MI Windows and Doors
Harrisburg, Pennsylvania
Job Description Pay Range: $85,000 - $106,000 depending on relevant experience and qualifications MITER Brands is a residential window and door manufacturer that provides a leading portfolio of window and door brands for the new construction and replacement segments. MITER Brands, also known as Milgard, MI Windows & Doors and PGTI is one of the nation's largest suppliers of vinyl windows and patio doors, with plants across the country. The Network Administrator II role is responsible for ensuring the stability, integrity, security, and efficient operation of the organization's network infrastructure, including WAN, LAN, WLAN, VPN, and Network Security systems. This role supports core business functions by designing, installing, configuring, administering, and fine-tuning network components across the enterprise in a timely and effective manner. The Network Administrator applies strong communication, analytical, and problem-solving skills to identify, communicate, and resolve issues while maximizing the value of IT investments. This 100% onsite position based in Harrisburg or Gratz, PA is ideal for a hands-on network professional who thrives on solving complex problems and building resilient infrastructure. You'll play a critical role in ensuring the stability, performance, and security of enterprise-wide network systems that support core manufacturing and business operations. Responsibilities In this role, you'll design, implement, and support a modern network environment spanning WAN, LAN, WLAN, VPN, and Network Security technologies. You'll collaborate closely with IT peers and business stakeholders while helping drive continuous improvement across the organization's network ecosystem. Design, configure, deploy, and maintain enterprise network infrastructure, including routers, switches, wireless controllers, access points, firewalls, and security platforms Troubleshoot and resolve complex hardware, software, and connectivity issues across network and security environments Support and enhance perimeter and internal security solutions such as wireless authentication, intrusion detection, antivirus, email filtering, and web security systems Monitor network performance, analyze trends, and deliver reporting to support availability, reliability, and scalability goals Partner with system administrators, database teams, and application owners to ensure seamless integration and optimal performance Review, test, and deploy firmware updates, security signatures, IOS upgrades, and vendor patches following best practices Ensure compliance with internal policies, security standards, configuration guidelines, and licensing requirements Participate in and co-lead network process improvements and cross-functional IT initiatives Research and evaluate new network technologies and hardware to support procurement and long-term strategy Document work and manage tasks, projects, and incidents using help desk and ticketing systems Provide after-hours and on-call support as required to maintain critical services Qualifications CCNA certification required One of the following: University degree or college diploma in Information Technology with 3+ years of IT experience Technical diploma or certificate in Information Technology with 5+ years of IT experience Network support experience in a manufacturing or similar industry/environment highly preferred Strong hands-on experience with network devices (routers, switches, access points) Solid understanding of networking fundamentals (subnetting, VLANs, routing, topology, network design) Working knowledge of VPNs, web/email filtering tools, and cloud-based network solutions Experience supporting Windows desktop and server environments (Windows 7-11, Server ) Proficiency with Microsoft 365, Office, SharePoint, and Active Directory Strong analytical, troubleshooting, and problem-solving skills Ability to work independently while collaborating across teams Excellent written, verbal, and interpersonal communication skills Customer-focused mindset with the ability to explain technical concepts clearly Preferred Experience 3+ years of experience in a Network Administrator role Exposure to ITIL processes and service management frameworks Experience with IT Service Desk tools (ServiceNow, ManageEngine, Remedy) Strong understanding of enterprise hardware, software, and network support practices What We Offer At MITER Brands, we invest in your health, wealth, and wellness. Our comprehensive benefits package supports you and your eligible spouse/dependents while helping you achieve your personal and professional goals. We offer competitive pay, a 401(k) with company match, and generous paid time off to help you maintain a healthy work-life balance. Health & Wellness Three comprehensive medical plan options Prescription drug coverage Dental insurance Vision insurance Teladoc virtual healthcare services Employee Assistance Program (EAP) Annual Wellness Clinic Financial Protection Company-paid Life Insurance Voluntary Life Insurance Company-paid Short-Term Disability Company-paid Long-Term Disability Supplemental Hospital Indemnity Insurance Critical Illness Insurance Accident Insurance Additional Benefits Paid Time Off (PTO) and paid holidays 401(k) retirement plan with company match Tuition Reimbursement Program Legal Insurance Identity Theft Protection Pet Insurance Team Member Discount Program MITER Brands, including MI Windows and Doors, Milgard, and PGT Innovations, is an Equal Opportunity Employer. We are committed to fostering an inclusive workplace and do not discriminate based on race, color, religion, sex, national origin, age, disability, veteran status, genetic information, sexual orientation, or any other protected status under applicable law. Work Authorization and Sponsorship Disclosure: The Company does not offer employer sponsorship at this time. Therefore, candidates must provide truthful and complete information regarding their eligibility to work in the U.S. and any current or future need for employment sponsorship. Misrepresentation regarding work authorization or sponsorship need at any stage of the hiring process will result in disqualification from consideration, rescission of an employment offer, or termination of employment.
Job Description Pay Range: $85,000 - $106,000 depending on relevant experience and qualifications MITER Brands is a residential window and door manufacturer that provides a leading portfolio of window and door brands for the new construction and replacement segments. MITER Brands, also known as Milgard, MI Windows & Doors and PGTI is one of the nation's largest suppliers of vinyl windows and patio doors, with plants across the country. The Network Administrator II role is responsible for ensuring the stability, integrity, security, and efficient operation of the organization's network infrastructure, including WAN, LAN, WLAN, VPN, and Network Security systems. This role supports core business functions by designing, installing, configuring, administering, and fine-tuning network components across the enterprise in a timely and effective manner. The Network Administrator applies strong communication, analytical, and problem-solving skills to identify, communicate, and resolve issues while maximizing the value of IT investments. This 100% onsite position based in Harrisburg or Gratz, PA is ideal for a hands-on network professional who thrives on solving complex problems and building resilient infrastructure. You'll play a critical role in ensuring the stability, performance, and security of enterprise-wide network systems that support core manufacturing and business operations. Responsibilities In this role, you'll design, implement, and support a modern network environment spanning WAN, LAN, WLAN, VPN, and Network Security technologies. You'll collaborate closely with IT peers and business stakeholders while helping drive continuous improvement across the organization's network ecosystem. Design, configure, deploy, and maintain enterprise network infrastructure, including routers, switches, wireless controllers, access points, firewalls, and security platforms Troubleshoot and resolve complex hardware, software, and connectivity issues across network and security environments Support and enhance perimeter and internal security solutions such as wireless authentication, intrusion detection, antivirus, email filtering, and web security systems Monitor network performance, analyze trends, and deliver reporting to support availability, reliability, and scalability goals Partner with system administrators, database teams, and application owners to ensure seamless integration and optimal performance Review, test, and deploy firmware updates, security signatures, IOS upgrades, and vendor patches following best practices Ensure compliance with internal policies, security standards, configuration guidelines, and licensing requirements Participate in and co-lead network process improvements and cross-functional IT initiatives Research and evaluate new network technologies and hardware to support procurement and long-term strategy Document work and manage tasks, projects, and incidents using help desk and ticketing systems Provide after-hours and on-call support as required to maintain critical services Qualifications CCNA certification required One of the following: University degree or college diploma in Information Technology with 3+ years of IT experience Technical diploma or certificate in Information Technology with 5+ years of IT experience Network support experience in a manufacturing or similar industry/environment highly preferred Strong hands-on experience with network devices (routers, switches, access points) Solid understanding of networking fundamentals (subnetting, VLANs, routing, topology, network design) Working knowledge of VPNs, web/email filtering tools, and cloud-based network solutions Experience supporting Windows desktop and server environments (Windows 7-11, Server ) Proficiency with Microsoft 365, Office, SharePoint, and Active Directory Strong analytical, troubleshooting, and problem-solving skills Ability to work independently while collaborating across teams Excellent written, verbal, and interpersonal communication skills Customer-focused mindset with the ability to explain technical concepts clearly Preferred Experience 3+ years of experience in a Network Administrator role Exposure to ITIL processes and service management frameworks Experience with IT Service Desk tools (ServiceNow, ManageEngine, Remedy) Strong understanding of enterprise hardware, software, and network support practices What We Offer At MITER Brands, we invest in your health, wealth, and wellness. Our comprehensive benefits package supports you and your eligible spouse/dependents while helping you achieve your personal and professional goals. We offer competitive pay, a 401(k) with company match, and generous paid time off to help you maintain a healthy work-life balance. Health & Wellness Three comprehensive medical plan options Prescription drug coverage Dental insurance Vision insurance Teladoc virtual healthcare services Employee Assistance Program (EAP) Annual Wellness Clinic Financial Protection Company-paid Life Insurance Voluntary Life Insurance Company-paid Short-Term Disability Company-paid Long-Term Disability Supplemental Hospital Indemnity Insurance Critical Illness Insurance Accident Insurance Additional Benefits Paid Time Off (PTO) and paid holidays 401(k) retirement plan with company match Tuition Reimbursement Program Legal Insurance Identity Theft Protection Pet Insurance Team Member Discount Program MITER Brands, including MI Windows and Doors, Milgard, and PGT Innovations, is an Equal Opportunity Employer. We are committed to fostering an inclusive workplace and do not discriminate based on race, color, religion, sex, national origin, age, disability, veteran status, genetic information, sexual orientation, or any other protected status under applicable law. Work Authorization and Sponsorship Disclosure: The Company does not offer employer sponsorship at this time. Therefore, candidates must provide truthful and complete information regarding their eligibility to work in the U.S. and any current or future need for employment sponsorship. Misrepresentation regarding work authorization or sponsorship need at any stage of the hiring process will result in disqualification from consideration, rescission of an employment offer, or termination of employment.
Sungrow USA Corporation
Houston, Texas
Job Description Job Description About the Company : Sungrow North America is a leading provider of renewable energy solutions, specializing in the development and manufacturing of photovoltaic inverters and energy storage systems. The company offers a comprehensive range of products and services designed to optimize the performance and efficiency of solar power installations. Sungrow North America aims to provide sustainable and reliable energy solutions to meet the growing demand for clean power and is known for its commitment to innovation, high-quality standards, and exceptional customer service. Security Engineer - Network & Identity: The Security Engineer (Network & Identity) is a hands-on engineering role within the IT team responsible for designing, implementing, securing, and automating Sungrow USA's network security, PKI and certificate management, and identity & access infrastructure across on-premises, cloud, and SaaS environments. This role serves as the technical owner for network security architecture, cryptographic services, certificate lifecycle management, authentication, and access controls. The position focuses on Zero Trust security, network segmentation, certificate-based authentication, and identity protection to reduce organizational risk and enable secure business operations and platform ownership rather than SOC operations, threat monitoring, or incident response. Essential Duties and Responsibilities: Network Security Design, implement, and maintain secure enterprise network architectures across corporate offices, data centers, cloud platforms, and remote workforce environments. Architect network segmentation, Zero Trust access controls, and secure connectivity standards using Fortinet and Zscaler security solutions. Develop and maintain Zero Trust architectures across network, identity, endpoint, application, and cloud environments. Design and administer secure remote access using Zscaler Private Access, VPN technologies, and identity-aware access controls. Manage firewall policies, network security controls, routing security, DNS security, and hybrid-cloud connectivity. Design and support Network Access Control architectures using IEEE 802.1X, RADIUS, and certificate-based authentication. Assess network security posture, develop remediation plans, and drive continuous security improvements. Cryptography, PKI & Certificate Management Own the enterprise PKI, cryptography, and certificate lifecycle management architecture, standards, and governance program. Design and manage certificate-based authentication and machine identity solutions for users, devices, servers, applications, cloud workloads, and network infrastructure across Azure, AWS, and hybrid environments. Implement and maintain certificate lifecycle automation using Microsoft Cloud PKI, Keyfactor, CyberArk Certificate Manager, EJBCA, DigiCert, AppViewX, or comparable platforms. Manage certificate issuance, enrollment, discovery, deployment, monitoring, renewal, revocation, auditing, and compliance across the enterprise. Design and support cryptographic services and certificate-based security controls, including TLS/mTLS, code signing, PKI trust hierarchies, certificate-based authentication, SCEP, PKCS, and machine identities. Establish PKI and cryptographic standards, key management practices, and security controls to support Zero Trust, regulatory compliance, and enterprise security requirements. Troubleshoot and resolve complex certificate, cryptographic, trust chain, authentication, and secure communications issues across enterprise systems and applications. Identity & Access Define authentication and authorization standards for workforce, partner, application, service, and machine identities. Design, implement, and maintain Microsoft Entra ID architecture, tenant governance, and identity security controls. Develop, test, and enforce Conditional Access policies and Zero Trust access controls. Implement and maintain MFA, passwordless authentication, phishing-resistant authentication, and Microsoft Entra ID Protection capabilities. Design and support enterprise SSO and federation integrations using SAML, OAuth 2.0, OpenID Connect, and SCIM. Implement least-privilege and risk-based access models across enterprise platforms. Administer RBAC, administrative separation, Microsoft Entra Privileged Identity Management, and least-privilege access controls. Govern application registrations, service principals, enterprise applications, API permissions, and managed identities. Support B2B collaboration, guest-user governance, external workforce access, and third-party identity integrations. Design and implement security controls across Microsoft Azure and AWS environments. Apply least privilege, RBAC, encryption, secrets management, and secure configuration standards to on-prem and cloud resources. Automate identity provisioning and deprovisioning, access governance, certificate management, configuration validation, and security operations. Create reusable secure-by-default templates and reduce manual administration through automation and orchestration Conduct access reviews, entitlement certifications, and identity governance activities. Education or Desired License and Certificates: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field, or equivalent professional experience. Microsoft Certified: Identity and Access Administrator Associate (SC-300) preferred. Microsoft Certified: Azure Security Engineer Associate (AZ-500) preferred. CCNA, Fortinet, Zscaler, AWS Security, CISSP, CISM, Terraform, or relevant PKI certification preferred Preferred Experience & Qualifications: 5+ years of experience in security engineering, identity & access management (IAM), network security, cloud security, or a related enterprise IT discipline. Hands-on experience with Microsoft Entra ID, including Conditional Access, MFA, SSO, Identity Protection, PIM, RBAC, identity governance, and modern authentication protocols (SAML, OAuth, OpenID Connect, SCIM). Experience designing, implementing, and securing enterprise identity, privileged access, and machine identity solutions across hybrid and multi-cloud environments. Hands-on experience with Fortinet, Zscaler (ZIA/ZPA), Zero Trust architectures, least-privilege access models, and network security controls. Experience designing and operating enterprise PKI, certificate lifecycle management, certificate-based authentication, and machine identity platforms such as Keyfactor, DigiCert, EJBCA, AppViewX, CyberArk Certificate Manager, or similar solutions. Experience securing Azure and AWS environments, including identity, networking, encryption, secrets management, logging, and security monitoring. Experience with PAM and IGA platforms such as CyberArk, Delinea, BeyondTrust, SailPoint, Saviynt, or similar technologies. Experience integrating identity, network, cloud, and security telemetry with SIEM and security operations platforms. Strong automation and Infrastructure as Code skills using PowerShell, Python, Microsoft Graph API, REST APIs, Terraform, or similar technologies. Strong troubleshooting skills across authentication, federation, certificates, PKI, network security, cloud access, application integrations, and enterprise identity services. Knowledge of cybersecurity and compliance frameworks including SOC 2, ISO/IEC 27001, NIST CSF, NIST 800-63, CIS Controls, Zero Trust, and NERC CIP. Competencies: Mandarin fluency preferred but not required. Strong analytical, troubleshooting, and problem-solving skills. Ability to work independently and collaboratively in a fast-paced environment. Excellent communication, stakeholder management, and technical documentation skills. Strong organization, attention to detail, initiative, and ownership. Ability to balance security, reliability, usability, scalability, and business requirements. Proactive approach to automation, standardization, and continuous improvement. Travel 5%-20% Work Location and Status: Full time, Hybrid at any Sungrow USA office in Phoenix, Costa Mesa, or Houston No visa sponsorship Compensation: Compensation commensurate with experience Competitive salary and annual bonus eligibility Comprehensive benefits package including health, dental, vision, and retirement plans Strong personal and company growth opportunities Sungrow is an equal opportunity employer. Due to strong interest in this position, Sungrow will only reach out to those candidates who best meet the requirements. Thank you for your interest in Sungrow.
Job Description Job Description About the Company : Sungrow North America is a leading provider of renewable energy solutions, specializing in the development and manufacturing of photovoltaic inverters and energy storage systems. The company offers a comprehensive range of products and services designed to optimize the performance and efficiency of solar power installations. Sungrow North America aims to provide sustainable and reliable energy solutions to meet the growing demand for clean power and is known for its commitment to innovation, high-quality standards, and exceptional customer service. Security Engineer - Network & Identity: The Security Engineer (Network & Identity) is a hands-on engineering role within the IT team responsible for designing, implementing, securing, and automating Sungrow USA's network security, PKI and certificate management, and identity & access infrastructure across on-premises, cloud, and SaaS environments. This role serves as the technical owner for network security architecture, cryptographic services, certificate lifecycle management, authentication, and access controls. The position focuses on Zero Trust security, network segmentation, certificate-based authentication, and identity protection to reduce organizational risk and enable secure business operations and platform ownership rather than SOC operations, threat monitoring, or incident response. Essential Duties and Responsibilities: Network Security Design, implement, and maintain secure enterprise network architectures across corporate offices, data centers, cloud platforms, and remote workforce environments. Architect network segmentation, Zero Trust access controls, and secure connectivity standards using Fortinet and Zscaler security solutions. Develop and maintain Zero Trust architectures across network, identity, endpoint, application, and cloud environments. Design and administer secure remote access using Zscaler Private Access, VPN technologies, and identity-aware access controls. Manage firewall policies, network security controls, routing security, DNS security, and hybrid-cloud connectivity. Design and support Network Access Control architectures using IEEE 802.1X, RADIUS, and certificate-based authentication. Assess network security posture, develop remediation plans, and drive continuous security improvements. Cryptography, PKI & Certificate Management Own the enterprise PKI, cryptography, and certificate lifecycle management architecture, standards, and governance program. Design and manage certificate-based authentication and machine identity solutions for users, devices, servers, applications, cloud workloads, and network infrastructure across Azure, AWS, and hybrid environments. Implement and maintain certificate lifecycle automation using Microsoft Cloud PKI, Keyfactor, CyberArk Certificate Manager, EJBCA, DigiCert, AppViewX, or comparable platforms. Manage certificate issuance, enrollment, discovery, deployment, monitoring, renewal, revocation, auditing, and compliance across the enterprise. Design and support cryptographic services and certificate-based security controls, including TLS/mTLS, code signing, PKI trust hierarchies, certificate-based authentication, SCEP, PKCS, and machine identities. Establish PKI and cryptographic standards, key management practices, and security controls to support Zero Trust, regulatory compliance, and enterprise security requirements. Troubleshoot and resolve complex certificate, cryptographic, trust chain, authentication, and secure communications issues across enterprise systems and applications. Identity & Access Define authentication and authorization standards for workforce, partner, application, service, and machine identities. Design, implement, and maintain Microsoft Entra ID architecture, tenant governance, and identity security controls. Develop, test, and enforce Conditional Access policies and Zero Trust access controls. Implement and maintain MFA, passwordless authentication, phishing-resistant authentication, and Microsoft Entra ID Protection capabilities. Design and support enterprise SSO and federation integrations using SAML, OAuth 2.0, OpenID Connect, and SCIM. Implement least-privilege and risk-based access models across enterprise platforms. Administer RBAC, administrative separation, Microsoft Entra Privileged Identity Management, and least-privilege access controls. Govern application registrations, service principals, enterprise applications, API permissions, and managed identities. Support B2B collaboration, guest-user governance, external workforce access, and third-party identity integrations. Design and implement security controls across Microsoft Azure and AWS environments. Apply least privilege, RBAC, encryption, secrets management, and secure configuration standards to on-prem and cloud resources. Automate identity provisioning and deprovisioning, access governance, certificate management, configuration validation, and security operations. Create reusable secure-by-default templates and reduce manual administration through automation and orchestration Conduct access reviews, entitlement certifications, and identity governance activities. Education or Desired License and Certificates: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field, or equivalent professional experience. Microsoft Certified: Identity and Access Administrator Associate (SC-300) preferred. Microsoft Certified: Azure Security Engineer Associate (AZ-500) preferred. CCNA, Fortinet, Zscaler, AWS Security, CISSP, CISM, Terraform, or relevant PKI certification preferred Preferred Experience & Qualifications: 5+ years of experience in security engineering, identity & access management (IAM), network security, cloud security, or a related enterprise IT discipline. Hands-on experience with Microsoft Entra ID, including Conditional Access, MFA, SSO, Identity Protection, PIM, RBAC, identity governance, and modern authentication protocols (SAML, OAuth, OpenID Connect, SCIM). Experience designing, implementing, and securing enterprise identity, privileged access, and machine identity solutions across hybrid and multi-cloud environments. Hands-on experience with Fortinet, Zscaler (ZIA/ZPA), Zero Trust architectures, least-privilege access models, and network security controls. Experience designing and operating enterprise PKI, certificate lifecycle management, certificate-based authentication, and machine identity platforms such as Keyfactor, DigiCert, EJBCA, AppViewX, CyberArk Certificate Manager, or similar solutions. Experience securing Azure and AWS environments, including identity, networking, encryption, secrets management, logging, and security monitoring. Experience with PAM and IGA platforms such as CyberArk, Delinea, BeyondTrust, SailPoint, Saviynt, or similar technologies. Experience integrating identity, network, cloud, and security telemetry with SIEM and security operations platforms. Strong automation and Infrastructure as Code skills using PowerShell, Python, Microsoft Graph API, REST APIs, Terraform, or similar technologies. Strong troubleshooting skills across authentication, federation, certificates, PKI, network security, cloud access, application integrations, and enterprise identity services. Knowledge of cybersecurity and compliance frameworks including SOC 2, ISO/IEC 27001, NIST CSF, NIST 800-63, CIS Controls, Zero Trust, and NERC CIP. Competencies: Mandarin fluency preferred but not required. Strong analytical, troubleshooting, and problem-solving skills. Ability to work independently and collaboratively in a fast-paced environment. Excellent communication, stakeholder management, and technical documentation skills. Strong organization, attention to detail, initiative, and ownership. Ability to balance security, reliability, usability, scalability, and business requirements. Proactive approach to automation, standardization, and continuous improvement. Travel 5%-20% Work Location and Status: Full time, Hybrid at any Sungrow USA office in Phoenix, Costa Mesa, or Houston No visa sponsorship Compensation: Compensation commensurate with experience Competitive salary and annual bonus eligibility Comprehensive benefits package including health, dental, vision, and retirement plans Strong personal and company growth opportunities Sungrow is an equal opportunity employer. Due to strong interest in this position, Sungrow will only reach out to those candidates who best meet the requirements. Thank you for your interest in Sungrow.