Principal Infrastructure Engineer
2 days ago
Marlow
Principal Cloud & IT Infrastructure Engineer Location: Buckinghamshire Hybrid: 4 days a week onsite Role Summary We are seeking a Principal Cloud & IT Infrastructure Engineer to lead the design, delivery, and optimisation of enterprise‑grade cloud and on‑premise infrastructure. This is a senior hands‑on role with strategic influence, responsible for ensuring high availability, security, scalability, and operational excellence across a hybrid estate. The role spans Microsoft‑centric platforms, networking and security, with responsibility for maintaining a legacy VMware environment while supporting migration toward modern target platforms. Key Responsibilities • Lead infrastructure modernisation initiatives, covering virtualisation, networking, security, and automation, • Architect and implement hybrid cloud solutions using Microsoft Azure and Hyper‑V, • Maintain, optimise, and stabilise a legacy VMware stack, supporting transition to strategic target platforms, • Own SCCM application packaging and deployment standards, including creation and maintenance of packaging runbooks, • Develop and maintain automation for provisioning, patching, backups, and monitoring (PowerShell / Python), • Oversee daily backup operations, ensuring system integrity, successful completion, and secure off‑site replication, • Act as a technical leader and mentor to service desk and engineering teams, • Perform capacity and performance planning; define and publish reference architectures and technical standards, • Lead proof‑of‑concept activity, evaluate emerging technologies, and deliver production‑ready designs with full documentation, • Ensure core infrastructure patching within SLAs, including Hyper‑V hosts, VMware, Palo Alto and Fortinet firewalls, • Embed security‑by‑design principles, supporting Zero Trust architectures and regulatory compliance Required Skills & Experience • Networking - Cisco / Aruba, • Virtualisation - Hyper-V / Failover Cluster – Vmware and advatge while we migrate, • Identity - Active Directory / Entra ID, • Backup monitoring and troubleshooting – Commvault experience preferred, • Firewall configuration & deploy – preferred to have experience with Palo Alto / Fortinet, • Application & OS deployment - Configuration manager, SCVMM, Intune an advantage, • Experience managing Azure and Microsoft 365 tenants, • Familiarity with RSA Authentication Manager, • Experience with Fortinet firewall configuration and support, • Strong PowerShell scripting capability for infrastructure automation, • Exposure to Privileged Access Management (PAM) solutions, • Successful delivery of infrastructure projects to time and budget, • Patch compliance ≥ 95% across core infrastructure (Hyper‑V, VMware, Palo Alto, Fortinet), • Critical vulnerability remediation within 14 days for high‑risk CVEs