The Infrastructure Engineer is a hands-on team contributor role, not a leadership position. Reporting to the Director, IT Infrastructure, this role sits on a team of infrastructure engineers and works side-by-side with the Cloud Architect and the Security Manager to help define, build, and maintain our approach to Infrastructure as Code (IaC), backup automation, local plant infrastructure, and broader infrastructure automation across a hybrid Azure and on-prem environment. This role supports both site operations and business projects, requiring regular interaction with local users, manufacturing teams, vendors, and business stakeholders.
This role scripts, builds, and documents automation in close collaboration with the Cloud Architect, the Security Manager, and the rest of the Infrastructure team, reducing manual work and strengthening our security, compliance, resiliency, and operational maturity. Because this role supports projects with real business impact, strong communication and collaboration skills are essential. The engineer will regularly work as part of project teams alongside business stakeholders and local plant teams, not in isolation.
This position supports manufacturing infrastructure, IT/OT convergence, local plant systems, and automation platforms, including factory floor networks, industrial control systems, segmented network design, and vendor escalations. This includes supporting the new automated manufacturing facility and helping bring IT and OT infrastructure together as part of this growth initiative.
This position must be bilingual in Spanish and English. The engineer will need to communicate clearly with local manufacturing teams, vendors, business stakeholders, and IT partners in both languages.
Essential Duties and ResponsibilitiesThe Infrastructure Automation Engineer will:
- Partner with the Cloud Architect and the Security Manager to help define, build, and maintain IaC (Terraform, Bicep/ARM, or equivalent) across our hybrid Azure and on-prem environment
- Support Azure implementation for compute, storage, networking, and identity (Entra ID, Conditional Access, PIM), working closely with the Cloud Architect and the Security Manager
- Help build and maintain CI/CD pipelines for infrastructure changes (Azure DevOps or GitHub Actions), supporting version control and change control (CAB) practices
- Design and maintain automation for immutable backups and disaster recovery processes, in partnership with the Cloud Architect, the Security Manager, and the Infrastructure team
- Support AI-enablement tooling - RAG pipelines, Azure AI Foundry, Copilot/agent integrations - as directed, working with the software engineering and data teams
- Help automate identity, access, and security workflows with the Security Manager in support of Zero Trust initiatives (SSO, Conditional Access, endpoint automation)
- Script and automate recurring IT operations using PowerShell, Python, and Power Automate, following the team's automation-first mandate: do it twice, script it; do it three times, automate it and document it as an SOP
- Support monitoring, alerting, and self-healing automation to reduce manual intervention across hybrid workloads
- Document automation, architecture decisions, and SOPs mapped to SOC 2 / ISO 27001 control requirements
- Participate as a team member on cross-functional automation and AI projects with the business - helping translate requirements into working solutions
- Provide primarily Tier 2 to Tier 3 support, with most work at Tier 3 for automation, Azure, infrastructure, manufacturing systems, and security-related escalations in partnership with the Cloud Architect and the Security Manager
- Perform other duties as assigned
- Partner with manufacturing engineering, local plant teams, and OT vendors to help integrate factory floor systems (PLCs, SCADA, industrial control systems) into the corporate network, with a security-first, segmented design and clear vendor escalation paths
- Support IT/OT convergence for manufacturing locations, including network segmentation, industrial protocol support (e.g., Modbus, OPC-UA, EtherNet/IP), edge computing infrastructure, local plant infrastructure, and vendor escalations
- Help apply IT-30 network segregation standards to manufacturing and OT environments
- Support monitoring and automation needs for OT infrastructure alongside traditional IT systems
Required Qualifications, Skills/CompetenciesEducation & Certification- Bachelor's degree in Computer Science, Information Systems, related field, or equivalent hands-on experience
- Preferred certifications: Microsoft Certified Azure Administrator Associate, Azure AI Engineer Associate, HashiCorp Certified Terraform Associate, or equivalent
