City/State Virginia Beach, VA Work Shift Multiple shifts available Overview: Sentara is hiring a Senior MLOps & Generative AI Engineer! This position is fully remote! Candidates must reside in one of the following states: Alabama, Delaware, Florida, Georgia, Idaho, Indiana, Kansas, Louisiana, Maine, Maryland, Minnesota, Nebraska, Nevada, New Hampshire, North Dakota, Ohio, Oklahoma, Pennsylvania, South Carolina, South Dakota, Tennessee, Texas, Utah, Washington, West Virginia, Wisconsin, or Wyoming. Overview We are seeking a highly skilled and experienced Senior MLOps & Generative AI Engineer to join our growing AI organization and help advance current and future initiatives applying machine learning, deep learning, NLP, and Generative AI technologies to improve healthcare outcomes and operational excellence. This role combines two critical focus areas: MLOps Engineering - building and scaling enterprise-grade ML infrastructure, deployment pipelines, observability, governance, and automation capabilities. Generative AI Engineering - designing, architecting, deploying, and optimizing secure, production-ready GenAI applications and platforms leveraging LLMs, RAG architectures, vector databases, prompt orchestration, and AI evaluation frameworks. As a Senior Engineer, you will partner closely with AI Scientists, Data Engineers, Software Engineers, Architects, and Product teams to operationalize AI/ML and Generative AI solutions at enterprise scale. You will play a key role in shaping the organization's AI platform strategy, driving best practices, and delivering scalable, secure, and reliable AI systems in production healthcare environments. Key Responsibilities MLOps Engineering Responsibilities Design, build, and maintain scalable ML infrastructure and pipelines supporting model training, deployment, monitoring, governance, and lifecycle management. Develop and optimize CI/CD pipelines for machine learning and AI workloads across development, staging, and production environments. Build reusable ML platform capabilities including feature stores, model registries, experimentation frameworks, artifact management, and deployment automation. Implement scalable orchestration and workflow solutions for batch and real-time ML inference workloads. Create robust monitoring systems to measure model performance, detect model drift, monitor data quality, and ensure production reliability. Develop automation tools and self-service capabilities to improve the efficiency, scalability, and reliability of MLOps processes. Collaborate with Data Scientists and Software Engineers to streamline the ML lifecycle from experimentation through enterprise production deployment. Apply software engineering best practices to AI/ML systems including testing, observability, resiliency, security, versioning, and infrastructure-as-code. Identify gaps and improvement opportunities within the organization's ML platform ecosystem and architect scalable solutions to address them. Support enterprise AI governance, compliance, auditability, and model risk management requirements. Ensure platform scalability, reliability, security, and operational excellence across AI/ML systems. Generative AI Engineering Responsibilities Lead the architecture, design, and deployment of enterprise Generative AI solutions leveraging LLMs, foundation models, and agentic AI systems. Design and implement Retrieval-Augmented Generation (RAG) pipelines using vector databases, embeddings, semantic search, reranking, and retrieval optimization strategies. Build scalable LLM orchestration frameworks using technologies such as LangChain, LlamaIndex, Semantic Kernel, or equivalent frameworks. Develop advanced prompt engineering strategies, prompt chaining, context management, and agent workflows to improve LLM accuracy and reliability. Evaluate and implement fine-tuning, parameter-efficient tuning, and prompt-based optimization approaches for domain-specific use cases. Build AI evaluation and benchmarking frameworks to measure hallucination rates, response quality, grounding accuracy, toxicity, bias, latency, and business performance metrics. Implement AI safety guardrails, governance controls, content filtering, and responsible AI practices for enterprise healthcare environments. Design scalable GenAI APIs and microservices supporting high-throughput enterprise AI applications. Optimize GenAI systems for cost, latency, throughput, and inference performance across cloud and hybrid environments. Integrate enterprise data sources, healthcare systems, and knowledge repositories into secure GenAI workflows. Research and evaluate emerging GenAI technologies, open-source frameworks, and foundation models to drive innovation and continuous improvement. Develop architecture diagrams, technical roadmaps, implementation strategies, and executive-level documentation for enterprise AI initiatives. Collaborate with cybersecurity, compliance, and infrastructure teams to ensure secure and compliant deployment of GenAI solutions involving PHI and sensitive healthcare data. Contribute to the development of AI platform standards, reusable GenAI accelerators, templates, and engineering best practices. Required Qualifications 5+ years of experience building and deploying production software, ML systems, or AI platforms. 1+ years of hands-on experience building production Generative AI or LLM-based applications. Strong programming skills in Python and experience with software engineering best practices. Experience with major deep learning and LLM frameworks such as PyTorch, Hugging Face Transformers, TensorFlow, or equivalent. Hands-on experience implementing RAG architectures, vector search, embeddings, prompt engineering, and LLM orchestration frameworks. Experience with vector databases such as Pinecone, Weaviate, Chroma, FAISS, Milvus, or equivalent technologies. Experience deploying AI/ML systems in cloud environments including AWS, Azure, or GCP. Strong understanding of APIs, distributed systems, microservices, and scalable backend architectures. Experience with Kubernetes, containerization, orchestration, and cloud-native infrastructure. Experience implementing CI/CD pipelines, infrastructure automation, and MLOps best practices. Experience building monitoring, observability, and alerting solutions for ML and AI systems. Strong understanding of AI/ML lifecycle management, governance, model versioning, and production operations. Experience designing secure, scalable, production-ready AI platforms and services. Strong communication and collaboration skills with the ability to work across technical and business teams. Preferred Qualifications Previous experience implementing Generative AI and MLOps solutions within healthcare environments. Experience working with EPIC or healthcare interoperability platforms. Understanding of HIPAA, PHI handling, healthcare compliance, and responsible AI practices. Experience with AI governance frameworks, LLM evaluation methodologies, and AI safety tooling. Experience with GPU infrastructure optimization and scalable inference architectures. Familiarity with multi-agent AI systems and autonomous workflows. Experience with event-driven architectures, streaming pipelines, and real-time inference systems. Exposure to model fine-tuning techniques including LoRA, PEFT, RLHF, or domain adaptation strategies. Experience with enterprise AI platform architecture and internal developer platforms. Prior experience mentoring engineers and leading technical initiatives. Education 5+ years of relevant experience with a degree (Required) or 7+ years of relevant experience without a degree (Required) Experience in lieu of Bachelor's Degree. Certification/Licensure No specific certification or licensure requirements Experience 5 to 7 years of relevant experience We provide market-competitive compensation packages, inclusive of base pay, incentives, and benefits. The base pay rate for Full Time employment is: $91,416.00 - $152,380.80. Additional compensation may be available for this role such as shift differentials, standby/on-call, overtime, premiums, extra shift incentives, or bonus opportunities. Benefits: Caring For Your Family and Your Career • Medical, Dental, Vision plans • Adoption, Fertility and Surrogacy Reimbursement up to $10,000 • Paid Time Off and Sick Leave • Paid Parental & Family Caregiver Leave • Emergency Backup Care • Long-Term, Short-Term Disability, and Critical Illness plans • Life Insurance • 401k/403B with Employer Match • Tuition Assistance - $5,250/year and discounted educational opportunities through Guild Education • Student Debt Pay Down - $10,000 • Reimbursement for certifications and free access to complete CEUs and professional development •Pet Insurance •Legal Resources Plan . click apply for full job details
08/07/2026
Full time
City/State Virginia Beach, VA Work Shift Multiple shifts available Overview: Sentara is hiring a Senior MLOps & Generative AI Engineer! This position is fully remote! Candidates must reside in one of the following states: Alabama, Delaware, Florida, Georgia, Idaho, Indiana, Kansas, Louisiana, Maine, Maryland, Minnesota, Nebraska, Nevada, New Hampshire, North Dakota, Ohio, Oklahoma, Pennsylvania, South Carolina, South Dakota, Tennessee, Texas, Utah, Washington, West Virginia, Wisconsin, or Wyoming. Overview We are seeking a highly skilled and experienced Senior MLOps & Generative AI Engineer to join our growing AI organization and help advance current and future initiatives applying machine learning, deep learning, NLP, and Generative AI technologies to improve healthcare outcomes and operational excellence. This role combines two critical focus areas: MLOps Engineering - building and scaling enterprise-grade ML infrastructure, deployment pipelines, observability, governance, and automation capabilities. Generative AI Engineering - designing, architecting, deploying, and optimizing secure, production-ready GenAI applications and platforms leveraging LLMs, RAG architectures, vector databases, prompt orchestration, and AI evaluation frameworks. As a Senior Engineer, you will partner closely with AI Scientists, Data Engineers, Software Engineers, Architects, and Product teams to operationalize AI/ML and Generative AI solutions at enterprise scale. You will play a key role in shaping the organization's AI platform strategy, driving best practices, and delivering scalable, secure, and reliable AI systems in production healthcare environments. Key Responsibilities MLOps Engineering Responsibilities Design, build, and maintain scalable ML infrastructure and pipelines supporting model training, deployment, monitoring, governance, and lifecycle management. Develop and optimize CI/CD pipelines for machine learning and AI workloads across development, staging, and production environments. Build reusable ML platform capabilities including feature stores, model registries, experimentation frameworks, artifact management, and deployment automation. Implement scalable orchestration