Make losing weight feel Second Nature.
Cloud Windows Infrastructure Engineer
Location
Brazil
Posted
79 days ago
Salary
0
Seniority
Lead
Job Description
Cloud Windows Infrastructure Engineer
Second Nature
• Lead resolution of complex Windows Server incidents across multi-client, AWS-hosted environments — from triage to root cause to remediation. • Administer and harden Windows Server 2019/2022/2025: Active Directory (forest/domain design, replication, FSMO, GPOs, trusts), DNS, DHCP, IIS, WSUS, AD CS, file & print services. • Operate hybrid identity: AD on-prem ↔ AWS Managed Microsoft AD, federation with Entra ID (Azure AD) / AD FS, SAML / OIDC / OAuth, Kerberos, MFA. • Author and maintain PowerShell automation: bulk administration, scheduled tasks, configuration drift correction, reporting, and DSC where appropriate. • Operate the AWS hosting layer for Windows workloads: EC2, EBS, VPC, IAM, Route 53, CloudWatch, Systems Manager (Patch Manager, Session Manager, Run Command), Backup, Directory Service. • Manage IIS in depth: sites, application pools, bindings, ARR / URL Rewrite, SSL/TLS, failed request tracing, and performance tuning. • Drive observability of the Windows estate: event log strategy, performance baselines, CloudWatch metrics & alarms, Grafana dashboards. • Author runbooks, SOPs, and knowledge base articles to codify operational standards. • Participate in ITIL incident, problem, and change management; act as senior on-call escalation.
Job Requirements
- 7+ years operating Windows Server in production, with deep hands-on experience on Windows Server 2019 and above.
- Active Directory at depth: forest/domain design, replication, FSMO roles, trusts, sites & services, schema, tombstone & recovery.
- Group Policy at scale: design, troubleshooting (RSoP, gpresult), security baselines, WMI filtering.
- IIS at depth: site & app pool configuration, ARR, URL Rewrite, SSL/TLS, failed request tracing, performance tuning.
- DNS, DHCP, WSUS, and Active Directory Certificate Services (AD CS) — real operational experience.
- Advanced PowerShell: scripting, modules, remoting, error handling, automation patterns, DSC familiarity.
- Windows patching at scale: planning, deployment, rollback, and troubleshooting in regulated environments.
- Windows performance troubleshooting: PerfMon, ETW, memory dump analysis, IIS request diagnostics.
- Hybrid identity: AD on-prem ↔ cloud, Entra ID (Azure AD) Connect / federation, AD FS.
- SAML 2.0, OIDC, OAuth 2.0, Kerberos, LDAP, MFA — practical implementation and troubleshooting.
- Certificate management and PKI in enterprise Windows environments.
- Day-to-day comfort operating Windows workloads in AWS: EC2, EBS, VPC, IAM, Route 53, CloudWatch.
- AWS Systems Manager for Windows fleet management: Patch Manager, Session Manager, Run Command, State Manager, Parameter Store.
- AWS Directory Service / Managed Microsoft AD / AD Connector.
- Strong ITIL grounding: incident, problem, change, and service lifecycle management.
- Prior experience in an MSP or shared-services environment — multiple client estates managed under SLA.
- Advanced / fluent professional English, written and spoken.
- Reliable, distraction-free home office with stable broadband (100 Mbps+ recommended), reliable power, and a professional video setup.
- Ability to work New York-aligned hours consistently, with the same presence and responsiveness as an office-based colleague.
Related Guides
Related Categories
Related Job Pages
More Infrastructure Engineer Jobs
DevSecOps needed. SRE? Platform Engineer? Whatever you call it, we need you. About JTX JTX is Jito Labs' consumer trading product — a high-performance trading terminal built on Solana. We're a lean, high-output team building something that sits at the intersection of execution quality, user experience, and on-chain infrastructure. We own a meaningful portion of Solana's block production, and JTX is how we bring that edge directly to traders. The Role This is a high-ownership IC role. The stack is designed. Now it needs someone who can own it, harden it, automate it, and make sure it stays up while traders are trading. You will be running globally distributed infra and you'll be the person who cares most about it (this is an extremely high ownership role). You'll work directly with engineering leadership. No ticketing system standing between you and a decision. If something is broken, it's your problem. If something can be automated, you'll automate it. If something is insecure, you'll fix it before anyone notices. Get shit done!
• Own the day-to-day health, stability, and performance of assigned business applications. • Act as the primary point of contact for application-related questions, issues, enhancements, and operational support. • Partner with business stakeholders to understand application needs, prioritize requests, and ensure the application supports business processes. • Coordinate with IT support, infrastructure, security, vendors, and development teams to resolve incidents and implement changes. • Monitor application performance, availability, integrations, and recurring issues; drive improvements to reduce risk and downtime. • Manage application lifecycle activities, including upgrades, patches, releases, configuration changes, and retirement planning. • Ensure application documentation is maintained, including ownership details, support processes, data flows, integrations, access controls, and recovery procedures.
Infrastructure Specialist
KyndrylWe design, build, manage and modernize the mission-critical technology systems that the world depends on every day.
• Infrastructure Specialists at Kyndryl are project-based subject matter experts in all things infrastructure – good at providing analysis, documenting and diagraming work for hand-off, offering timely solutions, and generally “figuring it out.” • contributing to current projects where you analyze problems and tech issues, offer solutions, and test, modify, automate, and integrate systems. • long-range strategic planning of IT infrastructure and operational execution. • involved early to offer solutions, help decide whether something can be done, and identify the technical and timeline risks up front. • dealing with both client expectations and internal challenges. • enjoy deep involvement throughout the lifespan of a project, as well as the chance to work closely with Architects, Technicians, and PMs. • find the right opportunities and a buddy to support your growth.
Cloud & IT Infrastructure Engineer
32CoWe help clinicians provide more specialist treatments to their patients
• Deploy, manage, and optimise cloud VMs (Azure Virtual Desktop and/or AWS WorkSpaces) for 60+ remote contractors across India, Egypt, and the Philippines • Own on/offboarding workflows, access provisioning, monitoring, and incident response • Architect the VM estate as we scale, including platform decisions (AWS vs Azure) and cost optimisation • Own the core treatment planning application used by our designer team - end to end: server performance, database management, disk space, version updates, and multi-server architecture as we grow • Build runbooks and escalation paths so day-to-day application issues are handled without senior engineers being the only escalation path • Work directly with the software vendor on scaling and architectural decisions • Enrol and manage all company laptops via Microsoft Intune MDM, enforcing encryption, antivirus, and patch compliance • Administer users, licences, SSO, and security settings across the organisation • Be the primary point of contact for IT support across 40 London staff and 60+ remote contractors • Own account creation, access provisioning, and tool permissions end-to-end for all new starters and leavers • Support 32Co's ISMS and GDPR, ISO 27001 and HIPAA compliance programmes • Patching, monitoring, licensing management, and capacity planning across all systems




