Staff Systems Engineer

Intuitive SurgicalSunnyvale, CA
26d

About The Position

We are seeking a highly experienced Infrastructure Staff Engineer to drive strategy, architecture, and operations for Infrastructure as Code (IaC) across Azure, GCP, and AWS. This role requires deep expertise in PKI and certificate lifecycle management, Active Directory, infrastructure automation, and observability practices that ensure reliability, performance, and transparency across systems. You will be a technical mentor in regulated enterprise environments governed by HIPAA, HiTrust, ISO 27001, FDA, and FIPS 140-2. Collaboration with Product teams is central: you will work closely with Product owners, engineering, SRE, QA, and Developer Enablement teams to ensure infrastructure supports evolving product requirements and enables rapid, reliable delivery of digital products. What you'll do: Strategy & Mentorship Define and implement the roadmap for automated infrastructure and process innovation across hybrid environments. Mentor infrastructure engineers, fostering ownership, efficiency, and compliance. Partner with Product teams to ensure delivery is supported by scalable, secure, and compliant infrastructure. Product Collaboration Translate product requirements into secure, scalable infrastructure designs. Advise teams on infrastructure opportunities, limitations, and automation best practices. Contribute to backlog prioritization and infrastructure enhancements aligned with product goals. Infrastructure Automation (IaC) Maintain automated provisioning using Terraform and Ansible, supporting CI/CD pipelines across cloud and on-prem environments with Developer Enablement teams. Evaluate and implement automation/orchestration tools for full lifecycle management. PKI & Certificate Management Own PKI architecture and certificate lifecycle management (issuance, renewal, revocation, inventory). Ensure compliance with HIPAA, HiTrust, ISO 27001, FDA, and FIPS 140-2. Active Directory & Domain Services Architect and manage AD domains, controllers, GPOs, and federation. Oversee integrations with Azure AD, Google Directory, and identity/access management automation. Observability & Compliance Implement observability practices including logging, tracing, and metrics to ensure infrastructure reliability and performance. Design and maintain controls for HIPAA and other regulatory frameworks, ensuring audit readiness. Operational Excellence Establish KPIs and SLAs for reliability, performance, and compliance. Drive process improvement and incident avoidance through automation and observability. Provide technical guidance and escalation support. Additional Responsibilities Support infrastructure budget planning, vendor evaluation, and contract management. Align priorities with InfoSec, Compliance, and Application teams. Contribute to change management, incident response, and design control principles. Support virtualization, storage, Windows/Linux standards, and Kubernetes clusters.

Requirements

  • IaC: Advanced proficiency with Terraform, Ansible, and CI/CD.
  • Cloud: Extensive experience with AWS, Azure, GCP.
  • PKI: Enterprise PKI and certificate lifecycle management (ADCS, DigiCert, Key Factor).
  • Active Directory: Expert in AD architecture, GPOs, federation, and automation.
  • Observability: Skilled with logging, tracing, metrics, and dashboarding tools.
  • Scripting: Python, PowerShell, Bash.
  • Compliance: Strong experience with HIPAA, HiTrust, ISO 27001, FDA, FIPS 140-2, GxP.
  • Kubernetes expertise.
  • Demonstrated track record of mentoring technical teams and contributing to high-impact cross-functional initiatives.
  • Experience managing vendors, contracts, and operational metrics.
  • Strong communication, collaboration, and problem-solving skills.
  • Ability to educate, influence, and align stakeholders in regulated enterprises.
  • Bachelor's degree in Computer Science, Information Systems, Engineering, or related field required; Master's preferred.
  • 10+ years in infrastructure engineering, architecture, or operations, with 5+ years in mentoring or technical guidance roles.
  • Experience designing and managing infrastructure in regulated environments (HIPAA, HiTrust, ISO 27001, FDA, FIPS 140-2).

Nice To Haves

  • Cloud: AWS/GCP/Azure Solutions Architect, Networking Specialty.
  • Security: CISSP, CISM.
  • Microsoft: MCSA/MCSE (Active Directory, Windows Server).
  • Project/Process: PMP, ITIL Foundation.

Responsibilities

  • Define and implement the roadmap for automated infrastructure and process innovation across hybrid environments.
  • Mentor infrastructure engineers, fostering ownership, efficiency, and compliance.
  • Partner with Product teams to ensure delivery is supported by scalable, secure, and compliant infrastructure.
  • Translate product requirements into secure, scalable infrastructure designs.
  • Advise teams on infrastructure opportunities, limitations, and automation best practices.
  • Contribute to backlog prioritization and infrastructure enhancements aligned with product goals.
  • Maintain automated provisioning using Terraform and Ansible, supporting CI/CD pipelines across cloud and on-prem environments with Developer Enablement teams.
  • Evaluate and implement automation/orchestration tools for full lifecycle management.
  • Own PKI architecture and certificate lifecycle management (issuance, renewal, revocation, inventory).
  • Ensure compliance with HIPAA, HiTrust, ISO 27001, FDA, and FIPS 140-2.
  • Architect and manage AD domains, controllers, GPOs, and federation.
  • Oversee integrations with Azure AD, Google Directory, and identity/access management automation.
  • Implement observability practices including logging, tracing, and metrics to ensure infrastructure reliability and performance.
  • Design and maintain controls for HIPAA and other regulatory frameworks, ensuring audit readiness.
  • Establish KPIs and SLAs for reliability, performance, and compliance.
  • Drive process improvement and incident avoidance through automation and observability.
  • Provide technical guidance and escalation support.
  • Support infrastructure budget planning, vendor evaluation, and contract management.
  • Align priorities with InfoSec, Compliance, and Application teams.
  • Contribute to change management, incident response, and design control principles.
  • Support virtualization, storage, Windows/Linux standards, and Kubernetes clusters.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Industry

Miscellaneous Manufacturing

Number of Employees

1-10 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service