Infrastructure Cloud Engineer
$115,000–$130,000 year
Hybrid · Chicago, Illinois, United States
Job Summary
Hands-on infrastructure engineer focusing on cloud (Azure and AWS), identity governance, and on-site network support. Designs, implements, and maintains secure, scalable cloud infrastructure; manages Entra ID and access controls; deploys and monitors SIEM capabilities; supports Windows Server lifecycle and hybrid networking; uses Terraform for IaC; integrates AI-powered security; participates in threat modeling and audits; drives automation for patching and provisioning; collaborates with cross-functional teams; contributes to runbooks and documentation; provides on-call after-hours support from the Chicago office.
Required Qualifications
- 5+ years of experience supporting an enterprise in a team environment
- 3+ years working with cloud-native networking (Azure/AWS) including configuring Azure Virtual Networks, subnets, Network Security Groups, route tables, VNet peering, VPN Gateways, and Azure Firewall, plus equivalent AWS constructs (VPCs, Transit Gateways, Security Groups)
- 3+ years hands-on experience administering Windows Server environments in a large enterprise (patch management, Active Directory, hybrid identity)
- 1+ years of Cisco or Meraki experience (Palo Alto a plus)
- Microsoft Azure certification (AZ-104 or AZ-500) is a plus
- Solid working knowledge of Microsoft Entra ID (Conditional Access, RBAC, PIM) and hybrid identity integration with on-premises Active Directory
- Proficiency in PowerShell scripting for automation; Python or Bash a plus
- Hands-on experience designing, deploying, and securing infrastructure in both Azure and AWS (IAM, VNets/VPCs, storage, compute)
- Strong working knowledge of Azure PaaS services (Azure App Service, Azure SQL, Azure Monitor, Azure Key Vault)
- Experience with infrastructure-as-code tooling (Terraform) and maintaining IaC modules in a version-controlled environment
- Solid hands-on networking experience (switching, routing, VLANs, firewall rules, network segmentation); direct experience with Cisco/Meraki preferred
- Comfortable providing on-site support in the Chicago office and occasionally at other locations for network hardware installation, configuration, troubleshooting, and lifecycle management
- Familiarity with zero-trust networking, network segmentation, and security zoning in hybrid environments; experience with SIEM, endpoint protection, or cloud-native security tooling is a plus
- What We Offer: learning and development resources, internal mobility, referral program, ERGs, paid time off and holidays, parental leave, comprehensive benefits, flexible spending accounts, health savings account, disability and life insurance, pet insurance, legal resources
- Must be able to perform essential duties and meet the required experience levels described
Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.