Senior Infrastructure Engineer (Active Directory and PowerShell)
PH
Responsibilities:
-
Managed and optimize detection logic, policies, and configurations across platforms such as SIEM, SOAR, WAF, Firewalls, EDR & NDR, DLP, PAM, IGA, and vulnerability management tools.
-
Provide infrastructure support for Active Directory management and integration with other platforms.
-
Manage infrastructure deployments/releases, and onboarding of web applications into WAF and manage advanced WAF configurations.
-
Oversee firewall rule creation, review, and cleanup to maintain secure and efficient policies.
-
Design and optimize rules in email security gateways to improve filtering and protection.
-
Enhance and fine-tune EPP and EDR policies for better endpoint protection.
-
Ensure secure, scalable, and optimized connectivity across AWS, Azure, and GCP.
-
Translate security use cases into platform-specific configurations and playbooks.
-
Resolve complex performance, availability, and infrastructure-related incidents.
-
Support upgrades (OS/firmware), backup processes, and failover testing.
-
Lead the creation of scheduled reports (can be weekly, monthly, quarterly, and yearly) on platform effectiveness, detection logic performance, policy impact, configuration health, and other application related reports.
-
Lead troubleshooting and incident response for application-layer security issues, networking, system dependencies and platform-level integrations.
-
Collaborate closely with cross functional teams such as SecOps, Governance, and other teams and mentor junior and associate team members, if needed.
-
Build and maintain automation scripts and workflows for repetitive tasks such as using PowerShell.
Qualifications:
-
At least 5 to 10 years in infrastructure support or security engineering.
-
Proficient in cloud platforms (AWS, Azure, GCP), networking fundamentals, and OS level management.
-
Exposure to cybersecurity tools and experience supporting their infrastructure components such as Endpoint, Data Security or IAM platforms
-
Has strong expertise in creation of group policies (GPO) administration, and Active Directory authentication (i.e.Kerberos and NTLM), architecture (i.g. Forest, Tree and domains) and implementation (e.g. AD hardening).
-
Perform migration and decommission of domain controllers in the infrastructure.
-
Has experience in scripting or automation experience in Active Directory, ideally PowerShell. This skill is an advantage.
Work Arrangement: Should be amendable to work 100% onsite in Ortigas and shifting
General requirement: The candidate should be willing to work on field especially if there are deployments (Makati/BGC), if needed. Indra and client will provide transportation vehicle (i.e. van) and this will be a scheduled deployment/configuration.
Also, candidate should be willing to support other Platform operation teams and vice versa, if needed and possible