and workflow solutions for batch and real-time ML inference workloads. Create robust monitoring systems to measure model performance, detect model drift, monitor data quality, and ensure production reliability. Develop automation tools and self-service capabilities to improve the efficiency, scalability, and reliability of MLOps processes. Collaborate with Data Scientists and Software Engineers to streamline the ML lifecycle from experimentation through enterprise production deployment. Apply software engineering best practices to AI/ML systems including testing, observability, resiliency, security, versioning, and infrastructure-as-code. Identify gaps and improvement opportunities within the organization's ML platform ecosystem and architect scalable solutions to address them. Support enterprise AI governance, compliance, auditability, and model risk management requirements. Ensure platform scalability, reliability, security, and operational excellence across AI/ML systems. Generative AI Engineering Responsibilities Lead the architecture, design, and deployment of enterprise Generative AI solutions leveraging LLMs, foundation models, and agentic AI systems. Design and implement Retrieval-Augmented Generation (RAG) pipelines using vector databases, embeddings, semantic search, reranking, and retrieval optimization strategies. Build scalable LLM orchestration frameworks using technologies such as LangChain, LlamaIndex, Semantic Kernel, or equivalent frameworks. Develop advanced prompt engineering strategies, prompt chaining, context management, and agent workflows to improve LLM accuracy and reliability. Evaluate and implement fine-tuning, parameter-efficient tuning, and prompt-based optimization approaches for domain-specific use cases. Build AI evaluation and benchmarking frameworks to measure hallucination rates, response quality, grounding accuracy, toxicity, bias, latency, and business performance metrics. Implement AI safety guardrails, governance controls, content filtering, and responsible AI practices for enterprise healthcare environments. Design scalable GenAI APIs and microservices supporting high-throughput enterprise AI applications. Optimize GenAI systems for cost, latency, throughput, and inference performance across cloud and hybrid environments. Integrate enterprise data sources, healthcare systems, and knowledge repositories into secure GenAI workflows. Research and evaluate emerging GenAI technologies, open-source frameworks, and foundation models to drive innovation and continuous improvement. Develop architecture diagrams, technical roadmaps, implementation strategies, and executive-level documentation for enterprise AI initiatives. Collaborate with cybersecurity, compliance, and infrastructure teams to ensure secure and compliant deployment of GenAI solutions involving PHI and sensitive healthcare data. Contribute to the development of AI platform standards, reusable GenAI accelerators, templates, and engineering best practices. Required Qualifications 5+ years of experience building and deploying production software, ML systems, or AI platforms. 1+ years of hands-on experience building production Generative AI or LLM-based applications. Strong programming skills in Python and experience with software engineering best practices. Experience with major deep learning and LLM frameworks such as PyTorch, Hugging Face Transformers, TensorFlow, or equivalent. Hands-on experience implementing RAG architectures, vector search, embeddings, prompt engineering, and LLM orchestration frameworks. Experience with vector databases such as Pinecone, Weaviate, Chroma, FAISS, Milvus, or equivalent technologies. Experience deploying AI/ML systems in cloud environments including AWS, Azure, or GCP. Strong understanding of APIs, distributed systems, microservices, and scalable backend architectures. Experience with Kubernetes, containerization, orchestration, and cloud-native infrastructure. Experience implementing CI/CD pipelines, infrastructure automation, and MLOps best practices. Experience building monitoring, observability, and alerting solutions for ML and AI systems. Strong understanding of AI/ML lifecycle management, governance, model versioning, and production operations. Experience designing secure, scalable, production-ready AI platforms and services. Strong communication and collaboration skills with the ability to work across technical and business teams. Preferred Qualifications Previous experience implementing Generative AI and MLOps solutions within healthcare environments. Experience working with EPIC or healthcare interoperability platforms. Understanding of HIPAA, PHI handling, healthcare compliance, and responsible AI practices. Experience with AI governance frameworks, LLM evaluation methodologies, and AI safety tooling. Experience with GPU infrastructure optimization and scalable inference architectures. Familiarity with multi-agent AI systems and autonomous workflows. Experience with event-driven architectures, streaming pipelines, and real-time inference systems. Exposure to model fine-tuning techniques including LoRA, PEFT, RLHF, or domain adaptation strategies. Experience with enterprise AI platform architecture and internal developer platforms. Prior experience mentoring engineers and leading technical initiatives. Education 5+ years of relevant experience with a degree (Required) or 7+ years of relevant experience without a degree (Required) Experience in lieu of Bachelor's Degree. Certification/Licensure No specific certification or licensure requirements Experience 5 to 7 years of relevant experience We provide market-competitive compensation packages, inclusive of base pay, incentives, and benefits. The base pay rate for Full Time employment is: $91,416.00 - $152,380.80. Additional compensation may be available for this role such as shift differentials, standby/on-call, overtime, premiums, extra shift incentives, or bonus opportunities. Benefits: Caring For Your Family and Your Career • Medical, Dental, Vision plans • Adoption, Fertility and Surrogacy Reimbursement up to $10,000 • Paid Time Off and Sick Leave • Paid Parental & Family Caregiver Leave • Emergency Backup Care • Long-Term, Short-Term Disability, and Critical Illness plans • Life Insurance • 401k/403B with Employer Match • Tuition Assistance - $5,250/year and discounted educational opportunities through Guild Education • Student Debt Pay Down - $10,000 • Reimbursement for certifications and free access to complete CEUs and professional development •Pet Insurance •Legal Resources Plan . click apply for full job details
Tomorrow RNG is a renewable natural gas (RNG) producer focused on reducing emissions and creating a greener future. With cutting-edge facilities and a dedicated team of over 125 professionals, we seamlessly integrate the RNG value chain to ensure excellence for our landfill partners and the communities we serve. Guided by values of integrity and sustainability, Tomorrow RNG is backed by Enbridge's 175+ year pedigree in the natural gas industry, delivering top-tier assets that exceed customer and partner expectations. Position Summary The IIoT Systems Architect is responsible for the strategy, design, implementation, and lifecycle management of industrial automation, control systems, and digital infrastructure supporting renewable natural gas (RNG) production facilities. This position serves as the technical lead for PLC, HMI, SCADA, instrumentation, industrial networking, and IIoT initiatives while driving standardization, cybersecurity, operational reliability, and digital transformation across multiple operating facilities. Working closely with Operations, Engineering, Maintenance, IT/OT, and project teams, the IIoT Systems Architect develops scalable automation solutions, leads controls projects, and provides hands-on technical expertise to improve plant performance, system reliability, and operational efficiency. Key Responsibilities Design, develop, maintain, and optimize PLC, HMI, and SCADA systems supporting RNG plant operations. Develop control logic, sequencing, interlocks, permissives, shutdowns, alarming, and process automation strategies. Lead commissioning, startup, troubleshooting, and optimization of control systems. Maintain controller backups, version control, change management, and system lifecycle planning. Develop and maintain the organization's IIoT architecture, digital infrastructure, and automation standards. Design edge-to-cloud data collection, visualization, historian, reporting, and remote-monitoring solutions. Standardize automation architecture, device naming, tag structures, alarm philosophies, and system integration methods across facilities. Identify and implement technologies that improve operational efficiency, plant reliability, uptime, and decision-making. Design, configure, document, and support industrial Ethernet and operational technology network infrastructure. Manage communications among PLCs, RTUs, VFDs, analyzers, instrumentation, HMIs, SCADA platforms, historians, and enterprise systems. Support secure remote connectivity, network segmentation, access controls, backup practices, and cybersecurity standards. Maintain current network diagrams, IP addressing plans, device inventories, and system documentation. Support instrumentation integration, calibration coordination, signal validation, and long-term maintainability of measurement systems. Develop and maintain control narratives, I/O lists, cause-and-effect matrices, alarm lists, and control philosophies. Assist with P&ID reviews, panel design, loop checks, field verification, device checkout, and system integration. Develop preventive, predictive, and corrective maintenance strategies for automation, controls, instrumentation, and industrial network assets. Support root cause investigations and corrective actions for recurring control system, instrumentation, and communication failures. Establish and monitor system health metrics, alarm analytics, downtime reporting, and reliability performance indicators. Train and mentor maintenance and operations personnel on system functionality, troubleshooting techniques, and change-management practices. Lead automation and controls projects from initial concept and scope development through design, procurement, implementation, commissioning, and closeout. Develop project scopes, technical specifications, schedules, budgets, resource plans, and management updates. Coordinate contractors, system integrators, panel builders, vendors, IT resources, and internal stakeholders. Lead or support factory acceptance testing, site acceptance testing, site walkdowns, punch-list resolution, startup planning, and operational turnover. Ensure project deliverables include complete documentation, system backups, as-built drawings, training materials, and operational support requirements. Provide hands-on field support for control panels, industrial network devices, instrumentation, PLCs, HMIs, and SCADA-connected infrastructure. Support emergency troubleshooting and restoration activities involving critical automation or process control systems. Partner with Engineering, Operations, Maintenance, IT/OT, EHS, and external vendors to support capital projects, plant reliability, and continuous improvement initiatives. Evaluate emerging technologies, software platforms, and hardware solutions for operational suitability, cybersecurity alignment, and return on investment. Support regulatory, quality, and internal audit requirements related to automation records, alarm history, data retention, system access, and change documentation. Perform other related automation, controls, project, and technical leadership duties as assigned. Qualifications Bachelor's degree in Electrical Engineering, Automation Engineering, Computer Engineering, Engineering Technology, Computer Science, or a closely related technical discipline is preferred. Equivalent combinations of education, military training, technical certifications, and progressively responsible industry experience will be considered. 