IT Infrastructure Engineer
RoslinCT US
- Location
- Onsite (Hopkinton, Massachusetts)
- Compensation
- $77k - $115k/yr
- Employment
- Full-time
- Level
- Mid Level
About the Role
RoslinCT is a leading cell and gene therapy CDMO dedicated to creating cutting-edge therapies that change people’s lives. The IT Infrastructure Engineer will design, implement, and support secure IT infrastructure for USA operations, ensuring business continuity in a regulated environment.
Skills
Benefits
- Medical insurance
- Dental insurance
- Vision insurance
- 401(k) program
- Educational assistance
Full job details
WHO WE ARE
RoslinCT is a world-leading cell and gene therapy contract development and manufacturing organization creating cutting-edge therapies that change people’s lives. Collaborative, dedicated, and talented people are the backbone of our culture, working both autonomously and in driven teams to make life-changing products utilizing ground-breaking science.
THE ROSLINCT WAY
Here at RoslinCT, our team can contribute to the development of revolutionary treatments. We live every day by our core values: Partner Focus, One Team, Personal Growth, Integrity, Innovation, and Trust and Respect. We put our employees at the forefront by providing a flexible and empowering work environment, an attractive benefits package, and an emphasis on work-life balance. Our people are the key to our success. At RoslinCT we focus on developing our corporate culture, people’s development, growth, and the ability to impact patients.
ACCELERATING YOUR FUTURE
The IT Infrastructure Engineer will be responsible for the design, implement and support reliable, secure IT infrastructure for RoslinCT’s USA operations, working closely with colleagues across the USA and UK. This hands-on role combines systems administration with infrastructure and network design, project delivery and advanced technical support.
The role is responsible for maintaining and improving networks, virtualization platforms, physical servers, storage and cloud infrastructure. It supports business and manufacturing continuity through effective monitoring, troubleshooting, backup and recovery, and controlled changes in a regulated environment.
How You Will Make an Impact:
Design, configure and support LAN, WAN, wireless, routing, switching, VLANs, VPNs and firewalls, including network segmentation and resilient connectivity between sites and cloud services.
Administer and improve virtualization platforms, including host and cluster configuration, virtual machine provisioning, migrations, capacity planning and high availability.
Install, configure and troubleshoot physical servers, storage and network hardware; coordinate maintenance, firmware updates, component replacement and equipment lifecycle planning.
Build, administer and support infrastructure in AWS or Microsoft Azure, covering compute, storage, networking, access controls, monitoring, backup and cost management.
Maintain Windows Server, Active Directory, Group Policy, DNS and DHCP, and support integration between on-premises systems and cloud services.
Own complex infrastructure incidents and provide advanced escalation support. Use logs, monitoring and network diagnostics to isolate faults across network, identity, server, storage, cloud and application layers and implement lasting fixes.
Configure actionable monitoring and alerts for infrastructure availability, performance and capacity; address risks proactively and plan maintenance with business and manufacturing stakeholders.
Manage protected backups and recovery procedures, investigate failures and perform documented restore and disaster recovery tests against agreed recovery time and data-loss objectives, accounting for application dependencies.
Apply approved security controls, patching and secure configurations; support vulnerability remediation, access reviews and security incident investigation with the security team.
Administer hybrid identity and access controls, and support Microsoft 365, Intune and Defender in collaboration with IT operations and security colleagues.
Deliver infrastructure upgrades and migrations, including technical designs, implementation plans, testing, rollback arrangements and operational handover.
Maintain accurate network diagrams, configuration records, asset information, procedures and support documentation. Record incidents, requests and changes in the service management system.
Follow approved change control and documentation processes. Work with Quality Assurance and Computer Systems Validation colleagues to assess regulated system impacts and provide implementation and test evidence.
Coordinate vendors and service providers, share knowledge with the wider IT team and automate repeatable administration tasks using tested, documented scripts and controlled changes.
