Job SummaryThe Full Stack Infrastructure Engineer is responsible for designing, analyzing, implementing, and supporting technology systems for the China offices. This role involves leading Proof of Concept (PoC), Request for Proposal (RFP), and Request for Enhancement (RFE) initiatives, collaborating with global technology teams, and ensuring compliance with firm policies. The engineer will work with networks, security design, risk, proxy, and Windows teams, as well as external vendors, to deliver robust and secure infrastructure solutions. The position also includes hands-on involvement with IoT systems such as building management, lighting controls, occupancy, and air quality monitoring.
Key Responsibilities- Lead PoC/RFP/RFE initiatives across diverse platforms.
- Administer applications with full lifecycle ownership, ensuring seamless request flow and network integration.
- Manage network and security configurations including routers, switches, load balancers, proxies, firewalls, DMZ setups, IPs, ports, subnets, MAC addresses, and authentication protocols (RBAC, Kerberos, SSO, LDAP, AD).
- Perform server administration across Windows, Linux, Mac, and vendor ecosystems (CA, BMC, IBM DataPower).
- Develop automation scripts using PowerShell, Python, Perl, or Shell.
- Collaborate with DevOps teams to support CI/CD pipelines and cloud infrastructure.
- Engage stakeholders to understand requirements, provide updates, and ensure satisfaction.
- Support IoT/OT devices across multiple platforms (Android, Windows, Linux, Unix, iOS).
- Work with SecDesign teams to design and apply appropriate controls and processes.
- Collaborate with vendors to ensure compliance and future-proof systems.
Required Qualifications- Bachelor's or Master's degree in Computer Science, Information Technology, or related field.
- Application administration expertise with end-to-end request flow and network integration.
- Network and security expertise across layers, configurations, and authentication flows.
- Server administration proficiency across multiple platforms and vendor systems.
- Automation scripting expertise with strong logic and scripting skills.
- Strong communication skills for clear and effective collaboration.
- Strong stakeholder management and interpersonal skills.
- Proficiency with CI/CD DevOps practices and tools.
- Exposure to cloud technologies (AWS, Azure, GCP).
- Expertise in IoT/OT device support across multiple platforms.
Preferred Qualifications (if any)- Experience with vulnerability scanning tools (Tenable, Qualys, Rapid7, Nessus).
- Exposure to endpoint security tools (Microsoft Defender, CrowdStrike).
- Experience with patch management tools (Tanium, BigFix, SCCM).
- Familiarity with ServiceNow Vulnerability Response module.
- Knowledge of risk scoring (CVSS, EPSS) and threat intelligence integration.
- Experience with configuration hardening and compliance monitoring.
- Exposure to container and Kubernetes security.
- Strong differentiator: IoT/OT vulnerability managemen t.
Certifications (if any)- Certifications in network, security, or cloud technologies (e.g., CCNA, AWS, Azure) are a plus.