Systems Engineer
Listed on 2026-03-07
-
IT/Tech
Systems Engineer, Cybersecurity
Company Description
It started with a simple idea: what if surgery could be less invasive and recovery less painful? Nearly 30 years later, that question still fuels everything we do a global leader in robotic-assisted surgery and minimally invasive care, our technologies—like the da Vinci surgical system and Ion—have transformed how care is delivered for millions of patients worldwide.
We’re a team of engineers, clinicians, and innovators united by one purpose: to make surgery smarter, safer, and more human. Every day, our work helps care teams perform with greater precision and patients recover faster, improving outcomes around the world.
The problems we solve demand creativity, rigor, and collaboration. The work is challenging, but deeply meaningful—because every improvement we make has the potential to change a life.
If you’re ready to contribute to something bigger than yourself and help transform the future of healthcare, you’ll find your purpose here.
Job Description Position SummaryWe are seeking a highly experienced Infrastructure Staff Engineer to drive strategy, architecture, and operations for Infrastructure as Code (IaC) across Azure, GCP, and AWS. This role requires deep expertise in PKI and certificate lifecycle management, Active Directory, infrastructure automation, and observability practices that ensure reliability, performance, and transparency across systems. You will be a technical mentor in regulated enterprise environments governed by HIPAA, HiTrust, ISO 27001, FDA, and FIPS 140-2.
Collaboration with Product teams is central: you will work closely with Product owners, engineering, SRE, QA, and Developer Enablement teams to ensure infrastructure supports evolving product requirements and enables rapid, reliable delivery of digital products.
Key Responsibilities Strategy & Mentorship- Define and implement the roadmap for automated infrastructure and process innovation across hybrid environments.
- Mentor infrastructure engineers, fostering ownership, efficiency, and compliance.
- Partner with Product teams to ensure delivery is supported by scalable, secure, and compliant infrastructure.
- Translate product requirements into secure, scalable infrastructure designs.
- Advise teams on infrastructure opportunities, limitations, and automation best practices.
- Contribute to backlog prioritization and infrastructure enhancements aligned with product goals.
- Maintain automated provisioning using Terraform and Ansible, supporting CI/CD pipelines across cloud and on-prem environments with Developer Enablement teams.
- Evaluate and implement automation/orchestration tools for full lifecycle management.
- Own PKI architecture and certificate lifecycle management (issuance, renewal, revocation, inventory).
- Ensure compliance with HIPAA, HiTrust, ISO 27001, FDA, and FIPS 140-2.
- Architect and manage AD domains, controllers, GPOs, and federation.
- Oversee integrations with Azure AD, Google Directory, and identity/access management automation.
- Implement observability practices including logging, tracing, and metrics to ensure infrastructure reliability and performance.
- Design and maintain controls for HIPAA and other regulatory frameworks, ensuring audit readiness.
- Establish KPIs and SLAs for reliability, performance, and compliance.
- Drive process improvement and incident avoidance through automation and observability.
- Provide technical guidance and escalation support.
- Support infrastructure budget planning, vendor evaluation, and contract management.
- Align priorities with Info Sec, Compliance, and Application teams.
- Contribute to change management, incident response, and design control principles.
- Support virtualization, storage, Windows/Linux standards, and Kubernetes clusters.
Skills & Qualifications Technical Expertise
- IaC:
Advanced proficiency with Terraform, Ansible, and CI/CD. - Cloud:
Extensive experience with AWS, Azure, GCP. - PKI:
Enterprise PKI and certificate lifecycle management (ADCS, Digi Cert, Key Factor). - Ac…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).