Senior Systems Architect New
Role details
Job location
Tech stack
Job description
As Senior Systems Architect, you will own the architectural vision for SimplePart's infrastructure: maintaining the reliability and security of our current global colocation datacenter environment while designing and driving the plan for modernization.
You'll be a hands-on architect working across four colocation datacenters (Atlanta, Amsterdam, London, Portland), responsible for network design and operations, security posture, compliance readiness, and architecture.
Beyond the technical work, you'll serve as a technical leader through mentoring junior engineers, setting standards, and helping shape the direction and capabilities of the infrastructure organization as we grow., Network Architecture & Operations
- Own the design, implementation, and ongoing optimization of network architecture across all colocation sites and cloud environments.
- Architect and manage network segmentation, VLANs, VPN tunnels, routing, DNS, and DHCP across a geographically distributed infrastructure.
- Administer and optimize pfSense firewalls and Snort IDS/IPS, ensuring network integrity and compliance with segmentation requirements.
- Cloudflare WAF and proxy configurations to protect public-facing dealer websites and e-commerce applications.
- Design hybrid connectivity solutions bridging on-premises datacenters and AWS as workloads migrate.
Infrastructure & Systems Architecture
- Design, maintain, and optimize Windows Server environments (2016-2022) across production, staging, and development tiers.
- Manage Active Directory, IIS, Group Policy, and supporting services for 3k+ dealer websites.
- Manage Proxmox virtualization environments, optimizing resource allocation and infrastructure flexibility.
- Oversee and improve server patching cadence and compliance across all environments.
- Design and maintain comprehensive disaster recovery and backup strategies.
- Participate in a 24/7/365 on-call rotation for critical incident response.
Cloud Migration & Modernization
- Evaluate and recommend cloud-native replacements for on-premises services across compute, storage, networking, and monitoring.
- Architect infrastructure to support the modernization of SimplePart's application stack and data platform, including migration from legacy systems.
- Establish infrastructure-as-code practices (Terraform, CloudFormation, or equivalent) and cloud operational standards.
Security, Compliance & Risk
- Serve as a primary technical resource for PCI DSS 4.0 audit readiness and ongoing compliance across all applicable requirements.
- Support ISO 27001 compliance maintenance and contribute to SOC 2 certification efforts.
- Oversee vulnerability assessments using Tenable/Nessus and drive remediation priorities across the environment.
- Maintain and improve security tooling: Microsoft Defender, DUO MFA, and Cloudflare security configurations.
- Ensure cryptographic standards, access controls, and segmentation testing meet current compliance requirements.
- Maintain detailed documentation for network diagrams, system designs, configurations, and compliance artifacts.
Technical Leadership
- Serve as the senior technical authority on the infrastructure and security team, setting architectural direction and standards.
- Mentor and develop junior team members through hands-on guidance and knowledge sharing.
- Drive technical decision-making and build a culture of documentation, automation, and continuous improvement.
- Collaborate cross-functionally with development, product, and executive leadership on modernization planning and roadmap execution.
Requirements
Do you have experience in Windows?, Do you have a Bachelor's degree?, * 7+ years of experience in systems engineering, infrastructure architecture, or a similar senior technical role.
- Deep networking expertise: demonstrated experience designing and managing enterprise network architectures including segmentation, VLANs, VPNs, routing protocols, DNS, and DHCP.
- Strong firewall management experience and working knowledge of IDS/IPS systems.
- Hands-on experience with Windows Server environments, Active Directory, IIS, and Group Policy at scale.
- Advanced PowerShell scripting for automation, system administration, and infrastructure management.
- Experience with virtualization platforms (Proxmox, Hyper-V, or VMware).
- Working knowledge of PCI DSS compliance requirements and audit processes.
- Demonstrated ability to lead, mentor, and elevate a technical team.
- Strong documentation practices and ability to communicate architectural decisions to technical and non-technical audiences.
- Bachelor's degree in Computer Science, Information Technology, or related field or equivalent professional experience., * Experience planning and executing datacenter-to-cloud migrations, AWS experience preferred.
- Familiarity with ISO 27001 and/or SOC 2 compliance frameworks.
- Experience with WAF, proxy, and DDoS mitigation configurations.
- Familiarity with SQL Server administration, replication, and high-availability patterns.
- Experience in e-commerce, SaaS, or automotive industry environments.