Z

IT Infrastructure and Security Engineer

Zentso

Remote · Full Time

Be the first to apply

Experience
2+ yrs
Salary
EUR 55,000 – EUR 75,000 / year
Openings
1
Posted
1 hour ago
Work mode
Work from home
Resume
Required to apply

Job description

About the Role and Company

Zentso is a software firm that develops and maintains CloudToolz, a mission-critical SaaS platform built on top of the iMIS RiSE association management system. This platform supports clients in the UK, Europe, the US, and Asia Pacific, providing features such as workflow automation, form building, CRM, CMS, and payment processing across various sectors.

We are currently looking for a motivated IT Infrastructure and Security Engineer to join our team and support the global infrastructure and security systems underlying CloudToolz and Zentso's internal networks. This junior-to-mid-level, hands-on position collaborates closely with the IT Infrastructure and Security Lead and CTO to handle daily operations, security initiatives, and contribute to the ongoing migration to a containerized Kubernetes environment.

Key Responsibilities

  • Manage and maintain global infrastructure comprised of Windows Server 2022, SQL Server, MongoDB, Redis, and Cloudflare across four regions, ensuring the CloudToolz platform stays highly available, performant, and scalable.
  • Assist with deploying new CloudToolz software releases (built on ASP.NET Core, integrating Dynamics, iMIS, Salesforce, and native CRM/CMS) and support Kubernetes migration efforts including cluster management tasks like deployment, scaling, networking, and role-based access control.
  • Develop and maintain an observability stack using Grafana OSS featuring dashboards, alerts, and integration of metrics, logs, and traces. Provide DNS, CDN, WAF, and DDoS protection via Cloudflare. Monitor system performance and engage in incident response as needed.
  • Document operational procedures, maintain runbooks, and assist in disaster recovery planning.
  • Create shell scripts and small infrastructure applications to enable automation and streamline infrastructure operations in partnership with the Infrastructure Lead.
  • Support security operations including identity and access management, endpoint protection, and vulnerability management.
  • Administer policies for Microsoft 365, Bitwarden, Bitdefender GravityZone, and KnowBe4 platforms.
  • Participate in GDPR and ISO 27001 aligned data protection strategies, security awareness programs, phishing simulations, and threat monitoring activities.
  • Assist with Microsoft 365 administrative tasks (Exchange Online, SharePoint, Teams, Entra ID) and Salesforce system administration within defined scope.
  • Share responsibility for endpoint security and password management configuration.
  • Contribute insights to infrastructure scaling, architectural design, and the containerization roadmap.
  • Drive adoption of infrastructure-as-code and automate routine tasks through PowerShell, shell scripting, and other programming languages.
  • Engage in sprint planning and participate in on-call rotations for environment support.

Essential Qualifications

  • At least two years of professional experience in IT infrastructure, cloud operations, systems administration, or DevOps.
  • Practical experience with Windows Server 2022, SQL Server, MongoDB, Redis in operational environments, plus hands-on Cloudflare experience (covering DNS, WAF, CDN, and security functionalities).
  • Competency administering Microsoft 365 services such as Entra ID, Exchange Online, and SharePoint.
  • Working knowledge of Kubernetes including workload deployment, cluster operations, networking configurations (ingress, network policies), and RBAC.
  • Strong foundational understanding of network security concepts such as firewalls, VPNs, DNS, and access control methods.
  • Understanding of GDPR compliance requirements and experience assisting with relevant controls.
  • Ability to write shell scripts and program in a modern language (e.g., Python, Go, C#, JavaScript/TypeScript) with enthusiasm for developing infrastructure-related automation tools and applications.
  • Excellent communication skills paired with the ability to work autonomously within a global, distributed team spanning multiple time zones.

Preferred Experience and Skills

  • Familiarity with Grafana OSS, Prometheus, and Loki observability tools.
  • Experience with Docker, containerd, Helm, and kubectl tools for container management.
  • Relevant certifications such as MCSA, CompTIA Security+, CKA, or equivalents.
  • Exposure to ISO 27001 audit and certification processes.
  • Competence in PowerShell scripting for task automation and reporting.
  • Experience with Terraform, Pulumi, Ansible, CI/CD pipelines, or GitOps workflows.
  • Salesforce administration proficiency.

Work Conditions and Benefits

This position is a full-time, permanent role located in Berlin, Germany, with a remote-first work approach. The CloudToolz platform runs continuously across several regions, hence the role includes responsibilities for on-call support and out-of-hours incident escalation.

Salary range offered: €55,000 to €75,000 annually.

Additional benefits comprise a discretionary performance bonus based on individual and company outcomes, employer pension contributions according to local regulations, and flexible working hours geared towards global collaboration.

A six-month probation period applies. Compensation will reflect experience level and the complexity of duties within a small business context, while remaining competitive in Berlin's IT market.

Application Instructions

Interested candidates should submit a resume along with a cover letter detailing how their qualifications and experience align with the requirements of the role.

Work styles they’re looking for

Problem Solving Attention to Detail Strong communication

Leave it if you'd like a reply — we won't use it for anything else.

Click to browse, drag & drop, or paste a screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Max 20MB each · Up to 5 files

🤖
Online · instant AI help