Job Description Job Description PURPOSE Provide installation, technical start-up, programming, and checkout for Building Access Control Systems, Fire Alarm, Parking Revenue Controls, and similar low voltage solutions. Maintain and grow the "Customer for Life" concept for existing and new customers. Performs related work as required. ESSENTIAL FUNCTIONS AND RESPONSIBILITIES The following duties are typical for this job. These are not to be constructed as exclusive or all inclusive. Other duties may be required and assigned. This is a field position with the primary responsibility to handle all aspects of service, installation, programming, and startup of Access Control, Burglary, Fire, Parking, Surveillance, and related systems. Primary market focus is Commercial Office, Data Centers, Government, Industrial, Healthcare, and Education. Desired candidate will have a minimum of 3 years of proven commercial enterprise type Access Control, Surveillance Video, Fire or Parking Revenue Control system and must be able to troubleshoot related serviceable systems. Program all Access Control Panels, Workstation Software, Surveillance Video systems, Fire Alarm, Parking Revenue Control system software and associated security services via their custom software application packages. Work with IT staff to coordinate the integration into customer networks and be willing to learn advanced network configurations and setup that apply to each system. Install mechanical lock systems that are either wirefree or wired lock system. Ensures customer satisfaction by continual follow-up, communication skills and complete final checkout of service and construction jobs where assigned. Provide sales support as needed to assist Project Manager to obtain recurring business. Have the drive to be the technical expert for our solutions and be willing to continue to learn our systems and provide value to customers. Assigned service calls to keep our offerings up and running with quick response and thorough checkout. Baker Group may supply a Van, Cell Phone, tools, and laptop. Provide documentation for operation and maintenance after a project is complete and communicate changes and modifications with Application Engineer. Attend turnover meetings between Project Manager and Applications Engineer discussing project scope, safety, timelines, etc. You will be required to obtain your NICET 1 and 2 certifications to maintain your State of Iowa Alarm License. Fire Alarm System knowledge is preferred for this position as well. You will be part of an On-Call schedule which is adjustable but currently once every 10 weeks. We do work all over Iowa and the Midwest. Our technicians must be agreeable to traveling overnight on occasions to install or startup a system that is out of town. You will be required to obtain your 30 HR OSHA certification within the 1st year. Baker Group allocates a budget for Baker Group Shirts that must be always worn, and pants must be in good condition with no holes or frays so that we all stay consistent with an image of Baker Group. MINIMUM EDUCATION & EXPERIENCE REQUIRED TO PERFORM ESSENTIAL FUNCTIONS Local 347 VDV Technician 2 Year Associates Degree in Related Technology High School Diploma CERTIFICATES, LICENSES, REGISTRATIONS Valid driver's license MENTAL AND PHYSICAL COMPETENCIES REQUIRED TO PERFORM ESSENTIAL FUNCTIONS Ability to perform all necessary duties unsupervised Knowledge of common Windows Office applications Knowledge of Microsoft SQL or other database applications preferred but not required Knowledge of Ethernet and serial network communication formats and hardware configurations Excellent interpersonal skills with ability to communicate effectively, both verbally and written Ability to take direction and fulfill commitments Value and support company core values and culture Understanding of construction site safety and display a high awareness of your surroundings Effectively prioritize and balance the "big picture" and immediate responsibilities Ability to listen effectively, value the opinions of others and acknowledge contributions of others Ability to communicate and work well with others at all levels ENVIRONMENTAL ADAPTABILITY At any given time, may be exposed to typical construction site and/or industrial site risks and environment Be able to work in exterior elements that come with all seasons (with or without temperature changes). EQUIPMENT/TOOLS Laptop PC Electronic Multimeter Hand tools/power tools Product Manufacturer Software Ladders and Lifts Required PPE is always in use. Baker Group is an Equal Opportunity Employer. In compliance with the Americans with Disabilities Act, Baker Group will consider reasonable accommodations for qualified individuals with disabilities and encourage prospective employees and incumbents to discuss potential accommodations with the Employer.
09/28/2026
Full time
Job Description Job Description PURPOSE Provide installation, technical start-up, programming, and checkout for Building Access Control Systems, Fire Alarm, Parking Revenue Controls, and similar low voltage solutions. Maintain and grow the "Customer for Life" concept for existing and new customers. Performs related work as required. ESSENTIAL FUNCTIONS AND RESPONSIBILITIES The following duties are typical for this job. These are not to be constructed as exclusive or all inclusive. Other duties may be required and assigned. This is a field position with the primary responsibility to handle all aspects of service, installation, programming, and startup of Access Control, Burglary, Fire, Parking, Surveillance, and related systems. Primary market focus is Commercial Office, Data Centers, Government, Industrial, Healthcare, and Education. Desired candidate will have a minimum of 3 years of proven commercial enterprise type Access Control, Surveillance Video, Fire or Parking Revenue Control system and must be able to troubleshoot related serviceable systems. Program all Access Control Panels, Workstation Software, Surveillance Video systems, Fire Alarm, Parking Revenue Control system software and associated security services via their custom software application packages. Work with IT staff to coordinate the integration into customer networks and be willing to learn advanced network configurations and setup that apply to each system. Install mechanical lock systems that are either wirefree or wired lock system. Ensures customer satisfaction by continual follow-up, communication skills and complete final checkout of service and construction jobs where assigned. Provide sales support as needed to assist Project Manager to obtain recurring business. Have the drive to be the technical expert for our solutions and be willing to continue to learn our systems and provide value to customers. Assigned service calls to keep our offerings up and running with quick response and thorough checkout. Baker Group may supply a Van, Cell Phone, tools, and laptop. Provide documentation for operation and maintenance after a project is complete and communicate changes and modifications with Application Engineer. Attend turnover meetings between Project Manager and Applications Engineer discussing project scope, safety, timelines, etc. You will be required to obtain your NICET 1 and 2 certifications to maintain your State of Iowa Alarm License. Fire Alarm System knowledge is preferred for this position as well. You will be part of an On-Call schedule which is adjustable but currently once every 10 weeks. We do work all over Iowa and the Midwest. Our technicians must be agreeable to traveling overnight on occasions to install or startup a system that is out of town. You will be required to obtain your 30 HR OSHA certification within the 1st year. Baker Group allocates a budget for Baker Group Shirts that must be always worn, and pants must be in good condition with no holes or frays so that we all stay consistent with an image of Baker Group. MINIMUM EDUCATION & EXPERIENCE REQUIRED TO PERFORM ESSENTIAL FUNCTIONS Local 347 VDV Technician 2 Year Associates Degree in Related Technology High School Diploma CERTIFICATES, LICENSES, REGISTRATIONS Valid driver's license MENTAL AND PHYSICAL COMPETENCIES REQUIRED TO PERFORM ESSENTIAL FUNCTIONS Ability to perform all necessary duties unsupervised Knowledge of common Windows Office applications Knowledge of Microsoft SQL or other database applications preferred but not required Knowledge of Ethernet and serial network communication formats and hardware configurations Excellent interpersonal skills with ability to communicate effectively, both verbally and written Ability to take direction and fulfill commitments Value and support company core values and culture Understanding of construction site safety and display a high awareness of your surroundings Effectively prioritize and balance the "big picture" and immediate responsibilities Ability to listen effectively, value the opinions of others and acknowledge contributions of others Ability to communicate and work well with others at all levels ENVIRONMENTAL ADAPTABILITY At any given time, may be exposed to typical construction site and/or industrial site risks and environment Be able to work in exterior elements that come with all seasons (with or without temperature changes). EQUIPMENT/TOOLS Laptop PC Electronic Multimeter Hand tools/power tools Product Manufacturer Software Ladders and Lifts Required PPE is always in use. Baker Group is an Equal Opportunity Employer. In compliance with the Americans with Disabilities Act, Baker Group will consider reasonable accommodations for qualified individuals with disabilities and encourage prospective employees and incumbents to discuss potential accommodations with the Employer.
Job Description Job Description Company Description Renesas is a global semiconductor company delivering innovative embedded processing, analog, power, and connectivity solutions. This role supports advanced power management products for demanding compute, AI, datacenter, and infrastructure applications. Job Description Renesas is seeking an experienced Principal Digital Engineer to define scalable verification and validation methodologies for advanced digital power management products used in AI, datacenter, and high-performance computing applications. This role focuses on the system-level verification layer that connects analog behavior, digital implementation, firmware interaction, software tooling, validation data, and customer-facing performance. The successful candidate will help define what must be proven, how it should be measured, and how results should be correlated across models, simulation, emulation, bench validation, and silicon. The ideal candidate combines mixed-signal engineering depth with verification strategy, automation mindset, and the ability to align cross-functional teams around clear, repeatable evidence. WHY THIS ROLE MATTERS Define verification strategy for complex mixed-signal power management systems. Improve confidence in architecture decisions by connecting requirements, models, tests, and measured data. Help execution teams converge faster by turning expert validation knowledge into reusable verification patterns. KEY RESPONSIBILITIES Define mixed-signal verification strategy for digital power controllers and related power management products. Develop system-level verification plans covering sensing paths, ADC/DAC behavior, PWM paths, telemetry, compensation, control-loop behavior, latency, quantization, noise, limits, sequencing, and corner behavior. Establish correlation methodologies across behavioral models, RTL, analog/mixed-signal simulations, emulation, bench validation, and silicon measurements where applicable. Define measurable pass/fail criteria, coverage expectations, reference scenarios, and evidence requirements for architecture and product decisions. Collaborate with systems, analog design, digital design, firmware, design verification, validation, applications, and software/tool teams. Support automation of verification results, including consistent metrics, plots, waveforms, summaries, and structured outputs for engineering review. Identify verification gaps early and help teams close ambiguity between system intent, implementation behavior, and validation evidence. Document verification methodology, interface assumptions, test intent, correlation expectations, and residual risks clearly for technical and leadership audiences. Qualifications Bachelor's degree in Electrical Engineering, Computer Engineering, or a related technical discipline. 8+ years of experience in mixed-signal verification, semiconductor validation, systems engineering, analog/mixed-signal design, design verification, or related product development. Strong understanding of analog and mixed-signal building blocks such as ADCs, DACs, amplifiers, references, sensing paths, timing circuits, PWM paths, or power stages. Experience defining verification plans, validation methodologies, measurable results, and technical evidence for complex electronic systems. Ability to work across analog, digital, firmware, validation, applications, and software/tool teams. Strong communication skills and ability to explain complex cross-domain verification issues clearly. PREFERRED QUALIFICATIONS Experience with digital multiphase controllers, DC/DC converters, voltage regulators, power management ICs, or high-current datacenter power applications. Experience with model-to-silicon correlation, behavioral modeling, real-number modeling, Verilog-AMS, SystemVerilog RNM, MATLAB, Python, SIMPLIS, or equivalent environments. Experience with verification automation, data analysis, test infrastructure, dashboards, databases, or API-driven workflows. Familiarity with control loops, stability, latency, quantization, noise, telemetry, and power-system measurement techniques. Experience creating reusable verification frameworks that improve quality and reduce repeated manual test setup. Additional Information Renesas is an embedded semiconductor solution provider driven by its Purpose, To Make Our Lives Easier . With a global team of over 21,000 engineers and problem solvers in more than 30 countries, we offer the opportunity to work on world leading technology for Automotive, Industrial, Infrastructure, and IoT, shaping a safer, healthier, greener, and smarter future. At Renesas, TAGIE is our culture, grounded in being Transparent, Agile, Global, Innovative, and Entrepreneurial. It shapes how we work, grow and deliver on our purpose together. This collaborative spirit and mindset drive our semiconductor technology to transform industries and impact millions of lives. We believe in rewarding our employees with a competitive benefits package alongside their salary. More information will be provided during the hiring process. Are you ready to join our team and shape the future with us? Renesas Electronics is an equal opportunity and affirmative action employer, committed to supporting diversity and fostering a work environment free of discrimination on the basis of sex, race, religion, national origin, gender, gender identity, gender expression, age, sexual orientation, military status, veteran status, or any other basis protected by law. For more information, please read our Diversity & Inclusion Statement. Renesas Electronics deals with dual-use technology that is subject to U.S. export controls regulations. Under these regulations it may be necessary for Renesas to obtain U.S. government export license prior to release of technology to certain persons. The decision whether or not to file or pursue an export license application is at the sole discretion of Renesas.
09/28/2026
Full time
Job Description Job Description Company Description Renesas is a global semiconductor company delivering innovative embedded processing, analog, power, and connectivity solutions. This role supports advanced power management products for demanding compute, AI, datacenter, and infrastructure applications. Job Description Renesas is seeking an experienced Principal Digital Engineer to define scalable verification and validation methodologies for advanced digital power management products used in AI, datacenter, and high-performance computing applications. This role focuses on the system-level verification layer that connects analog behavior, digital implementation, firmware interaction, software tooling, validation data, and customer-facing performance. The successful candidate will help define what must be proven, how it should be measured, and how results should be correlated across models, simulation, emulation, bench validation, and silicon. The ideal candidate combines mixed-signal engineering depth with verification strategy, automation mindset, and the ability to align cross-functional teams around clear, repeatable evidence. WHY THIS ROLE MATTERS Define verification strategy for complex mixed-signal power management systems. Improve confidence in architecture decisions by connecting requirements, models, tests, and measured data. Help execution teams converge faster by turning expert validation knowledge into reusable verification patterns. KEY RESPONSIBILITIES Define mixed-signal verification strategy for digital power controllers and related power management products. Develop system-level verification plans covering sensing paths, ADC/DAC behavior, PWM paths, telemetry, compensation, control-loop behavior, latency, quantization, noise, limits, sequencing, and corner behavior. Establish correlation methodologies across behavioral models, RTL, analog/mixed-signal simulations, emulation, bench validation, and silicon measurements where applicable. Define measurable pass/fail criteria, coverage expectations, reference scenarios, and evidence requirements for architecture and product decisions. Collaborate with systems, analog design, digital design, firmware, design verification, validation, applications, and software/tool teams. Support automation of verification results, including consistent metrics, plots, waveforms, summaries, and structured outputs for engineering review. Identify verification gaps early and help teams close ambiguity between system intent, implementation behavior, and validation evidence. Document verification methodology, interface assumptions, test intent, correlation expectations, and residual risks clearly for technical and leadership audiences. Qualifications Bachelor's degree in Electrical Engineering, Computer Engineering, or a related technical discipline. 8+ years of experience in mixed-signal verification, semiconductor validation, systems engineering, analog/mixed-signal design, design verification, or related product development. Strong understanding of analog and mixed-signal building blocks such as ADCs, DACs, amplifiers, references, sensing paths, timing circuits, PWM paths, or power stages. Experience defining verification plans, validation methodologies, measurable results, and technical evidence for complex electronic systems. Ability to work across analog, digital, firmware, validation, applications, and software/tool teams. Strong communication skills and ability to explain complex cross-domain verification issues clearly. PREFERRED QUALIFICATIONS Experience with digital multiphase controllers, DC/DC converters, voltage regulators, power management ICs, or high-current datacenter power applications. Experience with model-to-silicon correlation, behavioral modeling, real-number modeling, Verilog-AMS, SystemVerilog RNM, MATLAB, Python, SIMPLIS, or equivalent environments. Experience with verification automation, data analysis, test infrastructure, dashboards, databases, or API-driven workflows. Familiarity with control loops, stability, latency, quantization, noise, telemetry, and power-system measurement techniques. Experience creating reusable verification frameworks that improve quality and reduce repeated manual test setup. Additional Information Renesas is an embedded semiconductor solution provider driven by its Purpose, To Make Our Lives Easier . With a global team of over 21,000 engineers and problem solvers in more than 30 countries, we offer the opportunity to work on world leading technology for Automotive, Industrial, Infrastructure, and IoT, shaping a safer, healthier, greener, and smarter future. At Renesas, TAGIE is our culture, grounded in being Transparent, Agile, Global, Innovative, and Entrepreneurial. It shapes how we work, grow and deliver on our purpose together. This collaborative spirit and mindset drive our semiconductor technology to transform industries and impact millions of lives. We believe in rewarding our employees with a competitive benefits package alongside their salary. More information will be provided during the hiring process. Are you ready to join our team and shape the future with us? Renesas Electronics is an equal opportunity and affirmative action employer, committed to supporting diversity and fostering a work environment free of discrimination on the basis of sex, race, religion, national origin, gender, gender identity, gender expression, age, sexual orientation, military status, veteran status, or any other basis protected by law. For more information, please read our Diversity & Inclusion Statement. Renesas Electronics deals with dual-use technology that is subject to U.S. export controls regulations. Under these regulations it may be necessary for Renesas to obtain U.S. government export license prior to release of technology to certain persons. The decision whether or not to file or pursue an export license application is at the sole discretion of Renesas.
Job Description Job Description Zoox's Network Security team architects and defends the digital borders of the company - from corporate offices to engineering labs and product/mission environments. As a Network Security Engineer, you will design, implement, and operate security controls across Zoox's enterprise, OT networks, and cloud infrastructure spanning on-premises data centers and public cloud environments (AWS, GCP), partnering closely with Network Engineering, IT, Product Security, and Software Engineering teams. In This Role, You Will Design, implement, and maintain secure hybrid/multi-cloud network architectures (AWS/GCP, CloudWAN); enforce zero-trust access controls and network segmentation across corporate, data center, lab, and edge environments; develop and maintain related policies, standards, and architecture diagrams Own and operate next-generation firewall platforms (Palo Alto Networks, Fortinet), managing policy architecture, segmentation, NAT, URL filtering, SSL/TLS decryption, and threat prevention tuning Architect, operate, and own the lifecycle of secure remote access solutions (VPN, ZTNA, site-to-site tunnels), ensuring high availability, certificate-based authentication, and integration with identity providers (SAML, Entra ID) Drive automation and Infrastructure-as-Code (IaC) using Terraform, Python, CI/CD, and REST APIs for configuration management, firewall policies, and security baselines; integrate LLM-based tools to streamline operational tasks and reduce manual toil Oversee security operations including 24/7 network security monitoring, traffic analysis, threat detection, vulnerability assessments, and remediation; support compliance requirements by conducting security reviews for new projects and infrastructure changes Drive 802.1X/certificate-based Network Access Control (NAC) initiatives across wired and wireless environments Collaborate with team members and contribute to cross-functional security initiatives with Product Security, SRE, IT, and Software Engineering teams Qualifications 6+ years of network security engineering experience securing enterprise, cloud, and OT/lab environments Platform Expertise: Deep, hands-on expertise in next-gen firewalls (Palo Alto, Fortinet), AWS NFW, WAFs, IDS/IPS, NAC/802.1X, PKI, VPN, and ZTNA solutions (Zscaler, Netskope, Prisma Access, or equivalent) Technical Knowledge: Strong understanding of core network protocols (TCP/IP, BGP, OSPF, VLAN, 802.1X, TLS/PKI) and cloud networking security principles (AWS, GCP, or Azure) Automation: Hands-on experience with IaC and automation tooling including Terraform, Python, CI/CD pipelines, and REST APIs Security Operations: Experience with network security monitoring, threat detection, and security operations tooling (SIEM, IDS/IPS, vulnerability management platforms), including integration with network controls Compliance: Proven experience supporting major compliance initiatives (NIST 800-53, CSF 2.0, ISO 27001), including control implementation and evidence collection Bonus Qualifications Experience in autonomous vehicle, robotics, IT/OT or automotive environments Certifications: PCNSE, AWS Security Specialty, CCNA Experience experimenting with or deploying AI/ML-based security capabilities (e.g., anomaly detection, behavioral analytics, LLM-driven copilots) in network or cloud security workflows There are three major components to compensation for this position: salary, Amazon Restricted Stock Units (RSUs), and Zoox Stock Appreciation Rights. A sign-on bonus may be offered as part of the compensation package. The listed range applies only to the base salary. Compensation will vary based on geographic location and level. Leveling, as well as positioning within a level, is determined by a range of factors, including, but not limited to, a candidate's relevant years of experience, domain knowledge, and interview performance. The salary range listed in this posting is representative of the range of levels Zoox is considering for this position. Zoox also offers a comprehensive package of benefits, including paid time off (e.g. sick leave, vacation, bereavement), unpaid time off, Zoox Stock Appreciation Rights, Amazon RSUs, health insurance, long-term care insurance, long-term and short-term disability insurance, and life insurance. About Zoox Zoox is developing the first ground-up, fully autonomous vehicle fleet and the supporting ecosystem required to bring this technology to market. Sitting at the intersection of robotics, machine learning, and design, Zoox aims to provide the next generation of mobility-as-a-service in urban environments. We're looking for top talent that shares our passion and wants to be part of a fast-moving and highly execution-oriented team. Follow us on LinkedIn Accommodations If you need an accommodation to participate in the application or interview process please reach out to or your assigned recruiter. A Final Note: You do not need to match every listed expectation to apply for this position. Here at Zoox, we know that diverse perspectives foster the innovation we need to be successful, and we are committed to building a team that encompasses a variety of backgrounds, experiences, and skills. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
09/28/2026
Full time
Job Description Job Description Zoox's Network Security team architects and defends the digital borders of the company - from corporate offices to engineering labs and product/mission environments. As a Network Security Engineer, you will design, implement, and operate security controls across Zoox's enterprise, OT networks, and cloud infrastructure spanning on-premises data centers and public cloud environments (AWS, GCP), partnering closely with Network Engineering, IT, Product Security, and Software Engineering teams. In This Role, You Will Design, implement, and maintain secure hybrid/multi-cloud network architectures (AWS/GCP, CloudWAN); enforce zero-trust access controls and network segmentation across corporate, data center, lab, and edge environments; develop and maintain related policies, standards, and architecture diagrams Own and operate next-generation firewall platforms (Palo Alto Networks, Fortinet), managing policy architecture, segmentation, NAT, URL filtering, SSL/TLS decryption, and threat prevention tuning Architect, operate, and own the lifecycle of secure remote access solutions (VPN, ZTNA, site-to-site tunnels), ensuring high availability, certificate-based authentication, and integration with identity providers (SAML, Entra ID) Drive automation and Infrastructure-as-Code (IaC) using Terraform, Python, CI/CD, and REST APIs for configuration management, firewall policies, and security baselines; integrate LLM-based tools to streamline operational tasks and reduce manual toil Oversee security operations including 24/7 network security monitoring, traffic analysis, threat detection, vulnerability assessments, and remediation; support compliance requirements by conducting security reviews for new projects and infrastructure changes Drive 802.1X/certificate-based Network Access Control (NAC) initiatives across wired and wireless environments Collaborate with team members and contribute to cross-functional security initiatives with Product Security, SRE, IT, and Software Engineering teams Qualifications 6+ years of network security engineering experience securing enterprise, cloud, and OT/lab environments Platform Expertise: Deep, hands-on expertise in next-gen firewalls (Palo Alto, Fortinet), AWS NFW, WAFs, IDS/IPS, NAC/802.1X, PKI, VPN, and ZTNA solutions (Zscaler, Netskope, Prisma Access, or equivalent) Technical Knowledge: Strong understanding of core network protocols (TCP/IP, BGP, OSPF, VLAN, 802.1X, TLS/PKI) and cloud networking security principles (AWS, GCP, or Azure) Automation: Hands-on experience with IaC and automation tooling including Terraform, Python, CI/CD pipelines, and REST APIs Security Operations: Experience with network security monitoring, threat detection, and security operations tooling (SIEM, IDS/IPS, vulnerability management platforms), including integration with network controls Compliance: Proven experience supporting major compliance initiatives (NIST 800-53, CSF 2.0, ISO 27001), including control implementation and evidence collection Bonus Qualifications Experience in autonomous vehicle, robotics, IT/OT or automotive environments Certifications: PCNSE, AWS Security Specialty, CCNA Experience experimenting with or deploying AI/ML-based security capabilities (e.g., anomaly detection, behavioral analytics, LLM-driven copilots) in network or cloud security workflows There are three major components to compensation for this position: salary, Amazon Restricted Stock Units (RSUs), and Zoox Stock Appreciation Rights. A sign-on bonus may be offered as part of the compensation package. The listed range applies only to the base salary. Compensation will vary based on geographic location and level. Leveling, as well as positioning within a level, is determined by a range of factors, including, but not limited to, a candidate's relevant years of experience, domain knowledge, and interview performance. The salary range listed in this posting is representative of the range of levels Zoox is considering for this position. Zoox also offers a comprehensive package of benefits, including paid time off (e.g. sick leave, vacation, bereavement), unpaid time off, Zoox Stock Appreciation Rights, Amazon RSUs, health insurance, long-term care insurance, long-term and short-term disability insurance, and life insurance. About Zoox Zoox is developing the first ground-up, fully autonomous vehicle fleet and the supporting ecosystem required to bring this technology to market. Sitting at the intersection of robotics, machine learning, and design, Zoox aims to provide the next generation of mobility-as-a-service in urban environments. We're looking for top talent that shares our passion and wants to be part of a fast-moving and highly execution-oriented team. Follow us on LinkedIn Accommodations If you need an accommodation to participate in the application or interview process please reach out to or your assigned recruiter. A Final Note: You do not need to match every listed expectation to apply for this position. Here at Zoox, we know that diverse perspectives foster the innovation we need to be successful, and we are committed to building a team that encompasses a variety of backgrounds, experiences, and skills. We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Job Description Job Description Network Security Engineer About Us EFJohnson Technologies is a subsidiary of JVCKENWOOD Corporation, a leading provider of P25 communications solutions for first responders in public safety and public service, the federal government, and industrial organizations. Our products are marketed under the EFJohnson and KENWOOD brands. EFJohnson provides wireless communications products and systems for public safety, commercial, and government customers. We design, manufacture, and market conventional and trunked radio systems, land mobile radio repeaters, and mobile and portable radios, including Project 25 digital radio products. As a Network Security Engineer you'll design, implement, and enforce comprehensive network and security architectures for mission-critical radio, data, and monitoring systems. This position will develop and maintain security standards and technical controls directly aligned with NIST SP 800-171 and CMMC Level 2 requirements to ensure protection of Controlled Unclassified Information (CUI). As a Network Security Engineer, you'll collaborate with network and system architects to embed security throughout the full system lifecycle, from design and segmentation to identity management, remote access, and incident response. This role is hybrid, based out of Irving, TX. Key Responsibilities Security Architecture & Compliance Define, document, and maintain comprehensive network security standards mapped to NIST SP 800-171 and CMMC Level 2 controls. Collaborate with architects to incorporate security in every design, emphasizing segmentation and isolation of CUI assets. Design, test, and maintain network-level controls supporting Identification & Authentication (IA) and System & Communications Protection (SC) families. Contribute technical content to the System Security Plan (SSP), Plan of Action and Milestones (POA&M), and compliance evidence packages. Enforce configuration management and formal change-control processes to maintain baseline compliance. Perform security impact assessments on proposed design changes, ensuring traceability to CMMC requirements. Identity & Access Management (IAM) Design and deploy centralized LDAP for directory services and user authentication. Design, implement, and administer TACACS+ for AAA control across routers, switches, and radio controllers. Configure and manage Multi-Factor Authentication (MFA) for privileged and remote accounts (CMMC IA.L2-3.5.3). Ensure unique identification and authentication of all users and devices (CMMC IA.L2-3.5.1). Integrate IAM systems with centralized logging and SIEM tools to support audit and traceability requirements. Network Security Services Implementation Design, configure, and deploy Remote Access VPNs and IPSec site-to-site tunnels for secure connectivity, ensuring encryption of CUI in transit. Configure, deploy, and manage Next-Generation Firewalls (NGFWs) to enforce zone-based policies and control traffic between segmented network zones. Implement and tune Intrusion Prevention Systems (IPS) to detect and block malicious traffic in real time. Run regular vulnerability assessments and penetration tests; prioritize remediation actions that impact CMMC compliance. Integrate firewall, VPN, and IPS logs with centralized SIEM systems; conduct Root Cause Analysis (RCA) for network or IAM-related security incidents. Act as Tier 2/Tier 3 escalation for the Security Operations Center (SOC). CUI Data Handling & Protection Ensure CUI is encrypted in transit and at rest using approved algorithms and key management standards. Implement network segmentation, VLAN isolation, and access-controlled zones to separate CUI from non-CUI traffic. Configure syslog, NTP, SNMPv3, and TLS securely for audit traceability and time-correlated event tracking. Enforce least-privilege access for CUI repositories and verify logging for all privileged actions. Conduct quarterly configuration audits and evidence collection in support of the corporate CMMC compliance program. Operational Security & Monitoring Maintain configuration baselines and perform periodic compliance checks on all network-security devices. Automate log collection and configuration integrity validation using secure scripting methods. Maintain network documentation, change-management records, and segmentation diagrams. Provide support for field deployments, system upgrades, and on-site network hardening activities. Assist with tabletop exercises, incident response drills, and after-action reviews. Collaboration & Continuous Improvement Partner with network and system engineering teams to embed secure-by-design principles into radio network infrastructure and analyzer platforms. Mentor junior engineers through scheduled security and compliance training sessions. Coordinate with software and system teams to ensure servers, databases, and applications meet hardened configuration baselines. Contribute to EF Johnson's internal Security Program Initiative, ensuring continuous improvement and measurable compliance progress. Recommend new tools, automation frameworks, and monitoring solutions to improve efficiency and visibility. Complete additional duties as required. Agree to abide by the established Approval Matrix. Qualifications Bachelor's Degree in Cybersecurity, Computer Science, Engineering Technology, or a related discipline; Master's preferred. Cisco CCNP Security or equivalent required. CISSP, CompTIA CySA+, or CISM preferred. Experience implementing security controls aligned to NIST SP 800-171 and CMMC Level 2. Hands-on experience with firewalls, VPNs, IPS, AAA, and logging systems. Familiarity with Linux security hardening, log analysis, and automation scripting (Python, Bash, Ansible). Experience conducting packet analysis and forensics (Wireshark, Zeek, Suricata). Knowledge of public-safety radio networks, LMR systems, and secure field deployments preferred. What We're Looking For Advanced technical capacity in network and security engineering. Strong written and verbal communication skills. Demonstrated analytical, diagnostic, and problem-solving ability. Experience with Windows and Linux administration. Rapid learning aptitude for new tools and methods. Proficiency with scripting, configuration management, and SIEM integration. In-depth understanding of TCP/IP, UDP, SNMPv3, SSL/TLS, IPSec, and 802.1X. P25, DFSI+, and SIP preferred. Travel Requirements Up to 30% What We Offer Competitive salary Health, dental, and vision benefits Additional supplemental benefits 401K + employer match Tuition reimbursement 12 paid holidays + additional PTO Supportive- team-driven environment Opportunities to work on mission-critical projects that make a real impact Equal Opportunity Statement EF Johnson Technologies is an Equal Opportunity/AFFIRMATIVE ACTION Employer who values diversity and inclusion in the workplace. It is the policy of this company to provide equal opportunity with regard to all terms and conditions of employment. The company complies with federal and state laws prohibiting discrimination on the basis of sex, race, color, religion, creed, national origin, disability, veteran status, age, sexual orientation, gender identity, genetic information, pregnancy, or any other protected characteristic.
