Return To Job Search

Data Engineer

Minnesota - Developer

Hollstadt Overview

Hollstadt Consulting is a management and technology consulting firm dedicated to placing professionals at engagements where they will excel. When you work with us, you'll work with a refreshingly real company led and staffed by seasoned experts who are also down-to-earth, good people. We're committed to treating you with respect and helping you achieve your career aspirations.

Since 1990, Hollstadt has been a trusted partner to more than 150 domestic and global companies and has successfully completed over 3,000 projects. Our continued growth has created challenging and rewarding opportunities for accomplished IT and Business Consultants. Hollstadt Consulting is an equal opportunity employer including disability/veteran.

By applying for this job, you agree to receive calls, AI-generated calls, text messages, or emails from Hollstadt Consulting and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel at any time.


Job Description

Role: Data Engineer

Location: Remote

Duration: 6-12 months (extension possible)

Rate: $52.51/hour W2


1. Engagement Overview

The client has selected Globus as a strategic Managed File Transfer (MFT) platform to address critical gaps in secure, large-scale research data movement. The Globus platform is currently being installed in the GCP Cloud Data DMZ and is nearing completion of initial implementation. The Enterprise Interfaces team within the Enterprise Data organization has been designated as the operational home for Globus, alongside existing MFT solutions (Signiant and Cleo).

The contractor will embed within the Enterprise Interfaces team and serve as the primary technical resource for completing Globus operationalization, onboarding initial research customers, establishing operational support processes, and building the team's institutional knowledge of the Globus ecosystem. This engagement is designed to bridge an immediate capacity gap while the organization plans for long-term staffing through Phase 2 positions.


2. Project Context

This engagement directly supports enterprise priorities including:

  • Research Enablement – Enabling secure, compliant, high-throughput transfer of large research datasets (terabyte- to petabyte-scale) for Principal Investigator onboarding/offboarding, grant collaborations, and secure data downloads from approved external sites.
  • MFT Consolidation – Integrating Globus into the existing MFT portfolio alongside Signiant and Cleo, with a long-term vision toward consolidated MFT operations with an AI-operations-centric approach.
  • Security & Compliance – Ensuring alignment with internal ISA, BAA, TPRM, and NIST security framework requirements.

Key Architectural Elements:

  • Globus SaaS control plane with user authentication via Entra ID (restricted to allowed identity providers)
  • Two internally hosted Compute Engine VMs running Globus Connect Server (GCS) v5 in the GCP Data DMZ
  • GCP ingress and egress S3 storage buckets with a defined 30-day data lifecycle/retention rule
  • GridFTP parallel transfer protocol across HTTPS 443 and TCP ports 50000–51000 for high-performance data movement
  • Globus Storage Gateways (Google S3 connectors) linking collections to GCP bucket storage
  • Data movement performed by Globus-managed service accounts — no direct user access to underlying buckets
  • User provisioning managed via Sailpoint
  • Flat-fee licensing model for unlimited data transfer and unlimited endpoints (cloud and on-premises)

3. Scope of Work / Key Responsibilities

The contractor will be responsible for, but not limited to, the following:

Platform Configuration & Deployment Completion

  • Complete final configuration and hardening of the Globus Connect Server (GCS v5) deployment on GCP Compute Engine VMs within the Data DMZ
  • Configure and validate Globus Storage Gateways and S3 Storage Connectors for ingress and egress GCP buckets
  • Configure Globus collections (Managed and Guest) aligned with client's data access policies and identity provider restrictions
  • Validate end-to-end data transfer workflows including ingress, egress, and staging collection transfers across the Service Connector (SC) boundary into the MCC VPC
  • Configure DNS, authentication flows (OAuth/OpenID Connect via Entra ID), and endpoint registration within Globus.org

User Onboarding & Research Customer Support

  • Onboard initial research user groups to the Globus platform, providing hands-on support for first transfers
  • Develop and document standardized user onboarding procedures, including Sailpoint provisioning workflows and Globus Web App access
  • Provide Tier 1/2 operational support for Globus users — troubleshooting transfer failures, stalled transfers, permission issues, connectivity problems, and performance optimization
  • Coordinate with Globus vendor support (University of Chicago) for escalated issues using the established Globus support process

Infrastructure Maintenance & Operations

  • Monitor and maintain Globus Connect Server VM health, GCS services, and GCP bucket lifecycle policies
  • Manage Globus endpoint configurations including storage gateways, identity provider settings, path restrictions, and access policies
  • Perform ongoing performance tuning — optimizing GridFTP concurrency, parallelism, data channel configurations, and transfer parameters for high-throughput workloads
  • Monitor transfer activity, usage patterns, and audit logs for operational and compliance reporting
  • Manage GCS software updates, patches, and version upgrades
  • Support disaster recovery planning and testing for the Globus platform

Security & Compliance

  • Implement and enforce security controls aligned with internal ISA, BAA, and NIST frameworks
  • Manage identity provider configurations and access controls (RBAC) within the Globus platform
  • Ensure data governance policies are enforced — including collection-level permissions, path restrictions, and transfer audit logging
  • Support TPRM and Risk/OIS requirements as they relate to Globus operations

Knowledge Transfer & Documentation

  • Produce comprehensive technical documentation: runbooks, SOPs, architecture diagrams, troubleshooting guides, and operational playbooks
  • Participate in the Globus Orientation Session led by Pete Eby from the Architecture team and help translate session content into operational procedures
  • Transfer knowledge to internal Enterprise Interfaces staff to enable long-term self-sufficiency
  • Document lessons learned from initial user onboarding and operational support activities

