ENDUIR Cyber · 2 days ago
Infrastructure Technology Consulting - Architect
ENDUIR Cyber is a consulting partner focused on cybersecurity and enterprise technology. They are seeking an Infrastructure Technology Consulting – Architect to lead remediation and modernization projects for mid-size companies, leveraging hybrid infrastructure expertise and strong communication skills.
Information TechnologyLegalSecurity
Responsibilities
Lead discovery and baseline using Enduir’s assessment approach; review Active Directory/Entra, firewall and segmentation, endpoint/email security, logging/SIEM, backups/DR, and cloud posture (Azure or AWS)
Serve as the primary technical lead: define the scope and depth of testing, identify quick wins versus structural fixes, and design remediation patterns the client can operate
Provide hands‑on configuration for high‑value changes (for example, AD hardening, Conditional Access/MFA, firewall rules, SIEM onboarding, backup immutability and restore testing)
Lead 2–3 junior consultants: assign work packets, review configurations and evidence, coach on quality, and keep the team aligned to the plan
Own day‑to‑day delivery, schedule, budget, risks, and sponsor communication; keep stakeholders informed with clear status and next steps
Act as the technical lead for recovery in partnership with incident leaders; set the recovery plan and execution rhythm across identity, endpoints, email, logging, and backups/DR
Execute critical configurations: rotate or disable compromised credentials, enforce MFA/Conditional Access, stand up clean‑room or bounce‑back infrastructure, rebuild from gold images, validate backup integrity, and perform targeted restores; expand SIEM telemetry coverage
Direct 2–3 junior team members through endpoint re‑baseline, EDR deployment, email hygiene fixes (DMARC/DKIM/SPF), and backup verification; ensure clean documentation and handoff to operations
Coordinate MSPs and vendors for re‑keys, license resets, escalations, and support cases
Maintain tight cadence, issue/risk management, and budget control; communicate decisions and rollback options clearly to sponsors
Own the integration architecture and cutover plan: AD consolidation or trusts, Azure or AWS landing‑zone alignment, VNet/VPC peering and routing, firewall policy harmonization, and backup/DR alignment
Lead 2–3 junior consultants through migration wave planning and execution; prepare and test scripts, validate changes, and document as‑built configurations and runbooks for handoff
Coordinate MSPs and vendors; manage dependencies, change control, and rollback paths
Guide pilots and validation tests; align identity, access, and segmentation to the target security baseline and operating model
Control scope, schedule, and budget; provide concise executive updates to keep sponsors aligned during cutovers and stabilization
Qualification
Required
5–9+ years in infrastructure consulting or solutions architecture delivering remediation and modernization projects for mid-size companies; comfortable as the primary technical lead and day-to-day driver
Deep hands-on skill in Active Directory/Entra (directory services, Group Policy, identity hardening) and one cloud platform (Azure or AWS) plus strength in at least one of the following: firewalls/segmentation, backups/DR, or storage
Breadth across adjacent areas: networking (VLANs, routing, VPN/SD-WAN), virtualization (VMware), email/endpoint security, logging/SIEM onboarding, monitoring/observability, and basic identity federation patterns
Able to scope engagements, shape SOWs, build pragmatic plans, manage scope/schedule/budget, and provide clear executive and engineer-level communication
Comfortable leading 2–3 junior consultants or client engineers; assigns work packets, reviews configurations/evidence, and ensures quality and alignment to plan
Steady and structured during incidents, outages, migrations, and cutovers; plans rollback paths, manages risk/issue logs, and keeps stakeholders aligned
Willing to participate in post-incident stabilization and resilience uplift; learns quickly from incident findings and converts them into durable configuration changes
Familiarity with common enterprise stacks such as Defender/CrowdStrike, Sentinel/Splunk, Veeam/Rubrik/Cohesity, and Palo Alto/Fortinet/Cisco firewalls
Preferred
PowerShell for Windows/AD tasks; Terraform or CloudFormation/Bicep for repeatable builds and guardrails
Relevant certifications