09/28/2026
Full time
Job Description Job Description Network Security Engineer About Us EFJohnson Technologies is a subsidiary of JVCKENWOOD Corporation, a leading provider of P25 communications solutions for first responders in public safety and public service, the federal government, and industrial organizations. Our products are marketed under the EFJohnson and KENWOOD brands. EFJohnson provides wireless communications products and systems for public safety, commercial, and government customers. We design, manufacture, and market conventional and trunked radio systems, land mobile radio repeaters, and mobile and portable radios, including Project 25 digital radio products. As a Network Security Engineer you'll design, implement, and enforce comprehensive network and security architectures for mission-critical radio, data, and monitoring systems. This position will develop and maintain security standards and technical controls directly aligned with NIST SP 800-171 and CMMC Level 2 requirements to ensure protection of Controlled Unclassified Information (CUI). As a Network Security Engineer, you'll collaborate with network and system architects to embed security throughout the full system lifecycle, from design and segmentation to identity management, remote access, and incident response. This role is hybrid, based out of Irving, TX. Key Responsibilities Security Architecture & Compliance Define, document, and maintain comprehensive network security standards mapped to NIST SP 800-171 and CMMC Level 2 controls. Collaborate with architects to incorporate security in every design, emphasizing segmentation and isolation of CUI assets. Design, test, and maintain network-level controls supporting Identification & Authentication (IA) and System & Communications Protection (SC) families. Contribute technical content to the System Security Plan (SSP), Plan of Action and Milestones (POA&M), and compliance evidence packages. Enforce configuration management and formal change-control processes to maintain baseline compliance. Perform security impact assessments on proposed design changes, ensuring traceability to CMMC requirements. Identity & Access Management (IAM) Design and deploy centralized LDAP for directory services and user authentication. Design, implement, and administer TACACS+ for AAA control across routers, switches, and radio controllers. Configure and manage Multi-Factor Authentication (MFA) for privileged and remote accounts (CMMC IA.L2-3.5.3). Ensure unique identification and authentication of all users and devices (CMMC IA.L2-3.5.1). Integrate IAM systems with centralized logging and SIEM tools to support audit and traceability requirements. Network Security Services Implementation Design, configure, and deploy Remote Access VPNs and IPSec site-to-site tunnels for secure connectivity, ensuring encryption of CUI in transit. Configure, deploy, and manage Next-Generation Firewalls (NGFWs) to enforce zone-based policies and control traffic between segmented network zones. Implement and tune Intrusion Prevention Systems (IPS) to detect and block malicious traffic in real time. Run regular vulnerability assessments and penetration tests; prioritize remediation actions that impact CMMC compliance. Integrate firewall, VPN, and IPS logs with centralized SIEM systems; conduct Root Cause Analysis (RCA) for network or IAM-related security incidents. Act as Tier 2/Tier 3 escalation for the Security Operations Center (SOC). CUI Data Handling & Protection Ensure CUI is encrypted in transit and at rest using approved algorithms and key management standards. Implement network segmentation, VLAN isolation, and access-controlled zones to separate CUI from non-CUI traffic. Configure syslog, NTP, SNMPv3, and TLS securely for audit traceability and time-correlated event tracking. Enforce least-privilege access for CUI repositories and verify logging for all privileged actions. Conduct quarterly configuration audits and evidence collection in support of the corporate CMMC compliance program. Operational Security & Monitoring Maintain configuration baselines and perform periodic compliance checks on all network-security devices. Automate log collection and configuration integrity validation using secure scripting methods. Maintain network documentation, change-management records, and segmentation diagrams. Provide support for field deployments, system upgrades, and on-site network hardening activities. Assist with tabletop exercises, incident response drills, and after-action reviews. Collaboration & Continuous Improvement Partner with network and system engineering teams to embed secure-by-design principles into radio network infrastructure and analyzer platforms. Mentor junior engineers through scheduled security and compliance training sessions. Coordinate with software and system teams to ensure servers, databases, and applications meet hardened configuration baselines. Contribute to EF Johnson's internal Security Program Initiative, ensuring continuous improvement and measurable compliance progress. Recommend new tools, automation frameworks, and monitoring solutions to improve efficiency and visibility. Complete additional duties as required. Agree to abide by the established Approval Matrix. Qualifications Bachelor's Degree in Cybersecurity, Computer Science, Engineering Technology, or a related discipline; Master's preferred. Cisco CCNP Security or equivalent required. CISSP, CompTIA CySA+, or CISM preferred. Experience implementing security controls aligned to NIST SP 800-171 and CMMC Level 2. Hands-on experience with firewalls, VPNs, IPS, AAA, and logging systems. Familiarity with Linux security hardening, log analysis, and automation scripting (Python, Bash, Ansible). Experience conducting packet analysis and forensics (Wireshark, Zeek, Suricata). Knowledge of public-safety radio networks, LMR systems, and secure field deployments preferred. What We're Looking For Advanced technical capacity in network and security engineering. Strong written and verbal communication skills. Demonstrated analytical, diagnostic, and problem-solving ability. Experience with Windows and Linux administration. Rapid learning aptitude for new tools and methods. Proficiency with scripting, configuration management, and SIEM integration. In-depth understanding of TCP/IP, UDP, SNMPv3, SSL/TLS, IPSec, and 802.1X. P25, DFSI+, and SIP preferred. Travel Requirements Up to 30% What We Offer Competitive salary Health, dental, and vision benefits Additional supplemental benefits 401K + employer match Tuition reimbursement 12 paid holidays + additional PTO Supportive- team-driven environment Opportunities to work on mission-critical projects that make a real impact Equal Opportunity Statement EF Johnson Technologies is an Equal Opportunity/AFFIRMATIVE ACTION Employer who values diversity and inclusion in the workplace. It is the policy of this company to provide equal opportunity with regard to all terms and conditions of employment. The company complies with federal and state laws prohibiting discrimination on the basis of sex, race, color, religion, creed, national origin, disability, veteran status, age, sexual orientation, gender identity, genetic information, pregnancy, or any other protected characteristic.
Job Description Job Description Antora Energy delivers affordable, reliable energy to industry, data centers, and the grid. Our thermal batteries turn low-cost electricity into always-on heat and power, without supply-constrained critical minerals or multi-year construction timelines. We are growing our company with people who put team and mission first, value connection through laughter and joy, and work with humility and openness. We are committed to building a diverse, passionate, and creative team dedicated to a future powered by abundant, clean, low-cost energy. Position Summary We are seeking a Staff or Principal Applications Engineer to establish Antora's applications engineering function - the senior technical authority for the customer opportunities that don't fit a standard template. Antora's standard configurations run through repeatable tools and playbooks operated by our business development team; you will own everything that doesn't: the first-of-a-kind applications, constrained sites, and novel configurations of Antora's thermal batteries across industrial process heat and utility-scale power for data centers and the grid, in the U.S. and internationally. When we dive into a new customer application, you are the engineer who joins the first call, earns the trust of senior customer technical leadership, and creatively develops the solution around Antora's product: running technical discovery, sizing and configuring the system, producing conceptual site layouts and heat and power integration designs, setting the technical basis for performance guarantees, and building the cost estimates behind commercial contracts and investment decisions, then handing a clean basis of design to our project engineering team for detailed design and execution. You are also the technical conscience on what Antora commits to, with the standing and judgment to hold the line on feasibility, schedule, and performance so we win deals we can actually deliver. This role will report to the VP of Product Management within Antora's Commercial team. Roles & Responsibilities Serve as the technical lead for Antora's most complex and novel customer opportunities across industrial heat, combined heat & power, and power applications - joining business development on sales calls and owning the technical conversation with customer engineering/operations teams and executives Run technical discovery on novel applications: own customer data requests (load profiles, steam conditions, utility data, plot plans, one-lines) and site walkdowns, and lead first-pass technical screening where no playbook exists Size and configure Antora's product at the edges of its configurable envelope (and beyond), creatively optimizing trade-offs across performance, cost, schedule, and site constraints Produce conceptual site layouts, heat and power integration designs, and site boundary-condition definitions Own configuration of complex customer, grid, and project interfaces for novel applications - including, but not limited to, controls integration, product-side electrical configuration, product-to-interconnection handoff, cybersecurity requirements, and energy market operations coordination Own performance-guarantee assumptions and proposal-stage analysis/cost estimates for commercial contracts and internal approvals with clear judgment on execution and economic impact Prepare basis-of-design handoff packages (configuration specs, layouts, integration concepts, assumptions, and risks) that enable project engineering to pick up projects cleanly for detailed design (FEED and beyond) Partner closely with product management to co-define where the standard product envelope ends and bespoke applications work begins, and keeping executive stakeholders aligned on what we're committing to Act as the technical escalation point and reviewer for the sales engineers who run standard opportunities - mentoring them and together with product management, setting the technical standards they work to Channel voice-of-customer and market intelligence back to product management to drive product changes that improve performance, customer satisfaction, and addressable market Codify design judgment into playbooks, reference designs, and design rules, partnering with software, analytics, and product management to turn them into tools and standard product requirements where applicable Typical travel of 25%, potentially including some international travel Key Qualifications Bachelor's or equivalent in mechanical, chemical, or electrical engineering (or related field) and 12+ years of experience (or 8+ with a relevant advanced degree) across utility-scale energy projects, large industrial facilities, and/or energy equipment applications Experience leading first-of-a-kind industrial and power projects, including managing executive stakeholders in external organizations Deep expertise in power systems (MV/HV electrical, synchronous and inverter-based resources, grid interconnection) with working fluency in industrial process/thermal systems (steam and utility systems, heat integration) - or the reverse - with genuine depth on at least one side and the range to engage customer engineers credibly in both Experience with energy storage and/or utility-scale energy projects, including site layout and equipment configuration Familiarity with the codes and standards governing industrial energy facilities - NFPA, NEC, ASME, API, UL, etc. Comfortable producing and reviewing PFDs, one-line diagrams, and site layout drawings Strong techno-economic intuition and commercial judgment - instinctively connects configuration trade-offs and performance guarantees to project economics Exceptional customer-facing communication and presentation skills AI-fluent: high level of comfort with leading AI tools (Claude, ChatGPT, Gemini, etc.) and strong instincts for which workflows to automate Self-directed operator who thrives owning a small number of deep, high-stakes projects in a fast-paced startup environment Additional Qualifications Desired Experience spanning both thermal/process and power/grid project environments Direct experience with data-center power, microgrids, or hybrid solar-plus-storage systems Prior applications, sales, or solutions engineering role at an energy technology OEM Solid understanding of energy market fundamentals and battery dispatch or techno-economic modeling Python proficiency Experience working with or for EPC firms Familiarity with industrial controls/SCADA integration and operational-technology (OT) cybersecurity Experience working on projects in international markets (particular preference for EU and Australia) Familiarity with European and/or Australian codes and standards Experience building commercial tools and automations PE license in a related discipline Work Location: Remote, US Salary Range: $175,000 USD - $240,000 USD Salary Basis: Annual Please note that the salary range listed above reflects Antora Energy's estimated pay for this position. The actual salary offered will be within the posted range and determined based on several factors including but not limited to a candidate's experiences, credentials and expertise, as they pertain to the position's requirements. In addition to a competitive base salary, Antora Energy's Total Rewards program includes equity compensation in the form of stock options, a premium health benefits package with life and disability insurance, a 401K plan with employer contributions, flexible spending accounts, and an industry leading paid-time-off policy that features flexible and inclusive holiday observance, as well as paid volunteer time off. When it comes to stopping climate change, we need everyone. We believe that having a diversity of backgrounds and experiences strengthens all of us, and we strive to create an environment where every one of us is empowered to create meaningful change.
09/28/2026
Full time
Job Description Job Description Antora Energy delivers affordable, reliable energy to industry, data centers, and the grid. Our thermal batteries turn low-cost electricity into always-on heat and power, without supply-constrained critical minerals or multi-year construction timelines. We are growing our company with people who put team and mission first, value connection through laughter and joy, and work with humility and openness. We are committed to building a diverse, passionate, and creative team dedicated to a future powered by abundant, clean, low-cost energy. Position Summary We are seeking a Staff or Principal Applications Engineer to establish Antora's applications engineering function - the senior technical authority for the customer opportunities that don't fit a standard template. Antora's standard configurations run through repeatable tools and playbooks operated by our business development team; you will own everything that doesn't: the first-of-a-kind applications, constrained sites, and novel configurations of Antora's thermal batteries across industrial process heat and utility-scale power for data centers and the grid, in the U.S. and internationally. When we dive into a new customer application, you are the engineer who joins the first call, earns the trust of senior customer technical leadership, and creatively develops the solution around Antora's product: running technical discovery, sizing and configuring the system, producing conceptual site layouts and heat and power integration designs, setting the technical basis for performance guarantees, and building the cost estimates behind commercial contracts and investment decisions, then handing a clean basis of design to our project engineering team for detailed design and execution. You are also the technical conscience on what Antora commits to, with the standing and judgment to hold the line on feasibility, schedule, and performance so we win deals we can actually deliver. This role will report to the VP of Product Management within Antora's Commercial team. Roles & Responsibilities Serve as the technical lead for Antora's most complex and novel customer opportunities across industrial heat, combined heat & power, and power applications - joining business development on sales calls and owning the technical conversation with customer engineering/operations teams and executives Run technical discovery on novel applications: own customer data requests (load profiles, steam conditions, utility data, plot plans, one-lines) and site walkdowns, and lead first-pass technical screening where no playbook exists Size and configure Antora's product at the edges of its configurable envelope (and beyond), creatively optimizing trade-offs across performance, cost, schedule, and site constraints Produce conceptual site layouts, heat and power integration designs, and site boundary-condition definitions Own configuration of complex customer, grid, and project interfaces for novel applications - including, but not limited to, controls integration, product-side electrical configuration, product-to-interconnection handoff, cybersecurity requirements, and energy market operations coordination Own performance-guarantee assumptions and proposal-stage analysis/cost estimates for commercial contracts and internal approvals with clear judgment on execution and economic impact Prepare basis-of-design handoff packages (configuration specs, layouts, integration concepts, assumptions, and risks) that enable project engineering to pick up projects cleanly for detailed design (FEED and beyond) Partner closely with product management to co-define where the standard product envelope ends and bespoke applications work begins, and keeping executive stakeholders aligned on what we're committing to Act as the technical escalation point and reviewer for the sales engineers who run standard opportunities - mentoring them and together with product management, setting the technical standards they work to Channel voice-of-customer and market intelligence back to product management to drive product changes that improve performance, customer satisfaction, and addressable market Codify design judgment into playbooks, reference designs, and design rules, partnering with software, analytics, and product management to turn them into tools and standard product requirements where applicable Typical travel of 25%, potentially including some international travel Key Qualifications Bachelor's or equivalent in mechanical, chemical, or electrical engineering (or related field) and 12+ years of experience (or 8+ with a relevant advanced degree) across utility-scale energy projects, large industrial facilities, and/or energy equipment applications Experience leading first-of-a-kind industrial and power projects, including managing executive stakeholders in external organizations Deep expertise in power systems (MV/HV electrical, synchronous and inverter-based resources, grid interconnection) with working fluency in industrial process/thermal systems (steam and utility systems, heat integration) - or the reverse - with genuine depth on at least one side and the range to engage customer engineers credibly in both Experience with energy storage and/or utility-scale energy projects, including site layout and equipment configuration Familiarity with the codes and standards governing industrial energy facilities - NFPA, NEC, ASME, API, UL, etc. Comfortable producing and reviewing PFDs, one-line diagrams, and site layout drawings Strong techno-economic intuition and commercial judgment - instinctively connects configuration trade-offs and performance guarantees to project economics Exceptional customer-facing communication and presentation skills AI-fluent: high level of comfort with leading AI tools (Claude, ChatGPT, Gemini, etc.) and strong instincts for which workflows to automate Self-directed operator who thrives owning a small number of deep, high-stakes projects in a fast-paced startup environment Additional Qualifications Desired Experience spanning both thermal/process and power/grid project environments Direct experience with data-center power, microgrids, or hybrid solar-plus-storage systems Prior applications, sales, or solutions engineering role at an energy technology OEM Solid understanding of energy market fundamentals and battery dispatch or techno-economic modeling Python proficiency Experience working with or for EPC firms Familiarity with industrial controls/SCADA integration and operational-technology (OT) cybersecurity Experience working on projects in international markets (particular preference for EU and Australia) Familiarity with European and/or Australian codes and standards Experience building commercial tools and automations PE license in a related discipline Work Location: Remote, US Salary Range: $175,000 USD - $240,000 USD Salary Basis: Annual Please note that the salary range listed above reflects Antora Energy's estimated pay for this position. The actual salary offered will be within the posted range and determined based on several factors including but not limited to a candidate's experiences, credentials and expertise, as they pertain to the position's requirements. In addition to a competitive base salary, Antora Energy's Total Rewards program includes equity compensation in the form of stock options, a premium health benefits package with life and disability insurance, a 401K plan with employer contributions, flexible spending accounts, and an industry leading paid-time-off policy that features flexible and inclusive holiday observance, as well as paid volunteer time off. When it comes to stopping climate change, we need everyone. We believe that having a diversity of backgrounds and experiences strengthens all of us, and we strive to create an environment where every one of us is empowered to create meaningful change.