5 - 8 years of experience supporting industrial automation, PLCs, HMI/SCADA systems, instrumentation, industrial networking, or process control systems in manufacturing, energy, RNG, oil & gas, chemical, or other industrial process environments. Experience with PLC programming, HMI/SCADA configuration, instrumentation, and industrial Ethernet networks. Experience supporting commissioning, troubleshooting, maintenance, and continuous improvement of industrial control systems. Strong understanding of industrial automation best practices and a commitment to safe, reliable plant operations. Preferred Qualifications Rockwell Automation (Studio 5000/FactoryTalk) certifications Ignition by Inductive Automation experience/certification Cisco CCNA or Industrial Networking certification ISA Certified Automation Professional (CAP) CompTIA Security+ or ISA/IEC 62443 Cybersecurity training PMP certification (preferred but not required). Requirements Up to 40% of travel to field and corporate locations is required. Work Environment & Travel Work Location: This position is based in a regional office with travel to field sites as needed. Schedule/Shift: Benefits: Benefits: 401(k) Health, Dental & Vision Insurance Life Insurance PTO Supplemental Pay: Bonus Pay PIfe03e29888e5-7316
08/07/2026
Full time
Tomorrow RNG is a renewable natural gas (RNG) producer focused on reducing emissions and creating a greener future. With cutting-edge facilities and a dedicated team of over 125 professionals, we seamlessly integrate the RNG value chain to ensure excellence for our landfill partners and the communities we serve. Guided by values of integrity and sustainability, Tomorrow RNG is backed by Enbridge's 175+ year pedigree in the natural gas industry, delivering top-tier assets that exceed customer and partner expectations. Position Summary The IIoT Systems Architect is responsible for the strategy, design, implementation, and lifecycle management of industrial automation, control systems, and digital infrastructure supporting renewable natural gas (RNG) production facilities. This position serves as the technical lead for PLC, HMI, SCADA, instrumentation, industrial networking, and IIoT initiatives while driving standardization, cybersecurity, operational reliability, and digital transformation across multiple operating facilities. Working closely with Operations, Engineering, Maintenance, IT/OT, and project teams, the IIoT Systems Architect develops scalable automation solutions, leads controls projects, and provides hands-on technical expertise to improve plant performance, system reliability, and operational efficiency. Key Responsibilities Design, develop, maintain, and optimize PLC, HMI, and SCADA systems supporting RNG plant operations. Develop control logic, sequencing, interlocks, permissives, shutdowns, alarming, and process automation strategies. Lead commissioning, startup, troubleshooting, and optimization of control systems. Maintain controller backups, version control, change management, and system lifecycle planning. Develop and maintain the organization's IIoT architecture, digital infrastructure, and automation standards. Design edge-to-cloud data collection, visualization, historian, reporting, and remote-monitoring solutions. Standardize automation architecture, device naming, tag structures, alarm philosophies, and system integration methods across facilities. Identify and implement technologies that improve operational efficiency, plant reliability, uptime, and decision-making. Design, configure, document, and support industrial Ethernet and operational technology network infrastructure. Manage communications among PLCs, RTUs, VFDs, analyzers, instrumentation, HMIs, SCADA platforms, historians, and enterprise systems. Support secure remote connectivity, network segmentation, access controls, backup practices, and cybersecurity standards. Maintain current network diagrams, IP addressing plans, device inventories, and system documentation. Support instrumentation integration, calibration coordination, signal validation, and long-term maintainability of measurement systems. Develop and maintain control narratives, I/O lists, cause-and-effect matrices, alarm lists, and control philosophies. Assist with P&ID reviews, panel design, loop checks, field verification, device checkout, and system integration. Develop preventive, predictive, and corrective maintenance strategies for automation, controls, instrumentation, and industrial network assets. Support root cause investigations and corrective actions for recurring control system, instrumentation, and communication failures. Establish and monitor system health metrics, alarm analytics, downtime reporting, and reliability performance indicators. Train and mentor maintenance and operations personnel on system functionality, troubleshooting techniques, and change-management practices. Lead automation and controls projects from initial concept and scope development through design, procurement, implementation, commissioning, and closeout. Develop project scopes, technical specifications, schedules, budgets, resource plans, and management updates. Coordinate contractors, system integrators, panel builders, vendors, IT resources, and internal stakeholders. Lead or support factory acceptance testing, site acceptance testing, site walkdowns, punch-list resolution, startup planning, and operational turnover. Ensure project deliverables include complete documentation, system backups, as-built drawings, training materials, and operational support requirements. Provide hands-on field support for control panels, industrial network devices, instrumentation, PLCs, HMIs, and SCADA-connected infrastructure. Support emergency troubleshooting and restoration activities involving critical automation or process control systems. Partner with Engineering, Operations, Maintenance, IT/OT, EHS, and external vendors to support capital projects, plant reliability, and continuous improvement initiatives. Evaluate emerging technologies, software platforms, and hardware solutions for operational suitability, cybersecurity alignment, and return on investment. Support regulatory, quality, and internal audit requirements related to automation records, alarm history, data retention, system access, and change documentation. Perform other related automation, controls, project, and technical leadership duties as assigned. Qualifications Bachelor's degree in Electrical Engineering, Automation Engineering, Computer Engineering, Engineering Technology, Computer Science, or a closely related technical discipline is preferred. Equivalent combinations of education, military training, technical certifications, and progressively responsible industry experience will be considered. 5 - 8 years of experience supporting industrial automation, PLCs, HMI/SCADA systems, instrumentation, industrial networking, or process control systems in manufacturing, energy, RNG, oil & gas, chemical, or other industrial process environments. Experience with PLC programming, HMI/SCADA configuration, instrumentation, and industrial Ethernet networks. Experience supporting commissioning, troubleshooting, maintenance, and continuous improvement of industrial control systems. Strong understanding of industrial automation best practices and a commitment to safe, reliable plant operations. Preferred Qualifications Rockwell Automation (Studio 5000/FactoryTalk) certifications Ignition by Inductive Automation experience/certification Cisco CCNA or Industrial Networking certification ISA Certified Automation Professional (CAP) CompTIA Security+ or ISA/IEC 62443 Cybersecurity training PMP certification (preferred but not required). Requirements Up to 40% of travel to field and corporate locations is required. Work Environment & Travel Work Location: This position is based in a regional office with travel to field sites as needed. Schedule/Shift: Benefits: Benefits: 401(k) Health, Dental & Vision Insurance Life Insurance PTO Supplemental Pay: Bonus Pay PIfe03e29888e5-7316
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Senior Associate, Privileged Access Management Delivery Engineer to join our Advisory Services practice. Responsibilities: Support the delivery, configuration, and operationalization of Privileged Access Management (PAM) solutions as part of enterprise Identity & Access Management (IAM) programs Implement and maintain PAM capabilities including privileged credential management, session management, just-in-time access, and endpoint management (EPM)components; implement automated integration across adjacent security solutions (for example: Crowdstrike, SIEM solutions, ServiceNow); automate PAM tasks using scripting and APIs (such as PowerShell, Python, REST, and others) and integrate with enterprise platforms (that is, Active Directory, IdPs, ITSM platforms, SIEM platforms, and more) Integrate PAM solutions across cloud environments (for example: Azure, AWS, GCP) while following security leading practices Execute privileged access onboarding activities, access workflow configurations, and break glass process enablement Perform risk assessments, evaluate privileged access controls, and support remediation activities across client environments Collaborate with cross-functional engineering, security, and risk teams to enhance PAM processes and resolve technical issues; support migrations from legacy or alternative PAM tooling; contribute to standardization of PAM delivery patterns and templates Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment Qualifications: Minimum three years of recent professional experience in Identity & Access Management, Privileged Access Management, or cybersecurity Bachelor's degree from an accredited college or university is required; CyberArk Certified Delivery Engineer (CDE) or CyberArk Endpoint Privilege Manager (EPM) Certification preferred Hands on experience with Privileged Access Management delivery and engineering, with specific experience using CyberArk On-Prem and SaaS solutions; additional experience with secrets management platforms (that is, Conjur, HashiCorp) and other PAM platforms (such as Delinea, BeyondTrust) preferred Familiarity with infrastructure administration (such as Windows, Linux, Databases), networking basics, and IT architecture principles preferred. Experience supporting PAM integrations within cloud platforms such as Azure, AWS, or GCP; proficiency with scripting, automation integrations, infrastructure-as-code, and configuration management Strong understanding of IAM concepts, privileged access controls, and associated security risks; strong problem solving, communication, and documentation skills with the ability to work collaboratively across teams Ability to travel up to 50% Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future; KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa) KPMG LLP and its subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work . Follow this link to obtain salary ranges by city outside of CA: California Salary Range: $95855 - $208265 KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please. KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