Knowledge & Experience- 3-6 years of infrastructure engineering experience, with hands-on Azure experience across compute, storage, networking, and Entra ID
- Experience writing or supporting IaC (Terraform, Bicep/ARM, or equivalent) - repeatable, version-controlled deployments, not one-off scripts
- Experience with configuration management and automation tooling (Ansible, PowerShell DSC, Power Automate)
- Exposure to AI or automation platforms - Azure AI Foundry, OpenAI/Copilot integrations, RAG architectures - a plus
- Strong scripting ability in PowerShell and/or Python - automation is a core part of this role, not a nice-to-have
- Experience operating and integrating hybrid environments that bridge on-prem virtualization (Hyper-V/VMware) with Azure
- Familiarity with CI/CD tooling (Azure DevOps, GitHub Actions) and Git-based version control
- Understanding of identity and Zero Trust concepts (Entra ID, Conditional Access, PIM, SSO)
- Exposure to security/compliance frameworks (SOC 2, ISO 27001) and CAB practices
- Experience with monitoring/observability tooling a plus
- Exposure to OT/ICS environments, industrial networking, or manufacturing automation systems a plus
- Willingness to work on-site frequently at the Texas facility to support commissioning and go-live activities
- Bilingual fluency in Spanish and English is required, including the ability to communicate technical concepts clearly with manufacturing teams, vendors, and business stakeholders
Nice to Have- Containers and Kubernetes experience
- Network automation (Cisco, Cloudflare, or similar programmable network platforms)
- PKI, HSM, or Key Vault / secrets management experience
- Experience in a manufacturing or industrial environment
Personal Attributes (Critical for This Role)- Excellent communicator who can translate automation and AI concepts into plain language for business stakeholders
- Genuinely enjoys project work with the business - comfortable being an active team member on initiatives with non-IT partners, not just working IT-to-IT
- Self-directed and curious; treats automation as a mandate and documentation as part of the job, not an afterthought
- Team player who thrives as part of a growing team - this role collaborates closely with the Cloud Architect and the Security Manager as teammates, executing alongside them rather than setting independent direction
- Logical, detail-oriented, and comfortable clarifying requirements before committing to a solution
- Low-ego and collaborative - willing to learn from others and share credit
- Comfortable with ambiguity and evolving requirements in a fast-moving technology landscape
- Strong analytical and creative problem-solving skills
All Employees- Follow established policies and procedures as outlined in Marmon Foodservice Technologies' Quality Manual and associated documents
- Participate in quality assurance and business improvement activities, including training and improvement projects as defined by the organization
BenefitsWe support your well-being with comprehensive and easy-to-use benefits that you'll be eligible to enroll in on your first day of employment. Here are some of the highlights:
- Medical, Dental, Vision, and Prescription Drug insurance plans
- Access to a Health Advocate who is an expert in Marmon's health plan and can help you select the best health benefits for you and your family
- Tax advantaged spending accounts for health and dependent care expenses
- Wellness programs and resources including Telehealth, Mental Health, Fitness, and Family Planning
- Generous paid time off for personal use, holidays, and parental leave
- Company-sponsored life insurance
- 401(k) with fully vested company match; Marmon may also make an additional annual discretionary contribution to your account, whether or not you contribute on your own
- Financial and retirement advising
Working Conditions: Work is performed largely in an office/hybrid environment, with occasional presence in manufacturing environments. Hours of work will generally be during regular business hours with at least 40 hours a week but may vary according to special projects, deadlines, or other concerns.
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Acknowledgement: This job description describes the general nature and level of work performed by employee assigned to this position. It does not state or imply that these are the only duties and responsibilities assigned to the job. The employee may be required to perform other job-related duties as requested by management. All requirements are subject to change over time and to possible modifications to reasonably accommodate individuals with a disability.
Following receipt of a conditional offer of employment, candidates will be required to complete additional job-related screening processes as permitted or required by applicable law.