrial Ethernet networks. Experience supporting commissioning, troubleshooting, maintenance, and continuous improvement of industrial control systems. Strong understanding of industrial automation best practices and a commitment to safe, reliable plant operations. Preferred Qualifications Rockwell Automation (Studio 5000/FactoryTalk) certifications Ignition by Inductive Automation experience/certification Cisco CCNA or Industrial Networking certification ISA Certified Automation Professional (CAP) CompTIA Security+ or ISA/IEC 62443 Cybersecurity training PMP certification (preferred but not required). Requirements Up to 40% of travel to field and corporate locations is required. Work Environment & Travel Work Location: This position is based in a regional office with travel to field sites as needed. Schedule/Shift: Benefits: Benefits: 401(k) Health, Dental & Vision Insurance Life Insurance PTO Supplemental Pay: Bonus Pay PIfe03e29888e5-7316
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Lead Specialist to join our Federal Advisory practice. Responsibilities: Lead the design, development, and deployment of secure, multi-cloud and hybrid environments, ensuring all architectures are in strict accordance with Zero Trust principals and aligned with the DoD Architecture Provide subject matter expertise on federal cybersecurity regulations, including the NIST Risk Management Framework (RMF), CMMC, and FedRAMP, ensuring solutions are secure and compliant by design Build, mentor, and lead a team of cybersecurity and cloud engineerings Provide hands-on technical guidance across core infrastructure domains Architect and implement advanced enterprise networking, virtualization, and containerization (e.g., Kupernetes, Docker) strategies to support secure, scalable, and resilient application deployments Interface directly with senior federal clients, translating complex mission requirements into robust, scalable, and resilient technical solutions Articulate complex technical concepts to both technical and non-technical stakeholders Qualifications: A minimum of five years of experience in systems engineering, cybersecurity, or enterprise architecture; U.S. Federal government consulting experience preferred Bachelor's degree from an accredited college/university; Master's degree preferred Experience with Identity, Credential, and Access Management (ICAM) solutions and architectures ICAM Solutions certification preferred (e.g. Okta, Sailpoint, Ping, CyberArk) Deep technical expertise in Microsoft Azure services, security controls, and government-specific environments (e.g. Azure Government) Hands-on expertise with a broad range of Zero Trust-enabling technologies such as SASE, micro-segmentation, software-defined networking, or advanced endpoint protection Experience designing and securing large-scale container orchestration platforms and complex virtualized data centers Ability to travel as required to support firm engagements Applicant must possess a U.S. Government Secret clearance KPMG LLP and its affiliates and subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work . Follow this link to obtain salary ranges by city outside of CA: KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state, or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please. KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
08/07/2026
Full time
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Lead Specialist to join our Federal Advisory practice. Responsibilities: Lead the design, development, and deployment of secure, multi-cloud and hybrid environments, ensuring all architectures are in strict accordance with Zero Trust principals and aligned with the DoD Architecture Provide subject matter expertise on federal cybersecurity regulations, including the NIST Risk Management Framework (RMF), CMMC, and FedRAMP, ensuring solutions are secure and compliant by design Build, mentor, and lead a team of cybersecurity and cloud engineerings Provide hands-on technical guidance across core infrastructure domains Architect and implement advanced enterprise networking, virtualization, and containerization (e.g., Kupernetes, Docker) strategies to support secure, scalable, and resilient application deployments Interface directly with senior federal clients, translating complex mission requirements into robust, scalable, and resilient technical solutions Articulate complex technical concepts to both technical and non-technical stakeholders Qualifications: A minimum of five years of experience in systems engineering, cybersecurity, or enterprise architecture; U.S. Federal government consulting experience preferred Bachelor's degree from an accredited college/university; Master's degree preferred Experience with Identity, Credential, and Access Management (ICAM) solutions and architectures ICAM Solutions certification preferred (e.g. Okta, Sailpoint, Ping, CyberArk) Deep technical expertise in Microsoft Azure services, security controls, and government-specific environments (e.g. Azure Government) Hands-on expertise with a broad range of Zero Trust-enabling technologies such as SASE, micro-segmentation, software-defined networking, or advanced endpoint protection Experience designing and securing large-scale container orchestration platforms and complex virtualized data centers Ability to travel as required to support firm engagements Applicant must possess a U.S. Government Secret clearance KPMG LLP and its affiliates and subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work . Follow this link to obtain salary ranges by city outside of CA: KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state, or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please. KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Lead Specialist, Cloud Security to join our Managed Services practice. Responsibilities: Manage cloud security posture across AWS and Azure environments, governing the review, prioritization, remediation, and reporting of security risks, misconfigurations, and compliance issues; Support secure adoption of cloud and AI-enabled services by implementing security baselines, guardrails, policies, and risk assessments across cloud platforms. Oversee cloud asset governance, including inventory accuracy, ownership accountability, lifecycle management, CMDB compliance, and visibility of unmanaged resources; Govern firewall security operations through Tufin and related platforms, ensuring policy compliance, risk reduction, audit readiness, and issue remediation. Manage cloud and firewall security exception processes, including risk acceptance, compensating controls, renewals, reporting, and regulatory compliance; Serve as a key liaison between cybersecurity, engineering, infrastructure, application, and risk teams to drive security governance and measurable risk reduction. Provides management coordination and oversight of Cyber Managed Services delivery across multiple engagements, ensuring high-quality service execution through effective collaboration with clients, KPMG stakeholders, and global delivery teams. Leads operational governance managed services, including incident, problem, and service request management, driving timely triage, escalation, resolution, stakeholder communications, and adherence to service level commitments. Oversees change and release management processes, operational escalations, and offshore/onshore delivery coordination, proactively managing risks, dependencies, resource requirements, and continuous service improvement initiatives. Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment. Qualifications: Minimum five years of recent cybersecurity experience, including cloud security, governance, risk management, security operations, or cloud architecture within complex enterprise environments Bachelor's degree in cybersecurity, information technology, computer science, engineering, or a related discipline Technical proficiency with AWS, Azure, IAM, Wiz, CSPM/CNAPP platforms, ServiceNow CMDB, firewall governance, and Tufin Experience supporting enterprise-scale AWS and Azure environments, including CSPM/CNAPP programs, multi-account governance models, and cloud security operating frameworks Solid experience managing vulnerability management, compliance, exception governance, KPI/KRI reporting, and risk-based remediation programs Demonstrated ability to influence stakeholders, coordinate cross-functional remediation efforts, and deliver measurable security and governance outcomes Ability to travel as needed Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future; KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa) KPMG LLP and its subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work . Follow this link to obtain salary ranges by city outside of CA: California Salary Range: $114095 - $268180 KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please. KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
08/07/2026
Full time
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Lead Specialist, Cloud Security to join our Managed Services practice. Responsibilities: Manage cloud security posture across AWS and Azure environments, governing the review, prioritization, remediation, and reporting of security risks, misconfigurations, and compliance issues; Support secure adoption of cloud and AI-enabled services by implementing security baselines, guardrails, policies, and risk assessments across cloud platforms. Oversee cloud asset governance, including inventory accuracy, ownership accountability, lifecycle management, CMDB compliance, and visibility of unmanaged resources; Govern firewall security operations through Tufin and related platforms, ensuring policy compliance, risk reduction, audit readiness, and issue remediation. Manage cloud and firewall security exception processes, including risk acceptance, compensating controls, renewals, reporting, and regulatory compliance; Serve as a key liaison between cybersecurity, engineering, infrastructure, application, and risk teams to drive security governance and measurable risk reduction. Provides management coordination and oversight of Cyber Managed Services delivery across multiple engagements, ensuring high-quality service execution through effective collaboration with clients, KPMG stakeholders, and global delivery teams. Leads operational governance managed services, including incident, problem, and service request management, driving timely triage, escalation, resolution, stakeholder communications, and adherence to service level commitments. Oversees change and release management processes, operational escalations, and offshore/onshore delivery coordination, proactively managing risks, dependencies, resource requirements, and continuous service improvement initiatives. Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment. Qualifications: Minimum five years of recent cybersecurity experience, including cloud security, governance, risk management, security operations, or cloud architecture within complex enterprise environments Bachelor's degree in cybersecurity, information technology, computer science, engineering, or a related discipline Technical proficiency with AWS, Azure, IAM, Wiz, CSPM/CNAPP platforms, ServiceNow CMDB, firewall governance, and Tufin Experience supporting enterprise-scale AWS and Azure environments, including CSPM/CNAPP programs, multi-account governance models, and cloud security operating frameworks Solid experience managing vulnerability management, compliance, exception governance, KPI/KRI reporting, and risk-based remediation programs Demonstrated ability to influence stakeholders, coordinate cross-functional remediation efforts, and deliver measurable security and governance outcomes Ability to travel as needed Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future; KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa) KPMG LLP and its subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work . Follow this link to obtain salary ranges by city outside of CA: California Salary Range: $114095 - $268180 KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please. KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Lead Specialist, Cloud Security to join our Managed Services practice. Responsibilities: Manage cloud security posture across AWS and Azure environments, governing the review, prioritization, remediation, and reporting of security risks, misconfigurations, and compliance issues; Support secure adoption of cloud and AI-enabled services by implementing security baselines, guardrails, policies, and risk assessments across cloud platforms. Oversee cloud asset governance, including inventory accuracy, ownership accountability, lifecycle management, CMDB compliance, and visibility of unmanaged resources; Govern firewall security operations through Tufin and related platforms, ensuring policy compliance, risk reduction, audit readiness, and issue remediation. Manage cloud and firewall security exception processes, including risk acceptance, compensating controls, renewals, reporting, and regulatory compliance; Serve as a key liaison between cybersecurity, engineering, infrastructure, application, and risk teams to drive security governance and measurable risk reduction. Provides management coordination and oversight of Cyber Managed Services delivery across multiple engagements, ensuring high-quality service execution through effective collaboration with clients, KPMG stakeholders, and global delivery teams. Leads operational governance managed services, including incident, problem, and service request management, driving timely triage, escalation, resolution, stakeholder communications, and adherence to service level commitments. Oversees change and release management processes, operational escalations, and offshore/onshore delivery coordination, proactively managing risks, dependencies, resource requirements, and continuous service improvement initiatives. Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment. Qualifications: Minimum five years of recent cybersecurity experience, including cloud security, governance, risk management, security operations, or cloud architecture within complex enterprise environments Bachelor's degree in cybersecurity, information technology, computer science, engineering, or a related discipline Technical proficiency with AWS, Azure, IAM, Wiz, CSPM/CNAPP platforms, ServiceNow CMDB, firewall governance, and Tufin Experience supporting enterprise-scale AWS and Azure environments, including CSPM/CNAPP programs, multi-account governance models, and cloud security operating frameworks Solid experience managing vulnerability management, compliance, exception governance, KPI/KRI reporting, and risk-based remediation programs Demonstrated ability to influence stakeholders, coordinate cross-functional remediation efforts, and deliver measurable security and governance outcomes Ability to travel as needed Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future; KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa) KPMG LLP and its subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work . Follow this link to obtain salary ranges by city outside of CA: California Salary Range: $114095 - $268180 KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please. KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
08/07/2026
Full time
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Lead Specialist, Cloud Security to join our Managed Services practice. Responsibilities: Manage cloud security posture across AWS and Azure environments, governing the review, prioritization, remediation, and reporting of security risks, misconfigurations, and compliance issues; Support secure adoption of cloud and AI-enabled services by implementing security baselines, guardrails, policies, and risk assessments across cloud platforms. Oversee cloud asset governance, including inventory accuracy, ownership accountability, lifecycle management, CMDB compliance, and visibility of unmanaged resources; Govern firewall security operations through Tufin and related platforms, ensuring policy compliance, risk reduction, audit readiness, and issue remediation. Manage cloud and firewall security exception processes, including risk acceptance, compensating controls, renewals, reporting, and regulatory compliance; Serve as a key liaison between cybersecurity, engineering, infrastructure, application, and risk teams to drive security governance and measurable risk reduction. Provides management coordination and oversight of Cyber Managed Services delivery across multiple engagements, ensuring high-quality service execution through effective collaboration with clients, KPMG stakeholders, and global delivery teams. Leads operational governance managed services, including incident, problem, and service request management, driving timely triage, escalation, resolution, stakeholder communications, and adherence to service level commitments. Oversees change and release management processes, operational escalations, and offshore/onshore delivery coordination, proactively managing risks, dependencies, resource requirements, and continuous service improvement initiatives. Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment. Qualifications: Minimum five years of recent cybersecurity experience, including cloud security, governance, risk management, security operations, or cloud architecture within complex enterprise environments Bachelor's degree in cybersecurity, information technology, computer science, engineering, or a related discipline Technical proficiency with AWS, Azure, IAM, Wiz, CSPM/CNAPP platforms, ServiceNow CMDB, firewall governance, and Tufin Experience supporting enterprise-scale AWS and Azure environments, including CSPM/CNAPP programs, multi-account governance models, and cloud security operating frameworks Solid experience managing vulnerability management, compliance, exception governance, KPI/KRI reporting, and risk-based remediation programs Demonstrated ability to influence stakeholders, coordinate cross-functional remediation efforts, and deliver measurable security and governance outcomes Ability to travel as needed Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future; KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa) KPMG LLP and its subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work . Follow this link to obtain salary ranges by city outside of CA: California Salary Range: $114095 - $268180 KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please. KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Senior Associate, Privileged Access Management Delivery Engineer to join our Advisory Services practice. Responsibilities: Support the delivery, configuration, and operationalization of Privileged Access Management (PAM) solutions as part of enterprise Identity & Access Management (IAM) programs Implement and maintain PAM capabilities including privileged credential management, session management, just-in-time access, and endpoint management (EPM)components; implement automated integration across adjacent security solutions (for example: Crowdstrike, SIEM solutions, ServiceNow); automate PAM tasks using scripting and APIs (such as PowerShell, Python, REST, and others) and integrate with enterprise platforms (that is, Active Directory, IdPs, ITSM platforms, SIEM platforms, and more) Integrate PAM solutions across cloud environments (for example: Azure, AWS, GCP) while following security leading practices Execute privileged access onboarding activities, access workflow configurations, and break glass process enablement Perform risk assessments, evaluate privileged access controls, and support remediation activities across client environments Collaborate with cross-functional engineering, security, and risk teams to enhance PAM processes and resolve technical issues; support migrations from legacy or alternative PAM tooling; contribute to standardization of PAM delivery patterns and templates Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment Qualifications: Minimum three years of recent professional experience in Identity & Access Management, Privileged Access Management, or cybersecurity Bachelor's degree from an accredited college or university is required; CyberArk Certified Delivery Engineer (CDE) or CyberArk Endpoint Privilege Manager (EPM) Certification preferred Hands on experience with Privileged Access Management delivery and engineering, with specific experience using CyberArk On-Prem and SaaS solutions; additional experience with secrets management platforms (that is, Conjur, HashiCorp) and other PAM platforms (such as Delinea, BeyondTrust) preferred Familiarity with infrastructure administration (such as Windows, Linux, Databases), networking basics, and IT architecture principles preferred. Experience supporting PAM integrations within cloud platforms such as Azure, AWS, or GCP; proficiency with scripting, automation integrations, infrastructure-as-code, and configuration management Strong understanding of IAM concepts, privileged access controls, and associated security risks; strong problem solving, communication, and documentation skills with the ability to work collaboratively across teams Ability to travel up to 50% Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future; KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa) KPMG LLP and its subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work . Follow this link to obtain salary ranges by city outside of CA: California Salary Range: $95855 - $208265 KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please. KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
08/07/2026
Full time
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Senior Associate, Privileged Access Management Delivery Engineer to join our Advisory Services practice. Responsibilities: Support the delivery, configuration, and operationalization of Privileged Access Management (PAM) solutions as part of enterprise Identity & Access Management (IAM) programs Implement and maintain PAM capabilities including privileged credential management, session management, just-in-time access, and endpoint management (EPM)components; implement automated integration across adjacent security solutions (for example: Crowdstrike, SIEM solutions, ServiceNow); automate PAM tasks using scripting and APIs (such as PowerShell, Python, REST, and others) and integrate with enterprise platforms (that is, Active Directory, IdPs, ITSM platforms, SIEM platforms, and more) Integrate PAM solutions across cloud environments (for example: Azure, AWS, GCP) while following security leading practices Execute privileged access onboarding activities, access workflow configurations, and break glass process enablement Perform risk assessments, evaluate privileged access controls, and support remediation activities across client environments Collaborate with cross-functional engineering, security, and risk teams to enhance PAM processes and resolve technical issues; support migrations from legacy or alternative PAM tooling; contribute to standardization of PAM delivery patterns and templates Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment Qualifications: Minimum three years of recent professional experience in Identity & Access Management, Privileged Access Management, or cybersecurity Bachelor's degree from an accredited college or university is required; CyberArk Certified Delivery Engineer (CDE) or CyberArk Endpoint Privilege Manager (EPM) Certification preferred Hands on experience with Privileged Access Management delivery and engineering, with specific experience using CyberArk On-Prem and SaaS solutions; additional experience with secrets management platforms (that is, Conjur, HashiCorp) and other PAM platforms (such as Delinea, BeyondTrust) preferred Familiarity with infrastructure administration (such as Windows, Linux, Databases), networking basics, and IT architecture principles preferred. Experience supporting PAM integrations within cloud platforms such as Azure, AWS, or GCP; proficiency with scripting, automation integrations, infrastructure-as-code, and configuration management Strong understanding of IAM concepts, privileged access controls, and associated security risks; strong problem solving, communication, and documentation skills with the ability to work collaboratively across teams Ability to travel up to 50% Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future; KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa) KPMG LLP and its subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work . Follow this link to obtain salary ranges by city outside of CA: California Salary Range: $95855 - $208265 KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please. KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Lead Specialist, Cloud Security to join our Managed Services practice. Responsibilities: Manage cloud security posture across AWS and Azure environments, governing the