08/07/2026
Full time
The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you're looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Senior Associate, Privileged Access Management Delivery Engineer to join our Advisory Services practice. Responsibilities: Support the delivery, configuration, and operationalization of Privileged Access Management (PAM) solutions as part of enterprise Identity & Access Management (IAM) programs Implement and maintain PAM capabilities including privileged credential management, session management, just-in-time access, and endpoint management (EPM)components; implement automated integration across adjacent security solutions (for example: Crowdstrike, SIEM solutions, ServiceNow); automate PAM tasks using scripting and APIs (such as PowerShell, Python, REST, and others) and integrate with enterprise platforms (that is, Active Directory, IdPs, ITSM platforms, SIEM platforms, and more) Integrate PAM solutions across cloud environments (for example: Azure, AWS, GCP) while following security leading practices Execute privileged access onboarding activities, access workflow configurations, and break glass process enablement Perform risk assessments, evaluate privileged access controls, and support remediation activities across client environments Collaborate with cross-functional engineering, security, and risk teams to enhance PAM processes and resolve technical issues; support migrations from legacy or alternative PAM tooling; contribute to standardization of PAM delivery patterns and templates Act with integrity, professionalism, and personal responsibility to uphold KPMG's respectful and courteous work environment Qualifications: Minimum three years of recent professional experience in Identity & Access Management, Privileged Access Management, or cybersecurity Bachelor's degree from an accredited college or university is required; CyberArk Certified Delivery Engineer (CDE) or CyberArk Endpoint Privilege Manager (EPM) Certification preferred Hands on experience with Privileged Access Management delivery and engineering, with specific experience using CyberArk On-Prem and SaaS solutions; additional experience with secrets management platforms (that is, Conjur, HashiCorp) and other PAM platforms (such as Delinea, BeyondTrust) preferred Familiarity with infrastructure administration (such as Windows, Linux, Databases), networking basics, and IT architecture principles preferred. Experience supporting PAM integrations within cloud platforms such as Azure, AWS, or GCP; proficiency with scripting, automation integrations, infrastructure-as-code, and configuration management Strong understanding of IAM concepts, privileged access controls, and associated security risks; strong problem solving, communication, and documentation skills with the ability to work collaboratively across teams Ability to travel up to 50% Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future; KPMG LLP will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa) KPMG LLP and its subsidiaries ("KPMG") complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant's skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work . Follow this link to obtain salary ranges by city outside of CA: California Salary Range: $95855 - $208265 KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state or local laws. The attached link contains further information regarding KPMG's compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please. KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them. Los Angeles County applicants: Material job duties for this position are listed above. Criminal history may have a direct, adverse, and negative relationship with some of the material job duties of this position. These include the duties and responsibilities listed above, as well as the abilities to adhere to company policies, exercise sound judgment, effectively manage stress and work safely and respectfully with others, exhibit trustworthiness, and safeguard business operations and company reputation. Pursuant to the California Fair Chance Act, Los Angeles County Fair Chance Ordinance for Employers, Fair Chance Initiative for Hiring Ordinance, and San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.
Butcher Power Products (BPP) designs and manufactures mission critical and industrial power solutions for essential infrastructure nationwide. Headquartered in Sacramento, CA, our teams collaborate closely across engineering, manufacturing, and operations to build reliable, high quality systems and take pride in delivering work that truly matters. Job Summary: Butcher Power Products (BPP) is seeking a Senior Infrastructure & Security Engineer to join our growing Information Technology team. This is a unique opportunity for an experienced technology professional to help shape the future of IT operations within a rapidly evolving organization. BPP has recently completed a significant transformation to a modern Microsoft enterprise platform, including Microsoft 365 E5, Entra ID, Intune, Defender, Azure services, and a Cisco-based network infrastructure. The successful candidate will serve as the primary technical owner and subject matter expert for networking, infrastructure, cloud operations, identity security, and cybersecurity initiatives. Working alongside existing IT staff and strategic service providers, this individual will help establish internal ownership of critical technology platforms and reduce long-term reliance on managed service providers. This is a highly visible, hands-on engineering role that combines architecture, administration, operational support, security, project leadership, and technology strategy. Key Responsibilities: Infrastructure & Network Engineering: Own and administer Cisco Meraki networking environments, including switching, wireless, SD-WAN, VPN, and firewall services. Manage Cisco Umbrella, Duo MFA, and related network security technologies. Design, implement, and maintain network architecture standards. Manage network performance, availability, monitoring, and troubleshooting. Lead network expansion and modernization initiatives. Serve as primary escalation point for complex infrastructure issues. Maintain network diagrams, standards, and technical documentation. Security Engineering & Operations: Own operational administration of Microsoft Defender security solutions. Administer Microsoft Entra ID security controls, Conditional Access, and identity protection capabilities. Manage privileged access controls, RBAC, and security governance processes. Coordinate vulnerability management and remediation activities. Partner with eSentire and other security providers for incident response and threat management. Conduct risk assessments and security reviews. Lead implementation of security best practices aligned to Zero Trust principles. Develop and maintain cybersecurity policies, standards, and operational procedures. Microsoft Cloud & Identity Administration: Administer Microsoft 365, Entra ID, Intune, and Azure environments. Support cloud architecture and platform governance initiatives. Manage identity lifecycle processes and authentication services. Support compliance, device management, and endpoint security initiatives. Participate in future cloud modernization and automation projects. Evaluate and implement improvements to Microsoft security and infrastructure platforms. Technical Leadership & MSP Transition: Act as technical owner for infrastructure and security vendors. Develop plans to transition operational responsibilities from managed service providers to internal IT resources. Validate vendor recommendations and architectural decisions. Identify opportunities to improve service quality, operational efficiency, and cost effectiveness. Provide technical mentorship to engineers and support staff. Service Delivery & Support: Serve as Tier III escalation resource. Participate in troubleshooting complex user and infrastructure issues. Support major incidents and problem management activities. Contribute to continuous improvement of support processes and documentation. Utilize Jira Service Management and established ITIL-style processes. Qualifications: Required: 7+ years of experience in systems, infrastructure, networking, or cybersecurity roles. Experience administering Microsoft 365 environments. Experience with Microsoft Entra ID and identity security. Experience with Microsoft Defender security platforms. Strong networking fundamentals including routing, switching, VLANs, VPNs, wireless, and firewall technologies. Experience supporting Cisco or Meraki environments. Strong troubleshooting and analytical skills. Experience creating technical documentation and operational procedures. Ability to work independently and drive technical initiatives. Preferred: Experience transitioning services from MSP-supported environments to internal ownership. Experience with Cisco Meraki, Cisco Umbrella, and Duo. Experience with Microsoft Intune and endpoint management. Experience supporting Azure environments. Security Operations Center (SOC) collaboration experience. Manufacturing or multi-site environment experience. Certifications Preferred: CCNA Security+ SC-300 AZ-500 CISSP Meraki certifications Core Competencies: Technical Infrastructure & Networking Cybersecurity & Risk Management Microsoft Cloud & Endpoint Management Technical Leadership & Strategic Ownership Operational Excellence & Service Delivery CompensationThe base pay range for this role is $150,000 - $160,000 per year. Equal Opportunity Employer Butcher Power Products is an equal opportunity employer and considers all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other protected characteristic. If you require a reasonable accommodation during the application or interview process, please let us know. Compensation ranges are provided in accordance with applicable state and local pay transparency laws. PI4bf-4263