Collaboration & Governance

  • Navigate internal governance, change management, and approval processes for platform changes
  • Collaborate with the Architecture team, Storage/Infrastructure team, and Research stakeholders
  • Coordinate with ADO repo owners for configuration and state management
  • Provide input into long-term MFT operations planning and AI-operations integration

4. Required Technical Skills

Globus Platform Expertise (Critical)

  • 3+ years hands-on experience with the Globus platform, including Globus Connect Server v5 deployment, configuration, and administration
  • Deep understanding of the Globus ecosystem: endpoints, collections (managed and guest), storage gateways, storage connectors (S3, POSIX), and the Globus Web App
  • Experience with GridFTP protocol — concurrency, parallelism, data channel tuning, and performance optimization for large-scale transfers
  • Familiarity with Globus Auth — OAuth 2.0 / OpenID Connect integration, federated identity management, and identity provider configuration
  • Experience with Globus Flows for workflow automation and scheduled/recurring transfer operations
  • Experience with Globus CLI and Globus Python SDK for scripting and automation
  • Familiarity with Globus vendor support engagement processes

Google Cloud Platform (GCP)

  • Hands-on experience with GCP Compute Engine (VM provisioning, management, and maintenance)
  • Experience with GCP Cloud Storage (S3-compatible buckets, lifecycle policies, IAM, service accounts)
  • Understanding of GCP networking — VPCs, firewall rules, DNS, ingress/egress controls, and DMZ architecture
  • Experience with GCP IAM, service accounts, and RBAC

Linux Systems Administration

  • Strong Linux administration skills (the Globus Connect Server runs on Linux VMs)
  • Proficiency with shell scripting (Bash), system monitoring, log analysis, and troubleshooting
  • Experience with package management, service configuration, and security hardening on Linux

Networking & Security

  • Understanding of network protocols: TCP/IP, HTTPS, GridFTP, DNS
  • Experience configuring firewall rules for high-port-range protocols (TCP 50000–51000)
  • Familiarity with Zero-Trust security principles and DMZ architecture patterns
  • Understanding of HIPAA compliance as it applies to data transfer and PHI handling in healthcare environments

Data Transfer & MFT Concepts

  • Broad understanding of Managed File Transfer principles — secure transfer protocols, audit logging, compliance, and data governance
  • Experience supporting large-scale data transfers (terabyte- to petabyte-scale) in research, academic, or healthcare environments
  • Familiarity with other MFT tools (Signiant, Cleo, or similar) is a plus

5. Preferred / Nice-to-Have Skills

  • Experience deploying Globus in a healthcare or regulated environment (HIPAA, NIST)
  • Familiarity with Azure DevOps (ADO) for config/state management and CI/CD pipelines
  • Experience with Terraform / Infrastructure as Code for GCP resource provisioning
  • Knowledge of Sailpoint or similar identity governance platforms for user provisioning
  • Experience with Entra ID (Azure AD) federation and SSO integration
  • Familiarity with High-Performance Computing (HPC) environments and research data workflows
  • Experience with monitoring/observability tools (Prometheus, Grafana, GCP Cloud Monitoring)
  • Understanding of Box.com integration patterns (Globus + Box complementary architecture)

6. Other Requirements

  • Self-directed problem solver – Identifies issues, researches solutions, and proposes fixes without waiting for detailed instructions. Globus troubleshooting often requires deep dives into different layers of the stack (application, performance, networking, user-support).
  • Strong communicator – Able to explain complex technical concepts to both technical staff and research customers; produces clear, concise documentation.
  • Enables others – Actively transfers knowledge to internal team members; creates operational runbooks and training materials that enable the team to assume full ownership.
  • Customer-oriented – Comfortable working directly with research users to troubleshoot issues and guide them through data transfer workflows.
  • Governance-aware – Navigates internal change management, approval processes, and security review requirements effectively.
  • Proactive – Anticipates operational needs, identifies process improvements, and proposes solutions for long-term platform sustainability.

Required Education:

  • Bachelor's degree in Computer Science or Engineering from an accredited University or College.
  • OR
  • Associate’s degree in Computer Science or Engineering from an accredited University or College with two (2) years of experience.


Benefits + Perks

Comprehensive Benefit Plan

Hollstadt offers medical, dental, vision, life insurance, short-term disability, long-term disability, paid sick leave, and retirement benefits to eligible employees. With three different medical plans to choose from, you can enroll in the coverage you need from individual to family, or anywhere in between!

Remarketing Process

Hollstadt is based on retention and relationships. We get to know your strengths and career wishes throughout your assignment and then start remarket discussions 6-8 weeks prior to your end date. By being proactive, we are able to keep your down time between assignments as short as possible, unless you choose otherwise.

Professional Development

Hollstadt offers on-demand training through our consultant portal. Trainings give our consultants the continuing education they need to excel on their projects. Many of our courses apply towards continuing education credits and we have an entire training hub dedicated to upskilling in Artificial Intelligence (AI).

401k + Matching

One popular benefit is our 401(k) match on the first 4% of your contributions. Hollstadt wants to help you reach your long-term financial goals and understands that planning for your future is critical. Consultants also have access to support from a Financial Advisor.

Bonus Opportunities

We appreciate and reward loyalty. Join Hollstadt, stay for 5 years, and we’ll give you a $5,000 Longevity Award bonus! Additionally, we know great talent knows other great talent. If you are on contract with Hollstadt and refer one of your connections who gets placed, we’ll pay you $1,000!

Ongoing Support & Networking

We have made a significant investment in building a support program for our consultant team - so you never have to feel like you are going it alone. We also have a Consultant Coach program which acts like a 'work buddy' to provide a safe ear for questions or concerns at your client site.