×
Register Here to Apply for Jobs or Post Jobs. X

Sr Infrastructure & Security Engineer

Job in Waukee, Dallas County, Iowa, 50263, USA
Listing for: Vizypay
Full Time position
Listed on 2026-08-22
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, Network Security
Salary/Wage Range or Industry Benchmark: 120000 - 180000 USD Yearly USD 120000.00 180000.00 YEAR
Job Description & How to Apply Below

All Jobs >
Sr Infrastructure & Security Engineer

This position is in-office, located in Waukee, Iowa.

Vizonian Life

Vizy Pay is leading the technology-payment processing space. Our culture is built on trust, transparency, technology, and talent. We are the voice for business owners, putting money back in their pockets and eliminating up to 100% of their processing fees.

It’s time to love what you do and be your authentic self! Yes, we hold each other accountable. If you’re successful, we’re all successful - this is why we #workhardplayhard so #LFG #Team Vizy!

The Gig

The Sr. Infrastructure & Security Engineer owns the cloud infrastructure, enterprise network, security posture, operational reliability, and end-user support functions that keep Vizy Pay connected, protected, and audit-ready. Reporting directly to the CIO, the role unifies cloud and platform engineering, networking, site reliability engineering, security engineering, and IT support into a single senior individual-contributor mandate spanning the infrastructure foundation beneath VEXIS — Vizy Pay's proprietary CRM platform — and the organization's business systems.

The role is a core contributor to the annual PCI DSS assessment and the enterprise BCP/DR programs. Operating cloud-first in a security- and compliance-driven payments environment, it is accountable for availability and resilience (RTO/RPO), detection and response readiness, measurable risk reduction, infrastructure cost, and audit-ready controls in production.

  • Architect, build, and operate secure, scalable cloud infrastructure across Microsoft Azure, AWS, and Digital Ocean — compute, virtual networking, storage, and managed data services — supporting VEXIS and enterprise systems.
  • Expand infrastructure-as-code (e.g., Terraform) and Git Ops automation as the default provisioning path, including policy-as-code and IaC security scanning; build CI/CD pipelines (e.g., Git Hub Actions, Azure Dev Ops) with automated testing and controlled promotion; eliminate manual, unrepeatable changes.
  • Manage infrastructure cost and capacity: rightsizing, reserved-capacity strategy, usage monitoring, and performance optimization, with spend reported against approved budget and capacity kept ahead of business growth.
  • Provide technical leadership across Infra Sec and in partnership with Software Engineering: engineering standards, design and architecture reviews, and mentorship as a hands-on individual contributor.
Networking
  • Administer and support the enterprise network — firewalls, SD-WAN, switches, wireless access points, and overall network infrastructure — including design, configuration, monitoring, and lifecycle management.
  • Own network segmentation design and enforcement, TLS 1.2+ everywhere, and secure connectivity — site-to-site and remote-access VPN, DNS, load balancing, and WAF/CDN (e.g., Cloudflare) — aligned with least privilege.
  • Maintain network documentation, configuration baselines, and audit-ready change records; manage network capacity, performance, and availability.
Security Engineering & Identity
  • Own and manage key security platforms and services — identity and access management (IAM), endpoint security, mobile device management (MDM), password management, security monitoring, and Microsoft 365 security posture, including email security controls (e.g., anti-phishing, DMARC/DKIM/SPF) — including administration, policy, integration, and continuous improvement.
  • Own security monitoring and detection engineering across enterprise SIEM, EDR, and file integrity monitoring (FIM) platforms: log-source onboarding, detection content, alert tuning, and response runbooks.
  • Operate the vulnerability management program (coverage, risk-based prioritization, remediation SLAs), patch management cadence for operating systems and endpoints, and asset/configuration inventory; own identity lifecycle management (joiner/mover/leaver), conditional-access policy administration, and privileged access management (PAM); enforce vault-based secrets management and MFA-inclusive authentication; lead threat modeling and security-by-design with Software Engineering and Product.
Reliability, Operations & End-User Support
  • Def…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary