Infrastructure Cloud Engineer Reports To CISO Location Monterrey or Queretaro MX Environment Hybrid Work Schedule Monday to Friday 800 AM to 500 PM CDT Who We Are Redwood Logistics is one of the fastest growing and most innovative 4PL providers offering supply chain execution and next generation supply chain technology solutions For more than 20 years Redwood Logistics has been helping move businesses forward by connecting our clients to winning strategies As a next generation leader in forth party logistics 4PL we live at the intersection of logistics and technology We focus brilliant minds technology services and performance excellence to modernize supply chains From our diversity of services data driven network solutions and strategically integrated model we have positioned ourselves as the dominant player in the mid market space operating across North America and Mexico We are a privately held company managing significant transportation spend we are big but adaptable with an entrepreneurial spirit Our continued success is driven by our fearless and innovative people Being part of the Redwood family means taking the road less traveled building each other up to greatness and always leaving room for fun Ready to grow with us With 14B in Revenue 34 YOY SaaS growth and 400 SaaS pipeline now is the time to join Redwood Purpose of Your Work This is NOT a DevOps role The ideal candidate is a hands on infrastructure engineer who operates and improves the reliability security performance and cost effectiveness of Azure cloud services hybrid identity Windows Server storage monitoring and network environments Approximately 60 of the role supports Azure IaaS and PaaS services including Azure Functions and Azure Container Apps; approximately 35 supports enterprise network operations; and approximately 5 supports AWS where needed The role focuses on selecting operating and troubleshooting infrastructure services rather than owning application code Although networking represents approximately one third of the role it requires deep practical troubleshooting skill This position is the escalation point for core network incidents and must be able to diagnose issues such as port flaps Energetic ARP Inspection failures VLAN and trunk mismatches routing and switching faults firewall policy problems wireless connectivity issues and related physical layer faults The engineer will also support installation configuration replacement lifecycle management and documentation of Cisco or Meraki switches firewalls wireless equipment cabling VLANs and related infrastructure How You Make a Difference Everyday Troubleshoot and resolve core network incidents across switching routing VLANs trunking wireless firewalls and hybrid connectivityDesign implement and maintain secure and scalable cloud infrastructure in Microsoft Azure and AWSConfigure and manage Microsoft Entra ID Conditional Access policies role based access control RBAC and privileged identity management PIMDeploy and monitor Microsoft Sentinel for cloud native SIEM capabilities and automated threat responseSupport the lifecycle management of Windows Server environments and hybrid networking componentsLead identity governance initiatives ensuring appropriate access provisioning and audit readinessDevelop and maintain infrastructure as code IaC using tools like Terraform to ensure repeatability and complianceIntegrate AI powered security and monitoring tools to proactively detect threats and reduce incident response timesParticipate in threat modeling security risk assessments and internalexternal compliance auditsDrive adoption of automation frameworks to streamline patching system provisioning and configuration managementCollaborate with cross functional teams to support application deployments and business continuity initiativesContribute to runbooks documentation and knowledge sharing sessions to enhance team capabilitiesOperate as a subject matter expert and act as the escalation point for issue resolution and customer escalationsProvide on call support and assistance for production business systems on a rotating basis for after hour support Youve Got This To perform this job successfully an individual must be able to perform each essential duty satisfactorily The requirements listed below are representative of the knowledge skill andor ability required Related certifications will be helpful The candidate must have 5 years of experience supporting an enterprise in a team environment 3 years working with cloud native networking is required comfortable configuring Azure Virtual Networks subnets Network Security Groups route tables VNet peering VPN Gateways and Azure Firewall as well as equivalent AWS constructs such as VPCs Transit Gateways and Security Groups3 years of hands on experience administering Windows Server environments in a large enterprise including patch management Active Directory and hybrid identity1 years of Cisco or Meraki experience is required Palo Alto experience is a plusMicrosoft Azure certification AZ 104 Azure Administrator or AZ 500 Security Engineer is a plusSolid working experience with Microsoft Entra ID including Conditional Access RBAC PIM and hybrid identity integration with on premises Active DirectoryProficiency in PowerShell scripting for automation configuration management and cloud administration tasks;
experience with Python or Bash a plusHands on experience designing deploying and securing infrastructure in both Microsoft Azure and AWS including IAM VNetsVPCs storage and compute servicesStrong working knowledge of Azure PaaS services including Azure App Service Azure SQL Azure Monitor Azure Key Vault and related platform componentsWorking knowledge of infrastructure as code tooling such as Terraform; ability to read write and maintain IaC modules in a version controlled environmentSolid hands on networking experience is required including switching routing VLANs firewall rules and network segmentation; direct experience with Cisco andor Meraki equipment strongly preferred as this role includes on site support and lifecycle management of physical network hardwareComfortable providing on site support this role requires physical presence in the Chicago office and occasionally at other locations to install configure troubleshoot and replace network hardwareFamiliarity with zero trust networking principles network segmentation and security zoning in hybrid environments;
experience with SIEM endpoint protection or cloud native security tooling is a plus What We Offer Access to experts and resources for your Learning & Development journeyOpportunity for internal mobilityEmployee referral bonus programEmployee Resource Groups ERGsAnnual fundraising and volunteer events to give back to communitiesLife Insurance policy for you starting 30 days after employmentPersonal Health Insurance coverage for you Major Medical30 days Aguinaldo Christmas bonus or prorated percentage your first yearVacation time starting at 12 days Additional days will increase per Mexican LawPremium Vacation 50 vacation days Prima vacacionalYou will also receive benefits like Saving Plan Fondo de Ahorro and Grocery Card Vales De Despensa 6 or the Maximum amount by Mexican LawYou will be provided a Cell Phone Allowance of 800 pesos per month minus applicable taxesRedwood is an equal opportunity employer Employment decisions at the Company are based on individual merit qualifications abilities and the Companys needs and resources The Company does not discriminate in recruiting hiring compensation promotions discipline termination or any other aspect of employment on the basis of an individuals actual or perceived race color creed religion sex including pregnancy childbirth and related medical conditions sexual orientation gender identity national origin ancestry citizenship status age disability marital status military service or status genetic information arrest and conviction record credit history or any other basis protected by applicable law