Georgia System Operations Corporation
Tucker, Georgia
Job Description Job Description Network Security EngineerEngineer Secure, Resilient Network Services That Support Mission-Critical OperationsGeorgia System Operations Corporation (GSOC) is seeking a Network Security Engineer to design, implement, secure, and operate corporate network services and cybersecurity tools that enable reliable, protected business operations.This hands-on role combines enterprise network engineering and cybersecurity expertise across datacenter, campus, remote-site, internet-edge, and approved cloud environments. The Network Security Engineer helps safeguard availability, performance, secure access, and security visibility while advancing resilient, supportable, and automated network and security services.This opportunity is ideal for an experienced network and security professional who enjoys solving complex technical problems, strengthening controls, supporting incident response, mentoring peers, and collaborating across infrastructure, cybersecurity, application, service desk, and vendor teams. This is an onsite position and it is not eligible for visa sponsorshipWhat You'll DoAs a Network Security Engineer, you will engineer and support the network and network-focused security services that connect and protect enterprise users, systems, and sites.You will:Design, deploy, and support datacenter and campus switching, routing, VLANs, VRFs, high availability, capacity planning, and network segmentation.Administer next-generation firewalls, security zones, NAT, threat-prevention services, firewall policy lifecycle, and least-privilege access controls.Engineer WAN, internet-edge, remote-site, remote-access VPN, and site-to-site VPN connectivity, including integrations with identity, MFA, and device-trust services.Design and support corporate and guest wireless, controllers, access points, RF performance, 802.1X, network access control, device profiling, and secure authentication.Configure load balancers, virtual servers, pools, health monitors, persistence, TLS termination, and high-availability services.Manage the network-facing certificate lifecycle and PKI integrations.Engineer and operate secure web and DNS controls, network detection and response, security logging, SIEM integrations, and security-control health monitoring.Partner with the Security Operations Center on alert tuning, investigations, evidence gathering, and operational security use cases.Support secure DNS, DHCP, and IP address management and maintain telemetry, flow data, logging, alerting, packet analysis, and service dashboards.Maintain secure configuration baselines, backups, firmware and software lifecycle, and remediation of network-device and security-tool vulnerabilities.Automate repeatable work using APIs, scripting, and infrastructure-as-code practices.Develop and test network and security-platform recovery and failover capabilities.Prepare change and rollback plans and provide incident escalation, containment support, root-cause analysis, and vendor coordination. This role also:Works independently within established standards and change processes.Provides technical leadership for projects and mentors peers.Participates in technology evaluations, proof-of-concepts, cross-functional initiatives, backup support, and knowledge transfer. What You BringBachelor's degree in Information Technology, Computer Science, Engineering, Cybersecurity, or a related field. Equivalent combination of education, training, and directly related work experience may be considered.Ideally 5+ years of progressive experience supporting enterprise network and network-security infrastructure, including switching, routing, firewall administration, VPN, wireless, and troubleshooting.Strong knowledge of enterprise LAN/WAN, datacenter switching, routing, firewalls, VPN, wireless, NAC, load balancing, PKI and certificates, DNS, DHCP, IPAM, and secure configuration management.Hands-on experience operating cybersecurity tooling such as secure web and DNS services, network detection and response, vulnerability management, SIEM and logging integrations, and security monitoring.Experience with network and security automation using Python, PowerShell, Ansible, Terraform, APIs, or comparable tools.Working knowledge of NIST CSF, CIS Controls, incident-response practices, and applicable regulatory or industry requirements, including NERC CIP where relevant to the IT environment.Strong analytical, troubleshooting, documentation, communication, collaboration, and customer-service skills. Preferred QualificationsEnterprise Network EngineeringExperience engineering highly available datacenter, campus, WAN, internet-edge, remote-site, wireless, and VPN services.Experience with segmentation, least-privilege access, identity and MFA integrations, device trust, and network access control.Experience with load balancing, TLS termination, application delivery, certificate lifecycle management, and PKI integrations.Network Security & DetectionExperience operating next-generation firewalls, threat-prevention services, secure web or DNS controls, network detection and response, and vulnerability-management processes.Experience integrating network-security telemetry with SIEM, logging, alerting, dashboards, and incident-response workflows.Experience partnering with a SOC on investigation, tuning, containment, evidence, or root-cause activities.Automation, Resilience & OperationsExperience automating network or security operations through scripting, APIs, Ansible, Terraform, or infrastructure as code.Experience developing recovery, failover, configuration-backup, firmware-lifecycle, and vulnerability-remediation practices.Experience preparing changes, rollback plans, technical documentation, performance measures, and vendor-supported resolutions.CertificationsRelevant credentials such as CCNA, CCNP, ACP, PCNSE or equivalent firewall-vendor certification, CWNA, Security+, CISSP, AZ-700, or similar certifications are preferred. Advantages of Working at GSOCWorking at GSOC means more than just a job it's an opportunity to contribute to work that truly matters. Mission-Driven ImpactYour work supports secure, reliable corporate network services and cybersecurity capabilities used across GSOC's enterprise environment. Network Engineering & Cybersecurity DepthApply both network engineering and hands-on security expertise across switching, routing, wireless, firewalls, VPN, application delivery, monitoring, automation, and incident support. Technical Leadership & Continuous ImprovementLead technical projects, mentor peers, evaluate new technologies, automate repeatable work, and strengthen resilience, visibility, and operational supportability. Strong Values and Professional StandardsWork in an environment grounded in accountability, collaboration, integrity, security, compliance, and continuous improvement. Work Environment & BenefitsGSOC offers a professional, collaborative work environment with competitive compensation, comprehensive benefits, and a commitment to creating a respectful and inclusive workplace.Participation in an on-call rotation, emergency support, and scheduled maintenance outside normal business hours is required. Why Join GSOCAt GSOC, you will help engineer the network and security services that enable dependable business operations, secure access, security visibility, and resilient enterprise technology.You'll collaborate across infrastructure, cybersecurity, applications, service desk, and vendor teams while expanding your technical leadership and automation capabilities. Apply TodayIf you're ready to combine enterprise network engineering and cybersecurity expertise in a hands-on role supporting reliable, protected operations, we encourage you to apply. GSOC does not accept unsolicited resumes or candidate submissions from staffing agencies, search firms, or third-party recruiters. Any unsolicited resumes submitted without a valid, executed agreement will become the property of GSOC, and no placement fee will be paid. Job Posted by ApplicantPro
09/28/2026
Full time
Job Description Job Description Network Security EngineerEngineer Secure, Resilient Network Services That Support Mission-Critical OperationsGeorgia System Operations Corporation (GSOC) is seeking a Network Security Engineer to design, implement, secure, and operate corporate network services and cybersecurity tools that enable reliable, protected business operations.This hands-on role combines enterprise network engineering and cybersecurity expertise across datacenter, campus, remote-site, internet-edge, and approved cloud environments. The Network Security Engineer helps safeguard availability, performance, secure access, and security visibility while advancing resilient, supportable, and automated network and security services.This opportunity is ideal for an experienced network and security professional who enjoys solving complex technical problems, strengthening controls, supporting incident response, mentoring peers, and collaborating across infrastructure, cybersecurity, application, service desk, and vendor teams. This is an onsite position and it is not eligible for visa sponsorshipWhat You'll DoAs a Network Security Engineer, you will engineer and support the network and network-focused security services that connect and protect enterprise users, systems, and sites.You will:Design, deploy, and support datacenter and campus switching, routing, VLANs, VRFs, high availability, capacity planning, and network segmentation.Administer next-generation firewalls, security zones, NAT, threat-prevention services, firewall policy lifecycle, and least-privilege access controls.Engineer WAN, internet-edge, remote-site, remote-access VPN, and site-to-site VPN connectivity, including integrations with identity, MFA, and device-trust services.Design and support corporate and guest wireless, controllers, access points, RF performance, 802.1X, network access control, device profiling, and secure authentication.Configure load balancers, virtual servers, pools, health monitors, persistence, TLS termination, and high-availability services.Manage the network-facing certificate lifecycle and PKI integrations.Engineer and operate secure web and DNS controls, network detection and response, security logging, SIEM integrations, and security-control health monitoring.Partner with the Security Operations Center on alert tuning, investigations, evidence gathering, and operational security use cases.Support secure DNS, DHCP, and IP address management and maintain telemetry, flow data, logging, alerting, packet analysis, and service dashboards.Maintain secure configuration baselines, backups, firmware and software lifecycle, and remediation of network-device and security-tool vulnerabilities.Automate repeatable work using APIs, scripting, and infrastructure-as-code practices.Develop and test network and security-platform recovery and failover capabilities.Prepare change and rollback plans and provide incident escalation, containment support, root-cause analysis, and vendor coordination. This role also:Works independently within established standards and change processes.Provides technical leadership for projects and mentors peers.Participates in technology evaluations, proof-of-concepts, cross-functional initiatives, backup support, and knowledge transfer. What You BringBachelor's degree in Information Technology, Computer Science, Engineering, Cybersecurity, or a related field. Equivalent combination of education, training, and directly related work experience may be considered.Ideally 5+ years of progressive experience supporting enterprise network and network-security infrastructure, including switching, routing, firewall administration, VPN, wireless, and troubleshooting.Strong knowledge of enterprise LAN/WAN, datacenter switching, routing, firewalls, VPN, wireless, NAC, load balancing, PKI and certificates, DNS, DHCP, IPAM, and secure configuration management.Hands-on experience operating cybersecurity tooling such as secure web and DNS services, network detection and response, vulnerability management, SIEM and logging integrations, and security monitoring.Experience with network and security automation using Python, PowerShell, Ansible, Terraform, APIs, or comparable tools.Working knowledge of NIST CSF, CIS Controls, incident-response practices, and applicable regulatory or industry requirements, including NERC CIP where relevant to the IT environment.Strong analytical, troubleshooting, documentation, communication, collaboration, and customer-service skills. Preferred QualificationsEnterprise Network EngineeringExperience engineering highly available datacenter, campus, WAN, internet-edge, remote-site, wireless, and VPN services.Experience with segmentation, least-privilege access, identity and MFA integrations, device trust, and network access control.Experience with load balancing, TLS termination, application delivery, certificate lifecycle management, and PKI integrations.Network Security & DetectionExperience operating next-generation firewalls, threat-prevention services, secure web or DNS controls, network detection and response, and vulnerability-management processes.Experience integrating network-security telemetry with SIEM, logging, alerting, dashboards, and incident-response workflows.Experience partnering with a SOC on investigation, tuning, containment, evidence, or root-cause activities.Automation, Resilience & OperationsExperience automating network or security operations through scripting, APIs, Ansible, Terraform, or infrastructure as code.Experience developing recovery, failover, configuration-backup, firmware-lifecycle, and vulnerability-remediation practices.Experience preparing changes, rollback plans, technical documentation, performance measures, and vendor-supported resolutions.CertificationsRelevant credentials such as CCNA, CCNP, ACP, PCNSE or equivalent firewall-vendor certification, CWNA, Security+, CISSP, AZ-700, or similar certifications are preferred. Advantages of Working at GSOCWorking at GSOC means more than just a job it's an opportunity to contribute to work that truly matters. Mission-Driven ImpactYour work supports secure, reliable corporate network services and cybersecurity capabilities used across GSOC's enterprise environment. Network Engineering & Cybersecurity DepthApply both network engineering and hands-on security expertise across switching, routing, wireless, firewalls, VPN, application delivery, monitoring, automation, and incident support. Technical Leadership & Continuous ImprovementLead technical projects, mentor peers, evaluate new technologies, automate repeatable work, and strengthen resilience, visibility, and operational supportability. Strong Values and Professional StandardsWork in an environment grounded in accountability, collaboration, integrity, security, compliance, and continuous improvement. Work Environment & BenefitsGSOC offers a professional, collaborative work environment with competitive compensation, comprehensive benefits, and a commitment to creating a respectful and inclusive workplace.Participation in an on-call rotation, emergency support, and scheduled maintenance outside normal business hours is required. Why Join GSOCAt GSOC, you will help engineer the network and security services that enable dependable business operations, secure access, security visibility, and resilient enterprise technology.You'll collaborate across infrastructure, cybersecurity, applications, service desk, and vendor teams while expanding your technical leadership and automation capabilities. Apply TodayIf you're ready to combine enterprise network engineering and cybersecurity expertise in a hands-on role supporting reliable, protected operations, we encourage you to apply. GSOC does not accept unsolicited resumes or candidate submissions from staffing agencies, search firms, or third-party recruiters. Any unsolicited resumes submitted without a valid, executed agreement will become the property of GSOC, and no placement fee will be paid. Job Posted by ApplicantPro
Job Description Job Description Description: MDVIP: Transforming Primary Care, One Patient at a Time MDVIP is a national leader in personalized healthcare, empowering over 425,000 members to achieve their health and wellness goals through a network of more than 1,400 concierge primary care physicians. Our program emphasizes preventive medicine, offering comprehensive screenings, advanced diagnostics, and individualized wellness plans. Recognized as a Great Place to Work since 2018, MDVIP is committed to excellence in patient care and employee satisfaction. Position Summary The Network Security Engineer is an individual contributor role reporting to the Sr. Network Operations Manager. This is a contract-to-perm position (6-month contract), based in Boca Raton, FL (Hybrid), supporting the Boca Raton and Atlanta (ATL) data centers. This role provides dedicated engineering capacity for the ownership, hardening, and reliability of the organization's on-premises and hybrid infrastructure. The Network Security Engineer sustains a predictable remediation cadence across recurring security obligations - including monthly patching, zero-day response, vulnerability remediation, OS hardening, and cloud security score - while maintaining core platform services that underpin 24/7 operational reliability. This role is critical to reducing key-person risk, closing the capacity gap between rising compliance/audit workloads and existing staffing, and ensuring remediation tied to penetration tests, annual Security Risk Assessments (SRAs), and HIPAA assessments is completed on schedule. Key Responsibilities Security Remediation & Compliance Execute remediation for findings from penetration tests, annual Security Risk Assessments (SRAs), and HIPAA assessments, ensuring items are tracked to closure within defined SLAs; work with Project Managers, technology stack owners, and third-party resources to ensure timely delivery. Lead monthly patching cycles and rapid zero-day response across on-prem and hybrid server environments. Apply security remediations on infrastructure appliances including Cisco switches, firewalls (Palo Alto, Fortinet, Cisco Meraki), Linux appliances, and the virtual server environment and SANs (VMware, vSphere). Perform vulnerability remediation and OS/system hardening in line with established security baselines and audit requirements. Maintain a remediation burndown and support reporting on patch/vulnerability KPIs, including critical remediation timelines and cloud security score. Core Platform & Infrastructure Ownership Track Azure Security Score trends and drive remediation of flagged recommendations, providing regular posture reporting to leadership and audit stakeholders. Manage the full PKI infrastructure/SSL certificate lifecycle, including issuance, renewal, tracking, and remediation of expiring or non-compliant certificates, and manage key vault rotations for critical cloud-hosted applications. Utilize automation tools to deploy required machine certificates across the organization. Manage syslog retention and forwarding across on-premises and cloud infrastructure, supporting the Security team's SIEM ingestion, correlation, and compliance reporting needs. Administer network micro-segmentation using Illumio, including policy design, enforcement, and ongoing tuning. Review and administer security tools to harden network edge security, including next generation firewalls, SD-WAN, and switching, striving for zero trust networks. Manage wireless security, including network access control (NAC), utilizing Cisco wireless and HPE Aruba ClearPass. Administer Identity and Access Management/Privileged Access Management (IAM/PAM) using BeyondTrust for remote server access, including access reviews and privileged session controls. Manage and review Azure RBAC roles and access privileges, and perform Active Directory hardening in compliance with discovered vulnerabilities and best practices. Review and secure SDLC servers and hosted applications, both on-premises and in Azure, applying measures to keep all public endpoints secure. Operational Reliability & Risk Reduction Balance day-to-day operational demands (SSL renewals/rotations, security remediation, configuration hardening, troubleshooting) with planned, time-bound deliverables. Identify and reduce single-point-of-failure risk by documenting procedures and cross-training across PKI, AD, cloud access, segmentation, and patching functions. Partner with the Azure DevOps and Security teams to align on-prem/hybrid remediation with broader cloud governance and security initiatives. Escalate emerging risks, audit exceptions, and outage-driving conflicts between operational and remediation priorities to leadership. Key Competencies Analytical: synthesizes complex or diverse technical information, using intuition and experience to complement data. Collaboration: openly partners with security operations, DevOps, and business stakeholders, valuing diverse perspectives and building productive relationships. Communication: listens and responds effectively to stakeholder needs; writes and speaks clearly and persuasively. Initiative and personal accountability: identifies and creates solutions independently, sets and meets deadlines, and reports timely and prepared. Problem solving/decision making: thinks strategically, drawing on diverse sources to identify issues, risks, and trends and determine optimal, timely solutions. Strong troubleshooting skills and the ability to manage competing priorities between reactive operational work and scheduled remediation projects. Ability to support 24/7 platform reliability, including scheduled evening and weekend work for monthly patching cycles, zero-day response, and maintenance outside normal business hours. Ability to travel periodically between the Boca Raton, FL and Atlanta (ATL) data centers as needed. Requirements: Qualifications Required Qualifications Bachelor's degree in Computer Science, Information Security, or a related field; at least five (5) years of related business experience in network security, systems engineering, or infrastructure operations in an enterprise environment, or an equivalent combination of education and professional experience. Hands-on experience with both on-premises and cloud infrastructure platforms, including vulnerability management, patch management, and OS hardening across Windows and/or Linux server environments. Experience with PKI/SSL certificate lifecycle management and IAM/PAM tools (e.g., BeyondTrust or equivalent). Experience partnering with security operations/SIEM teams to onboard new log sources and ensure reliable syslog delivery from network infrastructure. Working knowledge of hybrid Active Directory/Microsoft Entra ID environments and familiarity with network segmentation concepts and tools (e.g., Illumio or comparable micro-segmentation platforms). Experience supporting audit and compliance remediation cycles, such as HIPAA assessments, SRAs, or penetration test findings. Proficiency with firewalls and network security appliances (Palo Alto, Fortinet, Cisco Meraki, Cisco switches), SD-WAN/next-generation firewall administration, and wireless security/NAC (Cisco wireless, HPE Aruba ClearPass). This is a hybrid role based in Boca Raton, FL, with periodic on-site support required at the Boca Raton and Atlanta (ATL) data centers. At no time may work be performed, or computer systems accessed, from outside of the U.S. Preferred Qualifications Vendor-specific certifications, Microsoft Azure, Security+, CISSP, GIAC, or an equivalent security certification. Scripting/automation experience (e.g., PowerShell) for remediation and hardening tasks. Why Join MDVIP? Be part of a mission-driven organization leading innovation in personalized healthcare. Drive transformation and growth in a dynamic, fast-paced environment. Competitive Compensation: Attractive base salary complemented by performance-based incentives. Comprehensive Benefits: Health, dental, vision insurance, and retirement plans. Professional Development: Access to ongoing training and leadership development programs. Positive Work Environment: Consistently recognized as a Great Place to Work , fostering a culture of collaboration and excellence. MDVIP is an Equal Opportunity Employer and is committed to fostering an inclusive and diverse workplace. We welcome applicants of all backgrounds and do not discriminate based on race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, veteran status, or any other protected status. We believe that diversity and inclusion drive innovation and strengthen our company culture. If you require accommodations during the application or interview process, please let us know, and we will be happy to assist. Pay Transparency: Our compensation reflects the cost of labor across appropriate US geographic markets. Pay is based on several factors including but not limited to market location and may vary depending on job-related knowledge, skills, and education/training and a candidate's work experience. Hired applicants are offered annual incentive compensation programs, subject to applicable eligibility requirements . click apply for full job details
09/28/2026
Full time
Job Description Job Description Description: MDVIP: Transforming Primary Care, One Patient at a Time MDVIP is a national leader in personalized healthcare, empowering over 425,000 members to achieve their health and wellness goals through a network of more than 1,400 concierge primary care physicians. Our program emphasizes preventive medicine, offering comprehensive screenings, advanced diagnostics, and individualized wellness plans. Recognized as a Great Place to Work since 2018, MDVIP is committed to excellence in patient care and employee satisfaction. Position Summary The Network Security Engineer is an individual contributor role reporting to the Sr. Network Operations Manager. This is a contract-to-perm position (6-month contract), based in Boca Raton, FL (Hybrid), supporting the Boca Raton and Atlanta (ATL) data centers. This role provides dedicated engineering capacity for the ownership, hardening, and reliability of the organization's on-premises and hybrid infrastructure. The Network Security Engineer sustains a predictable remediation cadence across recurring security obligations - including monthly patching, zero-day response, vulnerability remediation, OS hardening, and cloud security score - while maintaining core platform services that underpin 24/7 operational reliability. This role is critical to reducing key-person risk, closing the capacity gap between rising compliance/audit workloads and existing staffing, and ensuring remediation tied to penetration tests, annual Security Risk Assessments (SRAs), and HIPAA assessments is completed on schedule. Key Responsibilities Security Remediation & Compliance Execute remediation for findings from penetration tests, annual Security Risk Assessments (SRAs), and HIPAA assessments, ensuring items are tracked to closure within defined SLAs; work with Project Managers, technology stack owners, and third-party resources to ensure timely delivery. Lead monthly patching cycles and rapid zero-day response across on-prem and hybrid server environments. Apply security remediations on infrastructure appliances including Cisco switches, firewalls (Palo Alto, Fortinet, Cisco Meraki), Linux appliances, and the virtual server environment and SANs (VMware, vSphere). Perform vulnerability remediation and OS/system hardening in line with established security baselines and audit requirements. Maintain a remediation burndown and support reporting on patch/vulnerability KPIs, including critical remediation timelines and cloud security score. Core Platform & Infrastructure Ownership Track Azure Security Score trends and drive remediation of flagged recommendations, providing regular posture reporting to leadership and audit stakeholders. Manage the full PKI infrastructure/SSL certificate lifecycle, including issuance, renewal, tracking, and remediation of expiring or non-compliant certificates, and manage key vault rotations for critical cloud-hosted applications. Utilize automation tools to deploy required machine certificates across the organization. Manage syslog retention and forwarding across on-premises and cloud infrastructure, supporting the Security team's SIEM ingestion, correlation, and compliance reporting needs. Administer network micro-segmentation using Illumio, including policy design, enforcement, and ongoing tuning. Review and administer security tools to harden network edge security, including next generation firewalls, SD-WAN, and switching, striving for zero trust networks. Manage wireless security, including network access control (NAC), utilizing Cisco wireless and HPE Aruba ClearPass. Administer Identity and Access Management/Privileged Access Management (IAM/PAM) using BeyondTrust for remote server access, including access reviews and privileged session controls. Manage and review Azure RBAC roles and access privileges, and perform Active Directory hardening in compliance with discovered vulnerabilities and best practices. Review and secure SDLC servers and hosted applications, both on-premises and in Azure, applying measures to keep all public endpoints secure. Operational Reliability & Risk Reduction Balance day-to-day operational demands (SSL renewals/rotations, security remediation, configuration hardening, troubleshooting) with planned, time-bound deliverables. Identify and reduce single-point-of-failure risk by documenting procedures and cross-training across PKI, AD, cloud access, segmentation, and patching functions. Partner with the Azure DevOps and Security teams to align on-prem/hybrid remediation with broader cloud governance and security initiatives. Escalate emerging risks, audit exceptions, and outage-driving conflicts between operational and remediation priorities to leadership. Key Competencies Analytical: synthesizes complex or diverse technical information, using intuition and experience to complement data. Collaboration: openly partners with security operations, DevOps, and business stakeholders, valuing diverse perspectives and building productive relationships. Communication: listens and responds effectively to stakeholder needs; writes and speaks clearly and persuasively. Initiative and personal accountability: identifies and creates solutions independently, sets and meets deadlines, and reports timely and prepared. Problem solving/decision making: thinks strategically, drawing on diverse sources to identify issues, risks, and trends and determine optimal, timely solutions. Strong troubleshooting skills and the ability to manage competing priorities between reactive operational work and scheduled remediation projects. Ability to support 24/7 platform reliability, including scheduled evening and weekend work for monthly patching cycles, zero-day response, and maintenance outside normal business hours. Ability to travel periodically between the Boca Raton, FL and Atlanta (ATL) data centers as needed. Requirements: Qualifications Required Qualifications Bachelor's degree in Computer Science, Information Security, or a related field; at least five (5) years of related business experience in network security, systems engineering, or infrastructure operations in an enterprise environment, or an equivalent combination of education and professional experience. Hands-on experience with both on-premises and cloud infrastructure platforms, including vulnerability management, patch management, and OS hardening across Windows and/or Linux server environments. Experience with PKI/SSL certificate lifecycle management and IAM/PAM tools (e.g., BeyondTrust or equivalent). Experience partnering with security operations/SIEM teams to onboard new log sources and ensure reliable syslog delivery from network infrastructure. Working knowledge of hybrid Active Directory/Microsoft Entra ID environments and familiarity with network segmentation concepts and tools (e.g., Illumio or comparable micro-segmentation platforms). Experience supporting audit and compliance remediation cycles, such as HIPAA assessments, SRAs, or penetration test findings. Proficiency with firewalls and network security appliances (Palo Alto, Fortinet, Cisco Meraki, Cisco switches), SD-WAN/next-generation firewall administration, and wireless security/NAC (Cisco wireless, HPE Aruba ClearPass). This is a hybrid role based in Boca Raton, FL, with periodic on-site support required at the Boca Raton and Atlanta (ATL) data centers. At no time may work be performed, or computer systems accessed, from outside of the U.S. Preferred Qualifications Vendor-specific certifications, Microsoft Azure, Security+, CISSP, GIAC, or an equivalent security certification. Scripting/automation experience (e.g., PowerShell) for remediation and hardening tasks. Why Join MDVIP? Be part of a mission-driven organization leading innovation in personalized healthcare. Drive transformation and growth in a dynamic, fast-paced environment. Competitive Compensation: Attractive base salary complemented by performance-based incentives. Comprehensive Benefits: Health, dental, vision insurance, and retirement plans. Professional Development: Access to ongoing training and leadership development programs. Positive Work Environment: Consistently recognized as a Great Place to Work , fostering a culture of collaboration and excellence. MDVIP is an Equal Opportunity Employer and is committed to fostering an inclusive and diverse workplace. We welcome applicants of all backgrounds and do not discriminate based on race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, veteran status, or any other protected status. We believe that diversity and inclusion drive innovation and strengthen our company culture. If you require accommodations during the application or interview process, please let us know, and we will be happy to assist. Pay Transparency: Our compensation reflects the cost of labor across appropriate US geographic markets. Pay is based on several factors including but not limited to market location and may vary depending on job-related knowledge, skills, and education/training and a candidate's work experience. Hired applicants are offered annual incentive compensation programs, subject to applicable eligibility requirements . click apply for full job details
Job Description Job Description About the Company : Sungrow North America is a leading provider of renewable energy solutions, specializing in the development and manufacturing of photovoltaic inverters and energy storage systems. The company offers a comprehensive range of products and services designed to optimize the performance and efficiency of solar power installations. Sungrow North America aims to provide sustainable and reliable energy solutions to meet the growing demand for clean power and is known for its commitment to innovation, high-quality standards, and exceptional customer service. Security Engineer - Network & Identity: The Security Engineer (Network & Identity) is a hands-on engineering role within the IT team responsible for designing, implementing, securing, and automating Sungrow USA's network security, PKI and certificate management, and identity & access infrastructure across on-premises, cloud, and SaaS environments. This role serves as the technical owner for network security architecture, cryptographic services, certificate lifecycle management, authentication, and access controls. The position focuses on Zero Trust security, network segmentation, certificate-based authentication, and identity protection to reduce organizational risk and enable secure business operations and platform ownership rather than SOC operations, threat monitoring, or incident response. Essential Duties and Responsibilities: Network Security Design, implement, and maintain secure enterprise network architectures across corporate offices, data centers, cloud platforms, and remote workforce environments. Architect network segmentation, Zero Trust access controls, and secure connectivity standards using Fortinet and Zscaler security solutions. Develop and maintain Zero Trust architectures across network, identity, endpoint, application, and cloud environments. Design and administer secure remote access using Zscaler Private Access, VPN technologies, and identity-aware access controls. Manage firewall policies, network security controls, routing security, DNS security, and hybrid-cloud connectivity. Design and support Network Access Control architectures using IEEE 802.1X, RADIUS, and certificate-based authentication. Assess network security posture, develop remediation plans, and drive continuous security improvements. Cryptography, PKI & Certificate Management Own the enterprise PKI, cryptography, and certificate lifecycle management architecture, standards, and governance program. Design and manage certificate-based authentication and machine identity solutions for users, devices, servers, applications, cloud workloads, and network infrastructure across Azure, AWS, and hybrid environments. Implement and maintain certificate lifecycle automation using Microsoft Cloud PKI, Keyfactor, CyberArk Certificate Manager, EJBCA, DigiCert, AppViewX, or comparable platforms. Manage certificate issuance, enrollment, discovery, deployment, monitoring, renewal, revocation, auditing, and compliance across the enterprise. Design and support cryptographic services and certificate-based security controls, including TLS/mTLS, code signing, PKI trust hierarchies, certificate-based authentication, SCEP, PKCS, and machine identities. Establish PKI and cryptographic standards, key management practices, and security controls to support Zero Trust, regulatory compliance, and enterprise security requirements. Troubleshoot and resolve complex certificate, cryptographic, trust chain, authentication, and secure communications issues across enterprise systems and applications. Identity & Access Define authentication and authorization standards for workforce, partner, application, service, and machine identities. Design, implement, and maintain Microsoft Entra ID architecture, tenant governance, and identity security controls. Develop, test, and enforce Conditional Access policies and Zero Trust access controls. Implement and maintain MFA, passwordless authentication, phishing-resistant authentication, and Microsoft Entra ID Protection capabilities. Design and support enterprise SSO and federation integrations using SAML, OAuth 2.0, OpenID Connect, and SCIM. Implement least-privilege and risk-based access models across enterprise platforms. Administer RBAC, administrative separation, Microsoft Entra Privileged Identity Management, and least-privilege access controls. Govern application registrations, service principals, enterprise applications, API permissions, and managed identities. Support B2B collaboration, guest-user governance, external workforce access, and third-party identity integrations. Design and implement security controls across Microsoft Azure and AWS environments. Apply least privilege, RBAC, encryption, secrets management, and secure configuration standards to on-prem and cloud resources. Automate identity provisioning and deprovisioning, access governance, certificate management, configuration validation, and security operations. Create reusable secure-by-default templates and reduce manual administration through automation and orchestration Conduct access reviews, entitlement certifications, and identity governance activities. Education or Desired License and Certificates: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field, or equivalent professional experience. Microsoft Certified: Identity and Access Administrator Associate (SC-300) preferred. Microsoft Certified: Azure Security Engineer Associate (AZ-500) preferred. CCNA, Fortinet, Zscaler, AWS Security, CISSP, CISM, Terraform, or relevant PKI certification preferred Preferred Experience & Qualifications: 5+ years of experience in security engineering, identity & access management (IAM), network security, cloud security, or a related enterprise IT discipline. Hands-on experience with Microsoft Entra ID, including Conditional Access, MFA, SSO, Identity Protection, PIM, RBAC, identity governance, and modern authentication protocols (SAML, OAuth, OpenID Connect, SCIM). Experience designing, implementing, and securing enterprise identity, privileged access, and machine identity solutions across hybrid and multi-cloud environments. Hands-on experience with Fortinet, Zscaler (ZIA/ZPA), Zero Trust architectures, least-privilege access models, and network security controls. Experience designing and operating enterprise PKI, certificate lifecycle management, certificate-based authentication, and machine identity platforms such as Keyfactor, DigiCert, EJBCA, AppViewX, CyberArk Certificate Manager, or similar solutions. Experience securing Azure and AWS environments, including identity, networking, encryption, secrets management, logging, and security monitoring. Experience with PAM and IGA platforms such as CyberArk, Delinea, BeyondTrust, SailPoint, Saviynt, or similar technologies. Experience integrating identity, network, cloud, and security telemetry with SIEM and security operations platforms. Strong automation and Infrastructure as Code skills using PowerShell, Python, Microsoft Graph API, REST APIs, Terraform, or similar technologies. Strong troubleshooting skills across authentication, federation, certificates, PKI, network security, cloud access, application integrations, and enterprise identity services. Knowledge of cybersecurity and compliance frameworks including SOC 2, ISO/IEC 27001, NIST CSF, NIST 800-63, CIS Controls, Zero Trust, and NERC CIP. Competencies: Mandarin fluency preferred but not required. Strong analytical, troubleshooting, and problem-solving skills. Ability to work independently and collaboratively in a fast-paced environment. Excellent communication, stakeholder management, and technical documentation skills. Strong organization, attention to detail, initiative, and ownership. Ability to balance security, reliability, usability, scalability, and business requirements. Proactive approach to automation, standardization, and continuous improvement. Travel 5%-20% Work Location and Status: Full time, Hybrid at any Sungrow USA office in Phoenix, Costa Mesa, or Houston No visa sponsorship Compensation: Compensation commensurate with experience Competitive salary and annual bonus eligibility Comprehensive benefits package including health, dental, vision, and retirement plans Strong personal and company growth opportunities Sungrow is an equal opportunity employer. Due to strong interest in this position, Sungrow will only reach out to those candidates who best meet the requirements. Thank you for your interest in Sungrow.
09/28/2026
Full time
Job Description Job Description About the Company : Sungrow North America is a leading provider of renewable energy solutions, specializing in the development and manufacturing of photovoltaic inverters and energy storage systems. The company offers a comprehensive range of products and services designed to optimize the performance and efficiency of solar power installations. Sungrow North America aims to provide sustainable and reliable energy solutions to meet the growing demand for clean power and is known for its commitment to innovation, high-quality standards, and exceptional customer service. Security Engineer - Network & Identity: The Security Engineer (Network & Identity) is a hands-on engineering role within the IT team responsible for designing, implementing, securing, and automating Sungrow USA's network security, PKI and certificate management, and identity & access infrastructure across on-premises, cloud, and SaaS environments. This role serves as the technical owner for network security architecture, cryptographic services, certificate lifecycle management, authentication, and access controls. The position focuses on Zero Trust security, network segmentation, certificate-based authentication, and identity protection to reduce organizational risk and enable secure business operations and platform ownership rather than SOC operations, threat monitoring, or incident response. Essential Duties and Responsibilities: Network Security Design, implement, and maintain secure enterprise network architectures across corporate offices, data centers, cloud platforms, and remote workforce environments. Architect network segmentation, Zero Trust access controls, and secure connectivity standards using Fortinet and Zscaler security solutions. Develop and maintain Zero Trust architectures across network, identity, endpoint, application, and cloud environments. Design and administer secure remote access using Zscaler Private Access, VPN technologies, and identity-aware access controls. Manage firewall policies, network security controls, routing security, DNS security, and hybrid-cloud connectivity. Design and support Network Access Control architectures using IEEE 802.1X, RADIUS, and certificate-based authentication. Assess network security posture, develop remediation plans, and drive continuous security improvements. Cryptography, PKI & Certificate Management Own the enterprise PKI, cryptography, and certificate lifecycle management architecture, standards, and governance program. Design and manage certificate-based authentication and machine identity solutions for users, devices, servers, applications, cloud workloads, and network infrastructure across Azure, AWS, and hybrid environments. Implement and maintain certificate lifecycle automation using Microsoft Cloud PKI, Keyfactor, CyberArk Certificate Manager, EJBCA, DigiCert, AppViewX, or comparable platforms. Manage certificate issuance, enrollment, discovery, deployment, monitoring, renewal, revocation, auditing, and compliance across the enterprise. Design and support cryptographic services and certificate-based security controls, including TLS/mTLS, code signing, PKI trust hierarchies, certificate-based authentication, SCEP, PKCS, and machine identities. Establish PKI and cryptographic standards, key management practices, and security controls to support Zero Trust, regulatory compliance, and enterprise security requirements. Troubleshoot and resolve complex certificate, cryptographic, trust chain, authentication, and secure communications issues across enterprise systems and applications. Identity & Access Define authentication and authorization standards for workforce, partner, application, service, and machine identities. Design, implement, and maintain Microsoft Entra ID architecture, tenant governance, and identity security controls. Develop, test, and enforce Conditional Access policies and Zero Trust access controls. Implement and maintain MFA, passwordless authentication, phishing-resistant authentication, and Microsoft Entra ID Protection capabilities. Design and support enterprise SSO and federation integrations using SAML, OAuth 2.0, OpenID Connect, and SCIM. Implement least-privilege and risk-based access models across enterprise platforms. Administer RBAC, administrative separation, Microsoft Entra Privileged Identity Management, and least-privilege access controls. Govern application registrations, service principals, enterprise applications, API permissions, and managed identities. Support B2B collaboration, guest-user governance, external workforce access, and third-party identity integrations. Design and implement security controls across Microsoft Azure and AWS environments. Apply least privilege, RBAC, encryption, secrets management, and secure configuration standards to on-prem and cloud resources. Automate identity provisioning and deprovisioning, access governance, certificate management, configuration validation, and security operations. Create reusable secure-by-default templates and reduce manual administration through automation and orchestration Conduct access reviews, entitlement certifications, and identity governance activities. Education or Desired License and Certificates: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field, or equivalent professional experience. Microsoft Certified: Identity and Access Administrator Associate (SC-300) preferred. Microsoft Certified: Azure Security Engineer Associate (AZ-500) preferred. CCNA, Fortinet, Zscaler, AWS Security, CISSP, CISM, Terraform, or relevant PKI certification preferred Preferred Experience & Qualifications: 5+ years of experience in security engineering, identity & access management (IAM), network security, cloud security, or a related enterprise IT discipline. Hands-on experience with Microsoft Entra ID, including Conditional Access, MFA, SSO, Identity Protection, PIM, RBAC, identity governance, and modern authentication protocols (SAML, OAuth, OpenID Connect, SCIM). Experience designing, implementing, and securing enterprise identity, privileged access, and machine identity solutions across hybrid and multi-cloud environments. Hands-on experience with Fortinet, Zscaler (ZIA/ZPA), Zero Trust architectures, least-privilege access models, and network security controls. Experience designing and operating enterprise PKI, certificate lifecycle management, certificate-based authentication, and machine identity platforms such as Keyfactor, DigiCert, EJBCA, AppViewX, CyberArk Certificate Manager, or similar solutions. Experience securing Azure and AWS environments, including identity, networking, encryption, secrets management, logging, and security monitoring. Experience with PAM and IGA platforms such as CyberArk, Delinea, BeyondTrust, SailPoint, Saviynt, or similar technologies. Experience integrating identity, network, cloud, and security telemetry with SIEM and security operations platforms. Strong automation and Infrastructure as Code skills using PowerShell, Python, Microsoft Graph API, REST APIs, Terraform, or similar technologies. Strong troubleshooting skills across authentication, federation, certificates, PKI, network security, cloud access, application integrations, and enterprise identity services. Knowledge of cybersecurity and compliance frameworks including SOC 2, ISO/IEC 27001, NIST CSF, NIST 800-63, CIS Controls, Zero Trust, and NERC CIP. Competencies: Mandarin fluency preferred but not required. Strong analytical, troubleshooting, and problem-solving skills. Ability to work independently and collaboratively in a fast-paced environment. Excellent communication, stakeholder management, and technical documentation skills. Strong organization, attention to detail, initiative, and ownership. Ability to balance security, reliability, usability, scalability, and business requirements. Proactive approach to automation, standardization, and continuous improvement. Travel 5%-20% Work Location and Status: Full time, Hybrid at any Sungrow USA office in Phoenix, Costa Mesa, or Houston No visa sponsorship Compensation: Compensation commensurate with experience Competitive salary and annual bonus eligibility Comprehensive benefits package including health, dental, vision, and retirement plans Strong personal and company growth opportunities Sungrow is an equal opportunity employer. Due to strong interest in this position, Sungrow will only reach out to those candidates who best meet the requirements. Thank you for your interest in Sungrow.
Job Description Job Description This is a U.S. based position. All of the programs we support require U.S. citizenship to be eligible for employment. All work must be conducted within the continental U.S. Who we are: Raft () is a customer-obsessed non-traditional defense tech company dedicated to empowering U.S. military and government agencies with cutting-edge AI/ML and data solutions. We are a leader in autonomous data fusion and Agentic AI, with a purposeful focus on Distributed Data Systems, Platforms at Scale, and Complex Application Development. With headquarters in McLean, VA, our range of clients includes innovative federal and public agencies leveraging design thinking, cutting-edge tech stack, and cloud-native ecosystem. We build digital solutions that impact the lives of millions of Americans. Our team is rapidly growing and looking for an experienced Scrum Master to contribute to development efforts and join our passionate team of high-impact problem solvers. We enjoy the challenges of human-centered design, security, and scale to create better outcomes for our federal agency partners. We are a remote-first company and work completely in the open source. About the role: As a Scrum Master , your management and leadership activities are integrated with Scaled Agile Framework (SAFe) methodologies and many associated stakeholders. SAFe offers proven, integrated principles, practices, and competencies to implement agile and DevOps at scale. Additionally, this program office personifies DevSecOps which automates the integration of security at every phase of the software development lifecycle from initial design, through integration, testing, deployment, delivery, operation, and monitoring. Essential Job Functions: Prepare and maintain comprehensive documentation to ensure accuracy and completeness. Manage configuration items, including documentation, change control boards, and lifecycle management. Schedule and coordinate change control board meetings, documenting and implementing outcomes, changes, and ECPs in a fast-paced Agile/DevSecOps environment. Support a configuration management (CM) team integrated with multi-functional SAFe/DevSecOps and Fielding teams. Automate CM processes using approved tools and collaborate with Quality teams to ensure compliance with CM policies and automated workflows. Develop and implement a CM plan aligned with SSC policies and NIST 800-53 CM controls. Deliver software source code and released artifacts. Coordinate CM efforts with Project Management, Risk, Quality, and Task Leads across Development, Testing, Fielding/Sustainment, and Cloud Services. What We Are Looking For: Bachelor's degree in Computer Science, Engineering, Physics, Mathematics, or a related field, with at least 3 years of experience. Minimum of 3 years of hands-on experience in software and hardware configuration management. Proficiency in application frameworks and tools, including Microsoft Office (Word, Excel), Adobe Acrobat, Confluence, Jira, GitLab, Puppet, Terraform, and Ansible. Ability to manage configuration in on-premises, hybrid, and cloud environments. Experience creating and updating configuration items and technical documentation. Ability to develop and refine workflows, with a focus on automation. Proficiency in applying Infrastructure as Code (IaC) principles. Highly preferred: Certifications: SAFe for Teams Certification, Security+, CISSP, or other relevant cybersecurity certifications. Industry Experience: Strong familiarity with relevant DoD and Industry work, particularly within Space Systems Command. Cyber Operations Expertise: Hands-on experience with DoD and USSF Defensive Cyber Operations. Clearance Requirements: Active Secret security clearance Work Type: Onsite- Colorado Springs, CO May require up to 10% travel Salary Range : $90,000 - $115,000 The determination of compensation is predicated upon a candidate's comprehensive experience, demonstrated skill, and proven abilities What we will offer you: Highly competitive salary Fully covered healthcare, dental, and vision coverage 401(k) and company match Take as you need PTO + 11 paid holidays Education & training benefits Annual budget for your tech/gadgets needs Team off-site in fun places! Generous Referral Bonuses And More! Our Vision Statement: We bridge the gap between humans and data through radical transparency and our obsession with the mission. Our Customer Obsession: We will approach every deliverable like it's a product. We will adopt a customer-obsessed mentality. As we grow, and our footprint becomes larger, teams and employees will treat each other not only as teammates but customers. We must live the customer-obsessed mindset, always. This will help us scale and it will translate to the interactions that our Rafters have with their clients and other product teams that they integrate with. Our culture will enable our success and set us apart from other companies. How do we get there? Public-sector modernization is critical for us to live in a better world. We, at Raft, want to innovate and solve complex problems. And, if we are successful, our generation and the ones that follow us will live in a delightful, efficient, and accessible world where out-of-box thinking, and collaboration is a norm. Raft's core philosophy is Ubuntu: I Am, Because We are . We support our "nadi" by elevating the other Rafters. We work as a hyper collaborative team where each team member brings a unique perspective, adding value that did not exist before. People make Raft special. We celebrate each other and our cognitive and cultural diversity. We are devoted to our practice of innovation and collaboration. We're an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status. We're an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status.
09/28/2026
Full time
Job Description Job Description This is a U.S. based position. All of the programs we support require U.S. citizenship to be eligible for employment. All work must be conducted within the continental U.S. Who we are: Raft () is a customer-obsessed non-traditional defense tech company dedicated to empowering U.S. military and government agencies with cutting-edge AI/ML and data solutions. We are a leader in autonomous data fusion and Agentic AI, with a purposeful focus on Distributed Data Systems, Platforms at Scale, and Complex Application Development. With headquarters in McLean, VA, our range of clients includes innovative federal and public agencies leveraging design thinking, cutting-edge tech stack, and cloud-native ecosystem. We build digital solutions that impact the lives of millions of Americans. Our team is rapidly growing and looking for an experienced Scrum Master to contribute to development efforts and join our passionate team of high-impact problem solvers. We enjoy the challenges of human-centered design, security, and scale to create better outcomes for our federal agency partners. We are a remote-first company and work completely in the open source. About the role: As a Scrum Master , your management and leadership activities are integrated with Scaled Agile Framework (SAFe) methodologies and many associated stakeholders. SAFe offers proven, integrated principles, practices, and competencies to implement agile and DevOps at scale. Additionally, this program office personifies DevSecOps which automates the integration of security at every phase of the software development lifecycle from initial design, through integration, testing, deployment, delivery, operation, and monitoring. Essential Job Functions: Prepare and maintain comprehensive documentation to ensure accuracy and completeness. Manage configuration items, including documentation, change control boards, and lifecycle management. Schedule and coordinate change control board meetings, documenting and implementing outcomes, changes, and ECPs in a fast-paced Agile/DevSecOps environment. Support a configuration management (CM) team integrated with multi-functional SAFe/DevSecOps and Fielding teams. Automate CM processes using approved tools and collaborate with Quality teams to ensure compliance with CM policies and automated workflows. Develop and implement a CM plan aligned with SSC policies and NIST 800-53 CM controls. Deliver software source code and released artifacts. Coordinate CM efforts with Project Management, Risk, Quality, and Task Leads across Development, Testing, Fielding/Sustainment, and Cloud Services. What We Are Looking For: Bachelor's degree in Computer Science, Engineering, Physics, Mathematics, or a related field, with at least 3 years of experience. Minimum of 3 years of hands-on experience in software and hardware configuration management. Proficiency in application frameworks and tools, including Microsoft Office (Word, Excel), Adobe Acrobat, Confluence, Jira, GitLab, Puppet, Terraform, and Ansible. Ability to manage configuration in on-premises, hybrid, and cloud environments. Experience creating and updating configuration items and technical documentation. Ability to develop and refine workflows, with a focus on automation. Proficiency in applying Infrastructure as Code (IaC) principles. Highly preferred: Certifications: SAFe for Teams Certification, Security+, CISSP, or other relevant cybersecurity certifications. Industry Experience: Strong familiarity with relevant DoD and Industry work, particularly within Space Systems Command. Cyber Operations Expertise: Hands-on experience with DoD and USSF Defensive Cyber Operations. Clearance Requirements: Active Secret security clearance Work Type: Onsite- Colorado Springs, CO May require up to 10% travel Salary Range : $90,000 - $115,000 The determination of compensation is predicated upon a candidate's comprehensive experience, demonstrated skill, and proven abilities What we will offer you: Highly competitive salary Fully covered healthcare, dental, and vision coverage 401(k) and company match Take as you need PTO + 11 paid holidays Education & training benefits Annual budget for your tech/gadgets needs Team off-site in fun places! Generous Referral Bonuses And More! Our Vision Statement: We bridge the gap between humans and data through radical transparency and our obsession with the mission. Our Customer Obsession: We will approach every deliverable like it's a product. We will adopt a customer-obsessed mentality. As we grow, and our footprint becomes larger, teams and employees will treat each other not only as teammates but customers. We must live the customer-obsessed mindset, always. This will help us scale and it will translate to the interactions that our Rafters have with their clients and other product teams that they integrate with. Our culture will enable our success and set us apart from other companies. How do we get there? Public-sector modernization is critical for us to live in a better world. We, at Raft, want to innovate and solve complex problems. And, if we are successful, our generation and the ones that follow us will live in a delightful, efficient, and accessible world where out-of-box thinking, and collaboration is a norm. Raft's core philosophy is Ubuntu: I Am, Because We are . We support our "nadi" by elevating the other Rafters. We work as a hyper collaborative team where each team member brings a unique perspective, adding value that did not exist before. People make Raft special. We celebrate each other and our cognitive and cultural diversity. We are devoted to our practice of innovation and collaboration. We're an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status. We're an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status.
Job Description Job Description Company Overview: Strive Pharmacy is a personalized compounding pharmacy built on a simple conviction: medicine should fit the patient, not the other way around. We started Strive because we believed the pharmaceutical industry was overdue for a more human approach-one that prioritizes individualized care, clinical nuance, and genuine partnership with patients and providers. Compounding gives us the tools to do that. Every formulation we prepare is built to the specific needs of a specific person, and every interaction we have is guided by that same commitment to personalized care. We're growing, and we're looking for people who share that conviction. If you're ready to be part of a pharmacy that takes the work seriously and the people even more seriously, we'd like to meet you. Mission: Strive exists to disrupt an industry long overdue for a more personal approach to care. We put the human element at the center of everything: every formulation, every patient interaction, every provider partnership. We're not just a compounding pharmacy. We're a team on a mission to change what personalized healthcare looks and feels like. Location: Alachua FL (onsite Monday - Friday) Salary: $105,000 - $117,000 Department: Automation / Engineering Reports To: Director of Facilities & Engineering Position Summary The Automation Engineer (BMS) is responsible for the design, implementation, programming, and maintenance of the Building Management System (BMS) and Environmental Monitoring System (EMS) within a GMP-regulated pharmaceutical facility. This role ensures that critical HVAC systems, utility plants, and cleanroom environments (temperature, humidity, and differential pressure) are controlled and monitored in strict accordance with FDA 21 CFR Part 11 and EU Annex 11 requirements. Key Responsibilities System Design & Programming Design, program, and commission PLC, DDC, and SCADA-based control logic for facility utilities (Chillers, Boilers, AHUs, and Clean Utilities). Manage the BMS/EMS Architecture, ensuring robust communication between field devices (sensors, actuators) and the centralized server. Develop and maintain Graphics/HMI screens that provide clear, real-time visualization of facility health for the Facilities team. 2. GMP Compliance & Data Integrity Ensure the BMS/EMS remains in a Validated State by strictly adhering to GAMP 5 (Good Automated Manufacturing Practice) guidelines. Maintain the system's Audit Trail and user access levels to ensure compliance with 21 CFR Part 11. Lead the technical investigation for "Environmental Excursions" (e.g., when a cleanroom goes out of pressure spec), identifying the root cause in the control logic or hardware. 3. Validation & Lifecycle Management Author and execute Functional Design Specifications (FDS) and Software Design Specifications (SDS). Partner with the Validation department to draft and execute IQ/OQ protocols for software upgrades and new hardware installations. Manage the Backup and Disaster Recovery plan for all automation databases. 4. Operational Support & Maintenance Provide Tier 2/3 technical support for complex system failures that the maintenance team cannot resolve. Manage automation vendors (e.g., Siemens, Honeywell, Johnson Controls, or Schneider Electric) during service visits and system upgrades. Perform periodic "Loop Tuning" and sensor calibration verification to ensure system stability and energy efficiency. Qualifications & Skills Education: B.S. in Electrical Engineering, Computer Science, Mechanical Engineering, or a related field. Experience: 3-5+ years in Automation or Controls Engineering specifically within a GMP environment (Pharma/Biotech). Technical Knowledge: Expertise in common BMS platforms: Siemens Desigo/Apogee, Honeywell EBI, Johnson Controls Metasys, or Schneider EcoStruxure. Proficiency in communication protocols: BACnet, Modbus, and LonWorks . Strong understanding of HVAC sequences of operation for ISO-classified cleanrooms. Skills: Ability to read/interpret electrical schematics and P experience with change control management in a quality-driven environment. Key Performance Indicators (KPIs) System Uptime: Maintenance of the EMS/BMS to prevent data loss or monitoring gaps. Compliance: Successful completion of periodic system reviews and zero overdue audit trail reviews. Project Delivery: Implementation of logic updates or new hardware within defined maintenance windows. Work Environment: This position is primarily based in an onsite work environment. The role requires regular periods of sitting, standing, and computer use, with occasional lifting as needed. Reasonable accommodations may be made for individuals with disabilities. Annual Salary $105,000-$117,000 USD Join Us in Making an Impact: At Strive, the work is real and the impact is direct. Every role here contributes to a patient experience that's more personal, more attentive, and more human than what most people have come to expect from a pharmacy. Apply today and help us raise the bar. Benefits/ Perks: Strive Pharmacy offers a comprehensive benefits package, including: Employer-paid healthcare coverage, effective the 1st day of the following month of your hire date Free Strive compounded medications for employees based on a valid patient-specific prescription from a licensed healthcare provider Paid time off Sick time FSA and HSA options Parental leave 401(k) with employer matching Life insurance Vision and dental insurance Veterinary insurance Culture: Culture isn't an afterthought at Strive. It's something we actively build. We foster a collaborative, engaging workplace where employees have opportunities to connect, celebrate, and build meaningful relationships with their colleagues. We're committed to supporting the personal and professional growth of every employee, both inside and outside the workplace. EEO: Strive Pharmacy is an equal opportunity employer that is committed to diversity and inclusion in the workplace. We prohibit discrimination and harassment of any kind based on race, color, sex, religion, sexual orientation, national origin, disability, genetic information, pregnancy, or any other protected characteristics as outlined by federal, state or local laws. Disclaimer Please do not call the pharmacy location with questions about your application or interview. A talent acquisition partner will reach out to you.
09/28/2026
Full time
Job Description Job Description Company Overview: Strive Pharmacy is a personalized compounding pharmacy built on a simple conviction: medicine should fit the patient, not the other way around. We started Strive because we believed the pharmaceutical industry was overdue for a more human approach-one that prioritizes individualized care, clinical nuance, and genuine partnership with patients and providers. Compounding gives us the tools to do that. Every formulation we prepare is built to the specific needs of a specific person, and every interaction we have is guided by that same commitment to personalized care. We're growing, and we're looking for people who share that conviction. If you're ready to be part of a pharmacy that takes the work seriously and the people even more seriously, we'd like to meet you. Mission: Strive exists to disrupt an industry long overdue for a more personal approach to care. We put the human element at the center of everything: every formulation, every patient interaction, every provider partnership. We're not just a compounding pharmacy. We're a team on a mission to change what personalized healthcare looks and feels like. Location: Alachua FL (onsite Monday - Friday) Salary: $105,000 - $117,000 Department: Automation / Engineering Reports To: Director of Facilities & Engineering Position Summary The Automation Engineer (BMS) is responsible for the design, implementation, programming, and maintenance of the Building Management System (BMS) and Environmental Monitoring System (EMS) within a GMP-regulated pharmaceutical facility. This role ensures that critical HVAC systems, utility plants, and cleanroom environments (temperature, humidity, and differential pressure) are controlled and monitored in strict accordance with FDA 21 CFR Part 11 and EU Annex 11 requirements. Key Responsibilities System Design & Programming Design, program, and commission PLC, DDC, and SCADA-based control logic for facility utilities (Chillers, Boilers, AHUs, and Clean Utilities). Manage the BMS/EMS Architecture, ensuring robust communication between field devices (sensors, actuators) and the centralized server. Develop and maintain Graphics/HMI screens that provide clear, real-time visualization of facility health for the Facilities team. 2. GMP Compliance & Data Integrity Ensure the BMS/EMS remains in a Validated State by strictly adhering to GAMP 5 (Good Automated Manufacturing Practice) guidelines. Maintain the system's Audit Trail and user access levels to ensure compliance with 21 CFR Part 11. Lead the technical investigation for "Environmental Excursions" (e.g., when a cleanroom goes out of pressure spec), identifying the root cause in the control logic or hardware. 3. Validation & Lifecycle Management Author and execute Functional Design Specifications (FDS) and Software Design Specifications (SDS). Partner with the Validation department to draft and execute IQ/OQ protocols for software upgrades and new hardware installations. Manage the Backup and Disaster Recovery plan for all automation databases. 4. Operational Support & Maintenance Provide Tier 2/3 technical support for complex system failures that the maintenance team cannot resolve. Manage automation vendors (e.g., Siemens, Honeywell, Johnson Controls, or Schneider Electric) during service visits and system upgrades. Perform periodic "Loop Tuning" and sensor calibration verification to ensure system stability and energy efficiency. Qualifications & Skills Education: B.S. in Electrical Engineering, Computer Science, Mechanical Engineering, or a related field. Experience: 3-5+ years in Automation or Controls Engineering specifically within a GMP environment (Pharma/Biotech). Technical Knowledge: Expertise in common BMS platforms: Siemens Desigo/Apogee, Honeywell EBI, Johnson Controls Metasys, or Schneider EcoStruxure. Proficiency in communication protocols: BACnet, Modbus, and LonWorks . Strong understanding of HVAC sequences of operation for ISO-classified cleanrooms. Skills: Ability to read/interpret electrical schematics and P experience with change control management in a quality-driven environment. Key Performance Indicators (KPIs) System Uptime: Maintenance of the EMS/BMS to prevent data loss or monitoring gaps. Compliance: Successful completion of periodic system reviews and zero overdue audit trail reviews. Project Delivery: Implementation of logic updates or new hardware within defined maintenance windows. Work Environment: This position is primarily based in an onsite work environment. The role requires regular periods of sitting, standing, and computer use, with occasional lifting as needed. Reasonable accommodations may be made for individuals with disabilities. Annual Salary $105,000-$117,000 USD Join Us in Making an Impact: At Strive, the work is real and the impact is direct. Every role here contributes to a patient experience that's more personal, more attentive, and more human than what most people have come to expect from a pharmacy. Apply today and help us raise the bar. Benefits/ Perks: Strive Pharmacy offers a comprehensive benefits package, including: Employer-paid healthcare coverage, effective the 1st day of the following month of your hire date Free Strive compounded medications for employees based on a valid patient-specific prescription from a licensed healthcare provider Paid time off Sick time FSA and HSA options Parental leave 401(k) with employer matching Life insurance Vision and dental insurance Veterinary insurance Culture: Culture isn't an afterthought at Strive. It's something we actively build. We foster a collaborative, engaging workplace where employees have opportunities to connect, celebrate, and build meaningful relationships with their colleagues. We're committed to supporting the personal and professional growth of every employee, both inside and outside the workplace. EEO: Strive Pharmacy is an equal opportunity employer that is committed to diversity and inclusion in the workplace. We prohibit discrimination and harassment of any kind based on race, color, sex, religion, sexual orientation, national origin, disability, genetic information, pregnancy, or any other protected characteristics as outlined by federal, state or local laws. Disclaimer Please do not call the pharmacy location with questions about your application or interview. A talent acquisition partner will reach out to you.
Job Description Job Description Company Overview: Strive Pharmacy is a personalized compounding pharmacy built on a simple conviction: medicine should fit the patient, not the other way around. We started Strive because we believed the pharmaceutical industry was overdue for a more human approach-one that prioritizes individualized care, clinical nuance, and genuine partnership with patients and providers. Compounding gives us the tools to do that. Every formulation we prepare is built to the specific needs of a specific person, and every interaction we have is guided by that same commitment to personalized care. We're growing, and we're looking for people who share that conviction. If you're ready to be part of a pharmacy that takes the work seriously and the people even more seriously, we'd like to meet you. Mission: Strive exists to disrupt an industry long overdue for a more personal approach to care. We put the human element at the center of everything: every formulation, every patient interaction, every provider partnership. We're not just a compounding pharmacy. We're a team on a mission to change what personalized healthcare looks and feels like. Location: Alachua FL (onsite Monday - Friday) Salary: $105,000 - $117,000 Department: Automation / Engineering Reports To: Director of Facilities & Engineering Position Summary The Automation Engineer (BMS) is responsible for the design, implementation, programming, and maintenance of the Building Management System (BMS) and Environmental Monitoring System (EMS) within a GMP-regulated pharmaceutical facility. This role ensures that critical HVAC systems, utility plants, and cleanroom environments (temperature, humidity, and differential pressure) are controlled and monitored in strict accordance with FDA 21 CFR Part 11 and EU Annex 11 requirements. Key Responsibilities System Design & Programming Design, program, and commission PLC, DDC, and SCADA-based control logic for facility utilities (Chillers, Boilers, AHUs, and Clean Utilities). Manage the BMS/EMS Architecture, ensuring robust communication between field devices (sensors, actuators) and the centralized server. Develop and maintain Graphics/HMI screens that provide clear, real-time visualization of facility health for the Facilities team. 2. GMP Compliance & Data Integrity Ensure the BMS/EMS remains in a Validated State by strictly adhering to GAMP 5 (Good Automated Manufacturing Practice) guidelines. Maintain the system's Audit Trail and user access levels to ensure compliance with 21 CFR Part 11. Lead the technical investigation for "Environmental Excursions" (e.g., when a cleanroom goes out of pressure spec), identifying the root cause in the control logic or hardware. 3. Validation & Lifecycle Management Author and execute Functional Design Specifications (FDS) and Software Design Specifications (SDS). Partner with the Validation department to draft and execute IQ/OQ protocols for software upgrades and new hardware installations. Manage the Backup and Disaster Recovery plan for all automation databases. 4. Operational Support & Maintenance Provide Tier 2/3 technical support for complex system failures that the maintenance team cannot resolve. Manage automation vendors (e.g., Siemens, Honeywell, Johnson Controls, or Schneider Electric) during service visits and system upgrades. Perform periodic "Loop Tuning" and sensor calibration verification to ensure system stability and energy efficiency. Qualifications & Skills Education: B.S. in Electrical Engineering, Computer Science, Mechanical Engineering, or a related field. Experience: 3-5+ years in Automation or Controls Engineering specifically within a GMP environment (Pharma/Biotech). Technical Knowledge: Expertise in common BMS platforms: Siemens Desigo/Apogee, Honeywell EBI, Johnson Controls Metasys, or Schneider EcoStruxure. Proficiency in communication protocols: BACnet, Modbus, and LonWorks . Strong understanding of HVAC sequences of operation for ISO-classified cleanrooms. Skills: Ability to read/interpret electrical schematics and P experience with change control management in a quality-driven environment. Key Performance Indicators (KPIs) System Uptime: Maintenance of the EMS/BMS to prevent data loss or monitoring gaps. Compliance: Successful completion of periodic system reviews and zero overdue audit trail reviews. Project Delivery: Implementation of logic updates or new hardware within defined maintenance windows. Work Environment: This position is primarily based in an onsite work environment. The role requires regular periods of sitting, standing, and computer use, with occasional lifting as needed. Reasonable accommodations may be made for individuals with disabilities. Annual Salary $105,000-$117,000 USD Join Us in Making an Impact: At Strive, the work is real and the impact is direct. Every role here contributes to a patient experience that's more personal, more attentive, and more human than what most people have come to expect from a pharmacy. Apply today and help us raise the bar. Benefits/ Perks: Strive Pharmacy offers a comprehensive benefits package, including: Employer-paid healthcare coverage, effective the 1st day of the following month of your hire date Free Strive compounded medications for employees based on a valid patient-specific prescription from a licensed healthcare provider Paid time off Sick time FSA and HSA options Parental leave 401(k) with employer matching Life insurance Vision and dental insurance Veterinary insurance Culture: Culture isn't an afterthought at Strive. It's something we actively build. We foster a collaborative, engaging workplace where employees have opportunities to connect, celebrate, and build meaningful relationships with their colleagues. We're committed to supporting the personal and professional growth of every employee, both inside and outside the workplace. EEO: Strive Pharmacy is an equal opportunity employer that is committed to diversity and inclusion in the workplace. We prohibit discrimination and harassment of any kind based on race, color, sex, religion, sexual orientation, national origin, disability, genetic information, pregnancy, or any other protected characteristics as outlined by federal, state or local laws. Disclaimer Please do not call the pharmacy location with questions about your application or interview. A talent acquisition partner will reach out to you.
09/28/2026
Full time
Job Description Job Description Company Overview: Strive Pharmacy is a personalized compounding pharmacy built on a simple conviction: medicine should fit the patient, not the other way around. We started Strive because we believed the pharmaceutical industry was overdue for a more human approach-one that prioritizes individualized care, clinical nuance, and genuine partnership with patients and providers. Compounding gives us the tools to do that. Every formulation we prepare is built to the specific needs of a specific person, and every interaction we have is guided by that same commitment to personalized care. We're growing, and we're looking for people who share that conviction. If you're ready to be part of a pharmacy that takes the work seriously and the people even more seriously, we'd like to meet you. Mission: Strive exists to disrupt an industry long overdue for a more personal approach to care. We put the human element at the center of everything: every formulation, every patient interaction, every provider partnership. We're not just a compounding pharmacy. We're a team on a mission to change what personalized healthcare looks and feels like. Location: Alachua FL (onsite Monday - Friday) Salary: $105,000 - $117,000 Department: Automation / Engineering Reports To: Director of Facilities & Engineering Position Summary The Automation Engineer (BMS) is responsible for the design, implementation, programming, and maintenance of the Building Management System (BMS) and Environmental Monitoring System (EMS) within a GMP-regulated pharmaceutical facility. This role ensures that critical HVAC systems, utility plants, and cleanroom environments (temperature, humidity, and differential pressure) are controlled and monitored in strict accordance with FDA 21 CFR Part 11 and EU Annex 11 requirements. Key Responsibilities System Design & Programming Design, program, and commission PLC, DDC, and SCADA-based control logic for facility utilities (Chillers, Boilers, AHUs, and Clean Utilities). Manage the BMS/EMS Architecture, ensuring robust communication between field devices (sensors, actuators) and the centralized server. Develop and maintain Graphics/HMI screens that provide clear, real-time visualization of facility health for the Facilities team. 2. GMP Compliance & Data Integrity Ensure the BMS/EMS remains in a Validated State by strictly adhering to GAMP 5 (Good Automated Manufacturing Practice) guidelines. Maintain the system's Audit Trail and user access levels to ensure compliance with 21 CFR Part 11. Lead the technical investigation for "Environmental Excursions" (e.g., when a cleanroom goes out of pressure spec), identifying the root cause in the control logic or hardware. 3. Validation & Lifecycle Management Author and execute Functional Design Specifications (FDS) and Software Design Specifications (SDS). Partner with the Validation department to draft and execute IQ/OQ protocols for software upgrades and new hardware installations. Manage the Backup and Disaster Recovery plan for all automation databases. 4. Operational Support & Maintenance Provide Tier 2/3 technical support for complex system failures that the maintenance team cannot resolve. Manage automation vendors (e.g., Siemens, Honeywell, Johnson Controls, or Schneider Electric) during service visits and system upgrades. Perform periodic "Loop Tuning" and sensor calibration verification to ensure system stability and energy efficiency. Qualifications & Skills Education: B.S. in Electrical Engineering, Computer Science, Mechanical Engineering, or a related field. Experience: 3-5+ years in Automation or Controls Engineering specifically within a GMP environment (Pharma/Biotech). Technical Knowledge: Expertise in common BMS platforms: Siemens Desigo/Apogee, Honeywell EBI, Johnson Controls Metasys, or Schneider EcoStruxure. Proficiency in communication protocols: BACnet, Modbus, and LonWorks . Strong understanding of HVAC sequences of operation for ISO-classified cleanrooms. Skills: Ability to read/interpret electrical schematics and P experience with change control management in a quality-driven environment. Key Performance Indicators (KPIs) System Uptime: Maintenance of the EMS/BMS to prevent data loss or monitoring gaps. Compliance: Successful completion of periodic system reviews and zero overdue audit trail reviews. Project Delivery: Implementation of logic updates or new hardware within defined maintenance windows. Work Environment: This position is primarily based in an onsite work environment. The role requires regular periods of sitting, standing, and computer use, with occasional lifting as needed. Reasonable accommodations may be made for individuals with disabilities. Annual Salary $105,000-$117,000 USD Join Us in Making an Impact: At Strive, the work is real and the impact is direct. Every role here contributes to a patient experience that's more personal, more attentive, and more human than what most people have come to expect from a pharmacy. Apply today and help us raise the bar. Benefits/ Perks: Strive Pharmacy offers a comprehensive benefits package, including: Employer-paid healthcare coverage, effective the 1st day of the following month of your hire date Free Strive compounded medications for employees based on a valid patient-specific prescription from a licensed healthcare provider Paid time off Sick time FSA and HSA options Parental leave 401(k) with employer matching Life insurance Vision and dental insurance Veterinary insurance Culture: Culture isn't an afterthought at Strive. It's something we actively build. We foster a collaborative, engaging workplace where employees have opportunities to connect, celebrate, and build meaningful relationships with their colleagues. We're committed to supporting the personal and professional growth of every employee, both inside and outside the workplace. EEO: Strive Pharmacy is an equal opportunity employer that is committed to diversity and inclusion in the workplace. We prohibit discrimination and harassment of any kind based on race, color, sex, religion, sexual orientation, national origin, disability, genetic information, pregnancy, or any other protected characteristics as outlined by federal, state or local laws. Disclaimer Please do not call the pharmacy location with questions about your application or interview. A talent acquisition partner will reach out to you.
Job Description Job Description Company Overview: Strive Pharmacy is a personalized compounding pharmacy built on a simple conviction: medicine should fit the patient, not the other way around. We started Strive because we believed the pharmaceutical industry was overdue for a more human approach-one that prioritizes individualized care, clinical nuance, and genuine partnership with patients and providers. Compounding gives us the tools to do that. Every formulation we prepare is built to the specific needs of a specific person, and every interaction we have is guided by that same commitment to personalized care. We're growing, and we're looking for people who share that conviction. If you're ready to be part of a pharmacy that takes the work seriously and the people even more seriously, we'd like to meet you. Mission: Strive exists to disrupt an industry long overdue for a more personal approach to care. We put the human element at the center of everything: every formulation, every patient interaction, every provider partnership. We're not just a compounding pharmacy. We're a team on a mission to change what personalized healthcare looks and feels like. Location: Alachua FL (onsite Monday - Friday) Salary: $105,000 - $117,000 Department: Automation / Engineering Reports To: Director of Facilities & Engineering Position Summary The Automation Engineer (BMS) is responsible for the design, implementation, programming, and maintenance of the Building Management System (BMS) and Environmental Monitoring System (EMS) within a GMP-regulated pharmaceutical facility. This role ensures that critical HVAC systems, utility plants, and cleanroom environments (temperature, humidity, and differential pressure) are controlled and monitored in strict accordance with FDA 21 CFR Part 11 and EU Annex 11 requirements. Key Responsibilities System Design & Programming Design, program, and commission PLC, DDC, and SCADA-based control logic for facility utilities (Chillers, Boilers, AHUs, and Clean Utilities). Manage the BMS/EMS Architecture, ensuring robust communication between field devices (sensors, actuators) and the centralized server. Develop and maintain Graphics/HMI screens that provide clear, real-time visualization of facility health for the Facilities team. 2. GMP Compliance & Data Integrity Ensure the BMS/EMS remains in a Validated State by strictly adhering to GAMP 5 (Good Automated Manufacturing Practice) guidelines. Maintain the system's Audit Trail and user access levels to ensure compliance with 21 CFR Part 11. Lead the technical investigation for "Environmental Excursions" (e.g., when a cleanroom goes out of pressure spec), identifying the root cause in the control logic or hardware. 3. Validation & Lifecycle Management Author and execute Functional Design Specifications (FDS) and Software Design Specifications (SDS). Partner with the Validation department to draft and execute IQ/OQ protocols for software upgrades and new hardware installations. Manage the Backup and Disaster Recovery plan for all automation databases. 4. Operational Support & Maintenance Provide Tier 2/3 technical support for complex system failures that the maintenance team cannot resolve. Manage automation vendors (e.g., Siemens, Honeywell, Johnson Controls, or Schneider Electric) during service visits and system upgrades. Perform periodic "Loop Tuning" and sensor calibration verification to ensure system stability and energy efficiency. Qualifications & Skills Education: B.S. in Electrical Engineering, Computer Science, Mechanical Engineering, or a related field. Experience: 3-5+ years in Automation or Controls Engineering specifically within a GMP environment (Pharma/Biotech). Technical Knowledge: Expertise in common BMS platforms: Siemens Desigo/Apogee, Honeywell EBI, Johnson Controls Metasys, or Schneider EcoStruxure. Proficiency in communication protocols: BACnet, Modbus, and LonWorks . Strong understanding of HVAC sequences of operation for ISO-classified cleanrooms. Skills: Ability to read/interpret electrical schematics and P experience with change control management in a quality-driven environment. Key Performance Indicators (KPIs) System Uptime: Maintenance of the EMS/BMS to prevent data loss or monitoring gaps. Compliance: Successful completion of periodic system reviews and zero overdue audit trail reviews. Project Delivery: Implementation of logic updates or new hardware within defined maintenance windows. Work Environment: This position is primarily based in an onsite work environment. The role requires regular periods of sitting, standing, and computer use, with occasional lifting as needed. Reasonable accommodations may be made for individuals with disabilities. Annual Salary $105,000-$117,000 USD Join Us in Making an Impact: At Strive, the work is real and the impact is direct. Every role here contributes to a patient experience that's more personal, more attentive, and more human than what most people have come to expect from a pharmacy. Apply today and help us raise the bar. Benefits/ Perks: Strive Pharmacy offers a comprehensive benefits package, including: Employer-paid healthcare coverage, effective the 1st day of the following month of your hire date Free Strive compounded medications for employees based on a valid patient-specific prescription from a licensed healthcare provider Paid time off Sick time FSA and HSA options Parental leave 401(k) with employer matching Life insurance Vision and dental insurance Veterinary insurance Culture: Culture isn't an afterthought at Strive. It's something we actively build. We foster a collaborative, engaging workplace where employees have opportunities to connect, celebrate, and build meaningful relationships with their colleagues. We're committed to supporting the personal and professional growth of every employee, both inside and outside the workplace. EEO: Strive Pharmacy is an equal opportunity employer that is committed to diversity and inclusion in the workplace. We prohibit discrimination and harassment of any kind based on race, color, sex, religion, sexual orientation, national origin, disability, genetic information, pregnancy, or any other protected characteristics as outlined by federal, state or local laws. Disclaimer Please do not call the pharmacy location with questions about your application or interview. A talent acquisition partner will reach out to you.
09/28/2026
Full time
Job Description Job Description Company Overview: Strive Pharmacy is a personalized compounding pharmacy built on a simple conviction: medicine should fit the patient, not the other way around. We started Strive because we believed the pharmaceutical industry was overdue for a more human approach-one that prioritizes individualized care, clinical nuance, and genuine partnership with patients and providers. Compounding gives us the tools to do that. Every formulation we prepare is built to the specific needs of a specific person, and every interaction we have is guided by that same commitment to personalized care. We're growing, and we're looking for people who share that conviction. If you're ready to be part of a pharmacy that takes the work seriously and the people even more seriously, we'd like to meet you. Mission: Strive exists to disrupt an industry long overdue for a more personal approach to care. We put the human element at the center of everything: every formulation, every patient interaction, every provider partnership. We're not just a compounding pharmacy. We're a team on a mission to change what personalized healthcare looks and feels like. Location: Alachua FL (onsite Monday - Friday) Salary: $105,000 - $117,000 Department: Automation / Engineering Reports To: Director of Facilities & Engineering Position Summary The Automation Engineer (BMS) is responsible for the design, implementation, programming, and maintenance of the Building Management System (BMS) and Environmental Monitoring System (EMS) within a GMP-regulated pharmaceutical facility. This role ensures that critical HVAC systems, utility plants, and cleanroom environments (temperature, humidity, and differential pressure) are controlled and monitored in strict accordance with FDA 21 CFR Part 11 and EU Annex 11 requirements. Key Responsibilities System Design & Programming Design, program, and commission PLC, DDC, and SCADA-based control logic for facility utilities (Chillers, Boilers, AHUs, and Clean Utilities). Manage the BMS/EMS Architecture, ensuring robust communication between field devices (sensors, actuators) and the centralized server. Develop and maintain Graphics/HMI screens that provide clear, real-time visualization of facility health for the Facilities team. 2. GMP Compliance & Data Integrity Ensure the BMS/EMS remains in a Validated State by strictly adhering to GAMP 5 (Good Automated Manufacturing Practice) guidelines. Maintain the system's Audit Trail and user access levels to ensure compliance with 21 CFR Part 11. Lead the technical investigation for "Environmental Excursions" (e.g., when a cleanroom goes out of pressure spec), identifying the root cause in the control logic or hardware. 3. Validation & Lifecycle Management Author and execute Functional Design Specifications (FDS) and Software Design Specifications (SDS). Partner with the Validation department to draft and execute IQ/OQ protocols for software upgrades and new hardware installations. Manage the Backup and Disaster Recovery plan for all automation databases. 4. Operational Support & Maintenance Provide Tier 2/3 technical support for complex system failures that the maintenance team cannot resolve. Manage automation vendors (e.g., Siemens, Honeywell, Johnson Controls, or Schneider Electric) during service visits and system upgrades. Perform periodic "Loop Tuning" and sensor calibration verification to ensure system stability and energy efficiency. Qualifications & Skills Education: B.S. in Electrical Engineering, Computer Science, Mechanical Engineering, or a related field. Experience: 3-5+ years in Automation or Controls Engineering specifically within a GMP environment (Pharma/Biotech). Technical Knowledge: Expertise in common BMS platforms: Siemens Desigo/Apogee, Honeywell EBI, Johnson Controls Metasys, or Schneider EcoStruxure. Proficiency in communication protocols: BACnet, Modbus, and LonWorks . Strong understanding of HVAC sequences of operation for ISO-classified cleanrooms. Skills: Ability to read/interpret electrical schematics and P experience with change control management in a quality-driven environment. Key Performance Indicators (KPIs) System Uptime: Maintenance of the EMS/BMS to prevent data loss or monitoring gaps. Compliance: Successful completion of periodic system reviews and zero overdue audit trail reviews. Project Delivery: Implementation of logic updates or new hardware within defined maintenance windows. Work Environment: This position is primarily based in an onsite work environment. The role requires regular periods of sitting, standing, and computer use, with occasional lifting as needed. Reasonable accommodations may be made for individuals with disabilities. Annual Salary $105,000-$117,000 USD Join Us in Making an Impact: At Strive, the work is real and the impact is direct. Every role here contributes to a patient experience that's more personal, more attentive, and more human than what most people have come to expect from a pharmacy. Apply today and help us raise the bar. Benefits/ Perks: Strive Pharmacy offers a comprehensive benefits package, including: Employer-paid healthcare coverage, effective the 1st day of the following month of your hire date Free Strive compounded medications for employees based on a valid patient-specific prescription from a licensed healthcare provider Paid time off Sick time FSA and HSA options Parental leave 401(k) with employer matching Life insurance Vision and dental insurance Veterinary insurance Culture: Culture isn't an afterthought at Strive. It's something we actively build. We foster a collaborative, engaging workplace where employees have opportunities to connect, celebrate, and build meaningful relationships with their colleagues. We're committed to supporting the personal and professional growth of every employee, both inside and outside the workplace. EEO: Strive Pharmacy is an equal opportunity employer that is committed to diversity and inclusion in the workplace. We prohibit discrimination and harassment of any kind based on race, color, sex, religion, sexual orientation, national origin, disability, genetic information, pregnancy, or any other protected characteristics as outlined by federal, state or local laws. Disclaimer Please do not call the pharmacy location with questions about your application or interview. A talent acquisition partner will reach out to you.
Job Description Job Description Special Information This position is an on-site position which requires the incumbent to complete their work primarily at an NAU site, campus, or facility with or without accommodation. Opportunities for remote work are rare. This position is subject to the availability of funding. Driving a vehicle on behalf of the university is anticipated to be a regular part of this position. Arizona Administrative Code Fleet Safety Policy requires all employees who drive on university business become authorized by submitting Driver's license information for driving record monitoring, and completion of training appropriate to the level of driving performed. The law applies to all faculty, staff, and students who drive personal or university-owned motorized vehicles for any business purpose. More information on the NAU Authorized Driver Policy can be found on the NAU website. Due to this project's funding source, this position is open only to U.S. citizens and lawful permanent residents (green card holders). The position may require handling Controlled Unclassified Information (CUI) in accordance with sponsor and university data-security requirements. Work on this project may involve technical data, hardware, or software subject to U.S. export control regulations, including the Export Administration Regulations (EAR) and the International Traffic in Arms Regulations (ITAR); the incumbent must be able to comply with applicable export control requirements and with any project-specific technology control plan. About the Department/College The Radiant Center for Remote Sensing, in partnership with the Dynamic and Active Systems Lab (DASL) in the Steve Sanghi College of Engineering at Northern Arizona University, seeks a Postdoctoral Research Associate to serve as lead technical researcher on a sponsored research project focused on radio source localization from unmanned aerial systems. This is one of several concurrent postdoctoral scholar recruitments at Radiant Center, and the successful candidate will collaborate closely with fellow postdoctoral researchers and faculty working simultaneously on related projects. About the Position The project, EMS Overmatch, develops and field-tests methods for locating radio-frequency sources using an aerial platform, combining signal-based position estimation with path-planning strategies that guide the UAV toward the vantage points that best resolve a source's location. The work builds on the lab's history of developing UAV-based radio-tracking systems, extending that foundation toward more capable localization and platform hardware for this new application area. The general research plan progresses from building out and validating a single-vehicle localization system. This will include hardware integration, field data collection, and flight testing across the varied terrain around Flagstaff. The program will progress toward more advanced localization and path-planning capabilities as the research matures. The postdoc will supervise graduate student researchers supporting the project, work closely with the PI, and contribute to technical reporting and manuscript preparation. The position is based in Flagstaff, AZ. Work Environment: This position requires a substantial amount of fieldwork, including UAV flight testing across Flagstaff-area terrain ranging from desert and canyon country to ponderosa pine, mixed conifer forest, and alpine tundra (spanning close to 8,000 feet of elevation change within about an hour of campus), as well as occasional overnight or multi-day travel for more distant field campaigns and for conference travel. Laboratory work involves electronics assembly/test equipment, RF signal generators and spectrum analyzers, 3D printers, and drone hardware. The position may require occasional overtime, particularly around field campaigns and sponsor reporting deadlines. The position may require handling Controlled Unclassified Information (CUI) in accordance with sponsor and university data-security requirements. Responsibilities Include 45% - Radio Source Localization & Path Planning Research Lead development of algorithms and software development for real-time radio-frequency (RF) source localization from an aerial platform. Develop and evaluate path-planning strategies that optimize UAV positioning to improve localization accuracy and efficiency. Investigate RF propagation modeling approaches, including terrain-aware and simplified models, to characterize tradeoffs between prediction accuracy and computational cost in complex terrain. Contribute to the ongoing evolution of the project's research approach as findings develop, including potential extensions to additional operating scenarios. 25% - UAV Platform Development, Field Testing & Test Coordination Lead integration and adaptation of UAV hardware and RF-sensing payloads (hardware and software) to meet project and applicable federal hardware requirements. Plan and lead field data collection campaigns and flight tests across varied terrain to support algorithm development and validation. Coordinate test logistics and scheduling with the research team, including field-site arrangements, safety planning, and equipment readiness. Develop simulation-based and hardware-in-the-loop testing of localization and path-planning software. Collaborate with other researchers conducting related work on related topics in a team environment. 15% - Team Supervision & Mentoring Direct the day-to-day technical work of graduate student researchers supporting the project. Mentor graduate students in research methods, technical development, and professional growth. 10% - Dissemination, Reporting & Travel Prepare technical reports and milestone updates for project sponsors. Author and co-author peer-reviewed manuscripts and conference presentations. Travel to attend and present research findings at technical conferences, and travel to field sites to support testing and data collection campaigns. 5% - Other Perform other duties as assigned in support of lab and project needs. Minimum Qualifications Ph.D. in Electrical Engineering, Mechanical Engineering, Robotics, or a closely related field, completed prior to the start date. A combination of related education, experience, and training may be used as an equivalent to the above Minimum Qualifications. Preferred Qualifications Demonstrated research experience in RF signal processing, propagation modeling, source localization, or a closely related discipline such as optimization, estimation, or controls. Proficiency in Python and/or C++. Applied experience with software-defined radio (SDR) systems. Robotic path/trajectory planning or simultaneous localization and mapping (SLAM) experience. Hands-on experience with drone hardware and software, including integrating sensors and compute onto UAV flight- controller/autopilot stacks (e.g., Pixhawk, Cube, ArduPilot/PX4) and edge-compute platforms (e.g., Raspberry Pi). Field research/testing experience with UAV systems Record of peer-reviewed publications in the area of RF topic and/or robotics. Demonstrated ability to mentor and direct graduate student researchers. FAA Part 107 Remote Pilot Certificate, or willingness to obtain one shortly after hire. Knowledge, Skills, & Abilities Strong programming skills in Python and/or C++. Working knowledge of optimization, estimation, or path-planning methods, and RF propagation/signal processing principles. Ability to take initiative and complete complex, ambiguous technical tasks with minimal direct supervision. Ability to synthesize complex technical information into clear written reports, manuscripts, and presentations. Ability to safely plan and execute UAV field operations, including in remote/rugged terrain and under variable weather conditions. Ability to mentor and direct the day-to-day technical work of graduate student researchers. Compensation Salary range begins at $70,000. Annual salary commensurate with candidate's qualifications and related experience. Pre-Employment Check Northern Arizona University requires satisfactory results for the following: a criminal background investigation, an employment history verification and a degree verification (in some cases) prior to employment. You may also be required to complete a fingerprint background check. Also, as an employer in the state of Arizona, NAU is required to participate in the federal E-Verify program that assists employers with verifying new employees' right to work in the United States. This position has been identified as a safety/security sensitive position. Therefore, per AZ Revised Statute, Northern Arizona University requires satisfactory results for the following: a criminal background investigation, employment history investigation, degree verification (in some cases) and fingerprinting. If you are applying for a job that requires a CDL, you will be required to register with the Federal Motor Carrier Safety Administration Drug & Alcohol Clearinghouse and adhere to the clearinghouse requirements. Notice of Availability of the Annual Fire and Security Report Each year Northern Arizona University releases an Annual Security Report. The report is a result of a federal law known as the Clery Act. The report includes Clery reportable crime statistics for the three most recent completed calendar years and discloses procedures . click apply for full job details
09/28/2026
Full time
Job Description Job Description Special Information This position is an on-site position which requires the incumbent to complete their work primarily at an NAU site, campus, or facility with or without accommodation. Opportunities for remote work are rare. This position is subject to the availability of funding. Driving a vehicle on behalf of the university is anticipated to be a regular part of this position. Arizona Administrative Code Fleet Safety Policy requires all employees who drive on university business become authorized by submitting Driver's license information for driving record monitoring, and completion of training appropriate to the level of driving performed. The law applies to all faculty, staff, and students who drive personal or university-owned motorized vehicles for any business purpose. More information on the NAU Authorized Driver Policy can be found on the NAU website. Due to this project's funding source, this position is open only to U.S. citizens and lawful permanent residents (green card holders). The position may require handling Controlled Unclassified Information (CUI) in accordance with sponsor and university data-security requirements. Work on this project may involve technical data, hardware, or software subject to U.S. export control regulations, including the Export Administration Regulations (EAR) and the International Traffic in Arms Regulations (ITAR); the incumbent must be able to comply with applicable export control requirements and with any project-specific technology control plan. About the Department/College The Radiant Center for Remote Sensing, in partnership with the Dynamic and Active Systems Lab (DASL) in the Steve Sanghi College of Engineering at Northern Arizona University, seeks a Postdoctoral Research Associate to serve as lead technical researcher on a sponsored research project focused on radio source localization from unmanned aerial systems. This is one of several concurrent postdoctoral scholar recruitments at Radiant Center, and the successful candidate will collaborate closely with fellow postdoctoral researchers and faculty working simultaneously on related projects. About the Position The project, EMS Overmatch, develops and field-tests methods for locating radio-frequency sources using an aerial platform, combining signal-based position estimation with path-planning strategies that guide the UAV toward the vantage points that best resolve a source's location. The work builds on the lab's history of developing UAV-based radio-tracking systems, extending that foundation toward more capable localization and platform hardware for this new application area. The general research plan progresses from building out and validating a single-vehicle localization system. This will include hardware integration, field data collection, and flight testing across the varied terrain around Flagstaff. The program will progress toward more advanced localization and path-planning capabilities as the research matures. The postdoc will supervise graduate student researchers supporting the project, work closely with the PI, and contribute to technical reporting and manuscript preparation. The position is based in Flagstaff, AZ. Work Environment: This position requires a substantial amount of fieldwork, including UAV flight testing across Flagstaff-area terrain ranging from desert and canyon country to ponderosa pine, mixed conifer forest, and alpine tundra (spanning close to 8,000 feet of elevation change within about an hour of campus), as well as occasional overnight or multi-day travel for more distant field campaigns and for conference travel. Laboratory work involves electronics assembly/test equipment, RF signal generators and spectrum analyzers, 3D printers, and drone hardware. The position may require occasional overtime, particularly around field campaigns and sponsor reporting deadlines. The position may require handling Controlled Unclassified Information (CUI) in accordance with sponsor and university data-security requirements. Responsibilities Include 45% - Radio Source Localization & Path Planning Research Lead development of algorithms and software development for real-time radio-frequency (RF) source localization from an aerial platform. Develop and evaluate path-planning strategies that optimize UAV positioning to improve localization accuracy and efficiency. Investigate RF propagation modeling approaches, including terrain-aware and simplified models, to characterize tradeoffs between prediction accuracy and computational cost in complex terrain. Contribute to the ongoing evolution of the project's research approach as findings develop, including potential extensions to additional operating scenarios. 25% - UAV Platform Development, Field Testing & Test Coordination Lead integration and adaptation of UAV hardware and RF-sensing payloads (hardware and software) to meet project and applicable federal hardware requirements. Plan and lead field data collection campaigns and flight tests across varied terrain to support algorithm development and validation. Coordinate test logistics and scheduling with the research team, including field-site arrangements, safety planning, and equipment readiness. Develop simulation-based and hardware-in-the-loop testing of localization and path-planning software. Collaborate with other researchers conducting related work on related topics in a team environment. 15% - Team Supervision & Mentoring Direct the day-to-day technical work of graduate student researchers supporting the project. Mentor graduate students in research methods, technical development, and professional growth. 10% - Dissemination, Reporting & Travel Prepare technical reports and milestone updates for project sponsors. Author and co-author peer-reviewed manuscripts and conference presentations. Travel to attend and present research findings at technical conferences, and travel to field sites to support testing and data collection campaigns. 5% - Other Perform other duties as assigned in support of lab and project needs. Minimum Qualifications Ph.D. in Electrical Engineering, Mechanical Engineering, Robotics, or a closely related field, completed prior to the start date. A combination of related education, experience, and training may be used as an equivalent to the above Minimum Qualifications. Preferred Qualifications Demonstrated research experience in RF signal processing, propagation modeling, source localization, or a closely related discipline such as optimization, estimation, or controls. Proficiency in Python and/or C++. Applied experience with software-defined radio (SDR) systems. Robotic path/trajectory planning or simultaneous localization and mapping (SLAM) experience. Hands-on experience with drone hardware and software, including integrating sensors and compute onto UAV flight- controller/autopilot stacks (e.g., Pixhawk, Cube, ArduPilot/PX4) and edge-compute platforms (e.g., Raspberry Pi). Field research/testing experience with UAV systems Record of peer-reviewed publications in the area of RF topic and/or robotics. Demonstrated ability to mentor and direct graduate student researchers. FAA Part 107 Remote Pilot Certificate, or willingness to obtain one shortly after hire. Knowledge, Skills, & Abilities Strong programming skills in Python and/or C++. Working knowledge of optimization, estimation, or path-planning methods, and RF propagation/signal processing principles. Ability to take initiative and complete complex, ambiguous technical tasks with minimal direct supervision. Ability to synthesize complex technical information into clear written reports, manuscripts, and presentations. Ability to safely plan and execute UAV field operations, including in remote/rugged terrain and under variable weather conditions. Ability to mentor and direct the day-to-day technical work of graduate student researchers. Compensation Salary range begins at $70,000. Annual salary commensurate with candidate's qualifications and related experience. Pre-Employment Check Northern Arizona University requires satisfactory results for the following: a criminal background investigation, an employment history verification and a degree verification (in some cases) prior to employment. You may also be required to complete a fingerprint background check. Also, as an employer in the state of Arizona, NAU is required to participate in the federal E-Verify program that assists employers with verifying new employees' right to work in the United States. This position has been identified as a safety/security sensitive position. Therefore, per AZ Revised Statute, Northern Arizona University requires satisfactory results for the following: a criminal background investigation, employment history investigation, degree verification (in some cases) and fingerprinting. If you are applying for a job that requires a CDL, you will be required to register with the Federal Motor Carrier Safety Administration Drug & Alcohol Clearinghouse and adhere to the clearinghouse requirements. Notice of Availability of the Annual Fire and Security Report Each year Northern Arizona University releases an Annual Security Report. The report is a result of a federal law known as the Clery Act. The report includes Clery reportable crime statistics for the three most recent completed calendar years and discloses procedures . click apply for full job details
Job Description Job Description Job Summary: The Senior BMS Controls and Algorithm Engineer leads the design, development, and validation of Battery Management System (BMS) controls, estimation algorithms, and functional features for high-voltage battery systems. The role covers the functional scope of a production BMS-state estimation (SoC, SoH, SoP, SoE), contactor controls, cell balancing, thermal management, isolation monitoring, diagnostics, and functional safety-across multiple chemistries and applications. This role features MATLAB/Simulink and model-based design development approach to deliver production software that improves battery performance, safety, and life, and partners with systems, software, validation, and vehicle integration teams to bring it to production. Responsibilities: Develop and validate BMS state estimation algorithms using Kalman filtering, adaptive observers, and model-based methods. Develop BMS functional control features related to contactor and pre-charge control sequencing, cell balancing, thermal management, charge/discharge limit arbitration, wake/sleep behavior, and multi-pack control features. Develop diagnostics and fault-handling strategies covering cell, sensor, isolation, contactor, communication, and thermal faults, including detection, reaction, and recovery. Support functional safety development per ISO 26262, including safety goals, Failure Modes, Effects, and Diagnostic Analysis (FMEDA) inputs, safety mechanisms, and Automotive Safety Integrity Level (ASIL) rated software. Develop high-voltage isolation monitoring, interlock handling, and high-voltage (HV) safety logic. Develop equivalent-circuit and physics-based battery models for real-time embedded execution and offline simulation. Design controls algorithms to be scalable across chemistries, cell formats, and pack architectures. Define software and controls requirements from customer, vehicle, and system-level inputs. Perform algorithm and feature validation through MIL, SIL, HIL, bench, and vehicle testing. Support embedded software integration, auto-code generation, calibration, and production software releases. Analyze battery and vehicle data using Python and modern data tools to refine models, calibrations, and diagnostics. Apply AI-assisted engineering tools to accelerate algorithm development, simulation, validation, scripting, and documentation. Support root cause analysis and issue resolution across prototype, validation, launch, and production phases. Collaborate with hardware, systems, software, validation, and vehicle integration teams, and participate in customer technical reviews. Adhere to federal and state regulations. Adhere to all company policies, processes, and procedures. Performs other duties as requested, directed, or assigned. Predictable and reliable attendance. Position Qualifications: Bachelor's degree in Electrical, Computer, Controls, Mechanical Engineering, or related technical field. Minimum of five (5) years of experience in BMS, battery controls, or embedded automotive software development. Strong hands-on experience with MATLAB, Simulink, Stateflow, and model-based design. Experience developing BMS functional controls such as contactor/pre-charge control, cell balancing, thermal management, and current/power limit arbitration. Experience developing state estimation algorithms using Kalman filtering or observer-based methods. Experience with BMS diagnostics, fault detection and reaction, and high-voltage isolation monitoring. Working knowledge of ISO 26262 and functional safety as applied to high-voltage battery systems. Experience with embedded software integration, auto-code generation, and production release processes. Experience with HIL/SIL validation and Controller Area Network (CAN) tools including CANalyzer, CANoe, Vehicle Spy, or equivalent. Proficiency in Python for data analysis and validation workflows. Strong analytical, troubleshooting, and communication skills. Key Competencies : Decision Making & Analysis: Makes sound decisions based upon a mixture of data-driven analysis, expertise, experience, and judgment; collects relevant information, seeking input from others, and identifies connections and/or root causes of problems Continual Improvement: Displays a consistent orientation toward producing the highest quality products or services, while keeping a focus on sustainability. Constantly looking for incremental improvements in work processes and results. Takes Initiative: Exhibits strong drive for results and success; conveys a sense of urgency and drives issues to closure; persists despite obstacles and opposition. Delivers Results: Achievement-oriented, feeling a sense of urgency to reach goals on time, if not before. Teamwork: Works cooperatively with others to accomplish team goals and organizational objectives. Communications: Exchanges thoughts, feelings, and information effectively Physical Requirements / Working Conditions: The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions. Prolonged periods sitting at a desk and working on a computer. Constantly operates a computer and other office equipment. Ability to adjust focus, especially due to concentration on a computer screen. Works in a temperature-controlled office environment, with occasional work in outdoor weather conditions, and in industrial environments. The noise level in the work environment can be moderately loud. Why Join Us American Battery Solutions (ABS) provides comprehensive 100% employer paid benefit plans to employees and their family, competitive salary and retirement program. ABS employs a diverse and inclusive workforce. Benefits Overview Paid time off includes 3 weeks vacation, up to 72 hours sick, 15 holidays, and parental leave. 100% company-paid medical, dental, vision, short-term disability, long-term disability, and life insurance. Flexible Spending Account (FSA) and Health Savings Account (HSA) offerings. Company provided 401K savings plan with immediately vested matching contributions to help you save for retirement. Voluntary benefits offerings. Tuition assistance. Employee Referral Program. Employee development and career growth opportunities. About Us American Battery Solutions Inc. ("ABS") is a manufacturer of advanced batteries for commercial, fleet, and industrial on- and off-road vehicles. Located in the heart of the U.S. automotive region with facilities in Michigan and Ohio. In 2023, ABS was acquired by Komatsu, a world leader in construction, mining, forestry, and industrial heavy equipment in support of Komatsu's 2050 carbon neutrality goal. ABS continues to operate as an independent entity serving Komatsu applications while continuing to expand and grow our core commercial, fleet and industrial business. As we have grown, ABS has assembled a world-class team of dedicated and experienced engineers. This team is equipped with a deep understanding of high-voltage, automotive-grade battery systems from concept development and prototyping, to testing and validation, to high-volume production. We pride ourselves on developing a diverse team of next generation battery experts. The Location - Lake Orion American Battery Solutions Headquarters and Innovation Center is located in the heart of South-East Michigan in Orion Township. Orion Township is a Pure Michigan Trail Town that has a long-standing dedication to enhancing trails and pathways in its community, which is home to the Polly Ann Trail, Paint Creek Trail, and Iron Belle Trail. The township has more than 50 miles of trails. Southeast Michigan also boasts some of the best eating around! Whether your interest is in furthering your education, enjoying one of the many regional sporting events, or enjoying the vast outdoors that Michigan has to offer, you'll be at the center of it here! AMERICAN BATTERY SOLUTIONS IS AN EQUAL OPPORTUNITY EMPLOYER.
09/28/2026
Full time
Job Description Job Description Job Summary: The Senior BMS Controls and Algorithm Engineer leads the design, development, and validation of Battery Management System (BMS) controls, estimation algorithms, and functional features for high-voltage battery systems. The role covers the functional scope of a production BMS-state estimation (SoC, SoH, SoP, SoE), contactor controls, cell balancing, thermal management, isolation monitoring, diagnostics, and functional safety-across multiple chemistries and applications. This role features MATLAB/Simulink and model-based design development approach to deliver production software that improves battery performance, safety, and life, and partners with systems, software, validation, and vehicle integration teams to bring it to production. Responsibilities: Develop and validate BMS state estimation algorithms using Kalman filtering, adaptive observers, and model-based methods. Develop BMS functional control features related to contactor and pre-charge control sequencing, cell balancing, thermal management, charge/discharge limit arbitration, wake/sleep behavior, and multi-pack control features. Develop diagnostics and fault-handling strategies covering cell, sensor, isolation, contactor, communication, and thermal faults, including detection, reaction, and recovery. Support functional safety development per ISO 26262, including safety goals, Failure Modes, Effects, and Diagnostic Analysis (FMEDA) inputs, safety mechanisms, and Automotive Safety Integrity Level (ASIL) rated software. Develop high-voltage isolation monitoring, interlock handling, and high-voltage (HV) safety logic. Develop equivalent-circuit and physics-based battery models for real-time embedded execution and offline simulation. Design controls algorithms to be scalable across chemistries, cell formats, and pack architectures. Define software and controls requirements from customer, vehicle, and system-level inputs. Perform algorithm and feature validation through MIL, SIL, HIL, bench, and vehicle testing. Support embedded software integration, auto-code generation, calibration, and production software releases. Analyze battery and vehicle data using Python and modern data tools to refine models, calibrations, and diagnostics. Apply AI-assisted engineering tools to accelerate algorithm development, simulation, validation, scripting, and documentation. Support root cause analysis and issue resolution across prototype, validation, launch, and production phases. Collaborate with hardware, systems, software, validation, and vehicle integration teams, and participate in customer technical reviews. Adhere to federal and state regulations. Adhere to all company policies, processes, and procedures. Performs other duties as requested, directed, or assigned. Predictable and reliable attendance. Position Qualifications: Bachelor's degree in Electrical, Computer, Controls, Mechanical Engineering, or related technical field. Minimum of five (5) years of experience in BMS, battery controls, or embedded automotive software development. Strong hands-on experience with MATLAB, Simulink, Stateflow, and model-based design. Experience developing BMS functional controls such as contactor/pre-charge control, cell balancing, thermal management, and current/power limit arbitration. Experience developing state estimation algorithms using Kalman filtering or observer-based methods. Experience with BMS diagnostics, fault detection and reaction, and high-voltage isolation monitoring. Working knowledge of ISO 26262 and functional safety as applied to high-voltage battery systems. Experience with embedded software integration, auto-code generation, and production release processes. Experience with HIL/SIL validation and Controller Area Network (CAN) tools including CANalyzer, CANoe, Vehicle Spy, or equivalent. Proficiency in Python for data analysis and validation workflows. Strong analytical, troubleshooting, and communication skills. Key Competencies : Decision Making & Analysis: Makes sound decisions based upon a mixture of data-driven analysis, expertise, experience, and judgment; collects relevant information, seeking input from others, and identifies connections and/or root causes of problems Continual Improvement: Displays a consistent orientation toward producing the highest quality products or services, while keeping a focus on sustainability. Constantly looking for incremental improvements in work processes and results. Takes Initiative: Exhibits strong drive for results and success; conveys a sense of urgency and drives issues to closure; persists despite obstacles and opposition. Delivers Results: Achievement-oriented, feeling a sense of urgency to reach goals on time, if not before. Teamwork: Works cooperatively with others to accomplish team goals and organizational objectives. Communications: Exchanges thoughts, feelings, and information effectively Physical Requirements / Working Conditions: The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions. Prolonged periods sitting at a desk and working on a computer. Constantly operates a computer and other office equipment. Ability to adjust focus, especially due to concentration on a computer screen. Works in a temperature-controlled office environment, with occasional work in outdoor weather conditions, and in industrial environments. The noise level in the work environment can be moderately loud. Why Join Us American Battery Solutions (ABS) provides comprehensive 100% employer paid benefit plans to employees and their family, competitive salary and retirement program. ABS employs a diverse and inclusive workforce. Benefits Overview Paid time off includes 3 weeks vacation, up to 72 hours sick, 15 holidays, and parental leave. 100% company-paid medical, dental, vision, short-term disability, long-term disability, and life insurance. Flexible Spending Account (FSA) and Health Savings Account (HSA) offerings. Company provided 401K savings plan with immediately vested matching contributions to help you save for retirement. Voluntary benefits offerings. Tuition assistance. Employee Referral Program. Employee development and career growth opportunities. About Us American Battery Solutions Inc. ("ABS") is a manufacturer of advanced batteries for commercial, fleet, and industrial on- and off-road vehicles. Located in the heart of the U.S. automotive region with facilities in Michigan and Ohio. In 2023, ABS was acquired by Komatsu, a world leader in construction, mining, forestry, and industrial heavy equipment in support of Komatsu's 2050 carbon neutrality goal. ABS continues to operate as an independent entity serving Komatsu applications while continuing to expand and grow our core commercial, fleet and industrial business. As we have grown, ABS has assembled a world-class team of dedicated and experienced engineers. This team is equipped with a deep understanding of high-voltage, automotive-grade battery systems from concept development and prototyping, to testing and validation, to high-volume production. We pride ourselves on developing a diverse team of next generation battery experts. The Location - Lake Orion American Battery Solutions Headquarters and Innovation Center is located in the heart of South-East Michigan in Orion Township. Orion Township is a Pure Michigan Trail Town that has a long-standing dedication to enhancing trails and pathways in its community, which is home to the Polly Ann Trail, Paint Creek Trail, and Iron Belle Trail. The township has more than 50 miles of trails. Southeast Michigan also boasts some of the best eating around! Whether your interest is in furthering your education, enjoying one of the many regional sporting events, or enjoying the vast outdoors that Michigan has to offer, you'll be at the center of it here! AMERICAN BATTERY SOLUTIONS IS AN EQUAL OPPORTUNITY EMPLOYER.
McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve - we care. What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow's health today, we want to hear from you. Key Responsibilities GCP Foundation, Landing Zones & Infrastructure-as-Code Cloud Architecture & Automation: Design, build, and maintain enterprise GCP infrastructure using Terraform/Terragrunt, enforcing Infrastructure-as-Code (IaC) and GitOps practices for all cloud environments. Landing Zone Governance: Own the configuration and security baseline of GCP Organization structures, Projects, Folders, Resource Hierarchies, and IAM roles/permissions using least-privilege principles. Network & Hybrid Connectivity: Configure and maintain GCP Shared VPCs, VPC Service Controls (VPC-SC), Cloud Interconnect, Cloud VPN, Cloud DNS, Firewall Rules, and load balancers to support secure, low-latency hybrid connectivity between GCP services, Apigee X, and Oracle Exadata / JDE ERP environments. Apigee X & Oracle Exadata / JDE ERP Integration Support Apigee X Platform Engineering: Provision, configure, and maintain Apigee X runtime environments, API gateways, PSC (Private Service Connect) attachments, and load balancers in accordance with enterprise security baselines. Oracle Exadata & JDE Interconnect: Engineer and maintain high-performance, resilient hybrid network topology (Cloud Interconnect/Partner Interconnect) linking GCP applications and Apigee gateways directly to Oracle Exadata database systems and JDE backend services. API Security & Traffic Controls: Work alongside Integration Architects to enforce mTLS, VPC Service Controls, rate limiting, and secure endpoints across Apigee X, GCP microservices, and Exadata/JDE integration boundaries. Containerization, Compute & Serverless GKE & Kubernetes Management: Deploy, secure, and operate Google Kubernetes Engine (GKE) clusters powering enterprise Spring Boot microservices, AI workloads, and internal developer platforms. Serverless Execution: Configure and support serverless workloads using Cloud Run, Cloud Functions, and App Engine, optimizing performance and latency for transactional database and API flows. Platform Reliability: Build automated deployment pipelines using GitHub Actions or Cloud Build to support seamless infrastructure provisioning and application cutovers. FinOps & Cloud Cost Optimization Cost Allocation & Visibility: Establish FinOps standards across GCP projects, implementing label/tagging enforcement, budget alerts, and showback/chargeback reporting for business units. Resource Tuning: Analyze resource utilization (Compute Engine, GKE, Cloud SQL, BigQuery) to right-size instances, optimize committed use discounts (CUDs), and eliminate unused infrastructure. Security, Compliance & Observability Cloud Security Posture: Implement CISO security standards, including GCP Secret Manager, KMS, mTLS, SAST/DAST container vulnerability scanning, and binary authorization. Observability Baseline: Build and maintain centralized logging, monitoring, and distributed tracing across all GCP environments, Apigee instances, and Exadata/JDE connectivity paths using Google Cloud Operations Suite (Cloud Logging, Cloud Monitoring, Cloud Trace). Minimum Requirements Experience: 10+ years of enterprise IT/infrastructure experience, with at least 4+ years dedicated to designing, engineering, and operating production environments on Google Cloud Platform (GCP). Apigee & Database/ERP Interconnect: Hands-on experience provisioning and supporting Apigee X / Apigee Edge environments and managing hybrid interconnectivity to high-performance database infrastructure (Oracle Exadata) and enterprise ERP systems (JD Edwards). IaC & Automation Mastery: Expert-level hands-on skills with Terraform, Git, and CI/CD pipelines (GitHub Actions, Cloud Build, or GitLab CI). Kubernetes & Containers: Strong experience deploying and managing production Google Kubernetes Engine (GKE) clusters and Docker containerized applications. GCP Networking & Security: Deep understanding of GCP VPC networking, Shared VPCs, Private Service Connect (PSC), VPC Service Controls, Cloud Interconnect, IAM, and GCP security controls. Scripting: Proficiency in Python, Bash, or Go for cloud automation and tooling development. FinOps Understanding: Practical experience implementing cloud cost optimization, quota management, and resource right-sizing strategies. Technical Skills Google Cloud Services: GKE, Cloud Run, Cloud SQL, BigQuery, Cloud Storage, VPC Service Controls, Secret Manager, IAM, Cloud Logging, Cloud Monitoring, Cloud Trace. API Management & Hybrid Database/ERP: Apigee X, Apigee Edge, Private Service Connect (PSC), Cloud Interconnect, Oracle Exadata database connectivity, JD Edwards (JDE) hybrid interconnectivity. Infrastructure-as-Code: Terraform, Terragrunt, Helm, Docker, Kubernetes. Networking & Security: Shared VPC, Cloud VPN, Cloud Interconnect, Firewalls, mTLS, OAuth 2.0, KMS, Least Privilege IAM. CI/CD & DevOps: GitHub Actions, Cloud Build, GitHub Advanced Security (GHAS), Git, Linux/Unix administration. Scripting & Tooling: Python, Bash, Go, gcloud CLI. Certifications & Education Certifications: Google Professional Cloud Architect or Google Professional Cloud DevOps Engineer (required or to be obtained within 6 months). Education: Bachelor's degree in Computer Science, Information Technology, Engineering, or a related technical field, or equivalent practical experience. About McKesson Medical-Surgical McKesson Medical-Surgical (MMS), which is expected to become Wellverse in early 2027, is a subsidiary and publicly reported segment of the McKesson Corporation. MMS distributes medical-surgical supplies, pharmaceuticals, diagnostic equipment and supplies, along with other solutions and services to virtually every type of healthcare setting and provider outside of the traditional hospital. These markets - often referred to as Alternate Care or Non-Acute Care - include physician offices, surgery centers, long-term care providers, laboratories, home health and hospice agencies, health systems, government facilities and online marketplaces and retailers. Alternate Care markets are growing rapidly and MMS is proud to be a leader in this space. With a team of approximately 8,000 employees, a network of 15 distribution centers and approximately 900 delivery vehicles, we collaborate with more than 2,200 leading manufacturers and serve over 200,000 customer accounts across the U.S. Our catalog includes more than 270,000 SKUs of branded and private-label medical-surgical products - from bandages to specialty pharmaceuticals and COVID-19 tests. We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please click here. Our Base Pay Range for this position $115,300 - $192,100 McKesson has become aware of online recruiting-related scams in which individuals who are not affiliated with or authorized by McKesson are using McKesson's (or affiliated entities, like CoverMyMeds or RxCrossroads) name in fraudulent emails, job postings or social media messages. In light of these scams, please bear the following in mind: McKesson Talent Advisors will never solicit money or credit card information in connection with a McKesson job application. McKesson Talent Advisors do not communicate with candidates via online chatrooms or using email accounts such as Gmail or Hotmail. Note that McKesson does rely on a virtual assistant (Gia) for certain recruiting-related communications with candidates. McKesson job postings are posted on our career site: . McKesson is an Equal Opportunity Employer McKesson provides equal employment opportunities to applicants and employees, without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age, genetic information, or any other legally protected category. For additional information on McKesson's full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page. McKesson is committed to being an Equal Employment Opportunity Employer and offers opportunities to all job seekers including job seekers with disabilities . click apply for full job details
09/27/2026
Full time
McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve - we care. What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow's health today, we want to hear from you. Key Responsibilities GCP Foundation, Landing Zones & Infrastructure-as-Code Cloud Architecture & Automation: Design, build, and maintain enterprise GCP infrastructure using Terraform/Terragrunt, enforcing Infrastructure-as-Code (IaC) and GitOps practices for all cloud environments. Landing Zone Governance: Own the configuration and security baseline of GCP Organization structures, Projects, Folders, Resource Hierarchies, and IAM roles/permissions using least-privilege principles. Network & Hybrid Connectivity: Configure and maintain GCP Shared VPCs, VPC Service Controls (VPC-SC), Cloud Interconnect, Cloud VPN, Cloud DNS, Firewall Rules, and load balancers to support secure, low-latency hybrid connectivity between GCP services, Apigee X, and Oracle Exadata / JDE ERP environments. Apigee X & Oracle Exadata / JDE ERP Integration Support Apigee X Platform Engineering: Provision, configure, and maintain Apigee X runtime environments, API gateways, PSC (Private Service Connect) attachments, and load balancers in accordance with enterprise security baselines. Oracle Exadata & JDE Interconnect: Engineer and maintain high-performance, resilient hybrid network topology (Cloud Interconnect/Partner Interconnect) linking GCP applications and Apigee gateways directly to Oracle Exadata database systems and JDE backend services. API Security & Traffic Controls: Work alongside Integration Architects to enforce mTLS, VPC Service Controls, rate limiting, and secure endpoints across Apigee X, GCP microservices, and Exadata/JDE integration boundaries. Containerization, Compute & Serverless GKE & Kubernetes Management: Deploy, secure, and operate Google Kubernetes Engine (GKE) clusters powering enterprise Spring Boot microservices, AI workloads, and internal developer platforms. Serverless Execution: Configure and support serverless workloads using Cloud Run, Cloud Functions, and App Engine, optimizing performance and latency for transactional database and API flows. Platform Reliability: Build automated deployment pipelines using GitHub Actions or Cloud Build to support seamless infrastructure provisioning and application cutovers. FinOps & Cloud Cost Optimization Cost Allocation & Visibility: Establish FinOps standards across GCP projects, implementing label/tagging enforcement, budget alerts, and showback/chargeback reporting for business units. Resource Tuning: Analyze resource utilization (Compute Engine, GKE, Cloud SQL, BigQuery) to right-size instances, optimize committed use discounts (CUDs), and eliminate unused infrastructure. Security, Compliance & Observability Cloud Security Posture: Implement CISO security standards, including GCP Secret Manager, KMS, mTLS, SAST/DAST container vulnerability scanning, and binary authorization. Observability Baseline: Build and maintain centralized logging, monitoring, and distributed tracing across all GCP environments, Apigee instances, and Exadata/JDE connectivity paths using Google Cloud Operations Suite (Cloud Logging, Cloud Monitoring, Cloud Trace). Minimum Requirements Experience: 10+ years of enterprise IT/infrastructure experience, with at least 4+ years dedicated to designing, engineering, and operating production environments on Google Cloud Platform (GCP). Apigee & Database/ERP Interconnect: Hands-on experience provisioning and supporting Apigee X / Apigee Edge environments and managing hybrid interconnectivity to high-performance database infrastructure (Oracle Exadata) and enterprise ERP systems (JD Edwards). IaC & Automation Mastery: Expert-level hands-on skills with Terraform, Git, and CI/CD pipelines (GitHub Actions, Cloud Build, or GitLab CI). Kubernetes & Containers: Strong experience deploying and managing production Google Kubernetes Engine (GKE) clusters and Docker containerized applications. GCP Networking & Security: Deep understanding of GCP VPC networking, Shared VPCs, Private Service Connect (PSC), VPC Service Controls, Cloud Interconnect, IAM, and GCP security controls. Scripting: Proficiency in Python, Bash, or Go for cloud automation and tooling development. FinOps Understanding: Practical experience implementing cloud cost optimization, quota management, and resource right-sizing strategies. Technical Skills Google Cloud Services: GKE, Cloud Run, Cloud SQL, BigQuery, Cloud Storage, VPC Service Controls, Secret Manager, IAM, Cloud Logging, Cloud Monitoring, Cloud Trace. API Management & Hybrid Database/ERP: Apigee X, Apigee Edge, Private Service Connect (PSC), Cloud Interconnect, Oracle Exadata database connectivity, JD Edwards (JDE) hybrid interconnectivity. Infrastructure-as-Code: Terraform, Terragrunt, Helm, Docker, Kubernetes. Networking & Security: Shared VPC, Cloud VPN, Cloud Interconnect, Firewalls, mTLS, OAuth 2.0, KMS, Least Privilege IAM. CI/CD & DevOps: GitHub Actions, Cloud Build, GitHub Advanced Security (GHAS), Git, Linux/Unix administration. Scripting & Tooling: Python, Bash, Go, gcloud CLI. Certifications & Education Certifications: Google Professional Cloud Architect or Google Professional Cloud DevOps Engineer (required or to be obtained within 6 months). Education: Bachelor's degree in Computer Science, Information Technology, Engineering, or a related technical field, or equivalent practical experience. About McKesson Medical-Surgical McKesson Medical-Surgical (MMS), which is expected to become Wellverse in early 2027, is a subsidiary and publicly reported segment of the McKesson Corporation. MMS distributes medical-surgical supplies, pharmaceuticals, diagnostic equipment and supplies, along with other solutions and services to virtually every type of healthcare setting and provider outside of the traditional hospital. These markets - often referred to as Alternate Care or Non-Acute Care - include physician offices, surgery centers, long-term care providers, laboratories, home health and hospice agencies, health systems, government facilities and online marketplaces and retailers. Alternate Care markets are growing rapidly and MMS is proud to be a leader in this space. With a team of approximately 8,000 employees, a network of 15 distribution centers and approximately 900 delivery vehicles, we collaborate with more than 2,200 leading manufacturers and serve over 200,000 customer accounts across the U.S. Our catalog includes more than 270,000 SKUs of branded and private-label medical-surgical products - from bandages to specialty pharmaceuticals and COVID-19 tests. We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please click here. Our Base Pay Range for this position $115,300 - $192,100 McKesson has become aware of online recruiting-related scams in which individuals who are not affiliated with or authorized by McKesson are using McKesson's (or affiliated entities, like CoverMyMeds or RxCrossroads) name in fraudulent emails, job postings or social media messages. In light of these scams, please bear the following in mind: McKesson Talent Advisors will never solicit money or credit card information in connection with a McKesson job application. McKesson Talent Advisors do not communicate with candidates via online chatrooms or using email accounts such as Gmail or Hotmail. Note that McKesson does rely on a virtual assistant (Gia) for certain recruiting-related communications with candidates. McKesson job postings are posted on our career site: . McKesson is an Equal Opportunity Employer McKesson provides equal employment opportunities to applicants and employees, without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age, genetic information, or any other legally protected category. For additional information on McKesson's full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page. McKesson is committed to being an Equal Employment Opportunity Employer and offers opportunities to all job seekers including job seekers with disabilities . click apply for full job details
McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve - we care. What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow's health today, we want to hear from you. Key Responsibilities GCP Foundation, Landing Zones & Infrastructure-as-Code Cloud Architecture & Automation: Design, build, and maintain enterprise GCP infrastructure using Terraform/Terragrunt, enforcing Infrastructure-as-Code (IaC) and GitOps practices for all cloud environments. Landing Zone Governance: Own the configuration and security baseline of GCP Organization structures, Projects, Folders, Resource Hierarchies, and IAM roles/permissions using least-privilege principles. Network & Hybrid Connectivity: Configure and maintain GCP Shared VPCs, VPC Service Controls (VPC-SC), Cloud Interconnect, Cloud VPN, Cloud DNS, Firewall Rules, and load balancers to support secure, low-latency hybrid connectivity between GCP services, Apigee X, and Oracle Exadata / JDE ERP environments. Apigee X & Oracle Exadata / JDE ERP Integration Support Apigee X Platform Engineering: Provision, configure, and maintain Apigee X runtime environments, API gateways, PSC (Private Service Connect) attachments, and load balancers in accordance with enterprise security baselines. Oracle Exadata & JDE Interconnect: Engineer and maintain high-performance, resilient hybrid network topology (Cloud Interconnect/Partner Interconnect) linking GCP applications and Apigee gateways directly to Oracle Exadata database systems and JDE backend services. API Security & Traffic Controls: Work alongside Integration Architects to enforce mTLS, VPC Service Controls, rate limiting, and secure endpoints across Apigee X, GCP microservices, and Exadata/JDE integration boundaries. Containerization, Compute & Serverless GKE & Kubernetes Management: Deploy, secure, and operate Google Kubernetes Engine (GKE) clusters powering enterprise Spring Boot microservices, AI workloads, and internal developer platforms. Serverless Execution: Configure and support serverless workloads using Cloud Run, Cloud Functions, and App Engine, optimizing performance and latency for transactional database and API flows. Platform Reliability: Build automated deployment pipelines using GitHub Actions or Cloud Build to support seamless infrastructure provisioning and application cutovers. FinOps & Cloud Cost Optimization Cost Allocation & Visibility: Establish FinOps standards across GCP projects, implementing label/tagging enforcement, budget alerts, and showback/chargeback reporting for business units. Resource Tuning: Analyze resource utilization (Compute Engine, GKE, Cloud SQL, BigQuery) to right-size instances, optimize committed use discounts (CUDs), and eliminate unused infrastructure. Security, Compliance & Observability Cloud Security Posture: Implement CISO security standards, including GCP Secret Manager, KMS, mTLS, SAST/DAST container vulnerability scanning, and binary authorization. Observability Baseline: Build and maintain centralized logging, monitoring, and distributed tracing across all GCP environments, Apigee instances, and Exadata/JDE connectivity paths using Google Cloud Operations Suite (Cloud Logging, Cloud Monitoring, Cloud Trace). Minimum Requirements Experience: 10+ years of enterprise IT/infrastructure experience, with at least 4+ years dedicated to designing, engineering, and operating production environments on Google Cloud Platform (GCP). Apigee & Database/ERP Interconnect: Hands-on experience provisioning and supporting Apigee X / Apigee Edge environments and managing hybrid interconnectivity to high-performance database infrastructure (Oracle Exadata) and enterprise ERP systems (JD Edwards). IaC & Automation Mastery: Expert-level hands-on skills with Terraform, Git, and CI/CD pipelines (GitHub Actions, Cloud Build, or GitLab CI). Kubernetes & Containers: Strong experience deploying and managing production Google Kubernetes Engine (GKE) clusters and Docker containerized applications. GCP Networking & Security: Deep understanding of GCP VPC networking, Shared VPCs, Private Service Connect (PSC), VPC Service Controls, Cloud Interconnect, IAM, and GCP security controls. Scripting: Proficiency in Python, Bash, or Go for cloud automation and tooling development. FinOps Understanding: Practical experience implementing cloud cost optimization, quota management, and resource right-sizing strategies. Technical Skills Google Cloud Services: GKE, Cloud Run, Cloud SQL, BigQuery, Cloud Storage, VPC Service Controls, Secret Manager, IAM, Cloud Logging, Cloud Monitoring, Cloud Trace. API Management & Hybrid Database/ERP: Apigee X, Apigee Edge, Private Service Connect (PSC), Cloud Interconnect, Oracle Exadata database connectivity, JD Edwards (JDE) hybrid interconnectivity. Infrastructure-as-Code: Terraform, Terragrunt, Helm, Docker, Kubernetes. Networking & Security: Shared VPC, Cloud VPN, Cloud Interconnect, Firewalls, mTLS, OAuth 2.0, KMS, Least Privilege IAM. CI/CD & DevOps: GitHub Actions, Cloud Build, GitHub Advanced Security (GHAS), Git, Linux/Unix administration. Scripting & Tooling: Python, Bash, Go, gcloud CLI. Certifications & Education Certifications: Google Professional Cloud Architect or Google Professional Cloud DevOps Engineer (required or to be obtained within 6 months). Education: Bachelor's degree in Computer Science, Information Technology, Engineering, or a related technical field, or equivalent practical experience. About McKesson Medical-Surgical McKesson Medical-Surgical (MMS), which is expected to become Wellverse in early 2027, is a subsidiary and publicly reported segment of the McKesson Corporation. MMS distributes medical-surgical supplies, pharmaceuticals, diagnostic equipment and supplies, along with other solutions and services to virtually every type of healthcare setting and provider outside of the traditional hospital. These markets - often referred to as Alternate Care or Non-Acute Care - include physician offices, surgery centers, long-term care providers, laboratories, home health and hospice agencies, health systems, government facilities and online marketplaces and retailers. Alternate Care markets are growing rapidly and MMS is proud to be a leader in this space. With a team of approximately 8,000 employees, a network of 15 distribution centers and approximately 900 delivery vehicles, we collaborate with more than 2,200 leading manufacturers and serve over 200,000 customer accounts across the U.S. Our catalog includes more than 270,000 SKUs of branded and private-label medical-surgical products - from bandages to specialty pharmaceuticals and COVID-19 tests. We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please click here. Our Base Pay Range for this position $115,300 - $192,100 McKesson has become aware of online recruiting-related scams in which individuals who are not affiliated with or authorized by McKesson are using McKesson's (or affiliated entities, like CoverMyMeds or RxCrossroads) name in fraudulent emails, job postings or social media messages. In light of these scams, please bear the following in mind: McKesson Talent Advisors will never solicit money or credit card information in connection with a McKesson job application. McKesson Talent Advisors do not communicate with candidates via online chatrooms or using email accounts such as Gmail or Hotmail. Note that McKesson does rely on a virtual assistant (Gia) for certain recruiting-related communications with candidates. McKesson job postings are posted on our career site: . McKesson is an Equal Opportunity Employer McKesson provides equal employment opportunities to applicants and employees, without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age, genetic information, or any other legally protected category. For additional information on McKesson's full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page. McKesson is committed to being an Equal Employment Opportunity Employer and offers opportunities to all job seekers including job seekers with disabilities . click apply for full job details
09/27/2026
Full time
McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve - we care. What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow's health today, we want to hear from you. Key Responsibilities GCP Foundation, Landing Zones & Infrastructure-as-Code Cloud Architecture & Automation: Design, build, and maintain enterprise GCP infrastructure using Terraform/Terragrunt, enforcing Infrastructure-as-Code (IaC) and GitOps practices for all cloud environments. Landing Zone Governance: Own the configuration and security baseline of GCP Organization structures, Projects, Folders, Resource Hierarchies, and IAM roles/permissions using least-privilege principles. Network & Hybrid Connectivity: Configure and maintain GCP Shared VPCs, VPC Service Controls (VPC-SC), Cloud Interconnect, Cloud VPN, Cloud DNS, Firewall Rules, and load balancers to support secure, low-latency hybrid connectivity between GCP services, Apigee X, and Oracle Exadata / JDE ERP environments. Apigee X & Oracle Exadata / JDE ERP Integration Support Apigee X Platform Engineering: Provision, configure, and maintain Apigee X runtime environments, API gateways, PSC (Private Service Connect) attachments, and load balancers in accordance with enterprise security baselines. Oracle Exadata & JDE Interconnect: Engineer and maintain high-performance, resilient hybrid network topology (Cloud Interconnect/Partner Interconnect) linking GCP applications and Apigee gateways directly to Oracle Exadata database systems and JDE backend services. API Security & Traffic Controls: Work alongside Integration Architects to enforce mTLS, VPC Service Controls, rate limiting, and secure endpoints across Apigee X, GCP microservices, and Exadata/JDE integration boundaries. Containerization, Compute & Serverless GKE & Kubernetes Management: Deploy, secure, and operate Google Kubernetes Engine (GKE) clusters powering enterprise Spring Boot microservices, AI workloads, and internal developer platforms. Serverless Execution: Configure and support serverless workloads using Cloud Run, Cloud Functions, and App Engine, optimizing performance and latency for transactional database and API flows. Platform Reliability: Build automated deployment pipelines using GitHub Actions or Cloud Build to support seamless infrastructure provisioning and application cutovers. FinOps & Cloud Cost Optimization Cost Allocation & Visibility: Establish FinOps standards across GCP projects, implementing label/tagging enforcement, budget alerts, and showback/chargeback reporting for business units. Resource Tuning: Analyze resource utilization (Compute Engine, GKE, Cloud SQL, BigQuery) to right-size instances, optimize committed use discounts (CUDs), and eliminate unused infrastructure. Security, Compliance & Observability Cloud Security Posture: Implement CISO security standards, including GCP Secret Manager, KMS, mTLS, SAST/DAST container vulnerability scanning, and binary authorization. Observability Baseline: Build and maintain centralized logging, monitoring, and distributed tracing across all GCP environments, Apigee instances, and Exadata/JDE connectivity paths using Google Cloud Operations Suite (Cloud Logging, Cloud Monitoring, Cloud Trace). Minimum Requirements Experience: 10+ years of enterprise IT/infrastructure experience, with at least 4+ years dedicated to designing, engineering, and operating production environments on Google Cloud Platform (GCP). Apigee & Database/ERP Interconnect: Hands-on experience provisioning and supporting Apigee X / Apigee Edge environments and managing hybrid interconnectivity to high-performance database infrastructure (Oracle Exadata) and enterprise ERP systems (JD Edwards). IaC & Automation Mastery: Expert-level hands-on skills with Terraform, Git, and CI/CD pipelines (GitHub Actions, Cloud Build, or GitLab CI). Kubernetes & Containers: Strong experience deploying and managing production Google Kubernetes Engine (GKE) clusters and Docker containerized applications. GCP Networking & Security: Deep understanding of GCP VPC networking, Shared VPCs, Private Service Connect (PSC), VPC Service Controls, Cloud Interconnect, IAM, and GCP security controls. Scripting: Proficiency in Python, Bash, or Go for cloud automation and tooling development. FinOps Understanding: Practical experience implementing cloud cost optimization, quota management, and resource right-sizing strategies. Technical Skills Google Cloud Services: GKE, Cloud Run, Cloud SQL, BigQuery, Cloud Storage, VPC Service Controls, Secret Manager, IAM, Cloud Logging, Cloud Monitoring, Cloud Trace. API Management & Hybrid Database/ERP: Apigee X, Apigee Edge, Private Service Connect (PSC), Cloud Interconnect, Oracle Exadata database connectivity, JD Edwards (JDE) hybrid interconnectivity. Infrastructure-as-Code: Terraform, Terragrunt, Helm, Docker, Kubernetes. Networking & Security: Shared VPC, Cloud VPN, Cloud Interconnect, Firewalls, mTLS, OAuth 2.0, KMS, Least Privilege IAM. CI/CD & DevOps: GitHub Actions, Cloud Build, GitHub Advanced Security (GHAS), Git, Linux/Unix administration. Scripting & Tooling: Python, Bash, Go, gcloud CLI. Certifications & Education Certifications: Google Professional Cloud Architect or Google Professional Cloud DevOps Engineer (required or to be obtained within 6 months). Education: Bachelor's degree in Computer Science, Information Technology, Engineering, or a related technical field, or equivalent practical experience. About McKesson Medical-Surgical McKesson Medical-Surgical (MMS), which is expected to become Wellverse in early 2027, is a subsidiary and publicly reported segment of the McKesson Corporation. MMS distributes medical-surgical supplies, pharmaceuticals, diagnostic equipment and supplies, along with other solutions and services to virtually every type of healthcare setting and provider outside of the traditional hospital. These markets - often referred to as Alternate Care or Non-Acute Care - include physician offices, surgery centers, long-term care providers, laboratories, home health and hospice agencies, health systems, government facilities and online marketplaces and retailers. Alternate Care markets are growing rapidly and MMS is proud to be a leader in this space. With a team of approximately 8,000 employees, a network of 15 distribution centers and approximately 900 delivery vehicles, we collaborate with more than 2,200 leading manufacturers and serve over 200,000 customer accounts across the U.S. Our catalog includes more than 270,000 SKUs of branded and private-label medical-surgical products - from bandages to specialty pharmaceuticals and COVID-19 tests. We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please click here. Our Base Pay Range for this position $115,300 - $192,100 McKesson has become aware of online recruiting-related scams in which individuals who are not affiliated with or authorized by McKesson are using McKesson's (or affiliated entities, like CoverMyMeds or RxCrossroads) name in fraudulent emails, job postings or social media messages. In light of these scams, please bear the following in mind: McKesson Talent Advisors will never solicit money or credit card information in connection with a McKesson job application. McKesson Talent Advisors do not communicate with candidates via online chatrooms or using email accounts such as Gmail or Hotmail. Note that McKesson does rely on a virtual assistant (Gia) for certain recruiting-related communications with candidates. McKesson job postings are posted on our career site: . McKesson is an Equal Opportunity Employer McKesson provides equal employment opportunities to applicants and employees, without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age, genetic information, or any other legally protected category. For additional information on McKesson's full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page. McKesson is committed to being an Equal Employment Opportunity Employer and offers opportunities to all job seekers including job seekers with disabilities . click apply for full job details
AWS Infrastructure Services owns the design, planning, delivery, and operation of all AWS global infrastructure. In other words, we're the people who keep the cloud running. We support all AWS data centers and all of the servers, storage, networking, power, and cooling equipment that ensure our customers have continual access to the innovation they rely on. We work on the most challenging problems, with thousands of variables impacting the supply chain - and we're looking for talented people who want to help. You'll join a diverse team of software, hardware, and network engineers, supply chain specialists, security experts, operations managers, and other vital roles. You'll collaborate with people across AWS to help us deliver the highest standards for safety and security while providing seemingly infinite capacity at the lowest possible cost for our customers. And you'll experience an inclusive culture that welcomes bold ideas and empowers you to own them to completion. As part of the global controls team, you will work with highly motivated experts and innovators in the data center industry. You will be responsible for troubleshooting, project management, and maintaining the building management system (BMS) and electrical power monitoring system (EPMS). Using Amazon leadership principles, you will develop new processes and standards while innovating in the controls space. AWS Data centers have multiple components such as generators, uninterruptible power sources, diesel generators, electrical switchgear, power distribution units, variable frequency drives, automatic/static transfer switches, chillers air-cooled and water-cooled , pumps, cooling towers, heat exchangers, CRAHs, air economizers, etc. All these components have local control systems that interact with each other via open and/or proprietary communications protocols. The BMS is the primary method of control of all mechanical systems within a data center. The EPMS is the primary method of monitoring all electrical systems within a data center. Key job responsibilities • Train and assist internal customers and stakeholders with the creation, design, configuration, validation, installation, commissioning and operation of BMS and EPMS systems. • Provide technical assistance and support to operations during life cycle of the data center. • Review results and action items from the quarterly maintenances for BMS and EPMS and take actions to get them resolved. • Develop BMS & EPMS projects scope of work, schedule, budget, and level of efforts (LOE) to projects requested by customers and stakeholders. • Manage scope, schedule, finance and execution of BMS and EPMS improvement projects in AWS data centers. • Assist in procurement related activities including request for quotation/proposals, responding to request for information, review of vendors proposal and issuance of purchase orders. • Participate in AWS global on-call schedule to provide immediate BMS and EPMS technical support to in-service data centers. • Attend project related meetings, coordinate with project leaders and regularly report status to Controls and stakeholder's management. • Support Controls projects related commissioning activities in the data centers. • Review, implement, troubleshoot and iterate on the controls sequence of operation (SOO) and provide necessary feedback to the design team. • Develop and modify controls logic programming and graphical user interfaces. • Manage multiple stakeholder deliverables, requirements and navigate challenging situations. • Financially manage BMS and EPMS service contracts. • Frequently visit (locally) assigned in-operation data centers to troubleshoot, meet customers, supervise vendor's work to ensure compliance with the scope, design, SOO and applicable local codes. About the team Amazon Web Services (AWS) is the world's most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and never stopped innovating - that's why customers from the most successful startups to Global 500 companies trust our robust suite of products and services to power their businesses. Amazon values diverse experiences. Even if you do not meet all of the preferred qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying. We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there's nothing we can't achieve in the cloud. Here at AWS, it's in our nature to learn and be curious. Our employee-led affinity groups foster a culture of inclusion that empower us to be proud of our differences. Ongoing events and learning experiences, including our Conversations on Race and Ethnicity (CORE) and AmazeCon (gender diversity) conferences, inspire us to never stop embracing our uniqueness. We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional. BASIC QUALIFICATIONS - 5+ years of industrial controls and automation experience - 4+ years of general contractor and vendor management work (request for proposals, bidding, change orders, quality control, RFI/submittal tracking) associated with construction and project execution experience - Bachelor's degree in Mechanical Engineering, Electrical Engineering, or an equivalent engineering science plus 5+ years of relevant controls experience, OR 10+ years of relevant controls experience in lieu of a degree. PREFERRED QUALIFICATIONS - Master's degree in mechanical engineering, electrical engineering, material science, physics or equivalent, or MS degree - Experience designing, configuring, programming, installing, troubleshooting or servicing HVAC Controls or Electrical SCADA systems application specific controllers, software and networks. - Experiencing using common industrial communication protocols (MQTT, BACnet and/or MODBUS). - Demonstrated understanding of engineering documentation, electrical and mechanical diagrams, and standard operating procedures. - Ability to manage multiple stakeholder deliverables, requirements, and navigate difficult situations. - Experience designing data centers or critical MEP infrastructure - Registered as a Professional Engineer (PE), or certified Project Management Professional (PMP). Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status. Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner. The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at . USA, VA, Herndon - 111 100.00 USD annually
09/27/2026
Full time
AWS Infrastructure Services owns the design, planning, delivery, and operation of all AWS global infrastructure. In other words, we're the people who keep the cloud running. We support all AWS data centers and all of the servers, storage, networking, power, and cooling equipment that ensure our customers have continual access to the innovation they rely on. We work on the most challenging problems, with thousands of variables impacting the supply chain - and we're looking for talented people who want to help. You'll join a diverse team of software, hardware, and network engineers, supply chain specialists, security experts, operations managers, and other vital roles. You'll collaborate with people across AWS to help us deliver the highest standards for safety and security while providing seemingly infinite capacity at the lowest possible cost for our customers. And you'll experience an inclusive culture that welcomes bold ideas and empowers you to own them to completion. As part of the global controls team, you will work with highly motivated experts and innovators in the data center industry. You will be responsible for troubleshooting, project management, and maintaining the building management system (BMS) and electrical power monitoring system (EPMS). Using Amazon leadership principles, you will develop new processes and standards while innovating in the controls space. AWS Data centers have multiple components such as generators, uninterruptible power sources, diesel generators, electrical switchgear, power distribution units, variable frequency drives, automatic/static transfer switches, chillers air-cooled and water-cooled , pumps, cooling towers, heat exchangers, CRAHs, air economizers, etc. All these components have local control systems that interact with each other via open and/or proprietary communications protocols. The BMS is the primary method of control of all mechanical systems within a data center. The EPMS is the primary method of monitoring all electrical systems within a data center. Key job responsibilities • Train and assist internal customers and stakeholders with the creation, design, configuration, validation, installation, commissioning and operation of BMS and EPMS systems. • Provide technical assistance and support to operations during life cycle of the data center. • Review results and action items from the quarterly maintenances for BMS and EPMS and take actions to get them resolved. • Develop BMS & EPMS projects scope of work, schedule, budget, and level of efforts (LOE) to projects requested by customers and stakeholders. • Manage scope, schedule, finance and execution of BMS and EPMS improvement projects in AWS data centers. • Assist in procurement related activities including request for quotation/proposals, responding to request for information, review of vendors proposal and issuance of purchase orders. • Participate in AWS global on-call schedule to provide immediate BMS and EPMS technical support to in-service data centers. • Attend project related meetings, coordinate with project leaders and regularly report status to Controls and stakeholder's management. • Support Controls projects related commissioning activities in the data centers. • Review, implement, troubleshoot and iterate on the controls sequence of operation (SOO) and provide necessary feedback to the design team. • Develop and modify controls logic programming and graphical user interfaces. • Manage multiple stakeholder deliverables, requirements and navigate challenging situations. • Financially manage BMS and EPMS service contracts. • Frequently visit (locally) assigned in-operation data centers to troubleshoot, meet customers, supervise vendor's work to ensure compliance with the scope, design, SOO and applicable local codes. About the team Amazon Web Services (AWS) is the world's most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and never stopped innovating - that's why customers from the most successful startups to Global 500 companies trust our robust suite of products and services to power their businesses. Amazon values diverse experiences. Even if you do not meet all of the preferred qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying. We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there's nothing we can't achieve in the cloud. Here at AWS, it's in our nature to learn and be curious. Our employee-led affinity groups foster a culture of inclusion that empower us to be proud of our differences. Ongoing events and learning experiences, including our Conversations on Race and Ethnicity (CORE) and AmazeCon (gender diversity) conferences, inspire us to never stop embracing our uniqueness. We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional. BASIC QUALIFICATIONS - 5+ years of industrial controls and automation experience - 4+ years of general contractor and vendor management work (request for proposals, bidding, change orders, quality control, RFI/submittal tracking) associated with construction and project execution experience - Bachelor's degree in Mechanical Engineering, Electrical Engineering, or an equivalent engineering science plus 5+ years of relevant controls experience, OR 10+ years of relevant controls experience in lieu of a degree. PREFERRED QUALIFICATIONS - Master's degree in mechanical engineering, electrical engineering, material science, physics or equivalent, or MS degree - Experience designing, configuring, programming, installing, troubleshooting or servicing HVAC Controls or Electrical SCADA systems application specific controllers, software and networks. - Experiencing using common industrial communication protocols (MQTT, BACnet and/or MODBUS). - Demonstrated understanding of engineering documentation, electrical and mechanical diagrams, and standard operating procedures. - Ability to manage multiple stakeholder deliverables, requirements, and navigate difficult situations. - Experience designing data centers or critical MEP infrastructure - Registered as a Professional Engineer (PE), or certified Project Management Professional (PMP). Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status. Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner. The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at . USA, VA, Herndon - 111 100.00 USD annually
Job Description Job Description On our expert team, you'll perform work focused on implementing and operating next generation security solutions for government and commercial clients. You'll perform hands-on evaluation, implementation, and operation of leading security cyber defense tools and technologies, and apply in-depth defense strategies to large and complex networks to rapidly identify vulnerabilities and threats, prioritize response actions, and develop effective countermeasures. You'll apply thought leadership in a highly collaborative and innovative work environment to solve complex security challenges. You will lead a team as they engineer solutions to complex challenges for customers using knowledge network engineering, Active Directory, and system administration. In this role, you'll closely impact mission success, protecting data and networks from malicious payloads and actors. With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers. Work with us as we secure and protect our nation's most sensitive capabilities. What You'll Work On: Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management. Manage infrastructure and cybersecurity controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises. Contribute to risk and vulnerability assessments in network, system, and application areas, and leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. Requirements Experience with the deployment or daily maintenance of Forescout CounterACT appliances 5+ years of experience performing systems administration for Windows or Linux, including performing basic troubleshooting and installation or configuration, monitoring system performance or availability, and performing security upgrades Experience architecting and designing IP networks, including developing and documenting network topologies Experience with network engineering, including physical or logical such as installation and activation of ports, configuration of switches, and LANS, VLANS, and network FW, or appliances or network administration services such as Active Directory, Guests LANS, and domain management Knowledge of multi-domain architectures, including data center, WAN, and LAN in virtualized architectures Active TS/SCI clearance; willingness to take a polygraph exam Associate's degree and 10+ years of experience supporting IT projects and activities, Bachelor's degree and 8+ years of experience supporting IT projects and activities, or Master's degree and 6+ years of experience supporting IT projects and activities DoD 8570 IAT Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date Nice If You Have: Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems Ability to install and deploy Forescout in a customer environment Ability to integrate cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk Ability to provide support in a Tier II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation Ability to be a self-starter, work without considerable direction, and work with a team Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
09/26/2026
Full time
Job Description Job Description On our expert team, you'll perform work focused on implementing and operating next generation security solutions for government and commercial clients. You'll perform hands-on evaluation, implementation, and operation of leading security cyber defense tools and technologies, and apply in-depth defense strategies to large and complex networks to rapidly identify vulnerabilities and threats, prioritize response actions, and develop effective countermeasures. You'll apply thought leadership in a highly collaborative and innovative work environment to solve complex security challenges. You will lead a team as they engineer solutions to complex challenges for customers using knowledge network engineering, Active Directory, and system administration. In this role, you'll closely impact mission success, protecting data and networks from malicious payloads and actors. With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers. Work with us as we secure and protect our nation's most sensitive capabilities. What You'll Work On: Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management. Manage infrastructure and cybersecurity controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises. Contribute to risk and vulnerability assessments in network, system, and application areas, and leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. Requirements Experience with the deployment or daily maintenance of Forescout CounterACT appliances 5+ years of experience performing systems administration for Windows or Linux, including performing basic troubleshooting and installation or configuration, monitoring system performance or availability, and performing security upgrades Experience architecting and designing IP networks, including developing and documenting network topologies Experience with network engineering, including physical or logical such as installation and activation of ports, configuration of switches, and LANS, VLANS, and network FW, or appliances or network administration services such as Active Directory, Guests LANS, and domain management Knowledge of multi-domain architectures, including data center, WAN, and LAN in virtualized architectures Active TS/SCI clearance; willingness to take a polygraph exam Associate's degree and 10+ years of experience supporting IT projects and activities, Bachelor's degree and 8+ years of experience supporting IT projects and activities, or Master's degree and 6+ years of experience supporting IT projects and activities DoD 8570 IAT Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date Nice If You Have: Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems Ability to install and deploy Forescout in a customer environment Ability to integrate cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk Ability to provide support in a Tier II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation Ability to be a self-starter, work without considerable direction, and work with a team Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
Job Description Job Description On our expert team, you'll perform work focused on implementing and operating next generation security solutions for government and commercial clients. You'll perform hands-on evaluation, implementation, and operation of leading security cyber defense tools and technologies, and apply in-depth defense strategies to large and complex networks to rapidly identify vulnerabilities and threats, prioritize response actions, and develop effective countermeasures. You'll apply thought leadership in a highly collaborative and innovative work environment to solve complex security challenges. You will lead a team as they engineer solutions to complex challenges for customers using knowledge network engineering, Active Directory, and system administration. In this role, you'll closely impact mission success, protecting data and networks from malicious payloads and actors. With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers. Work with us as we secure and protect our nation's most sensitive capabilities. What You'll Work On: Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management. Manage infrastructure and cybersecurity controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises. Contribute to risk and vulnerability assessments in network, system, and application areas, and leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. Requirements Experience with the deployment or daily maintenance of Forescout CounterACT appliances 5+ years of experience performing systems administration for Windows or Linux, including performing basic troubleshooting and installation or configuration, monitoring system performance or availability, and performing security upgrades Experience architecting and designing IP networks, including developing and documenting network topologies Experience with network engineering, including physical or logical such as installation and activation of ports, configuration of switches, and LANS, VLANS, and network FW, or appliances or network administration services such as Active Directory, Guests LANS, and domain management Knowledge of multi-domain architectures, including data center, WAN, and LAN in virtualized architectures Active TS/SCI clearance; willingness to take a polygraph exam Associate's degree and 10+ years of experience supporting IT projects and activities, Bachelor's degree and 8+ years of experience supporting IT projects and activities, or Master's degree and 6+ years of experience supporting IT projects and activities DoD 8570 IAT Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date Nice If You Have: Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems Ability to install and deploy Forescout in a customer environment Ability to integrate cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk Ability to provide support in a Tier II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation Ability to be a self-starter, work without considerable direction, and work with a team Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
09/26/2026
Full time
Job Description Job Description On our expert team, you'll perform work focused on implementing and operating next generation security solutions for government and commercial clients. You'll perform hands-on evaluation, implementation, and operation of leading security cyber defense tools and technologies, and apply in-depth defense strategies to large and complex networks to rapidly identify vulnerabilities and threats, prioritize response actions, and develop effective countermeasures. You'll apply thought leadership in a highly collaborative and innovative work environment to solve complex security challenges. You will lead a team as they engineer solutions to complex challenges for customers using knowledge network engineering, Active Directory, and system administration. In this role, you'll closely impact mission success, protecting data and networks from malicious payloads and actors. With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers. Work with us as we secure and protect our nation's most sensitive capabilities. What You'll Work On: Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management. Manage infrastructure and cybersecurity controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises. Contribute to risk and vulnerability assessments in network, system, and application areas, and leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. Requirements Experience with the deployment or daily maintenance of Forescout CounterACT appliances 5+ years of experience performing systems administration for Windows or Linux, including performing basic troubleshooting and installation or configuration, monitoring system performance or availability, and performing security upgrades Experience architecting and designing IP networks, including developing and documenting network topologies Experience with network engineering, including physical or logical such as installation and activation of ports, configuration of switches, and LANS, VLANS, and network FW, or appliances or network administration services such as Active Directory, Guests LANS, and domain management Knowledge of multi-domain architectures, including data center, WAN, and LAN in virtualized architectures Active TS/SCI clearance; willingness to take a polygraph exam Associate's degree and 10+ years of experience supporting IT projects and activities, Bachelor's degree and 8+ years of experience supporting IT projects and activities, or Master's degree and 6+ years of experience supporting IT projects and activities DoD 8570 IAT Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date Nice If You Have: Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems Ability to install and deploy Forescout in a customer environment Ability to integrate cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk Ability to provide support in a Tier II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation Ability to be a self-starter, work without considerable direction, and work with a team Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
Job Description Job Description Company Description Big challenges need bold thinkers. If you're someone who sees problems as opportunities, you'll thrive here. RESPEC is 100% employee-owned , which means we take ownership of every challenge. Here, your ideas drive real solutions. Since 1969, we've tackled complex challenges in energy transition, infrastructure resilience, digital transformation, and sustainability. At RESPEC, you'll work alongside clients to take on critical problems . Depending on your expertise, you might design infrastructure in remote locations, develop renewable energy solutions for global projects, or apply data-driven technology to improve mining and water systems. We bring deep technical knowledge, real-world experience, and a commitment to work that matters. If you're looking for a place where your contributions have real impact, you'll fit right in. We do not accept unsolicited resumes from third-party recruiters. Job Description RESPEC is seeking a Configuration Manager to lead configuration management activities for complex enterprise engineering systems, software applications, hardware/software integrated environments, and Digital Thread modernization initiatives. This position establishes and administers Configuration Management Plans (CMPs), configuration baselines, change-control processes, traceability practices, release-management controls, and audit-ready documentation. The Configuration Manager works with engineering stakeholders, project managers, system architects, software developers, quality assurance personnel, cybersecurity personnel, business/process engineers, and operations and maintenance teams to ensure that approved changes are documented, reviewed, controlled, tested, released, and maintained in accordance with applicable requirements. The role supports disciplined configuration control across PLM, CAD, ALM, DevOps, and enterprise software environments. Hands-on software development or CAD drafting is not required. The successful candidate will demonstrate the ability to manage configuration management processes for complex enterprise applications and engineering environments. Key Responsibilities Establish, maintain, and execute Configuration Management Plans (CMPs) for enterprise engineering systems, software applications, integrations, interfaces, and related technical environments. Lead Change Control Boards (CCBs), including the preparation, coordination, tracking, documentation, and follow-up of proposed changes, decisions, approvals, and action items. Establish and maintain configuration baselines for software, hardware, engineering data, system documentation, interfaces, releases, and operational environments. Enforce traceability across software or hardware life cycles and maintain audit readiness for complex enterprise applications. Coordinate configuration management activities across PLM, CAD data-management, ALM, DevOps, software-development, quality assurance, systems integration, and operations and maintenance efforts. Review, document, track, and maintain records for configuration items, version histories, change requests, approvals, release packages, baseline updates, and configuration-status accounting. Support the planning and execution of software upgrades, system integrations, releases, deployments, cutovers, and post-deployment validation activities. Ensure configuration-controlled artifacts are appropriately identified, versioned, reviewed, approved, stored, and available to authorized stakeholders. Support release-management and deployment-readiness activities by confirming that changes have completed required review, testing, documentation, approval, and baseline-management processes. Work with quality assurance and test personnel to ensure that configuration changes are traceable to applicable requirements, test plans, test results, defects, and resolution records. Support the maintenance of configuration documentation, including CMPs, configuration-item inventories, baseline records, change logs, release records, CCB materials, and audit-support artifacts. Identify configuration-management risks, control gaps, documentation deficiencies, and process-improvement opportunities; communicate findings and support corrective actions. Coordinate with project managers and technical leads to align configuration-management activities with task-order schedules, milestones, deliverables, and implementation plans. Support governance and compliance activities in environments requiring formal change control, controlled releases, security awareness, and structured documentation. Assist with knowledge-transfer activities related to configuration-management procedures, configuration-control processes, change-management requirements, and release-management practices. Qualifications Required Qualifications & Experience Education & Years of Experience: Bachelor's degree in CS, Information Systems, Engineering, or a related field; 5-10 years (Senior) or 10-15 years (Principal) of dedicated Configuration Management experience. CM certifications (e.g., CMPIC, ITIL, NDIA) are a strong plus. Domain Exposure (Must meet AT LEAST ONE of the following): DOE / National Labs: Direct experience within the Department of Energy (DOE), NNSA, or National Laboratories (e.g., Sandia, Los Alamos, Lawrence Livermore, Oak Ridge, Idaho National Lab). Broader Federal / Defense / Aerospace: Experience within complex DoD branches (Army, Navy, Air Force, Space Force), NASA, DHS, DOT, or major defense prime contractors. Strictly Regulated Commercial Industries: Experience managing configuration in heavily audited, highly regulated sectors such as commercial nuclear power, medical devices (FDA-regulated), automotive (ISO 26262), semiconductor manufacturing, or commercial aviation (FAA-regulated). Technical/Tooling Context (Must meet AT LEAST ONE of the following): PTC Ecosystem: Experience supporting environments using PTC products (Windchill, PDMLink, CodeBeamer, Creo). Alternative Enterprise PLM / CAD Suites: Experience managing CM baselines for other major PLM or CAD data management platforms, such as Siemens Teamcenter, Dassault Systèmes (Enovia, 3DEXPERIENCE, SolidWorks PDM), Autodesk Fusion Lifecycle/Vault, or Aras Innovator. Enterprise Software / ALM / DevOps Pipelines: Experience establishing CM controls using mainstream Application Lifecycle Management (ALM) or DevOps toolchains, such as Azure DevOps, Jira/Confluence, Git, GitLab, Jenkins, ServiceNow, or IBM Rational/DOORS. Core Competency: Proven ability to lead Change Control Boards (CCBs), establish Configuration Management Plans (CMPs), enforce traceability across software or hardware life cycles, and maintain audit readiness for complex enterprise applications. Hands-on software development or CAD drafting is not required. Demonstrated ability to coordinate configuration-management activities across multiple technical teams, systems, interfaces, and controlled-release activities. Demonstrated ability to produce clear, complete, and accurate configuration-management documentation, change-control records, baseline records, and audit-support materials. Ability to communicate configuration-management requirements, status, risks, and decisions effectively to technical and non-technical stakeholders. Additional Information All your information will be kept confidential according to EEO guidelines. All your information will be kept confidential according to EEO guidelines.
09/26/2026
Full time
Job Description Job Description Company Description Big challenges need bold thinkers. If you're someone who sees problems as opportunities, you'll thrive here. RESPEC is 100% employee-owned , which means we take ownership of every challenge. Here, your ideas drive real solutions. Since 1969, we've tackled complex challenges in energy transition, infrastructure resilience, digital transformation, and sustainability. At RESPEC, you'll work alongside clients to take on critical problems . Depending on your expertise, you might design infrastructure in remote locations, develop renewable energy solutions for global projects, or apply data-driven technology to improve mining and water systems. We bring deep technical knowledge, real-world experience, and a commitment to work that matters. If you're looking for a place where your contributions have real impact, you'll fit right in. We do not accept unsolicited resumes from third-party recruiters. Job Description RESPEC is seeking a Configuration Manager to lead configuration management activities for complex enterprise engineering systems, software applications, hardware/software integrated environments, and Digital Thread modernization initiatives. This position establishes and administers Configuration Management Plans (CMPs), configuration baselines, change-control processes, traceability practices, release-management controls, and audit-ready documentation. The Configuration Manager works with engineering stakeholders, project managers, system architects, software developers, quality assurance personnel, cybersecurity personnel, business/process engineers, and operations and maintenance teams to ensure that approved changes are documented, reviewed, controlled, tested, released, and maintained in accordance with applicable requirements. The role supports disciplined configuration control across PLM, CAD, ALM, DevOps, and enterprise software environments. Hands-on software development or CAD drafting is not required. The successful candidate will demonstrate the ability to manage configuration management processes for complex enterprise applications and engineering environments. Key Responsibilities Establish, maintain, and execute Configuration Management Plans (CMPs) for enterprise engineering systems, software applications, integrations, interfaces, and related technical environments. Lead Change Control Boards (CCBs), including the preparation, coordination, tracking, documentation, and follow-up of proposed changes, decisions, approvals, and action items. Establish and maintain configuration baselines for software, hardware, engineering data, system documentation, interfaces, releases, and operational environments. Enforce traceability across software or hardware life cycles and maintain audit readiness for complex enterprise applications. Coordinate configuration management activities across PLM, CAD data-management, ALM, DevOps, software-development, quality assurance, systems integration, and operations and maintenance efforts. Review, document, track, and maintain records for configuration items, version histories, change requests, approvals, release packages, baseline updates, and configuration-status accounting. Support the planning and execution of software upgrades, system integrations, releases, deployments, cutovers, and post-deployment validation activities. Ensure configuration-controlled artifacts are appropriately identified, versioned, reviewed, approved, stored, and available to authorized stakeholders. Support release-management and deployment-readiness activities by confirming that changes have completed required review, testing, documentation, approval, and baseline-management processes. Work with quality assurance and test personnel to ensure that configuration changes are traceable to applicable requirements, test plans, test results, defects, and resolution records. Support the maintenance of configuration documentation, including CMPs, configuration-item inventories, baseline records, change logs, release records, CCB materials, and audit-support artifacts. Identify configuration-management risks, control gaps, documentation deficiencies, and process-improvement opportunities; communicate findings and support corrective actions. Coordinate with project managers and technical leads to align configuration-management activities with task-order schedules, milestones, deliverables, and implementation plans. Support governance and compliance activities in environments requiring formal change control, controlled releases, security awareness, and structured documentation. Assist with knowledge-transfer activities related to configuration-management procedures, configuration-control processes, change-management requirements, and release-management practices. Qualifications Required Qualifications & Experience Education & Years of Experience: Bachelor's degree in CS, Information Systems, Engineering, or a related field; 5-10 years (Senior) or 10-15 years (Principal) of dedicated Configuration Management experience. CM certifications (e.g., CMPIC, ITIL, NDIA) are a strong plus. Domain Exposure (Must meet AT LEAST ONE of the following): DOE / National Labs: Direct experience within the Department of Energy (DOE), NNSA, or National Laboratories (e.g., Sandia, Los Alamos, Lawrence Livermore, Oak Ridge, Idaho National Lab). Broader Federal / Defense / Aerospace: Experience within complex DoD branches (Army, Navy, Air Force, Space Force), NASA, DHS, DOT, or major defense prime contractors. Strictly Regulated Commercial Industries: Experience managing configuration in heavily audited, highly regulated sectors such as commercial nuclear power, medical devices (FDA-regulated), automotive (ISO 26262), semiconductor manufacturing, or commercial aviation (FAA-regulated). Technical/Tooling Context (Must meet AT LEAST ONE of the following): PTC Ecosystem: Experience supporting environments using PTC products (Windchill, PDMLink, CodeBeamer, Creo). Alternative Enterprise PLM / CAD Suites: Experience managing CM baselines for other major PLM or CAD data management platforms, such as Siemens Teamcenter, Dassault Systèmes (Enovia, 3DEXPERIENCE, SolidWorks PDM), Autodesk Fusion Lifecycle/Vault, or Aras Innovator. Enterprise Software / ALM / DevOps Pipelines: Experience establishing CM controls using mainstream Application Lifecycle Management (ALM) or DevOps toolchains, such as Azure DevOps, Jira/Confluence, Git, GitLab, Jenkins, ServiceNow, or IBM Rational/DOORS. Core Competency: Proven ability to lead Change Control Boards (CCBs), establish Configuration Management Plans (CMPs), enforce traceability across software or hardware life cycles, and maintain audit readiness for complex enterprise applications. Hands-on software development or CAD drafting is not required. Demonstrated ability to coordinate configuration-management activities across multiple technical teams, systems, interfaces, and controlled-release activities. Demonstrated ability to produce clear, complete, and accurate configuration-management documentation, change-control records, baseline records, and audit-support materials. Ability to communicate configuration-management requirements, status, risks, and decisions effectively to technical and non-technical stakeholders. Additional Information All your information will be kept confidential according to EEO guidelines. All your information will be kept confidential according to EEO guidelines.