- Salary
- $86k – $115k/yr
- Location
- Longview, WA, WA, US
- Workplace
- Remote, Hybrid
- Type
- Full-time
- Department
- Engineering
- Source
- GovernmentJobs
Description
Position Information: Under general direction of the IT Director, the IT Engineer performs advanced professional and technical work designing, implementing, securing, operating, and improving the City’s hybrid information technology infrastructure. Assigned systems may include servers, virtualization, storage, backup and recovery, core networks, firewalls, wireless systems, cloud and Microsoft 365 services, identity and access management, endpoint management, unified communications, and related cybersecurity controls.
The position leads assigned infrastructure projects and technical work, provides Tier 3 escalation and guidance, develops automation and technical documentation, participates in incident response and after-hours maintenance, and coordinates with other IT staff, City departments, vendors, and service providers to maintain reliable, secure, and supportable technology services. The position provides technical leadership but does not regularly supervise employees or perform formal personnel-management functions unless specifically assigned.
**The finalist will be subject to passing a pre-employment criminal background check and fingerprint check.**Technical Leadership and Coordination
•Provide advanced technical guidance and Tier 3 escalation support to IT staff for complex infrastructure, network, cloud, identity, endpoint, and security issues.
•Lead assigned technical projects and workstreams, including planning, design, implementation, testing, change coordination, rollback preparation, documentation, and operational handoff.
•Coordinate infrastructure, identity, integration, security, and platform support for enterprise applications in partnership with application owners, business-systems staff, departments, and vendors.
•Establish and promote consistent technical practices, documentation standards, secure configurations, and support procedures within assigned areas.
•Coordinate the work of vendors, contractors, and project participants as assigned; provide technical direction without exercising regular formal supervision of employees.
Infrastructure Engineering and Operations
•Design, administer, maintain, and improve physical and virtual server environments, Windows Server services, application-hosting platforms, file and print services, storage systems, and related datacenter infrastructure.
•Administer enterprise virtualization and datacenter infrastructure platforms, including VMware vSphere Foundation, VMware vSphere, ESXi, or comparable technologies.
•Plan and perform infrastructure upgrades, migrations, consolidations, replacements, and capacity improvements with appropriate testing, maintenance windows, rollback procedures, and stakeholder communication.
•Monitor system health, capacity, performance, availability, certificates, firmware, warranties, licensing, and vendor end-of-support dates; recommend corrective action and lifecycle replacement.
•Diagnose complex incidents, conduct root-cause analysis, implement corrective actions, and document significant outages and recurring problems.
•Maintain secure, standardized, and supportable configurations through approved change-management and configuration-control practices.
Network and Unified Communications
•Design, configure, administer, and troubleshoot local- and wide-area networks, switches, routers, firewalls, wireless systems, virtual private networks, internet connectivity, fiber connections, and related network services.
•Administer core network services and access controls, including DNS, DHCP, NPS or comparable network authentication services, segmentation, routing, firewall rules, and secure remote access.
•Monitor network performance and availability, analyze traffic and capacity, resolve connectivity issues, and coordinate service restoration with carriers and vendors.
•Support enterprise voice, telephony, and unified-communications systems, including on-premises and cloud-connected components.
•Maintain accurate network diagrams, configuration records, circuit information, support procedures, and recoverable configuration backups.
Cloud, Identity, and Endpoint Management
•Administer and monitor Microsoft Azure, Microsoft 365 Government Community Cloud (GCC) services, Exchange Online, Teams, OneDrive, SharePoint, and related cloud services as assigned.
•Administer Microsoft Entra ID and hybrid identity services, including authentication, single sign-on, multi-factor authentication, Conditional Access, role assignments, service accounts, and identity lifecycle processes.
•Apply least-privilege and role-based access principles to administrative accounts, privileged roles, applications, services, and user access.
•Configure and maintain Microsoft Intune and Windows Autopilot or comparable tools for device enrollment, provisioning, security baselines, configuration profiles, application packaging and deployment, compliance, updates, and retirement.
•Manage endpoint-security controls such as Microsoft Defender for Endpoint, BitLocker, device compliance, and related monitoring and remediation processes.
•Monitor cloud service health, configuration, capacity, and licensing; coordinate resolution of service issues and planned changes.
Cybersecurity and Operational Resilience
•Implement and maintain technical security standards and controls consistent with approved City policies, cybersecurity frameworks, contractual requirements, and applicable regulatory obligations.
•Perform secure configuration, system hardening, patching, vulnerability remediation, and risk-based prioritization across assigned infrastructure and services.
•Review vulnerability findings from Tenable or comparable tools, track remediation, document unresolved risk or technical exceptions, and verify corrective action.
•Monitor security alerts, event logs, service health, and system activity; investigate suspicious conditions and escalate or respond in accordance with City incident-response procedures.
•Maintain network segmentation, firewall protections, secure administrative access, privileged-access controls, and other safeguards that reduce the likelihood and impact of compromise.
•Administer or support enterprise backup and recovery platforms; monitor backup success, investigate failures, conduct restoration testing, and maintain recovery procedures for assigned systems.
•Participate in cybersecurity assessments, incident-response exercises, disaster-recovery exercises, audit-remediation activities, and post-incident reviews.
Automation, Monitoring, and Documentation
•Develop and maintain PowerShell scripts, Microsoft Graph or other API integrations, and automation that improves consistency, security, reporting, provisioning, and operational efficiency.
•Use version control or another approved controlled repository for scripts, configuration artifacts, and reusable technical content.
•Configure and maintain infrastructure, network, cloud, and security monitoring; establish actionable alerts, dashboards, thresholds, and escalation procedures.
•Maintain current technical documentation, including configurations, diagrams, inventories, runbooks, recovery procedures, standard operating procedures, known issues, and change records.
•Produce technical and management reports that communicate service health, capacity, risks, project status, remediation progress, and recommended action.
•Provide cross-training, knowledge transfer, and operational documentation to reduce single points of failure and improve continuity of support.
Project and Vendor Coordination
•Gather and document technical requirements; prepare architecture recommendations, implementation plans, test plans, schedules, cost estimates, maintenance plans, and support-transition requirements.
•Coordinate infrastructure projects with City departments, vendors, consultants, contractors, carriers, and managed-service providers.
•Assist with technical specifications, procurement evaluation, licensing and renewal planning, vendor support cases, and assessment of vendor performance.
•Verify that implemented solutions meet technical, security, operational, documentation, and supportability requirements before project closure.
•Communicate project impacts, risks, outages, maintenance schedules, and decisions clearly to technical and non-technical stakeholders.
Service Escalation and After-Hours Support
•Provide advanced escalation support for incidents and service requests that cannot be resolved through standard Help Desk or application-support processes.
•Work at City Hall, the datacenter, and other City facilities to install, troubleshoot, maintain, or replace infrastructure and related equipment.
•Participate in scheduled after-hours maintenance, emergency response, and an on-call or escalation rotation as assigned.
•Serve as backup for other infrastructure, systems, network, cloud, or security functions to maintain continuity of operations.
•Provide professional, responsive service and communicate status, impact, and expected next steps during significant incidents.
Technology Evaluation and Continuous Improvement
•Evaluate emerging technologies, security capabilities, automation opportunities, and service improvements based on operational need, risk, cost, interoperability, and long-term supportability.
•Contribute to infrastructure roadmaps, lifecycle plans, budget estimates, standards, procedures, and long-term technology planning.
•Maintain current technical knowledge through professional development, vendor resources, peer collaboration, testing, and applied research.
•Recommend practical improvements that increase reliability, security, efficiency, documentation, recoverability, or service quality.Minimum Qualifications:
- Bachelor’s degree in information technology, computer science, cybersecurity, engineering, or a closely related field, and five years of progressively responsible experience administering and engineering enterprise infrastructure; or an equivalent combination of education, training, certifications, and experience that provides the required knowledge and abilities.
- Progressively responsible experience in several of the following areas: enterprise server administration, virtualization, network engineering, cloud services, identity and access management, endpoint management, backup and recovery, or cybersecurity operations.
Preferred Qualifications:
•Experience with Microsoft 365 GCC, Microsoft Azure, Microsoft Entra ID, Exchange Online, Intune, Windows Autopilot, Microsoft Defender, and Windows Server.
•Experience with VMware vSphere Foundation, VMware vSphere, ESXi, enterprise storage, and datacenter infrastructure.
•Experience with Palo Alto, Cisco, Meraki, or comparable enterprise network and security technologies.
•Experience with Pure Storage, Datto or comparable backup platforms, PRTG or comparable monitoring platforms, and Tenable or comparable vulnerability-management tools.
•Experience developing PowerShell automation, Microsoft Graph or other API integrations, and maintaining scripts or configuration content in version control.
•Experience supporting public-sector, public-safety, utility, regulated, or other operationally critical technology environments.
•Current professional certification relevant to the assigned work, such as Microsoft Azure or Microsoft 365, identity or endpoint management, Cisco networking, VMware/Broadcom virtualization, Palo Alto security, or a recognized cybersecurity certification.•Advanced knowledge of enterprise infrastructure principles, including servers, virtualization, storage, networking, cloud services, identity, endpoints, monitoring, backup, and recovery.
•Working knowledge of cybersecurity principles and practices, including system hardening, least privilege, multi-factor authentication, network segmentation, vulnerability management, logging, incident response, and recovery.
•Ability to design, configure, administer, and troubleshoot complex hybrid infrastructure and to identify root causes across interconnected systems.
•Ability to develop reliable automation and scripts, validate results, manage changes safely, and maintain reusable technical documentation.
•Knowledge of project planning, change management, testing, rollback planning, lifecycle management, vendor coordination, and operational handoff.
•Ability to organize competing priorities, work independently, exercise sound technical judgment, and respond effectively to urgent service interruptions.
•Ability to communicate complex technical information clearly to IT staff, managers, vendors, department representatives, and non-technical stakeholders.
•Ability to establish effective working relationships, share knowledge, provide respectful technical guidance, and contribute to a collaborative team environment.
•Ability to protect sensitive information, follow security requirements, and maintain appropriate professional discretion and accountability.