Job Closed
This listing is no longer active.
At Gresham, we are committed to building a diverse and inclusive workforce that reflects the communities we serve. We actively encourage applications from individuals of all backgrounds and are dedicated to providing a workplace where everyone feels valued, respected, and supported. We make employment decisions based on merit, skills, and potential, and do not discriminate based on any protected characteristic. We are also committed to making reasonable adjustments throughout the recruitment process and employment lifecycle.
Cloud Windows Infrastructure Engineer
Location
Brazil
Posted
70 days ago
Salary
0
Seniority
Mid Level
Job Description
Cloud Windows Infrastructure Engineer
Gresham
Role Description As Senior Windows Infrastructure Engineer, you are the technical anchor for the Windows estate that powers Gresham's managed services platform — a multi-client environment hosted on AWS. The work is grounded in deep Windows Server operations: - Active Directory - IIS - Hybrid identity - Group Policy - PowerShell - Certificate services - The wider Microsoft ecosystem AWS is the platform on which all of this runs. Comfort with the cloud layer matters and you will operate it daily, but it is the Microsoft stack — and its operational nuance — that defines this role. We hire for deep Windows expertise first; the cloud layer is something a strong sysadmin can absorb. The estate is Windows Server 2019 and above, end-to-end. Linux footprint is negligible — this is a role for someone who wants to go deep on the Microsoft stack rather than be spread thin across platforms. This is a 100% individual contributor role. You will not manage or lead a team. You will own complex incidents end-to-end, set technical standards by example, and act as the senior escalation point for the Cloud Support function. Qualifications - 7+ years operating Windows Server in production, with deep hands-on experience on Windows Server 2019 and above. - Active Directory at depth: forest/domain design, replication, FSMO roles, trusts, sites & services, schema, tombstone & recovery. - Group Policy at scale: design, troubleshooting (RSoP, gpresult), security baselines, WMI filtering. - IIS at depth: site & app pool configuration, ARR, URL Rewrite, SSL/TLS, failed request tracing, performance tuning. - DNS, DHCP, WSUS, and Active Directory Certificate Services (AD CS) — real operational experience. - Advanced PowerShell: scripting, modules, remoting, error handling, automation patterns, DSC familiarity. - Windows patching at scale: planning, deployment, rollback, and troubleshooting in regulated environments. - Windows performance troubleshooting: PerfMon, ETW, memory dump analysis, IIS request diagnostics. - Hybrid identity: AD on-prem ↔ cloud, Entra ID (Azure AD) Connect / federation, AD FS. - SAML 2.0, OIDC, OAuth 2.0, Kerberos, LDAP, MFA — practical implementation and troubleshooting. - Certificate management and PKI in enterprise Windows environments. - Day-to-day comfort operating Windows workloads in AWS: EC2, EBS, VPC, IAM, Route 53, CloudWatch. - AWS Systems Manager for Windows fleet management: Patch Manager, Session Manager, Run Command, State Manager, Parameter Store. - AWS Directory Service / Managed Microsoft AD / AD Connector. Requirements - Strong ITIL grounding: incident, problem, change, and service lifecycle management. - Prior experience in an MSP or shared-services environment — multiple client estates managed under SLA. - Advanced / fluent professional English, written and spoken. - Reliable, distraction-free home office with stable broadband (100 Mbps+ recommended), reliable power, and a professional video setup. - Ability to work New York-aligned hours consistently, with the same presence and responsiveness as an office-based colleague. Benefits - This role is 100% remote and 100% individual contributor. - You will operate aligned to New York business hours (08:30–17:30 ET). - Typical Brazil hours: 09:30–18:30 BRT during EDT (US summer) and 10:30–19:30 BRT during EST (US winter). - Quiet, ergonomic workspace with stable broadband (100 Mbps+ recommended), reliable power, and a professional video / audio setup. - Participation in a senior escalation rota for major incidents — compensated in line with policy. Equal Opportunities Statement At Gresham, we are committed to building a diverse and inclusive workforce that reflects the communities we serve. We actively encourage applications from individuals of all backgrounds and are dedicated to providing a workplace where everyone feels valued, respected and supported. We make employment decisions based on merit, skills and potential, and do not discriminate based on any protected characteristic. We are also committed to making reasonable adjustments throughout the recruitment process and employment lifecycle.
Related Guides
Related Categories
Related Job Pages
More Infrastructure Engineer Jobs
DevSecOps needed. SRE? Platform Engineer? Whatever you call it, we need you. About JTX JTX is Jito Labs' consumer trading product — a high-performance trading terminal built on Solana. We're a lean, high-output team building something that sits at the intersection of execution quality, user experience, and on-chain infrastructure. We own a meaningful portion of Solana's block production, and JTX is how we bring that edge directly to traders. The Role This is a high-ownership IC role. The stack is designed. Now it needs someone who can own it, harden it, automate it, and make sure it stays up while traders are trading. You will be running globally distributed infra and you'll be the person who cares most about it (this is an extremely high ownership role). You'll work directly with engineering leadership. No ticketing system standing between you and a decision. If something is broken, it's your problem. If something can be automated, you'll automate it. If something is insecure, you'll fix it before anyone notices. Get shit done!
• Own the day-to-day health, stability, and performance of assigned business applications. • Act as the primary point of contact for application-related questions, issues, enhancements, and operational support. • Partner with business stakeholders to understand application needs, prioritize requests, and ensure the application supports business processes. • Coordinate with IT support, infrastructure, security, vendors, and development teams to resolve incidents and implement changes. • Monitor application performance, availability, integrations, and recurring issues; drive improvements to reduce risk and downtime. • Manage application lifecycle activities, including upgrades, patches, releases, configuration changes, and retirement planning. • Ensure application documentation is maintained, including ownership details, support processes, data flows, integrations, access controls, and recovery procedures.
Infrastructure Specialist
KyndrylWe design, build, manage and modernize the mission-critical technology systems that the world depends on every day.
• Infrastructure Specialists at Kyndryl are project-based subject matter experts in all things infrastructure – good at providing analysis, documenting and diagraming work for hand-off, offering timely solutions, and generally “figuring it out.” • contributing to current projects where you analyze problems and tech issues, offer solutions, and test, modify, automate, and integrate systems. • long-range strategic planning of IT infrastructure and operational execution. • involved early to offer solutions, help decide whether something can be done, and identify the technical and timeline risks up front. • dealing with both client expectations and internal challenges. • enjoy deep involvement throughout the lifespan of a project, as well as the chance to work closely with Architects, Technicians, and PMs. • find the right opportunities and a buddy to support your growth.
Cloud & IT Infrastructure Engineer
32CoWe help clinicians provide more specialist treatments to their patients
• Deploy, manage, and optimise cloud VMs (Azure Virtual Desktop and/or AWS WorkSpaces) for 60+ remote contractors across India, Egypt, and the Philippines • Own on/offboarding workflows, access provisioning, monitoring, and incident response • Architect the VM estate as we scale, including platform decisions (AWS vs Azure) and cost optimisation • Own the core treatment planning application used by our designer team - end to end: server performance, database management, disk space, version updates, and multi-server architecture as we grow • Build runbooks and escalation paths so day-to-day application issues are handled without senior engineers being the only escalation path • Work directly with the software vendor on scaling and architectural decisions • Enrol and manage all company laptops via Microsoft Intune MDM, enforcing encryption, antivirus, and patch compliance • Administer users, licences, SSO, and security settings across the organisation • Be the primary point of contact for IT support across 40 London staff and 60+ remote contractors • Own account creation, access provisioning, and tool permissions end-to-end for all new starters and leavers • Support 32Co's ISMS and GDPR, ISO 27001 and HIPAA compliance programmes • Patching, monitoring, licensing management, and capacity planning across all systems



