We are a fast growing technology company specializing in current and emerging internet, cloud and mobile technologies.
###
CX is a product engineering services company and has launched many successful products for its clients since its inception. Many of these products have been running since 2013. We're looking for Head of IT Infrastructure owns the stability, security, scalability, and cost-effectiveness of all core technology services for Codelogicx. You will lead a small team of engineers and vendors to design, implement, and operate our on-prem and cloud-connected networks, servers, storage, identity platforms, and perimeter security (firewalls, VPN, IPS). Your mission is to deliver "five-nines" availability, strong cyber-resilience, and a friction-free user experience that enables every business function to perform at its best.
###
Requirements
Key Responsibilities
Area
What You'll Own
Identity & Access
o Architecture, health, and lifecycle management of Active Directory, Azure AD, group policy, conditional access, SSO, MFA.o Joiner-Mover-Leaver processes, audit readiness, role-based access reviews.
Network & Perimeter
o Enterprise-class firewalls, routers, switches, load balancers, site-to-site VPNs, SD-WAN, and Internet Leased Lines (ILL).o Network segmentation, QoS, and continuous monitoring (NetFlow, SNMP, syslog, NMS).
Cloud & Compute
o Windows/Linux server estate (on-prem and IaaS), virtualization (VMware/Hyper-V), storage, backup, DR/BCP.o Collaboration with DevOps/SaaS teams to enforce landing-zone standards and secure connectivity.
Endpoint & Mobility
EDR/XDR platform (e.g., CrowdStrike, Microsoft Defender, SentinelOne)--policy tuning, threat-hunting, incident response. Mobile Device Management (Intune, Workspace ONE, Jamf) for laptops, phones, and BYOD; device compliance & encryption enforcement.
Security & Compliance
o Patch, vulnerability, and endpoint protection strategy.o Firewall ruleset hygiene, IPS/IDS tuning, zero-trust and least-privilege principles.o Support for ISO 27001, SOC 2, GDPR, HIPAA, or similar frameworks. Own ISO 27001 controls (A.5-A.18), evidence collection, internal audits, and external surveillance & recertification audits. Map controls to SOC 2 / GDPR / HIPAA where relevant. Drive vulnerability management, patch cadence, zero-trust micro-segmentation. Maintain SIEM/SOAR integrations.
Strategy & Governance
o 3-year infrastructure roadmap, budget planning, vendor selection & contract negotiation.o KPIs/SLAs, capacity planning, license compliance, documentation, and policy enforcement.
Leadership & Support
o Mentor a team of network/system admins (3-6 FTE) plus MSP partners.o Escalation point for P1 incidents; manage major incident bridge, RCA, post-mortems.o User-centric mindset--drive automation and self-service to reduce MTTR and service tickets.
Required Qualifications
Education:
Bachelor's degree in Computer Science, Information Systems, or related field (or equivalent experience).
Experience:
10+ years in enterprise infrastructure roles, including 3+ years managing teams and multi-site networks for ~300 users.
Technical depth in:
o Active Directory, Azure AD/Entra ID, GPO, LDAP, DNS, DHCP.
o Next-gen firewalls (Palo Alto, Fortinet, Cisco ASA/Firepower, etc.).
o Endpoint security platforms (CrowdStrike, Defender, SentinelOne, Falcon Insight, etc.).
o MDM/UEM suites (Intune, Workspace ONE, Jamf, or similar).
o Routing & switching (OSPF/BGP, VLANs, spanning-tree, PoE, wireless controllers).
o WAN technologies--ILL, MPLS, SD-WAN--and ISP/vendor management.
o Virtualization (VMware ESXi/VCF or Hyper-V) and Windows/Linux server administration.
o Backup/restore and DR replication (Veeam, Zerto, or similar).
o Scripting/automation (PowerShell, Python, Ansible) and infrastructure-as-code concepts.
o Audit leadership for ISO 27001; familiarity with SOC 2 Type II reporting.
Certifications (any of):
CCNP/CCIE, PCNSE/NSE 7+, Microsoft Entra ID or Azure Architect, VMware VCP-DCV, ISO 27001 Lead Auditor/Lead Implementer, CISSP/CISM, ITIL v4.
Preferred/Bonus Skills
Experience integrating on-prem AD with Microsoft 365, Intune, and conditional access.
Familiarity with zero-trust network architecture and micro-segmentation projects.
Exposure to SIEM/SOAR platforms (Splunk, Sentinel) and incident response playbooks.
Track record of cost optimization (cloud egress, telco contracts, license audits).
ITIL v4 certification and service-management process ownership.
Personal Attributes
Incident Commander:
Calm, decisive, data-driven under pressure.
Problem-solver:
Data-driven, automation-first mindset, relentless focus on root cause.
Leadership:
Empowers and develops technical staff; calmly leads during outages.
Strategic thinker:
Balances immediate fixes with long-term modernization.
Communicator:
Translates tech risks and requirements into business language for executives.
Strategic Builder:
Balances quick wins with long-term modernisation and cost-optimisation.
###
Benefits
Health insurance.
Hybrid working mode.
Provident Fund.
Parental leave.
Yearly Bonus. Gratuity.
Years
of
experience:
Minimum
15
years
Location: Kolkata
Full
time.
Beware of fraud agents! do not pay money to get a job
MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.
Job Detail
Job Id
JD3721795
Industry
Not mentioned
Total Positions
1
Job Type:
Contract
Salary:
Not mentioned
Employment Status
Permanent
Job Location
WB, IN, India
Education
Not mentioned
Experience
Year
Apply For This Job
Beware of fraud agents! do not pay money to get a job
MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.