Ermi is seeking an experienced Senior IT Systems & Security Engineer to take hands on responsibility for the technology environment supporting our medical device organization.
This is a hands on technical role, not a policy only, advisory only, or vendor oversight position. We are looking for someone who has personally configured, administered, implemented, secured, troubleshot, and maintained enterprise technology in a production environment.
You should be comfortable moving between day to day IT operations and larger technology initiatives. One day may involve resolving an endpoint or network issue, and the next may involve improving security controls, administering Google Workspace, reviewing system access, working with a technology vendor, testing backups, or supporting a new system implementation.
This position offers broad technical ownership across cybersecurity, infrastructure, cloud technology, Google Workspace, Microsoft technologies, networking, enterprise applications, and healthcare information security.
Full time, in person position in Atlanta, Georgia. It is not a remote or hybrid role.
WHAT YOU WILL OWN
- Administer, maintain, secure, and improve Ermi's business technology, endpoints, networks, cloud services, and enterprise systems.
- Provide direct technical support for Windows and Mac computers, mobile devices, applications, printers, conference room technology, user accounts, and related employee technology.
- Administer and secure Google Workspace, including Gmail, Drive, Shared Drives, Admin Console, Vault, Groups, users, permissions, security settings, retention, and sharing controls.
- Support Microsoft and Windows technologies used by Ermi, including Microsoft 365, Entra ID, Intune, Defender, Teams, SharePoint, and related services as applicable.
- Configure and troubleshoot Wi‑Fi, routers, switches, firewalls, VPNs, DNS, DHCP, network connectivity, and secure remote access.
- Implement and maintain cybersecurity controls, including multifactor authentication, identity and access management, endpoint protection, email security, encryption, patching, vulnerability remediation, logging, and monitoring.
- Manage employee technology onboarding and off boarding, including accounts, permissions, devices, authentication, and system access.
- Maintain systems handling PHI or ePHI in accordance with applicable HIPAA and HITECH requirements.
- Support security risk assessments, vulnerability reviews, remediation efforts, incident response, business continuity, and disaster recovery activities.
- Maintain and test backup and recovery capabilities for critical systems and company data.
- Monitor system availability, performance, capacity, security, and operational health and resolve recurring technology problems at their source.
- Participate directly in the implementation, configuration, testing, and improvement of enterprise applications and cloud based technologies.
- Work with software vendors, managed service providers, telecommunications providers, consultants, and other technology partners while maintaining sufficient internal technical knowledge to evaluate their work.
- Maintain accurate system documentation, network information, inventories, configurations, procedures, and administrative records.
- Work collaboratively with Compliance, Quality, Legal, Operations, and other departments when technology intersects with privacy, regulatory, or business requirements.
MUST HAVE
- 5 or more years of progressively responsible, hands on IT experience involving systems administration, infrastructure, cybersecurity, networking, cloud technology, enterprise applications, or related technical responsibilities.
- Demonstrated hands on experience administering and securing Google Workspace.
- Hands on experience supporting Microsoft and Windows based enterprise environments.
- Hands on experience configuring and troubleshooting networks, WiFi, firewalls, VPNs, routers, switches, DNS, DHCP, and related infrastructure.
- Hands on experience administering identity and access management, including user provisioning, permissions, multifactor authentication, and account security.
- Experience directly implementing or maintaining endpoint protection, email security, vulnerability remediation, patch management, encryption, security monitoring, or comparable cybersecurity controls.
- Experience troubleshooting complex technical problems across endpoints, networks, applications, accounts, authentication, and cloud services.
- Experience maintaining backup and recovery technologies and verifying restoration capabilities.
- Working knowledge of HIPAA and HITECH and an understanding of how healthcare privacy and security requirements translate into practical IT controls for PHI and ePHI.
- Experience working with confidential, sensitive, or regulated information.
- Strong technical documentation, troubleshooting, problem solving, organization, and communication skills.
- Ability to work independently while recognizing when specialized security, compliance, regulatory, legal, or technical expertise should be engaged.
- Ability to work effectively with employees, business leaders, vendors, and cross functional teams.
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Information Systems, Computer Engineering, or a related field, or an equivalent combination of relevant education, certifications, training, and substantial professional experience.
- Must be able to work full time, in person, in Atlanta, Georgia.
HANDS ON EXPERIENCE MATTERS
Candidates should be prepared to discuss specific examples of systems, networks, security controls, applications, or technologies they have personally configured, administered, implemented, troubleshot, secured, or restored.
Experience that is primarily limited to project oversight, vendor management, policy development, consulting recommendations, or theoretical knowledge without direct technical implementation experience will not meet the requirements of this position.
NICE TO HAVE
- Experience in a medical device, healthcare, pharmaceutical, life sciences, or other regulated environment.
- Familiarity with FDA regulated technology environments.
- Familiarity with the FDA Quality Management System Regulation under 21 CFR Part 820 and ISO 13485:2016.
- Familiarity with 21 CFR Part 11 requirements for applicable electronic records and electronic signatures.
- Experience supporting regulated systems in partnership with Quality, Compliance, Regulatory, or Legal teams.
- Experience supporting computer software assurance, system validation, change control, data integrity, or other regulated technology processes.
- Experience with AWS, Microsoft Azure, Google Cloud Platform, or comparable cloud technologies.
- Experience supporting CRM, quality management, patient support, analytics, ERP, or other enterprise business platforms.
- Understanding of APIs, application integrations, databases, authentication methods, data flows, and enterprise system dependencies.
- Experience troubleshooting application integrations or interconnected enterprise systems.
- Experience with SIEM, endpoint detection and response, vulnerability management, data loss prevention, identity governance, or security monitoring technologies.
- Experience with CI/CD, source control, deployment automation, configuration automation, or DevOps practices.
- Experience developing architecture diagrams, technical standards, system documentation, or technology roadmaps.
- Experience evaluating or implementing enterprise AI technologies with appropriate privacy, security, and data governance controls.
PREFERRED CERTIFICATIONS
Relevant professional certifications are valued, including:
- CISSP, Certified Information Systems Security Professional
- CISM, Certified Information Security Manager
- CCSP, Certified Cloud Security Professional
- CHPS, Certified in Healthcare Privacy and Security
- Relevant Google Workspace, Microsoft, AWS, Azure, Google Cloud, Cisco, cybersecurity, cloud, or networking certifications
Certifications are preferred, not required. Equivalent demonstrated professional experience will be considered, and certification alone does not replace hands on technical experience.
WHY ERMI
For more than 30 years, Ermi has focused on helping patients recover from severe motion loss.
This role offers something different from a narrowly defined enterprise IT position. You will have meaningful ownership across multiple areas of technology and the opportunity to strengthen the systems, security, infrastructure, and technical practices supporting a growing medical device organization.
We are looking for someone who enjoys solving problems, improving systems, and taking responsibility for making technology work reliably and securely.
Learn more about Ermi at www.ermi-motion.com.
Ermi, LLC is an Equal Opportunity Employer. Reasonable accommodations are available to qualified individuals with disabilities in accordance with applicable law.