Infrastructure Engineer

ALGOLEAP TECHNOLOGIES LLC
Dallas, TX, United States
4 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Amazon Web Services Application Firewall Microsoft Azure Bash Shell Border Gateway Protocol CompTIA Security+ Cyber Security System Configuration Data Transmissions Disaster Recovery Domain Name System (DNS) Cryptographic Protocols
+31 more
Firmware Identity and Access Management Networking Hardware Intrusion Detection and Prevention Intrusion Detection Systems Virtual Private Networks (VPN) Python (Programming Language) Network Security Network Monitoring Routing Open Shortest Path First (OSPF) OAuth Public Key Infrastructure Windows PowerShell Remote Access Technology Ansible Security Assertion Markup Language (SAML) Security Information and Event Management TCP/IP SSL Certificate Management Cloud-native Network Functions (CNF) Transport Layer Security Network Access Control Load Balancing HybridCloud Firewalls (Computer Science) Hashicorp Fortinet TACACS+ Protocol Terraform Big Ip

Job description

We are seeking an experienced and dedicated Infrastructure Engineer specializing in Security, Certificates, and Networks. In this role, you will be responsible for safeguarding our enterprise network infrastructure, managing the lifecycle of digital certificates (PKI), and ensuring secure, high-performance data communication across our hybrid cloud and on-premises environments.

The ideal candidate possesses a deep understanding of network security protocols, hands-on experience automated certificate deployment, and a proven track record of maintaining secure network boundaries.

Key Responsibilities

Public Key Infrastructure (PKI) & Certificate Management

  • LifecycleManagement: Oversee the end-to-end lifecycle (generation,installation, renewal, and revocation) of SSL/TLS and SSH certificatesacross servers, load balancers, and applications.
  • Automation: Implement and manage automated certificate renewal pipelines usingprotocols like ACME and tools such as Venafi, Certbot, or HashiCorp Vault.
  • Compliance: Ensure all internal and external-facing systems comply with corporateencryption and certificate authority (CA) standards (e.g., DigiCert, Let’sEncrypt, Microsoft ADCS).

Network Security & Administration

  • PerimeterSecurity: Deploy, configure, and maintain enterprise firewalls (e.g.,Palo Alto, Fortinet, Check Point), Intrusion Detection/Prevention Systems(IDS/IPS), and Web Application Firewalls (WAF).
  • NetworkConnectivity: Manage secure site-to-site VPNs, remote access VPNs, andsoftware-defined networks (SDN) across hybrid environments.
  • AccessControl: Implement and enforce Network Access Control (NAC) policies,segmenting networks to minimize security risks and control user and deviceaccess.

Monitoring & Incident Response

  • TrafficAnalysis: Monitor network traffic, logs, and alerts via SIEM tools todetect and investigate potential security breaches or anomalous activity.
  • VulnerabilityRemediation: Identify network-level vulnerabilities, coordinate patchmanagement schedules for network appliances, and upgrade firmware toneutralize threats.
  • DisasterRecovery: Maintain and regularly test network recovery configurationsto guarantee business continuity during outages or security incidents.

Requirements

  • Experience: 5+ years of dedicated professional experience in network engineering,infrastructure security, or cyber security operations.
  • CertificateExpertise: Thorough understanding of cryptographic protocols, PKIarchitecture, symmetric/asymmetric encryption, and managing SSL/TLScertificates.
  • CoreNetworking: Deep knowledge of TCP/IP, routing protocols (BGP, OSPF),DNS architecture, and load balancing technologies (e.g., F5 BIG-IP, CitrixADC).
  • SecurityHardware: Hands-on experience configuring and troubleshootingnext-generation enterprise firewalls and cloud network security groups(AWS NSGs / Azure Firewalls).
  • IdentityManagement: Experience with secure protocols like OAuth2, SAML,RADIUS, and TACACS+.

Preferred/Nice-to-Have Skills

  • Proficiencywith Infrastructure as Code (IaC) tools like Terraform or Ansible forautomating network and security configurations.
  • Scriptingcapability (Python, Bash, or PowerShell) to automate certificate renewalsand health checks.
  • Relevantindustry certifications such as CISSP, CCNP Security, CompTIA Security+,or cloud provider security specialties (AWS/Azure).

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on careersingovernment.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:24 min

Evaluating formal AWS certifications versus raw practical engineering experience

Jan Giacomelli · LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · WWC 2022

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all