08/07/2026
Full time
Butcher Power Products (BPP) designs and manufactures mission critical and industrial power solutions for essential infrastructure nationwide. Headquartered in Sacramento, CA, our teams collaborate closely across engineering, manufacturing, and operations to build reliable, high quality systems and take pride in delivering work that truly matters. Job Summary: Butcher Power Products (BPP) is seeking a Senior Infrastructure & Security Engineer to join our growing Information Technology team. This is a unique opportunity for an experienced technology professional to help shape the future of IT operations within a rapidly evolving organization. BPP has recently completed a significant transformation to a modern Microsoft enterprise platform, including Microsoft 365 E5, Entra ID, Intune, Defender, Azure services, and a Cisco-based network infrastructure. The successful candidate will serve as the primary technical owner and subject matter expert for networking, infrastructure, cloud operations, identity security, and cybersecurity initiatives. Working alongside existing IT staff and strategic service providers, this individual will help establish internal ownership of critical technology platforms and reduce long-term reliance on managed service providers. This is a highly visible, hands-on engineering role that combines architecture, administration, operational support, security, project leadership, and technology strategy. Key Responsibilities: Infrastructure & Network Engineering: Own and administer Cisco Meraki networking environments, including switching, wireless, SD-WAN, VPN, and firewall services. Manage Cisco Umbrella, Duo MFA, and related network security technologies. Design, implement, and maintain network architecture standards. Manage network performance, availability, monitoring, and troubleshooting. Lead network expansion and modernization initiatives. Serve as primary escalation point for complex infrastructure issues. Maintain network diagrams, standards, and technical documentation. Security Engineering & Operations: Own operational administration of Microsoft Defender security solutions. Administer Microsoft Entra ID security controls, Conditional Access, and identity protection capabilities. Manage privileged access controls, RBAC, and security governance processes. Coordinate vulnerability management and remediation activities. Partner with eSentire and other security providers for incident response and threat management. Conduct risk assessments and security reviews. Lead implementation of security best practices aligned to Zero Trust principles. Develop and maintain cybersecurity policies, standards, and operational procedures. Microsoft Cloud & Identity Administration: Administer Microsoft 365, Entra ID, Intune, and Azure environments. Support cloud architecture and platform governance initiatives. Manage identity lifecycle processes and authentication services. Support compliance, device management, and endpoint security initiatives. Participate in future cloud modernization and automation projects. Evaluate and implement improvements to Microsoft security and infrastructure platforms. Technical Leadership & MSP Transition: Act as technical owner for infrastructure and security vendors. Develop plans to transition operational responsibilities from managed service providers to internal IT resources. Validate vendor recommendations and architectural decisions. Identify opportunities to improve service quality, operational efficiency, and cost effectiveness. Provide technical mentorship to engineers and support staff. Service Delivery & Support: Serve as Tier III escalation resource. Participate in troubleshooting complex user and infrastructure issues. Support major incidents and problem management activities. Contribute to continuous improvement of support processes and documentation. Utilize Jira Service Management and established ITIL-style processes. Qualifications: Required: 7+ years of experience in systems, infrastructure, networking, or cybersecurity roles. Experience administering Microsoft 365 environments. Experience with Microsoft Entra ID and identity security. Experience with Microsoft Defender security platforms. Strong networking fundamentals including routing, switching, VLANs, VPNs, wireless, and firewall technologies. Experience supporting Cisco or Meraki environments. Strong troubleshooting and analytical skills. Experience creating technical documentation and operational procedures. Ability to work independently and drive technical initiatives. Preferred: Experience transitioning services from MSP-supported environments to internal ownership. Experience with Cisco Meraki, Cisco Umbrella, and Duo. Experience with Microsoft Intune and endpoint management. Experience supporting Azure environments. Security Operations Center (SOC) collaboration experience. Manufacturing or multi-site environment experience. Certifications Preferred: CCNA Security+ SC-300 AZ-500 CISSP Meraki certifications Core Competencies: Technical Infrastructure & Networking Cybersecurity & Risk Management Microsoft Cloud & Endpoint Management Technical Leadership & Strategic Ownership Operational Excellence & Service Delivery CompensationThe base pay range for this role is $150,000 - $160,000 per year. Equal Opportunity Employer Butcher Power Products is an equal opportunity employer and considers all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other protected characteristic. If you require a reasonable accommodation during the application or interview process, please let us know. Compensation ranges are provided in accordance with applicable state and local pay transparency laws. PI4bf-4263
Rochester Precision Optics LLC
West Henrietta, New York
Title Systems Administrator Department Information Technology (IT) Reports to Information Technology Manager SEE YOUR CAREER THROUGH A NEW LENS WITH RPO! RPO is a global leader in precision optics, optical components, and optical assemblies. We specialize in a full spectrum of products & services including - Design and Engineering, Systems Integration, Lens Assembly, Visible and Infrared Components, Glass and Plastic Molded Aspheres, and Thin Film Coating. As one of the fastest growing companies in Rochester, RPO offers exciting career paths and work on market-leading programs. See below one of many career opportunities to join the RPO team! Position Overview Rochester Precision Optics LLC. (RPO) is seeking an experienced Systems Administrator to support the day-to-day operation, stability, and continuous improvement of our enterprise infrastructure supporting approximately 300 users across both corporate and manufacturing operations. Our environment relies on someone who can confidently administer Windows Server, Active Directory, virtualization, and Microsoft 365 while also supporting the network infrastructure that connects it all. The ideal candidate has a strong systems administration foundation with hands-on experience supporting enterprise networking, including switches, firewalls, VLANs, VPNs, and wireless technologies. Working closely with the IT Manager, you'll play a key role in maintaining a secure, reliable, and high-performing IT environment while contributing to infrastructure modernization, cybersecurity initiatives, and strategic technology projects. This is an opportunity for someone who enjoys solving complex infrastructure challenges, takes ownership of their work, and wants to make a measurable impact across the organization. Key Responsibilities: Systems Administration & Infrastructure Management Administer and maintain Windows Server environments, Active Directory, Group Policy, DNS, DHCP, and core Microsoft infrastructure services. Support VMware or Hyper-V virtualization environments, server resources, storage systems, and enterprise backup solutions. Perform system maintenance including patching, upgrades, configuration changes, and troubleshooting. Support Microsoft 365 services including Exchange Online, Teams, and Entra ID. Maintain infrastructure documentation, system standards, and technical procedures. Network Infrastructure Support Support enterprise network infrastructure including switches, firewalls, VPNs, and wireless networks. Troubleshoot VLANs, routing, subnetting, network connectivity, and security controls. Assist with network upgrades, infrastructure expansion projects, and technology improvements. Support network-connected systems including VoIP, security systems, and other enterprise technologies. Security & Operational Support Assist with infrastructure security initiatives, including system hardening, vulnerability remediation, and cybersecurity best practices. Assist with compliance initiatives related to NIST 800-171 and CMMC 2.0. Serve as a Tier II/Tier III escalation resource for complex systems and infrastructure issues. Partner with the IT Manager on infrastructure projects, technology improvements, and long-term planning. Knowledge, Skills, and Abilities: Bachelor's degree in information technology, Computer Science, or a related field preferred, or equivalent combination of education and hands-on experience. 4+ years of experience supporting enterprise IT infrastructure in a Systems Administrator, Infrastructure Administrator, Network Administrator, or similar role. Strong experience administering Windows Server environments, Active Directory, Group Policy, DNS, and DHCP. Experience supporting Microsoft 365 environments, including Exchange Online, Teams, and Entra ID. Experience supporting virtualization platforms such as VMware or Hyper-V. Experience administering and troubleshooting enterprise network infrastructure, including switches, VLANs, firewalls, VPNs, and wireless technologies. Experience supporting enterprise backup solutions, such as Veeam, and disaster recovery. Familiarity with endpoint management, software deployment, and security tools. Strong troubleshooting and problem-solving skills with the ability to independently diagnose and resolve complex technical issues. Ability to effectively communicate technical information and collaborate with both technical and non-technical teams. Preferred Qualifications Experience with cybersecurity frameworks or compliance requirements such as NIST 800-171 or CMMC. Experience with Microsoft Intune, Endpoint Central, or similar endpoint management platforms. PowerShell scripting or automation experience. Experience supporting ERP systems, SQL Server environments, or other business-critical applications. Industry certifications such as Network+, Security+, Microsoft, VMware, or Cisco certifications are a plus! Additional Requirements: Pursuant to ITAR, EAR, and other export compliance laws and regulations, applicants for this position must be U.S. Persons as defined by U.S. law, i.e., U.S. citizens, lawful permanent residents ("Green Card" holders), persons granted refugee status or asylum status in the United States, or temporary residents granted amnesty. Compensation & Benefits: Competitive compensation package linked to your experience and performance. 