Senior Infrastructure Engineer (Active Directory and PowerShell)

Workplace
On-site

About this role

Responsibilities:

  • Managed and optimize detection logic, policies, and configurations across platforms such as SIEM, SOAR, WAF, Firewalls, EDR & NDR, DLP, PAM, IGA, and vulnerability management tools.

  • Provide infrastructure support for Active Directory management and integration with other platforms.

  • Manage infrastructure deployments/releases, and onboarding of web applications into WAF and manage advanced WAF configurations.

  • Oversee firewall rule creation, review, and cleanup to maintain secure and efficient policies.

  • Design and optimize rules in email security gateways to improve filtering and protection.

  • Enhance and fine-tune EPP and EDR policies for better endpoint protection.

  • Ensure secure, scalable, and optimized connectivity across AWS, Azure, and GCP.

  • Translate security use cases into platform-specific configurations and playbooks.

  • Resolve complex performance, availability, and infrastructure-related incidents.

  • Support upgrades (OS/firmware), backup processes, and failover testing.

  • Lead the creation of scheduled reports (can be weekly, monthly, quarterly, and yearly) on platform effectiveness, detection logic performance, policy impact, configuration health, and other application related reports.

  • Lead troubleshooting and incident response for application-layer security issues, networking, system dependencies and platform-level integrations.

  • Collaborate closely with cross functional teams such as SecOps, Governance, and other teams and mentor junior and associate team members, if needed.

  • Build and maintain automation scripts and workflows for repetitive tasks such as using PowerShell.

 

Qualifications:

  • At least 5 to 10 years in infrastructure support or security engineering.

  • Proficient in cloud platforms (AWS, Azure, GCP), networking fundamentals, and OS level management.

  • Exposure to cybersecurity tools and experience supporting their infrastructure components such as Endpoint, Data Security or IAM platforms

  • Has strong expertise in creation of group policies (GPO) administration, and Active Directory authentication (i.e.Kerberos and NTLM), architecture (i.g. Forest, Tree and domains) and implementation (e.g. AD hardening).

  • Perform migration and decommission of domain controllers in the infrastructure.

  • Has experience in scripting or automation experience in Active Directory, ideally PowerShell. This skill is an advantage.

Work Arrangement: Should be amendable to work 100% onsite in Ortigas and shifting

General requirement: The candidate should be willing to work on field especially if there are deployments (Makati/BGC), if needed. Indra and client will provide transportation vehicle (i.e. van) and this will be a scheduled deployment/configuration. 

Also, candidate should be willing to support other Platform operation teams and vice versa, if needed and possible

 

Tired of cold applications?

Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.

Know someone who'd be great for this?