**Hybrid Position in Ciudad Obregon**
The Opportunity
Leading Manufacturing compnay is seeking an IT Infrastructure & Cybersecurity Manager to become the operational owner of the technology that keeps our business secure, connected, recoverable, and running. The role supports our Verona, Virginia and Obregon, Sonora operations and works closely with the Director of Information Technology, internal systems/support staff, manufacturing leadership, and specialist technology partners.
You will be expected to work at both levels: personally troubleshoot and administer critical infrastructure when needed, while also improving architecture, operating discipline, documentation, team capability, and security maturity so the environment becomes less reactive over time.
What You Will Own
- Cybersecurity operations: CrowdStrike/EDR operations, vulnerability remediation, alert triage, incident response, security awareness, control validation, third-party security risk, and cyber-risk metrics.
- Microsoft security and identity: Microsoft 365, Entra ID, Conditional Access, MFA, privileged access/PIM where licensed, service accounts, access reviews, Intune security/compliance, and joiner/mover/leaver controls.
- Network and perimeter security: Fortinet firewall operations, VPN, dual-ISP/SD-WAN resilience, network segmentation, Cisco switching/wireless coordination, DNS security, secure remote access, configuration backup, and change control.
- Servers, cloud, backup and recovery: Windows/Active Directory infrastructure, VMware-based workloads, Azure infrastructure, monitoring, backup operations, restore testing, disaster-recovery execution, and infrastructure lifecycle planning.
- Manufacturing and OT security partnership: Work with Operations, Engineering, Maintenance, and qualified controls specialists on IT/OT segmentation, vendor access, asset visibility, secure remote support, and low-risk plant-data connectivity.
- Operational reliability: Lead technical response for major infrastructure/security incidents, drive root-cause correction, maintain runbooks and architecture documentation, and use disciplined incident/change/problem practices.
- Team and vendor enablement: Develop internal technical depth, cross-train backup owners, coordinate L3 vendors, and require documentation and knowledge transfer so critical knowledge remains inside our company.
Technology Environment
Area: Security
Platforms: CrowdStrike, Cisco Umbrella, Duo, KnowBe4, RedSpy, PatchMyPC
Area: Network
Platforms: Fortinet firewalls, dual Internet connectivity, VPN, Cisco switching & wireless
Area: Identity / Endpoint
Platforms: Microsoft 365, Teams, Entra/Azure-related admin, Intune, Active Directory
Area: Compute / Recovery
Platforms: Dell, VMware ESXi/VMs, on-premise workloads, layered backup systems, future Azure modernization
Area: Enterprise / Data
Platforms: Plex, HubSpot, Salesforce, Snowflake, Power BI and related integrations - security partnership rather than primary business-application ownership
Area: IT Service Management
Platforms: Freshservice and documented incident/change/problem/knowledge practices
What Success Looks Like
- Critical infrastructure has a named owner, backup/escalation path, current documentation, and tested recovery procedure.
- Security tools are not merely installed - coverage, monitoring, remediation, and response processes are measurable and working.
- Privileged access, MFA, service/vendor accounts, and Microsoft identity controls are deliberately governed and periodically reviewed.
- Backups are validated through meaningful restore tests and recovery priorities are understood.
- Network and firewall changes are tested, reversible, documented, and do not depend on one person or vendor.
- Major incidents are handled calmly with clear technical leadership, business communication, containment, recovery, and post-incident improvement.
- Routine infrastructure/security work increasingly stays with the operational team instead of escalating automatically to the Director.
Required Experience
- Approximately 3+ years of hands-on IT infrastructure and/or cybersecurity operations experience, with demonstrated ownership of production systems.
- Strong network troubleshooting fundamentals: TCP/IP, DNS, DHCP, VLANs, routing, NAT, VPNs, firewall policy, segmentation, packet/log analysis, and change/rollback practices.
- Hands-on administration of next-generation firewalls; Fortinet/FortiGate experience or similar is strongly preferred.
- Hands-on Microsoft 365 / Entra ID administration, including MFA and Conditional Access; Intune experience is strongly preferred.
- Hands-on EDR/endpoint-security administration and incident investigation; CrowdStrike Falcon or similar experience is strongly preferred.
- Experience supporting Windows Server/Active Directory, virtualization, cloud infrastructure, backup/recovery, and production troubleshooting.
- Demonstrated ability to investigate incidents and outages end-to-end rather than relying only on vendors or policy documentation.
- Ability to document architectures and procedures, coach other IT staff, and work effectively with external specialists.
Preferred
- Manufacturing IT or OT-security experience, including segmentation and vendor remote-access controls.
- Azure infrastructure experience and experience planning or supporting hybrid-to-cloud migrations.
- Relevant Microsoft, Fortinet, Cisco, CrowdStrike, Security+, CISSP, or comparable certifications.
- Experience supporting ISO 9001/ISO 13485 or other regulated/quality-focused environments.
- Experience with Snowflake security, SaaS access governance, or cloud data-platform security.
- Ability to work effectively across U.S. and Mexico teams; Spanish-language capability is a plus.
Education
Bachelor's degree in information technology, cybersecurity, computer science, engineering, or a related field is preferred. Equivalent hands-on experience, technical training, and relevant certifications will be considered.