MWH is a leading water and wastewater treatment-focused general contractor in the US with a rich history dating back to the 19th century. Fueled by the mission of Building a Better World, our teams are rapidly growing across the nation. As a company committed to our team's well-being and growth, we offer a supportive work environment, opportunities for advancement, and the chance to contribute to a mission that shapes the future. Your expertise and ambition are valued here. The work we do matters. The critical systems infrastructure we build changes lives, betters' communities, and improves ecosystems. If you're passionate about this, we want to hear from you! About the Role MWH is currently seeking a hands-on, senior technical leader to own our enterprise infrastructure architecture and day-to-day operational excellence. You will define standards, design modern solutions, and guide implementation across identity, endpoint management, collaboration/messaging, network, and cloud platforms (Azure/M365-including GCC High where applicable). You'll run architectural governance, improve security posture (NIST 800-171/800-53 aligned), implement a CMMC 2.0 compliant enclave and mature change/incident processes-balancing cost, risk, and speed. This position may be Hybrid (Charlotte, NC; Denver, CO); or Remote US, EST/MST overlap. Essential Functions Architecture & Governance
- Own enterprise infrastructure reference architectures, standards, and patterns; chair/drive the Architecture Review Board for infra changes.
- Produce solution proposals with options, TCO/5-year ownership, risk trade-offs, and recommendations.
Infrastructure and Operations
- Lead Intune/Autopilot deployments, app packaging, compliance baselines, and device lifecycle/refresh strategy.
- Define Windows hardening and drift controls; partner with SecOps for Defender suite integration.
- Design and govern Entra ID/Azure AD, ADFS retirement/SSO migrations, Conditional Access, and privileged access guardrails.
- Implement PKIaaS (e.g., DigiCert), certificate lifecycle, and Cloud Kerberos.
- Guide Office365 strategy, Teams Rooms, OneDrive rollout, and M365 Groups governance to protect restricted data (e.g., CUI).
- Oversee data protection with Microsoft Purview (labels, DLP, retention).
- Azure landing zone alignment, storage and backup strategy (e.g., NetBackup or native), and on-prem to cloud migration planning.
- Define HA/DR objectives and test plans.
Security & Compliance
- Redefine and maintain Incidence Response plans and policies.
- Align controls to NIST 800-171/800-53/SCuBA baselines; partner with Compliance for audit-ready evidence and policy updates.
- Support enclave and GCC High patterns when required; advise on SCIF and restricted-environment needs.
Operations, Change & Incident
- Create and run the Change Advisory Board; establish RCA/CAPA discipline and metrics; continuously improve SLAs/SLOs.
- Mentor a small team (player/coach), set goals, conduct reviews, and develop talent.
Travel: ~10% Basic Qualifications
- 12+ years in enterprise infrastructure/operations, 5+ years in architecture leadership; experience leading small teams.
- Recent experience implementing CMMC 2.0 compliant environments.
- Deep expertise in Microsoft 365 & Azure: Entra ID (Azure AD), Intune/Autopilot, Exchange hybrid, Teams/OneDrive, Purview/DLP.
- Proven delivery of PKI/PKIaaS, SSO/Federation, Cloud Kerberos, and app onboarding to SSO.
- Strong grounding in NIST 800-171/800-53, handling of CUI, and familiarity with GCC High environments.
- Hands-on with networking (Cisco/Aruba), Windows Server/AD, VMware, backup/DR, and PowerShell automation.
- Demonstrated ownership of change management/CAB, incident/RCA, and executive-level solution proposals with TCO.
- Excellent communicator, able to translate complex trade-offs for executives and guide admins with actionable standards.
Benefits
- Group health & welfare benefits including options for medical, dental and vision
- 100% Company Paid Benefits: Employee Life Insurance & Accidental Death & Dismemberment (AD&D), Spouse and Dependent Life & AD&D, Short Term Disability (STD), Long Term Disability (LTD), Employee Assistance Program and Health Advocate
- Voluntary benefits at discounted group rates for accidents, critical illness, and hospital indemnity
- Flexible Time Off Program (includes vacation and personal time)
- Paid Sick and Safe Leave
- Paid Parental Leave Program
- 10 Paid Holidays
- 401(k) Plan (company matching contributions up to 4%).
- Employee Referral Program
MWH Constructors is a global project delivery company in heavy civil construction with a focus on water and wastewater treatment infrastructure. With the ultimate goal of delivering maximum value to clients and their local communities, MWH Constructors provides single-source, integrated design and construction services through a full range of project delivery methods. Incorporating industry-leading preconstruction and construction services, the Company's multi-disciplined team of engineering and construction professionals delivers a wide range of projects, including new facilities, infrastructure improvement and expansion, and capital construction services. Equal Opportunity Employer, including disabled and veterans. Please note that all positions require pre-employment screening, including drug and background check, as a condition of employment.
|