Senior IT Infrastructure Engineer
MindMaze Therapeutics·Cluj-Napoca·Publicat acum o săptămână
StartupDevOps / Platform
Tehnologii și competențe
Cloud InfrastructureAzureAWSAtlassian AdministrationGoogle Workspace AdministrationIdentity and Access ManagementKerberosLDAPKeycloakNetworkingLinux AdministrationWindows Server AdministrationScripting and AutomationCybersecurityDisaster RecoveryAnsible
Descrierea anunțului
About MindMaze Therapeutics
MindMaze Therapeutics, a publicly listed, innovative scale-up headquartered in Switzerland, at the forefront of neuro-therapeutics and digital brain health solutions. Operating in a regulated medical device environment, MindMaze Therapeutics is dedicated to developing cutting-edge technology that supports neurological recovery and treatment.
As the company continues to grow we are looking for a Senior IT Infrastructure Engineer to help run the systems the whole company depends on — cloud and on-premise infrastructure, our Atlassian and Google Workspace environments, identity, networking and the security controls that sit across all of it.
You will be based in our Cluj-Napoca office, working alongside the local team. The core network and on- premise estate you maintain sits in Lausanne, Switzerland, so a large part of the job is operating and automating remote infrastructure with confidence, in close coordination with colleagues on site there.
This is a senior individual-contributor role reporting to the Lead IT Infrastructure. You will not be handed a runbook and a ticket queue: you will help decide how our infrastructure should look, build it, automate it, and keep it running. Expect real ownership, direct access to decision-makers, and the freedom to fix things properly rather than patch around them.
Responsibilities
Cloud and core infrastructure
Support the Product Team operating our products cloud environments (Azure / AWS),
Maintain the on-premise estate in Lausanne (firewalls, switching, VPN),
Support the Ansible-driven automation effort,
Participate to backup, restore and disaster recovery end to end,
Monitor, alert and capacity-plan so problems surface before users report them.
Atlassian, Google Workspace and identity
Administer the Atlassian stack — Jira, Confluence and Bitbucket: projects and spaces, permission schemes, workflows, apps, integrations, upgrades and backups,
Administer Google Workspace — Gmail, Drive and shared drives, groups, org units, sharing policies and security settings,
Own identity and access across our Kerberos, LDAP and Keycloak stack: realms, federation, SSO and MFA, service accounts, and clean joiner/mover/leaver processes.
Security and resilience
Harden systems and networks: segmentation, least privilege, endpoint protection, logging and vulnerability management,
Keep patching, configuration baselines and asset inventory in a state you would be comfortable showing an auditor,
Contribute to incident response — detection, containment, recovery and honest post-mortems,
Apply sensible data protection and access controls in line with GDPR and internal policy.
Ways of working
Document what you build, so the team can run it without you,
Work effectively across sites and time zones with the Lausanne team,
Partner with engineering, R&D and operations to make sure infrastructure decisions support what the business is actually trying to do.
What we're looking for
3+ years in IT infrastructure, systems or platform engineering,
Strong hands-on experience with at least one major cloud platform (Azure preferred, AWS welcome) — networking, identity, security and cost management,
Hands-on administration of the Atlassian suite (Jira, Confluence, Bitbucket) — permissions, workflows, integrations and maintenance,
Google Workspace administration experience (Gmail, Drive, groups, admin console policies),
Practical experience with Kerberos, LDAP and Keycloak — or equivalent open identity stacks — including SSO, federation and MFA,
Solid networking fundamentals: TCP/IP, DNS, DHCP, routing, VLANs, firewalls, VPN — and the discipline to manage a remote site network safely,
Comfortable in Linux (mostly Debian) and Windows server administration,
Scripting and automation as a default reflex,
Practical security mindset: you design for least privilege and defensible configuration without turning IT into a blocker,
Clear communicator in English, able to explain technical trade-offs to non-technical stakeholders,
Self-directed: you can pick up an ambiguous problem, scope it and deliver it without close supervision.
Nice to have
Infrastructure-as-code and CI/CD experience (Terraform, Ansible, Azure DevOps, GitHub Actions),
Containers and orchestration (Docker, Kubernetes).
Experience supporting ISO 27001 and SOC 2 — control implementation, evidence collection and audit preparation.
Additional languages alongside English — French is useful for working with the Lausanne site.
Cât de complet e anunțul
Anunț complet
80/100
- Spune cum se lucrează (remote / hibrid / birou)
- Zilele de birou sunt clare
- Se poate deduce experiența cerută
- Nu afișează salariul
- Listează tehnologiile cerute
- Compania este identificabilă
Scorul măsoară cât de multe informații oferă anunțul, nu cât de atractiv e jobul. Un rol la birou și unul remote pornesc de la același scor.
- La birou
Rol care se lucrează de la birou.
Sursă: linkedin. DevStart nu găzduiește aplicări — te trimitem direct la anunț.