review, prioritization, remediation, and reporting of security risks, misconfigurations, and compliance issues; Support secure adoption of cloud and AI-enabled services by implementing security baselines, guardrails, policies, and risk assessments across cloud platforms. Oversee cloud asset governance, including inventory accuracy, ownership accountability, lifecycle management, CMDB compliance, and visibility of unmanaged resources; Govern firewall security operations through Tufin and related platforms, ensuring policy compliance, risk reduction, audit readiness, and issue remediation. Manage cloud and firewall security exception processes, including risk acceptance, compensating controls, renewals, reporting, and regulatory compliance; Serve as a key liaison between cybersecurity, engineering, infrastructure, application, and risk teams to drive security governance and measurable risk reduction. Provides management coordination and oversight of Cyber Managed Services delivery across multiple engagements, ensuring high-quality service execution through effective collaboration with clients, KPMG stakeholders, and global delivery teams. Leads operational governance managed services, including incident, problem, and service request management, driving timely triage, escalation, resolution, stakeholder communications, and adherence to service level commitments. Oversees change and release management processes, operational escalations, and offshore/onshore delivery coordination, proactively managing risks, dependencies, resource requirements, and continuous service improvement initiatives. Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment. Qualifications: Minimum five years of recent cybersecurity experience, including cloud security, governance, risk management, security operations, or cloud architecture within complex enterprise environments Bachelor's degree in cybersecurity, information technology, computer science, engineering, or a related discipline Technical proficiency with AWS, Azure, IAM, Wiz, CSPM/CNAPP platforms, ServiceNow CMDB, firewall governance, and Tufin Experience supporting enterprise-scale AWS and Azure environments, including CSPM/CNAPP programs, multi-account governance models, and cloud security operating frameworks Solid experience managing vulnerability management, compliance, exception governance, KPI/KRI reporting, and risk-based remediation programs Demonstrated ability to influence stakeholders, coordinate cross-functional remediation efforts, and deliver measurable security and governance outcomes Ability to travel as needed Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future; KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa) KPMG LLP and its subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work . Follow this link to obtain salary ranges by city outside of CA: California Salary Range: $114095 - $268180 KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please. KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
08/07/2026
Full time
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Lead Specialist, Cloud Security to join our Managed Services practice. Responsibilities: Manage cloud security posture across AWS and Azure environments, governing the review, prioritization, remediation, and reporting of security risks, misconfigurations, and compliance issues; Support secure adoption of cloud and AI-enabled services by implementing security baselines, guardrails, policies, and risk assessments across cloud platforms. Oversee cloud asset governance, including inventory accuracy, ownership accountability, lifecycle management, CMDB compliance, and visibility of unmanaged resources; Govern firewall security operations through Tufin and related platforms, ensuring policy compliance, risk reduction, audit readiness, and issue remediation. Manage cloud and firewall security exception processes, including risk acceptance, compensating controls, renewals, reporting, and regulatory compliance; Serve as a key liaison between cybersecurity, engineering, infrastructure, application, and risk teams to drive security governance and measurable risk reduction. Provides management coordination and oversight of Cyber Managed Services delivery across multiple engagements, ensuring high-quality service execution through effective collaboration with clients, KPMG stakeholders, and global delivery teams. Leads operational governance managed services, including incident, problem, and service request management, driving timely triage, escalation, resolution, stakeholder communications, and adherence to service level commitments. Oversees change and release management processes, operational escalations, and offshore/onshore delivery coordination, proactively managing risks, dependencies, resource requirements, and continuous service improvement initiatives. Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment. Qualifications: Minimum five years of recent cybersecurity experience, including cloud security, governance, risk management, security operations, or cloud architecture within complex enterprise environments Bachelor's degree in cybersecurity, information technology, computer science, engineering, or a related discipline Technical proficiency with AWS, Azure, IAM, Wiz, CSPM/CNAPP platforms, ServiceNow CMDB, firewall governance, and Tufin Experience supporting enterprise-scale AWS and Azure environments, including CSPM/CNAPP programs, multi-account governance models, and cloud security operating frameworks Solid experience managing vulnerability management, compliance, exception governance, KPI/KRI reporting, and risk-based remediation programs Demonstrated ability to influence stakeholders, coordinate cross-functional remediation efforts, and deliver measurable security and governance outcomes Ability to travel as needed Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future; KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa) KPMG LLP and its subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work . Follow this link to obtain salary ranges by city outside of CA: California Salary Range: $114095 - $268180 KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please. KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.