Other duties as assigned.
What You Will Bring:
Advanced Microsoft Entra ID administration and experience with Microsoft Defender, Microsoft 365 and Intune, including endpoint compliance and identity/security integration.
Cisco Meraki switching, wireless and security appliances, including dashboard administration, VPN connectivity and troubleshooting.
IT or infrastructure experience in pharmaceutical, biotechnology, or cell and gene therapy environments; familiarity with GMP/GxP, validated systems, data integrity and collaboration with Quality Assurance and Computer Systems Validation teams.
Infrastructure as code using Terraform, Bicep or CloudFormation; Git version control and review of scripts/configuration changes; API-based administration and automation.
Working knowledge of Linux services, permissions, logs and patching, and application infrastructure dependencies such as TLS certificates, service accounts and database connectivity.
Experience supporting both AWS and Azure, cloud cost optimization, and ITIL service management practices.
Exposure to containerized application hosting, such as Docker, where relevant to business applications.
Ability to use approved AI tools safely for scripting and troubleshooting, validate their output and protect company information.
A highly organized work style that ensures timely execution of tasks.
A mindset that ensures accurate results.
Proficiency in Microsoft Office Suite (Excel, Word, PowerPoint).
Effective problem-solving capabilities.
Strong oral and written communication skills.
Qualifications:
3 - 5+ years of relevant experience in systems administration and infrastructure/networking design, implementation and support. Demonstrable ownership of infrastructure projects, complex incidents and recovery activities.
Strong networking skills covering TCP/IP, routing, switching, VLANs, DNS, DHCP, wireless, VPNs, firewalls and segmentation, with systematic troubleshooting using logs and packet capture.
Strong enterprise virtualization experience with platforms such as VMware, Nutanix AHV or Hyper-V, including clusters, high availability, migrations, storage dependencies and performance/capacity troubleshooting.
Hands-on deployment and support of physical servers, enterprise storage and network hardware, including fault diagnosis, firmware, maintenance and lifecycle management.
Hands-on production infrastructure experience in AWS or Microsoft Azure, covering compute, storage, identity and access management, networking, monitoring, backup and secure on-premises connectivity.
Strong Windows Server, Active Directory and Group Policy administration skills. Working knowledge of Entra ID, hybrid identity, MFA, Conditional Access, role-based and privileged access, service accounts and SSO troubleshooting.
Practical PowerShell scripting skills to write, understand, troubleshoot and safely test repeatable administration tasks, with appropriate error handling, documentation and protection of credentials.
Practical infrastructure security experience, including secure configuration, patching, vulnerability remediation, least privilege, endpoint protection and security incident escalation.
Backup, restore and disaster recovery experience, including protected backups, recovery time and data-loss objectives, application dependencies and tested recovery. Ability to choose between database, file and whole-server recovery.
Experience configuring monitoring and useful alerts, investigating logs and identifying the cause of infrastructure performance and availability issues.
Ability to follow controlled change processes, document designs and configurations, plan testing and rollback, and produce clear implementation evidence. Strong communication, prioritization and collaboration skills.
Final compensation will be based on a variety of factors, including education, experience, technical expertise, specialized skill sets, market demand, internal equity, and business needs.
At RoslinCT, we offer more than just competitive pay. Our comprehensive Total Rewards package is designed to support your health, financial well-being, and professional development throughout your career. Benefits include medical, dental, and vision insurance, educational assistance, a 401(k) program, and a variety of additional resources to help you thrive both personally and professionally.
OUR COMMITMENT
All RoslinCT employees embrace the principles of our culture and values and are deeply committed to fostering an environment where diversity and inclusion are not only valued but prioritized. We believe a diverse and inclusive community empowers us to act courageously, care deeply, and dream boldly to impact people in big ways.
RoslinCT is proud to be an equal opportunity employer, we seek to create a welcoming and diverse environment. All applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, veteran status, or any other applicable legally protected characteristics.