401(k) with company match and Tuition Reimbursement opportunities. Health, dental, vision, HSA, & life insurance. Paid time off including vacation, sick time, and 11 paid company holidays Work Requirements & Physical Demands: This is an on-site, hands-on IT role supporting both corporate office and manufacturing operations. The Systems Administrator will work in a collaborative environment where technology directly supports critical business and production processes. The role requires regular interaction with computer systems, servers, network equipment, and end-user technology across the organization. Occasional movement throughout the facility may be required to support infrastructure, troubleshoot equipment, and assist with technology deployments. Physical requirements may include: Ability to sit, stand, and work at a computer for extended periods. Ability to walk throughout office and manufacturing areas. Ability to lift, carry, and install IT equipment such as computers, monitors, networking equipment, and related hardware (typically up to 50 lbs.). Ability to work in both office and manufacturing environments while following applicable safety requirements. Occasional after-hours support may be required for scheduled maintenance, upgrades, or critical infrastructure issues. Disclaimer: This job description reflects management's assignment of essential functions; it does not prescribe or restrict the tasks that may be assigned. The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not to be construed as an exhaustive list of all responsibilities, duties, and skills required of personnel so classified. All personnel may be required to perform duties outside of their normal responsibilities from time to time, as needed. Rochester Precision Optics is committed to leveraging the talent of a diverse workforce to create great opportunities for our business and our people. EOE/AA/Race/Gender/Disability/Veteran In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States, and to complete This is a full-time, on-site position based at our West Henrietta, NY facility. The standard work schedule is Monday through Friday, 7:00 AM to 3:30 PM. Participation in an occasional rotating on-call schedule is required to provide after-hours support for critical infrastructure issues, planned maintenance, and emergency response as needed. Compensation details: 0 Yearly Salary PIbc2cfe6-
08/07/2026
Full time
Title Systems Administrator Department Information Technology (IT) Reports to Information Technology Manager SEE YOUR CAREER THROUGH A NEW LENS WITH RPO! RPO is a global leader in precision optics, optical components, and optical assemblies. We specialize in a full spectrum of products & services including - Design and Engineering, Systems Integration, Lens Assembly, Visible and Infrared Components, Glass and Plastic Molded Aspheres, and Thin Film Coating. As one of the fastest growing companies in Rochester, RPO offers exciting career paths and work on market-leading programs. See below one of many career opportunities to join the RPO team! Position Overview Rochester Precision Optics LLC. (RPO) is seeking an experienced Systems Administrator to support the day-to-day operation, stability, and continuous improvement of our enterprise infrastructure supporting approximately 300 users across both corporate and manufacturing operations. Our environment relies on someone who can confidently administer Windows Server, Active Directory, virtualization, and Microsoft 365 while also supporting the network infrastructure that connects it all. The ideal candidate has a strong systems administration foundation with hands-on experience supporting enterprise networking, including switches, firewalls, VLANs, VPNs, and wireless technologies. Working closely with the IT Manager, you'll play a key role in maintaining a secure, reliable, and high-performing IT environment while contributing to infrastructure modernization, cybersecurity initiatives, and strategic technology projects. This is an opportunity for someone who enjoys solving complex infrastructure challenges, takes ownership of their work, and wants to make a measurable impact across the organization. Key Responsibilities: Systems Administration & Infrastructure Management Administer and maintain Windows Server environments, Active Directory, Group Policy, DNS, DHCP, and core Microsoft infrastructure services. Support VMware or Hyper-V virtualization environments, server resources, storage systems, and enterprise backup solutions. Perform system maintenance including patching, upgrades, configuration changes, and troubleshooting. Support Microsoft 365 services including Exchange Online, Teams, and Entra ID. Maintain infrastructure documentation, system standards, and technical procedures. Network Infrastructure Support Support enterprise network infrastructure including switches, firewalls, VPNs, and wireless networks. Troubleshoot VLANs, routing, subnetting, network connectivity, and security controls. Assist with network upgrades, infrastructure expansion projects, and technology improvements. Support network-connected systems including VoIP, security systems, and other enterprise technologies. Security & Operational Support Assist with infrastructure security initiatives, including system hardening, vulnerability remediation, and cybersecurity best practices. Assist with compliance initiatives related to NIST 800-171 and CMMC 2.0. Serve as a Tier II/Tier III escalation resource for complex systems and infrastructure issues. Partner with the IT Manager on infrastructure projects, technology improvements, and long-term planning. Knowledge, Skills, and Abilities: Bachelor's degree in information technology, Computer Science, or a related field preferred, or equivalent combination of education and hands-on experience. 4+ years of experience supporting enterprise IT infrastructure in a Systems Administrator, Infrastructure Administrator, Network Administrator, or similar role. Strong experience administering Windows Server environments, Active Directory, Group Policy, DNS, and DHCP. Experience supporting Microsoft 365 environments, including Exchange Online, Teams, and Entra ID. Experience supporting virtualization platforms such as VMware or Hyper-V. Experience administering and troubleshooting enterprise network infrastructure, including switches, VLANs, firewalls, VPNs, and wireless technologies. Experience supporting enterprise backup solutions, such as Veeam, and disaster recovery. Familiarity with endpoint management, software deployment, and security tools. Strong troubleshooting and problem-solving skills with the ability to independently diagnose and resolve complex technical issues. Ability to effectively communicate technical information and collaborate with both technical and non-technical teams. Preferred Qualifications Experience with cybersecurity frameworks or compliance requirements such as NIST 800-171 or CMMC. Experience with Microsoft Intune, Endpoint Central, or similar endpoint management platforms. PowerShell scripting or automation experience. Experience supporting ERP systems, SQL Server environments, or other business-critical applications. Industry certifications such as Network+, Security+, Microsoft, VMware, or Cisco certifications are a plus! Additional Requirements: Pursuant to ITAR, EAR, and other export compliance laws and regulations, applicants for this position must be U.S. Persons as defined by U.S. law, i.e., U.S. citizens, lawful permanent residents ("Green Card" holders), persons granted refugee status or asylum status in the United States, or temporary residents granted amnesty. Compensation & Benefits: Competitive compensation package linked to your experience and performance. 401(k) with company match and Tuition Reimbursement opportunities. Health, dental, vision, HSA, & life insurance. Paid time off including vacation, sick time, and 11 paid company holidays Work Requirements & Physical Demands: This is an on-site, hands-on IT role supporting both corporate office and manufacturing operations. The Systems Administrator will work in a collaborative environment where technology directly supports critical business and production processes. The role requires regular interaction with computer systems, servers, network equipment, and end-user technology across the organization. Occasional movement throughout the facility may be required to support infrastructure, troubleshoot equipment, and assist with technology deployments. Physical requirements may include: Ability to sit, stand, and work at a computer for extended periods. Ability to walk throughout office and manufacturing areas. Ability to lift, carry, and install IT equipment such as computers, monitors, networking equipment, and related hardware (typically up to 50 lbs.). Ability to work in both office and manufacturing environments while following applicable safety requirements. Occasional after-hours support may be required for scheduled maintenance, upgrades, or critical infrastructure issues. Disclaimer: This job description reflects management's assignment of essential functions; it does not prescribe or restrict the tasks that may be assigned. The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not to be construed as an exhaustive list of all responsibilities, duties, and skills required of personnel so classified. All personnel may be required to perform duties outside of their normal responsibilities from time to time, as needed. Rochester Precision Optics is committed to leveraging the talent of a diverse workforce to create great opportunities for our business and our people. EOE/AA/Race/Gender/Disability/Veteran In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States, and to complete This is a full-time, on-site position based at our West Henrietta, NY facility. The standard work schedule is Monday through Friday, 7:00 AM to 3:30 PM. Participation in an occasional rotating on-call schedule is required to provide after-hours support for critical infrastructure issues, planned maintenance, and emergency response as needed. Compensation details: 0 Yearly Salary PIbc2cfe6-
ManTech International seeks a Linux Server Administrator to support mission-critical systems for U.S. defense, intelligence, and federal agencies. You will install, configure, secure, and maintain Linux servers; monitor performance; troubleshoot complex issues; and implement patches and automation using Bash or Python. Role includes managing users and access controls, supporting virtualization, backup and recovery, and documenting changes. Collaborate with cyber and engineering teams in a mission-focused, high-integrity environment with strong training, certification support, and career growth opportunities.
