Senior Systems Engineer
*Holders
*On-site daily in Foxboro, MA
The Senior Systems Engineer serves as a technical leader responsible for the design, implementation, and administration of enterprise infrastructure across hybrid environments, with a primary focus on Microsoft Azure. This role leads the architecture and governance of Azure Landing Zones, subscription strategy, Azure DevOps (ADO), and Infrastructure as Code (IaC) using Bicep to deliver scalable, secure, and repeatable solutions.
The position also provides engineering leadership across on-premises systems, including Active Directory, virtualization platforms, and enterprise applications, ensuring alignment with organizational standards, security frameworks, and operational best practices.
DUTIES AND RESPONSIBILITIES
- Cloud Architecture & Azure Engineering
- Subscription architecture and management
- Resource groups, storage accounts, and policy governance
- Serve as a Lead Engineer and Administrator for Azure IaaS and associated tools and technologies
- Design, implement, document, and enforce best practices for Azure Landing Zones, including:
- Architect and maintain Azure Landing Zone environments aligned with Microsoft best practices
- Implement Infrastructure as Code (IaC) solutions using Bicep for consistent and scalable deployments
- Design and manage Azure Container Registry (ACR) lifecycle and integrations
- Ensure adherence to cloud security, compliance, and operational standards
- Cloud security, compliance, and operational best practices and the technology stack
- Azure DevOps (ADO) & Automation
- Administer and optimize Azure DevOps (ADO) environments.
- Design, deploy, and maintain Azure DevOps agent pools
- Ensure scalability, performance, and security of DevOps pipelines and agent infrastructure
- Integrate ADO pipelines with Azure services, ACR, and IaC (Bicep) deployments
- Systems Engineering & Infrastructure Leadership
- Enterprise Systems & Platform Administration
- VMware environments
- RecoverPoint for Virtual Machines
- Okta SSO operations
- Exchange Server and Microsoft 365 (Exchange Online)
- Linux servers (RedHat, Ubuntu)
- Serve as administrator for:
- Actively build, harden, secure, and implement new technologies used in the organization, with vendor support where needed
- Maintain Active Directory and Azure Active Directory best practices, standards, and organization.
- Plan, design, and implement Active Directory Group Policy Objects and inTune policies.
- Plan and implement various hardware and software projects, ensuring hardening, security design, and network standards are met
- Serve as a Systems Lead on application and server implementation projects
- Communicate with Management on project progress and integration time frames.
- Create and maintain detail as built and support documentation for all systems.
- Manage external vendor service and implementation initiatives.
- Special projects and assignments as business dictates
- Responsible for the creation, maintenance and control of all personal identifiable information or any other information protected by Confidentiality and Privacy Standards see Mass Regulations on Personal Identity Regulations and HIPAA
SUPERVISORY RESPONSIBILITIES
- This position has no direct supervisory responsibilities but will serve as a technical mentor and escalation point of contact to others in the Technology Division
SKILLS AND QUALIFICATIONS
- Bachelor’s degree in information technology or relevant experience
- 5+ years’ experience as a Systems Administrator, supporting Windows Server Environments and Active Directory and 3+ years'''' experience as a Systems Engineer, planning and implementing server, application, and cloud systems projects
- Experience leading and managing an Azure Infrastructure as a Service (IaaS) environment is a must, including Infrastructure as Code (Bicep, Terraform, etc), Resource Group Management, Policy Development, Cloud Governance, etc
- Experience with PowerShell or similar scripting language
- Familiarity with Zscaler and CrowdStrike integrations with ALZ
- Familiarity with Load Balancing configuration (Citrix NetScaler)
- Proven abilities to manage multiple projects simultaneously.
- Ability to independently resolve identified vulnerabilities in a timely manner based on defined standards.
- Ability to participate in operational responsibilities as situations dictate (support escalation, identity & account management, platform maintenance, system upgrades, etc)
- Linux experience is a plus
- Strong communication and documentation skills
- Must have excellent customer support skills with a creative and proactive mindset.
- Must have attention to detail and focused concentration
- Must be able to learn new tasks and complete tasks independently
- Must be able to make timely decisions in the context of the workflow
- Must possess strong organizational skills, ability to multi-task and responsiveness
PHYSICAL DEMANDS
- Working hours may vary with the demands of the business, projects, and event schedules throughout the year.
· Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.
WORK ENVIRONMENT
- The noise level in the work environment is usually moderate.
- Fast-paced office environment
- Rotating participation in on-site stadium event support and after-hours on-call rotation is required
CERTIFICATES, LICENSES, REGISTRATIONS
- Microsoft Certified Solutions Expert (MCSE), Windows Server, Windows 10, 365 Enterprise Administrator (Expert) preferred.