Description
ICT Operations Engineer (on premises & cloud)
Blue Diamond Asset Management is a hedge fund management company based in Zug, Switzerland and an affiliate in Singapore, that focuses on systematic relative value volatility strategies.
We are looking for a talented and passionate ICT Operations Engineer (100%) to join the growing IT Infrastructure & Security team that lies at the heart of the business.
This role sits at the intersection of operations and engineering, with an increasing focus on automation, security, and hybrid architecture. You will gain deep exposure to both traditional infrastructure and modern cloud-integrated environments and work across our offices, data centers, cloud services, and private connectivity environments, contributing directly to stability, security, and performance.
Your daily challenges
Operate and continuously improve our hybrid IT infrastructure across on-premises data centres, Azure, and our offices
Monitor system health, investigate alerts, and ensure timely resolution of incidents and service requests
Troubleshoot complex issues across systems, networking, and identity layers
Ensure continuous IT operations and support in close collaboration with the team, including occasional availability outside standard business hours
Plan and execute maintenance activities such as patching, upgrades, and lifecycle management
Support change management processes with a structured and risk-aware approach
Collaborate closely with engineering and development teams on infrastructure improvements
Maintain and enhance monitoring, logging, and event management capabilities
Support hybrid identity and workplace environments (on-premises Active Directory and Entra ID)
Ensure reliable and secure connectivity across international sites and partners, including private interconnects
Identify operational improvements and contribute to automation and standardization initiatives
What you bring to the table
At least 3 years of experience operating enterprise IT infrastructure within a small but highly mature and well-established IT environment, with a strong focus on Microsoft technologies; familiarity with Linux environments is a plus.
Solid expertise in Active Directory, DNS, Group Policy, and hybrid identity setups
Hands-on experience with Microsoft 365, Intune, SCCM, endpoint management, including updates, patching and software packaging
Experience with virtualization platforms, such as VMware ESXi
Strong understanding of networking fundamentals, including TCP/IP, routing, switching, DNS, and network segmentation
Practical experience with VPN technologies, firewalling, and secure connectivity design (site-to-site, remote access)
Experience with enterprise firewalls
Familiarity with monitoring, ideally with PRTG and Opvizor
Understanding of storage integration, backup, and recovery concepts
Strong security mindset with a clear understanding of operational impact in sensitive environments
Structured troubleshooting approach with strong analytical thinking
Fluent in German & English
Technologies we are using
Operating Systems & Platforms: Windows Server / Clients, Linux (Debian, RedHat), VMware ESXi, Microsoft Hyper-V
Identity & Workplace: Active Directory (DNS, DHCP, GPO, CA, RDS), Entra ID, Intune, SCCM and Microsoft 365
Cloud & Security: Microsoft Azure, Microsoft Defender ecosystem, Arctic
Networking & Connectivity: Cisco, Aruba, Fortinet, VPN, private connectivity (Equinix Fabric, site-to-site), Azure ExpressRoute, Azure vWAN
Data Protection & Infrastructure: Veeam, on-premises data centres (Zurich region)
What we value
Ownership and accountability for systems and services
A structured and precise working style
Strong problem-solving persistence and quality focus
Service-oriented mindset with clear communication
Interest in security, resilience, and zero trust principles
Ability to work independently while contributing to a small, highly effective team
What we offer
Annual bonus programme
Generous pension contribution
Social events, international team and knowledge sharing
5 weeks of vacation
Office within walking distance from Zug train station
Two days per week of remote work
A 38′′ monitor for remote work
Complementary coffee, outstanding coffee machine
Standing desks available jid8a99b21a jit0415a jiy26a
