Greater Chicago Area | Hybrid | Full-time
Salary: $115,000 – $140,000 base + annual bonus and full benefits
We are partnering with a global industrial technology manufacturer to hire a hands-on Infrastructure & Security Engineer. This role supports one of the company's manufacturing business units and blends enterprise infrastructure administration, cybersecurity engineering, and Level 2/3 technical support. It is a great fit for an engineer who enjoys moving between hands-on systems work and security controls, and who wants visibility across IT, Security, and Compliance.
What you will do
- Design, implement, and maintain security technologies and controls across identity, endpoint, server, network, cloud, email, and data environments
- Administer and secure Active Directory, Windows Server, endpoint management, and patch management in partnership with corporate and site IT teams
- Monitor endpoint protection, vulnerability management, and Managed Detection and Response (MDR) services
- Investigate security alerts and malware events, coordinate containment and remediation, and drive lasting corrective actions
- Lead risk-based OS and third-party patching, from prioritization and testing to deployment and verification
- Maintain secure configuration baselines, technical standards, documentation, and audit evidence
- Act as a Level 2/3 escalation point for infrastructure and security issues, including servers, storage, backups, and network troubleshooting
- Support ISO/IEC 27001, NIST SP 800-171, and CMMC initiatives through control-gap reviews, remediation plans, and assessment support
- Build automation with PowerShell, Python, and APIs, and responsibly apply AI tools to speed up security analysis and repetitive workflows
What you bring
- Bachelor's degree in Cybersecurity, Computer Science, IT, Engineering, or equivalent practical experience
- 3–5+ years of experience in infrastructure engineering, systems administration, or cybersecurity engineering
- Strong hands-on background with Active Directory, Windows Server and endpoints, identity and access, networking fundamentals, and patch management
- Practical knowledge of system hardening, vulnerability management, incident response, and security-event investigation
- Ability to translate security requirements into clear technical controls and documentation
- Strong communication skills and ability to work across technical teams, business functions, and locations
- Willingness to travel to supported sites as needed
Nice to have
- Experience with ISO/IEC 27001, NIST SP 800-171, CMMC, or NIST CSF
- Microsoft security stack: Entra ID, Defender, Sentinel, Intune, Configuration Manager, Purview
- Experience in manufacturing or multi-site environments, including OT/IT awareness
- Certifications such as Security+, SSCP, GSEC, or Microsoft security credentials (CISSP a plus)
Why this role
- Broad scope with real ownership across infrastructure and security
- Direct exposure to compliance frameworks that are in high demand in the market
- Stable, global organization with strong investment in cybersecurity