08/01/2026
Full time
ManTech International seeks a Linux Server Administrator to support mission-critical systems for U.S. defense, intelligence, and federal agencies. You will install, configure, secure, and maintain Linux servers; monitor performance; troubleshoot complex issues; and implement patches and automation using Bash or Python. Role includes managing users and access controls, supporting virtualization, backup and recovery, and documenting changes. Collaborate with cyber and engineering teams in a mission-focused, high-integrity environment with strong training, certification support, and career growth opportunities.
Tech Summary The preferred candidate will bring deep UiPath architecture experience, strong operational discipline, and the ability to partner effectively with project managers, business analysts, clinical operations, and enterprise stakeholders. This role requires a hands-on architect who can design scalable automation solutions, support production operations, and engage confidently with physician leaders, nurse leaders, and clinical operations stakeholders across the enterprise. The Architect IV should also be available to support after-hours, market-specific execution needs, production deployments, and critical release activities when required. Job Summary: In addition to the responsibilities listed below, this position is responsible for having a deep understanding of at least one application domain, including web, mobile, ERP, and/or mainframe, and having broad understanding of other architecture domains. Some of the unique challenges this position will face include supporting solutions across all domains as related to an application design. Essential Responsibilities: Completes work assignments and supports business-specific projects by applying expertise in subject area; supporting the development of work plans to meet business priorities and deadlines; ensuring team follows all procedures and policies; coordinating and assigning resources to accomplish priorities and deadlines; collaborating cross-functionally to make effective business decisions; solving complex problems; escalating high priority issues or risks, as appropriate; and recognizing and capitalizing on improvement opportunities. Practices self-development and promotes learning in others by proactively providing information, resources, advice, and expertise with coworkers and customers; building relationships with cross-functional stakeholders; influencing others through technical explanations and examples; adapting to competing demands and new responsibilities; listening and responding to, seeking, and addressing performance feedback; providing feedback to others and managers; creating and executing plans to capitalize on strengths and develop weaknesses; supporting team collaboration; and adapting to and learning from change, difficulties, and feedback. Executes the architecture process for technology solutions with guidance from senior architects as appropriate by collaborating with other architects to develop the target state. Creates solution architectures, roadmaps, and system transition plans to align business, applications, data, integration, and/or infrastructure architecture. Collaborates with project teams and business users to create architecture artifacts (for example, logical, conceptual, physical) to guide detailed design. Helps determine the selection of technologies as requested. Provides input into the development of the architecture strategy and technology direction by providing domain knowledge on solutions and technology. Shares knowledge of current capability gaps, architectural gaps, and market and industry trends that can be used to set future direction. Defines and communicates the architecture standards, guidelines, and statements of direction with guidance from senior architects, as appropriate, by facilitating the design and establishment of architecture standards or controls. Ensures architecture standards or controls allow business needs to be met. Assists in the development and establishment of architectural best practices that guide the design of technology solutions. Collaborates with IT and business leadership and participates in making decisions regarding the adoption of new technology. Demonstrates a full understanding of the architecture best practices for assigned domain(s) and educates others throughout the organization on the function of architecture methodologies, governance, and standards by serving as a subject matter expert across business and/or IT teams, and presenting to internal and external audiences. Minimum Qualifications: Minimum two (2) years experience with commercial off-the-shelf package integration. Minimum two (2) years experience working with data and integration technologies (e.g., ESB ETL, EAI). Minimum two (2) years experience translating solution requirements into technical application requirements. Minimum two (2) years experience in the design of target state architecture in a corporate or enterprise environment. Minimum two (2) years experience in solution architecture, including working with a portfolio of solutions. Minimum two (2) years experience working with application development frameworks (e.g., Spring, Jersey, Oracle ADF). Minimum one (1) year experience with modeling techniques (e.g., BPMN, UML, ER). Minimum one (1) year in a technical leadership role with or without direct reports. Bachelors degree in Computer Science, CIS, Engineering, Business, or related technical field and Minimum six (6) years IT experience delivering technical solutions, including at least Minimum two (2) years working on projects related to IT architecture. Additional equivalent work experience may be substituted for the degree requirement.
07/31/2026
Full time
Tech Summary The preferred candidate will bring deep UiPath architecture experience, strong operational discipline, and the ability to partner effectively with project managers, business analysts, clinical operations, and enterprise stakeholders. This role requires a hands-on architect who can design scalable automation solutions, support production operations, and engage confidently with physician leaders, nurse leaders, and clinical operations stakeholders across the enterprise. The Architect IV should also be available to support after-hours, market-specific execution needs, production deployments, and critical release activities when required. Job Summary: In addition to the responsibilities listed below, this position is responsible for having a deep understanding of at least one application domain, including web, mobile, ERP, and/or mainframe, and having broad understanding of other architecture domains. Some of the unique challenges this position will face include supporting solutions across all domains as related to an application design. Essential Responsibilities: Completes work assignments and supports business-specific projects by applying expertise in subject area; supporting the development of work plans to meet business priorities and deadlines; ensuring team follows all procedures and policies; coordinating and assigning resources to accomplish priorities and deadlines; collaborating cross-functionally to make effective business decisions; solving complex problems; escalating high priority issues or risks, as appropriate; and recognizing and capitalizing on improvement opportunities. Practices self-development and promotes learning in others by proactively providing information, resources, advice, and expertise with coworkers and customers; building relationships with cross-functional stakeholders; influencing others through technical explanations and examples; adapting to competing demands and new responsibilities; listening and responding to, seeking, and addressing performance feedback; providing feedback to others and managers; creating and executing plans to capitalize on strengths and develop weaknesses; supporting team collaboration; and adapting to and learning from change, difficulties, and feedback. Executes the architecture process for technology solutions with guidance from senior architects as appropriate by collaborating with other architects to develop the target state. Creates solution architectures, roadmaps, and system transition plans to align business, applications, data, integration, and/or infrastructure architecture. Collaborates with project teams and business users to create architecture artifacts (for example, logical, conceptual, physical) to guide detailed design. Helps determine the selection of technologies as requested. Provides input into the development of the architecture strategy and technology direction by providing domain knowledge on solutions and technology. Shares knowledge of current capability gaps, architectural gaps, and market and industry trends that can be used to set future direction. Defines and communicates the architecture standards, guidelines, and statements of direction with guidance from senior architects, as appropriate, by facilitating the design and establishment of architecture standards or controls. Ensures architecture standards or controls allow business needs to be met. Assists in the development and establishment of architectural best practices that guide the design of technology solutions. Collaborates with IT and business leadership and participates in making decisions regarding the adoption of new technology. Demonstrates a full understanding of the architecture best practices for assigned domain(s) and educates others throughout the organization on the function of architecture methodologies, governance, and standards by serving as a subject matter expert across business and/or IT teams, and presenting to internal and external audiences. Minimum Qualifications: Minimum two (2) years experience with commercial off-the-shelf package integration. Minimum two (2) years experience working with data and integration technologies (e.g., ESB ETL, EAI). Minimum two (2) years experience translating solution requirements into technical application requirements. Minimum two (2) years experience in the design of target state architecture in a corporate or enterprise environment. Minimum two (2) years experience in solution architecture, including working with a portfolio of solutions. Minimum two (2) years experience working with application development frameworks (e.g., Spring, Jersey, Oracle ADF). Minimum one (1) year experience with modeling techniques (e.g., BPMN, UML, ER). Minimum one (1) year in a technical leadership role with or without direct reports. Bachelors degree in Computer Science, CIS, Engineering, Business, or related technical field and Minimum six (6) years IT experience delivering technical solutions, including at least Minimum two (2) years working on projects related to IT architecture. Additional equivalent work experience may be substituted for the degree requirement.
