layiq
worthy; deserving; fitting; suitable.
A role, opportunity, or path that merits attention, time, and pursuit.
Loading LAYIQ…Job opportunity
Cambridge, MA
Source: Verista, Inc. careers · View original posting
From Verista, Inc.'s posting. “We” and “our” refer to the employer.
Description
Verista’s
500 experts team up with the world’s most recognizable brands in the life science industry to solve their business needs. The nature of our business is to empower growth and innovation within the scientific community and to help researchers, organizations, and companies solve some of the world’s most pressing healthcare challenges. Verista provides innovative solutions and services that empower informed decision-making and are the result of our significant investment in our people and our capabilities.
Our ability to grow is driven by world-class people who thrive in a team environment and share our mission to enable life sciences clients to improve lives. Our talented and dedicated professionals are committed to making an impact every day.
We encourage an inclusive environment where our colleagues feel respected, engaged, and challenged.
We constantly acquire new skills and learn from our experiences to enhance our collective expertise
We are seeking a hands-on Systems Admin who will be responsible for the secure, reliable, and compliant operation of cloud-hosted research applications, agentic AI systems, and scientific SaaS platforms. This role supports systems that integrate cloud infrastructure, containers, AI models, Model Context Protocol (MCP) servers, scientific databases, APIs, and third-party services.
Partnering with scientists, developers, IT platform owners, cybersecurity, architecture, networking, data teams, and vendors, the administrator keeps pipeline and production services running reliably. The role does not own architecture, but must understand it well enough to operate, secure, troubleshoot, and maintain these applications effectively.
Administer research applications and infrastructure across Google Cloud Platform, AWS, and scientific SaaS environments, including cloud projects, IAM, networking, storage, quotas, and compute services, while maintaining separation among development, test, validation, and production environments
Operate Cloud Run services, containers, registries, domains, DNS, TLS certificates, load balancing, and Identity-Aware Proxy, supporting secure connectivity among cloud environments, internal systems, scientific databases, SaaS platforms, model APIs, and laboratory networks
Administer SaaS tenant settings, access, integrations, APIs, audit controls, and licenses, monitoring vendor releases, security advisories, and end-of-life notices
Maintain inventories of approved agents, MCP servers, tools, data sources, integrations, permissions, credentials, and system owners; maintain and update tooling supporting agentic AI frameworks and orchestration libraries, monitoring performance and resolving system errors
Administer user, group, service account, and machine-to-machine access using role-based access controls and least-privilege principles; rotate credentials and store secrets in approved services, eliminating hard-coded credentials
Maintain container images, Dockerfiles, registries, and pinned dependencies, remediating vulnerabilities and deprecations while maintaining rollback procedures and deployment traceability
Maintain logs, metrics, traces, alerts, dashboards, and automated health checks covering availability, performance, errors, model/tool failures, and cloud cost and usage
Create runbooks and support incident triage, root-cause analysis, corrective actions, backup, restoration, and disaster recovery; record and manage incidents, requests, and changes through ServiceNow and Jira with clear ownership and traceability
Maintain CI/CD pipelines and infrastructure-as-code configurations, applying source control, peer review, security scanning, and rollback controls, and help transition scientist-managed prototypes into documented, secure, production-ready deployments
Apply enterprise security and risk standards, supporting architecture reviews, threat modeling, audits, and investigations; maintain audit logs, identify unmanaged integrations and shadow AI services, and partner with scientists, developers, security, cloud engineering, and vendors on operational readiness and lifecycle ownership
Bachelor's degree in computer science, information systems, engineering, technology, or a related field
8+ years of experience administering production systems in GCP, AWS, Azure, or a comparable cloud environment
5+ years of experience with Linux, containers, Docker, Python environments, APIs, networking, DNS, TLS, identity, secrets management, and serverless or container orchestration services such as Cloud Run or Kubernetes
Knowledge of IAM, SSO, OAuth, service accounts, machine-to-machine authentication, CI/CD, infrastructure as code, monitoring, incident management, backup, recovery, patching, and vulnerability remediation
Familiarity with scientific computing, bioinformatics, laboratory automation, multiomics, research data platforms, or scientific SaaS, plus knowledge of container scanning, software bills of materials, supply-chain security, data integrity, and auditability. Relevant cloud, systems engineering, IT service management, or cybersecurity certifications are desirable
Local Hybrid Requirement: Must be willing to be on-site in Cambridge, MA 3 days per week
For US geography, the salary range for this position is shown below. The actual salary is dependent upon a variety of job-related factors such as professional background, training, work experience, location, business needs, market demand, and competitive market practice. Therefore, in some circumstances, the actual salary could fall outside of this expected range. This salary range is subject to change and may be modified in the future.
National (US) Range
$90,764 — $131,685 USD
*Verista is an equal opportunity employer.
LAYIQ is an independent job-discovery service. This listing does not imply a partnership with or endorsement by the employer. Review the original posting for current details and availability.
Employer posted: