Senior Infrastructure Security Engineer
Senior
Azure Active Directory
Device Management
Engineer
Identity and Access Management
Industrial Cybersecurity
Information Security
Information Technology (IT)
InfoSec
Microsoft 365
Microsoft Defender
Microsoft Intune
Microsoft Sentinel
Mobile Device Management
Security
Security Compliance
Security Standards
Solution Architecture
Zero Trust Architecture
Job Description
A-Gas Americas is seeking a Senior Infrastructure & Cybersecurity Engineer to help design and evolve secure, resilient infrastructure and network architectures across both IT and OT environments. Based in Rhome, TX with an onsite setup, this senior role partners with internal stakeholders and external managed services to reduce risk, improve business continuity, and strengthen protection of critical assets.
You will support the Head of Infrastructure in shaping technology strategies that eliminate single points of failure, strengthen availability for manufacturing systems and legacy platforms, and address cyber vulnerabilities through well-defined mitigations and validated remediation outcomes.
What you’ll do
- Support the Head of Infrastructure in designing and evolving secure, resilient infrastructure and network architectures across IT and OT.
- Improve business continuity by eliminating single points of failure and protecting critical assets.
- Identify cyber vulnerabilities and design effective mitigations.
- Work with Managed Service Providers (MSPs) to execute remediation and validate results.
- Collaborate with OT engineers and Product Owners to keep manufacturing systems, legacy operating systems, and critical business products available and secure.
What you bring
- 7+ years in infrastructure engineering, with strong exposure to security and resilience design.
- Expertise in VMware virtualization and the Microsoft stack, including Entra ID/Azure AD, Windows Server, Intune, M365, Defender, and Sentinel.
- Proven experience designing redundant network architectures and implementing business continuity strategies.
- Familiarity with Meraki networking and firewall configuration for secure cross-business connectivity.
- Knowledge of CIS18 controls, NIST CSF, and Zero Trust principles.
- Strong scripting and automation skills using PowerShell and Bash, plus the ability to validate MSP deliverables.
Technologies
- VMware virtualization
- Entra ID, Azure AD
- Windows Server
- Intune
- M365
- Defender, Sentinel
- Meraki
- PowerShell, Bash
- CIS18, NIST CSF, Zero Trust
Benefits
- Competitive and attractive employment package
- Employer pension scheme
- Flexible working hours (depending on the role)
- Collective benefits program
- Employee Assistance Program (support for work and personal matters)
- Cycle to work scheme
- Team activities in summer and around Christmas
Desirable experience
- Experience with PAM solutions such as CyberArk or similar
- SIEM/SOAR tuning experience
- Exposure to WAF and IDS/IPS
- Knowledge of industrial control systems (ICS) and OT security best practices
Certifications
- AZ-500 (Azure Security Engineer), SC-100 (Cybersecurity Architect), CISSP, or equivalent