Tech Summary The IS Consultant IV, Application Security position is a senior hands-on technical role responsible for leading complex application security assessments and advancing secure software development practices across the organization. The consultant will conduct secure code reviews, static and dynamic application security testing, open source component analysis, API and mobile application security assessments, threat modeling, security architecture reviews, vulnerability validation, and remediation guidance. The ideal candidate has advanced software development and application security experience using Java, Python, JavaScript, .NET, Swift, or similar technologies. The candidate should have practical experience with application security testing solutions, penetration testing tools such as Burp Suite or OWASP ZAP, and integrating security controls into CI/CD pipelines. This role requires the ability to independently lead complex assessments, define secure development standards and guardrails, evaluate third party applications, and influence architecture and engineering decisions. The consultant will collaborate with developers, architects, product owners, vendors, security leaders, and executive stakeholders to communicate technical risk clearly and provide actionable remediation recommendations. Experience with cloud native applications, APIs, mobile applications, AI enabled applications, DevSecOps automation, and healthcare or other regulated environments is preferred. Job Summary: In addition to responsibilities listed below, this position is responsible for reviewing application source code for potential security vulnerabilities by performing manual and automated security testing on applications in a running state (DAST); working with DevOps teams to integrate application security services; training DevOps personnel and developers to use application security tools; working one-on-one with developers to help them understand security vulnerabilities at hand and to identify/suggest remediation plans; and recommending application security training paths. This also includes responsibility for protecting applications in production by enrolling them for continuous assessment of existing and emerging threats, evaluating web application firewalls; tuning WAF rules; reviewing alerts; and identifying issues as appropriate. Essential Responsibilities: Completes work assignments and supports business-specific projects by applying expertise in subject area; supporting the development of work plans to meet business priorities and deadlines; ensuring team follows all procedures and policies; coordinating and assigning resources to accomplish priorities and deadlines; collaborating cross-functionally to make effective business decisions; solving complex problems; escalating high priority issues or risks, as appropriate; and recognizing and capitalizing on improvement opportunities. Practices self-development and promotes learning in others by proactively providing information, resources, advice, and expertise with coworkers and customers; building relationships with cross-functional stakeholders; influencing others through technical explanations and examples; adapting to competing demands and new responsibilities; listening and responding to, seeking, and addressing performance feedback; providing feedback to others and managers; creating and executing plans to capitalize on strengths and develop weaknesses; supporting team collaboration; and adapting to and learning from change, difficulties, and feedback. Effectively communicates investigative findings to non-technical audiences. Collaborates with technology risk teams and business stakeholders to respond to and remediate identified issues, and determine the best approach for improving security posture. Provides recommendations to management and business stakeholders on how to remediate issues identified through security testing processes. Identifies the impact of security test plans on upstream and downstream solution components. Supports information sharing and integration procedures across cyber security through the exchange of threat intelligence and cyber security vulnerability assessment data. Contributes to cyber security intellectual capital by making process or procedure improvements, conducting brown bag training sessions, and creating new training documents. Follows established processes to ensure KPI goals are obtained and performance metrics are tracked on an ongoing basis. Recommends business line or business technology team security process improvements which align with sustainable best practices, and the strategic and tactical goals of the business. Supports continuous process improvement by participating in the development, implementation, and maintenance of standardized security tools, templates, and processes across multiple business domains. Performs complex security test data analysis in support of security vulnerability assessment processes, including root cause analysis. Serves as an escalation point on issues, dependencies, and risks related to security testing. Executes the vulnerability assessment and penetration testing plan, methodologies, and standard processes for moderately to highly complex technology initiatives across multiple IT domains by analyzing business and technology requirements. Researches and stays abreast of industry trends, emerging threats, best practices, and cutting edge techniques to creatively discover and exploit vulnerabilities, and recommend security solutions for technology systems. Provides insight and consultation on the development of testing scope and approach, and collaborates with cross-functional IT and business stakeholders to review the overall testing approach. Validates security test scenarios across various SDLC phases (e.g., development, reproduction, production) for low- to moderately-complex projects. Generates scheduled reports (e.g., status updates, risk assessment reports, remediation reports) and provides regular security metrics to IT teams and management as appropriate. Minimum Qualifications: Minimum three (3) years software or application development experience. Minimum one (1) year experience in application security (e.g., source code analysis, dynamic analysis, etc.). Bachelors degree in Business Administration, Computer Science, Social Science, Mathematics, or related field and Minimum six (6) years experience in IT or a related field, including Minimum two (2) years in information security, network engineering, or application development. Additional equivalent work experience may be substituted for the degree requirement. Additional Requirements:
07/30/2026
Full time
Tech Summary The IS Consultant IV, Application Security position is a senior hands-on technical role responsible for leading complex application security assessments and advancing secure software development practices across the organization. The consultant will conduct secure code reviews, static and dynamic application security testing, open source component analysis, API and mobile application security assessments, threat modeling, security architecture reviews, vulnerability validation, and remediation guidance. The ideal candidate has advanced software development and application security experience using Java, Python, JavaScript, .NET, Swift, or similar technologies. The candidate should have practical experience with application security testing solutions, penetration testing tools such as Burp Suite or OWASP ZAP, and integrating security controls into CI/CD pipelines. This role requires the ability to independently lead complex assessments, define secure development standards and guardrails, evaluate third party applications, and influence architecture and engineering decisions. The consultant will collaborate with developers, architects, product owners, vendors, security leaders, and executive stakeholders to communicate technical risk clearly and provide actionable remediation recommendations. Experience with cloud native applications, APIs, mobile applications, AI enabled applications, DevSecOps automation, and healthcare or other regulated environments is preferred. Job Summary: In addition to responsibilities listed below, this position is responsible for reviewing application source code for potential security vulnerabilities by performing manual and automated security testing on applications in a running state (DAST); working with DevOps teams to integrate application security services; training DevOps personnel and developers to use application security tools; working one-on-one with developers to help them understand security vulnerabilities at hand and to identify/suggest remediation plans; and recommending application security training paths. This also includes responsibility for protecting applications in production by enrolling them for continuous assessment of existing and emerging threats, evaluating web application firewalls; tuning WAF rules; reviewing alerts; and identifying issues as appropriate. Essential Responsibilities: Completes work assignments and supports business-specific projects by applying expertise in subject area; supporting the development of work plans to meet business priorities and deadlines; ensuring team follows all procedures and policies; coordinating and assigning resources to accomplish priorities and deadlines; collaborating cross-functionally to make effective business decisions; solving complex problems; escalating high priority issues or risks, as appropriate; and recognizing and capitalizing on improvement opportunities. Practices self-development and promotes learning in others by proactively providing information, resources, advice, and expertise with coworkers and customers; building relationships with cross-functional stakeholders; influencing others through technical explanations and examples; adapting to competing demands and new responsibilities; listening and responding to, seeking, and addressing performance feedback; providing feedback to others and managers; creating and executing plans to capitalize on strengths and develop weaknesses; supporting team collaboration; and adapting to and learning from change, difficulties, and feedback. Effectively communicates investigative findings to non-technical audiences. Collaborates with technology risk teams and business stakeholders to respond to and remediate identified issues, and determine the best approach for improving security posture. Provides recommendations to management and business stakeholders on how to remediate issues identified through security testing processes. Identifies the impact of security test plans on upstream and downstream solution components. Supports information sharing and integration procedures across cyber security through the exchange of threat intelligence and cyber security vulnerability assessment data. Contributes to cyber security intellectual capital by making process or procedure improvements, conducting brown bag training sessions, and creating new training documents. Follows established processes to ensure KPI goals are obtained and performance metrics are tracked on an ongoing basis. Recommends business line or business technology team security process improvements which align with sustainable best practices, and the strategic and tactical goals of the business. Supports continuous process improvement by participating in the development, implementation, and maintenance of standardized security tools, templates, and processes across multiple business domains. Performs complex security test data analysis in support of security vulnerability assessment processes, including root cause analysis. Serves as an escalation point on issues, dependencies, and risks related to security testing. Executes the vulnerability assessment and penetration testing plan, methodologies, and standard processes for moderately to highly complex technology initiatives across multiple IT domains by analyzing business and technology requirements. Researches and stays abreast of industry trends, emerging threats, best practices, and cutting edge techniques to creatively discover and exploit vulnerabilities, and recommend security solutions for technology systems. Provides insight and consultation on the development of testing scope and approach, and collaborates with cross-functional IT and business stakeholders to review the overall testing approach. Validates security test scenarios across various SDLC phases (e.g., development, reproduction, production) for low- to moderately-complex projects. Generates scheduled reports (e.g., status updates, risk assessment reports, remediation reports) and provides regular security metrics to IT teams and management as appropriate. Minimum Qualifications: Minimum three (3) years software or application development experience. Minimum one (1) year experience in application security (e.g., source code analysis, dynamic analysis, etc.). Bachelors degree in Business Administration, Computer Science, Social Science, Mathematics, or related field and Minimum six (6) years experience in IT or a related field, including Minimum two (2) years in information security, network engineering, or application development. Additional equivalent work experience may be substituted for the degree requirement. Additional Requirements: