Apply now »

Senior Infrastructure Engineer (Active Directory and PowerShell)

Location: 

PH

Profile:  Cybersecurity
Required experience: 
Working mode: 

Responsibilities:

  • Managed and optimize detection logic, policies, and configurations across platforms such as SIEM, SOAR, WAF, Firewalls, EDR & NDR, DLP, PAM, IGA, and vulnerability management tools.

  • Provide infrastructure support for Active Directory management and integration with other platforms.

  • Manage infrastructure deployments/releases, and onboarding of web applications into WAF and manage advanced WAF configurations.

  • Oversee firewall rule creation, review, and cleanup to maintain secure and efficient policies.

  • Design and optimize rules in email security gateways to improve filtering and protection.

  • Enhance and fine-tune EPP and EDR policies for better endpoint protection.

  • Ensure secure, scalable, and optimized connectivity across AWS, Azure, and GCP.

  • Translate security use cases into platform-specific configurations and playbooks.

  • Resolve complex performance, availability, and infrastructure-related incidents.

  • Support upgrades (OS/firmware), backup processes, and failover testing.

  • Lead the creation of scheduled reports (can be weekly, monthly, quarterly, and yearly) on platform effectiveness, detection logic performance, policy impact, configuration health, and other application related reports.

  • Lead troubleshooting and incident response for application-layer security issues, networking, system dependencies and platform-level integrations.

  • Collaborate closely with cross functional teams such as SecOps, Governance, and other teams and mentor junior and associate team members, if needed.

  • Build and maintain automation scripts and workflows for repetitive tasks such as using PowerShell.

 

Qualifications:

  • At least 5 to 10 years in infrastructure support or security engineering.

  • Proficient in cloud platforms (AWS, Azure, GCP), networking fundamentals, and OS level management.

  • Exposure to cybersecurity tools and experience supporting their infrastructure components such as Endpoint, Data Security or IAM platforms

  • Has strong expertise in creation of group policies (GPO) administration, and Active Directory authentication (i.e.Kerberos and NTLM), architecture (i.g. Forest, Tree and domains) and implementation (e.g. AD hardening).

  • Perform migration and decommission of domain controllers in the infrastructure.

  • Has experience in scripting or automation experience in Active Directory, ideally PowerShell. This skill is an advantage.

Work Arrangement: Should be amendable to work 100% onsite in Ortigas and shifting

General requirement: The candidate should be willing to work on field especially if there are deployments (Makati/BGC), if needed. Indra and client will provide transportation vehicle (i.e. van) and this will be a scheduled deployment/configuration. 

Also, candidate should be willing to support other Platform operation teams and vice versa, if needed and possible

 

Apply now »