Hybrid Infrastructure Engineer (Cloud Migration Lead) at Federal Recovery Service, Inc.
United States
<p>Description</p><p>The Hybrid Infrastructure Engineer will help lead Paramount’s strategic transition from a fully on-premises footprint to a hybrid footprint with Amazon Web Services (AWS). In this role, you will partner directly with the VP of Technology to co-develop our cloud strategy, while owning the creation of the cloud architecture and migration pipeline. You will also collaborate closely with our dedicated On-Premises Systems Engineer, who manages daily local hardware operations, to safely replicate and transition workloads into a modern environment. A core focus of this role is to ensure the infrastructure is configured and maintained to meet high availability, security, and performance requirements across both environments, with strict adherence to PCI-DSS Level 1 compliance.</p><p>Requirements</p><p><u><strong>Key Responsibilities</strong></u></p><p><strong>Cloud Leadership & Modernization</strong></p><ul><li><strong>Architect</strong> and build secure, scalable target AWS cloud landing zones.</li><li><strong>Lead</strong> the design and execution of workload migration strategies.</li><li><strong>Ensure</strong> the infrastructure is configured and maintained to meet high availability, security, and performance requirements.</li><li><strong>Migrate</strong> Hyper-V virtual machines to AWS EC2 or container services.</li><li><strong>Evaluate</strong> opportunities to migrate legacy workflows directly to cloud-first technologies available in AWS.</li><li><strong>Establish</strong> deployment standards using Infrastructure as Code (IaC).</li></ul><p><strong>Compliance & Security (PCI-DSS Level 1)</strong></p><ul><li><strong>Design</strong> and enforce cardholder data environment (CDE) segmentation across hybrid zones.</li><li><strong>Implement</strong> strict encryption protocols for data at rest and in transit across AWS and on-prem.</li><li><strong>Align</strong> AWS IAM and Windows Active Directory policies with PCI access control requirements.</li><li><strong>Maintain</strong> continuous logging, monitoring, and audit trails required for compliance validation.</li></ul><p><strong>Collaborative Hybrid Engineering</strong></p><ul><li><strong>Partner</strong> with the On-Prem Engineer to coordinate system maintenance and local migrations.</li><li><strong>Collaborate</strong> on local hardware access for replication and migration tools.</li><li><strong>Design</strong> secure, low-latency network tunnels between local sites and AWS.</li><li><strong>Co-develop</strong> business continuity plans combining Veeam and cloud-native backups.</li></ul><p><strong>Performance & Optimization</strong></p><ul><li><strong>Monitor</strong> and tune hybrid environments to guarantee uptime and speed.</li><li><strong>Optimize</strong> cloud spend and resource sizing during migration phases.</li><li><strong>Assist</strong> with safely decommissioning local hardware as workloads shift.</li></ul><p><u><strong>Required Technical Skills</strong></u></p><p><strong>Public Cloud & Modernization (Lead Level)</strong></p><ul><li><strong>AWS Services:</strong> Deep knowledge of EC2, VPC, IAM, S3, Route 53.</li><li><strong>Security & Compliance:</strong> AWS Security Hub, GuardDuty, AWS Config, IAM policies for PCI compliance.</li><li><strong>Cloud-First Tech:</strong> Familiarity with AWS serverless, containers, or native analytics.</li><li><strong>Migration Tooling:</strong> AWS Application Migration Service (MGN) or equivalent.</li><li><strong>Automation:</strong> Terraform, AWS CloudFormation, or Python/PowerShell scripting.</li></ul><p><strong>On-Premises Familiarity (Collaborative Level)</strong></p><ul><li><strong>Databases:</strong> Microsoft SQL Server administration and hosting concepts.</li><li><strong>Virtualization:</strong> Microsoft Hyper-V, Failover Clustering.</li><li><strong>Storage & Backup:</strong> PureStorage FlashArray, Veeam Backup & Replication.</li><li><strong>Core Systems:</strong> Windows Server (2019/2022), Active Directory, Group Policy.</li></ul><p><u><strong>Qualifications</strong></u></p><ul><li><strong>Experience:</strong> 5+ years in infrastructure, with 3+ years leading AWS cloud migrations.</li><li><strong>Compliance Experience:</strong> Proven history building or maintaining PCI-DSS Level 1 compliant infrastructure.</li><li><strong>Leadership:</strong> Demonstrated success leading technical projects in a team setting.</li><li><strong>Certifications:</strong> AWS Certified Security - Specialty, AWS Certified Solutions Architect Professional, or AWS DevOps Engineer Professional.</li></ul><p><u><strong>Perks & Benefits:</strong></u></p><ul><li><strong>Health Insurance</strong> (Medical, Dental, Vision, Life)</li><li><strong>Paid Time Off (PTO) & Holidays</strong></li><li><strong>401k with 4% Match</strong></li><li><strong>Company Wellness Program</strong></li><li><strong>Free VASA Fitness Membership</strong></li><li><strong>Work-From-Home Flexibility</strong></li><li><strong>Access to On-Site Corporate Fitness Center</strong></li></ul>
Apply Now