Job Title: IT Infrastructure Compliance Engineer
Engagement Type: Contract to Hire
Duration: 12 months, with potential conversion to full-time — immediate start required due to urgent business need
Location: Santa Clara, CA (on-site presence required, with periodic domestic/international travel to partner sites)
Role Overview
Seeking a highly skilled IT Infrastructure Compliance Engineer to join a fast‑paced enterprise technology organization. This role is ideal for a strong infrastructure engineer who can evaluate the security, compliance, and operational resilience of interconnected systems linking internal operations to external partners. The position plays a critical role in safeguarding infrastructure, data integrity, and third‑party integrations across a complex, global technology ecosystem. This is an urgent, immediate need — candidates should be prepared to start as soon as possible.
Key Responsibilities
- Plan, lead, and execute IT and security audits covering infrastructure, enterprise applications (including MES, PLM, and ERP/SAP), and supply chain B2B integrations.
- Evaluate the IT risk and security posture of external partners, assessing compliance with security standards, data protection protocols, and intellectual property safeguards.
- Serve as a primary on‑site IT point of contact for regional stakeholders, coordinating with remote and global IT teams across networking, storage, and application domains; manage urgent escalations with third‑party IT vendors on connectivity, servers, and production systems.
- Audit network segmentation, access controls, APIs, and data transmission protocols supporting automated data exchange between internal systems and external facilities.
- Evaluate IT environments against industry frameworks (e.g., ISO 27001, SOX) to ensure data privacy, financial integrity, and regulatory compliance.
- Assess the accuracy and completeness of operational data and metrics flowing from partner systems into internal data warehouses, using data analytics tools to identify anomalies or control gaps.
- Draft clear, actionable audit reports for leadership and track remediation efforts to ensure identified risks are effectively resolved.
Required Qualifications
- Bachelor's degree in Management Information Systems, Computer Science, Cybersecurity, Supply Chain Management, or a related technical field (or equivalent experience).
- 8+ years of experience in IT Audit, IT Security, IT Infrastructure, or Technology Risk Management.
- Strong hands‑on infrastructure expertise, including Windows/Unix server administration, virtualization, and enterprise storage systems.
- Solid network audit expertise, including TCP/IP routing, firewall policy configuration, and core protocols (DNS, DHCP, HTTPS, SSH) to independently verify system security and compliance controls.
- Familiarity with cloud security (AWS/Azure) and identity and access management (IAM).
- Exceptional verbal and written communication skills, with the ability to translate complex technical risk into terms both technical and non‑technical stakeholders can act on.
- Ability to travel domestically and internationally (up to 15–20%) to support on‑site partner assessments as needed.
Preferred Qualifications
- Experience in IT audit, security, or risk management within high‑tech or manufacturing environments.
- Domain knowledge of automated manufacturing environments, supply chain logistics, and B2B integration technologies (e.g., EDI, APIs, SFTP).
- Familiarity with Shop Floor Control and Manufacturing Execution Systems (MES).
- Professional certification such as CISA (Certified Information Systems Auditor) or CISSP (Certified Information Systems Security Professional).
- Hands‑on experience with data analytics and visualization tools (e.g., SQL, Python, Tableau, or Power BI) to automate audit testing.
- Experience auditing intellectual property (IP) protection controls in a collaborative engineering or manufacturing environment.
- Proven ability to drive and coordinate third‑party IT teams remotely; energetic, proactive, and comfortable communicating with both IT and non‑IT personnel.
Tools & Technologies
- Manufacturing Execution Systems (MES) and Product Lifecycle Management (PLM) platforms
- Identity and Access Management (IAM) tools
- SQL, Python, Tableau, Power BI
- Networking protocols: TCP/IP, DNS, DHCP, HTTPS, SSH