Senior Infrastructure Engineer

Paschal Air, Plumbing & Electric
Springdale, AR, United States
25 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Active Directory Systems Engineering User Authentication Microsoft Azure Backup Devices Microsoft Online Services Cloud Computing CompTIA Security+ Cyber Security Dynamic Host Configuration Protocol Network Address Translation
+27 more
Disaster Recovery Domain Name System (DNS) Firmware Monitoring of Systems Hyper-V Identity and Access Management Subnetting Virtual Private Networks (VPN) Windows Servers Network Diagrams Network Monitoring Routing Windows PowerShell Role-Based Access Control Azure Active Directory Cloud Services Security Information and Event Management TCP/IP Virtual Local Area Networks Software Vulnerability Management Wireless Networks Firewalls (Computer Science) Microsoft InTune Fortinet Cisco User Administration Vmware

Job description

We are seeking an experienced Senior Infrastructure Engineer to own the architecture, security, and reliability of the core network and systems infrastructure supporting our growing organization. This is a hands-on engineering role spanning enterprise networking, cybersecurity, Microsoft cloud and identity, Windows infrastructure, and core network services.

You will work alongside our Technical Support Analysts, providing technical leadership, architectural direction, and escalation support while they handle much of the day-to-day Microsoft 365, endpoint, and user administration. This role is responsible for the design and health of the overall environment, with direct ownership of networking and core infrastructure services.

We are looking for an engineer who takes ownership, solves problems at their root cause, and continually improves how our technology environment is designed, secured, documented, and operated.

What You’ll Do

Network Engineering & Security

  • Design, implement, and support multi-site wired and wireless infrastructure using Ruckus Networks.
  • Configure and maintain Fortinet/FortiGate firewalls, VPNs, security policies, and related Fortinet technologies.
  • Manage routing, switching, VLANs, wireless, site-to-site connectivity, NAT, and firewall services.
  • Own DNS and DHCP architecture, configuration, availability, and troubleshooting.
  • Monitor network performance and security, troubleshoot complex issues, and perform root-cause analysis.
  • Plan and execute network expansions, equipment refreshes, firmware upgrades, and new-location deployments.
  • Maintain network diagrams, configurations, standards, and recovery documentation.

Infrastructure, Identity & Core Services

  • Own the architecture, security, and overall health of Microsoft 365, Active Directory, Microsoft Entra ID, and Windows Server infrastructure.
  • Design identity and access standards including MFA, Conditional Access, role-based access, privileged access, and Group Policy.
  • Engineer and maintain core infrastructure services including DNS, DHCP, file services, Group Policy, and hybrid identity.
  • Provide technical leadership and escalation support to the Technical Support Analysts for Microsoft cloud, identity, endpoint, and user administration.
  • Lead infrastructure upgrades, migrations, patching strategy, backup/recovery planning, and lifecycle management.
  • Troubleshoot and resolve complex identity, authentication, server, file-service, and cloud infrastructure issues.

Infrastructure, Security & Improvement

  • Develop infrastructure standards that improve security, reliability, scalability, and operational consistency.
  • Lead infrastructure deployments, migrations, upgrades, technology refreshes, and new-location implementations.
  • Identify technical risks and implement improvements related to security, system hardening, backup/recovery, and disaster recovery.
  • Evaluate new technologies and vendors and make recommendations based on business value, security, reliability, and cost.
  • Automate repetitive administration and engineering tasks using PowerShell and other appropriate tools.
  • Serve as the highest level of technical escalation for infrastructure, networking, and systems issues., Success in this role means building and maintaining a secure, reliable, and scalable infrastructure that supports Paschal’s continued growth. You’ll serve as the technical owner of our core infrastructure, establish engineering standards, guide the Technical Support Analysts, and proactively improve the environment through thoughtful design, automation, and continuous improvement.

Work Environment

This is a full-time position based in Northwest Arkansas. Because the role supports physical network and infrastructure equipment across a multi-location organization, occasional hands-on work at company locations will be required when necessary.

Some work outside normal business hours may occasionally be required for planned maintenance, deployments, infrastructure upgrades, or critical incidents.

Requirements

  • 5+ years of professional experience in network engineering, systems engineering, infrastructure engineering, or a comparable role.

  • Strong hands-on experience with Fortinet/FortiGate firewalls and Ruckus Networks switching and wireless infrastructure.
  • Strong networking fundamentals including TCP/IP, subnetting, VLANs, routing, switching, DNS, DHCP, NAT, VPNs, and firewall technologies.
  • Strong working knowledge of Microsoft 365, Active Directory, Group Policy, Microsoft Entra ID, and Windows Server.
  • Experience designing and supporting identity security controls such as MFA and Conditional Access.
  • Strong understanding of cybersecurity fundamentals including segmentation, least privilege, system hardening, vulnerability management, and secure administrative practices.
  • Strong troubleshooting skills across networking, systems, identity, and cloud services, with the ability to take ownership through resolution.
  • Strong communication and technical documentation skills, including the ability to provide technical guidance to support staff.

Preferred Experience & Certifications

Demonstrated technical ability and hands-on experience matter more than collecting credentials. Relevant certifications and additional experience include:

  • Fortinet Certified Professional (FCP) or other current Fortinet certification.
  • Current Ruckus/CommScope networking or wireless certification.
  • Microsoft certification related to Microsoft 365, Entra ID, Azure, or Endpoint Administration.
  • Cisco CCNA or higher-level networking certification; CompTIA Security+ or equivalent security certification.
  • Experience with Microsoft Intune, PowerShell automation, VMware/Hyper-V, EDR, SIEM, vulnerability management, enterprise backup/disaster recovery, or infrastructure monitoring.

Benefits & conditions

Pulled from the full job description

  • Health insurance
  • Retirement plan
  • Vision insurance
  • Dental insurance, * Competitive base salary and performance-based incentive opportunity.
  • Full benefits package, including medical, dental, vision, and retirement plans.
  • A strong, stable organization with aggressive growth plans, and leadership support.
  • A privately owned company with long-term leadership stability-not private equity backed.

About the company

Paschal Home Services is a privately held, non-private equity backed home services provider, still growing with 13 locations and 400+ employees. We are building something designed to last-focused on long-term growth, best-in-class culture, and doing things the right way.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

1:40 min

Managing containerized infrastructure with Podman Desktop

Cedric Clyburn Cedric Clyburn +1 · World Congress 2025

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · World Congress 2022

1:41 min

Parallels between cloud and legacy infrastructure lock-ins

Björn Stahl Björn Stahl · World Congress 2024

Videos

See all

Related articles

See all