System Administrator
hace 3 días
Arlington
Job Description Apogee Research brings cutting-edge research into practice for the DoD community. We blend agility with rigor to develop new technologies and transition them into operational use. Founded in 2012, Apogee Research brings together cross-discipline teams to solve difficult and often deemed impossible problems across a range of different technical domains. At Apogee Research we work hard, we get things done, and we do it together. Apogee Research is seeking a skilled System Administrator to provide operational and technical support for enterprise and standalone information systems. This role is critical to maintaining the availability, integrity, and security of Apogee’s Windows, Red Hat, and virtualized environments in compliance with Department of Defense (DoD) regulations and NIST standards (SP 800-171, SP 800-53, SP 800-30). The System Administrator will configure, maintain, and troubleshoot systems, implement security controls, and support compliance efforts through system hardening, patch management, and documentation. This position requires proficiency in systems administration, a proactive approach to problem-solving, and the ability to collaborate with security and IT teams to uphold a robust security posture in a fast-paced R&D environment. This is an excellent opportunity for an energetic and experienced System Administrator who is conscientious, detail-oriented, and enjoys working with a close-knit team. This position can be scoped to meet the capabilities of the right candidate with competitive compensation matched to the key responsibilities of the role. This position requires a TS security clearance (with SCI and SAP eligibility); having an active TS clearance is a strong preference but is not strictly required. Key Responsibilities • Configure, maintain, and administer a blended Windows/Linux infrastructure environment, including:, • System deployment - Hardware assembly, OS installation and configuration, permissions configuration, and security hardening, • System maintenance – User management, installation, configuration, and update of software, patches, and firmware, • System optimization - Monitor system performance and health to identify opportunities for performance improvement, implement system tuning, • Automation - Scripting routine tasks using BASH, Python, Ansible, Kickstart, and PowerShell, • Linux system administration including identifying and troubleshooting issues with permissions and user rights, networking, performance and responsiveness, and system functionality problems resulting from security hardening, • Coordinate with project engineering teams to understand their project needs, gather requirements, and customize provided services to meet those needs, • Support and administration of security and management systems (switches, firewalls, domain controllers, virtualization stack) in accordance with candidate’s expertise, • In-person, voice, and chat support to users for laptop configuration, network settings, hardware peripherals, and standard end user applications, • Routine audits of systems and software, including log analysis, • Perform system backups, Assured File Transfers, and secure decommissioning of hardware in compliance with DoD policies, • Implement and verify Security Technical Implementation Guides (STIGs) and security controls per NIST SP 800-53 and NIST SP 800-171 for classified and Controlled Unclassified Information (CUI) networks (WAN, ISOL, LAN), • Support vulnerability scanning and remediation using approved tools (i.e, Nessus and Wazuh), • Deploy and maintain log aggregators (i.e., Kibana and Wazuh), • Coordinate and collaborate with the ISSO, ISSM, Contract Program Security Officer (CPSO)/Facility Security Officer (FSO), and IT teams to implement and enforce system security controls through incident reporting and investigation, system and process documentation, and establishment and maintenance of configuration management baselines, • Participate in recurring assessment activities (Incident Management Drills, Security Configuration Board Meetings, Change Control Board meetings) and preparation of ongoing security reporting (Risk Assessment Reports, Continuous Monitoring Plans, System Change Requests, Security Control Traceability Matrices, and Plan of Action and Milestones), • Bachelor’s Degree and 4+ years as a System Administrator or IT specialist (additional experience is considered in lieu of degree)., • Full-Time, In-Person, • Hands-on system administration experience, including command line/shell activity, with Windows Server (2019/2022), Windows 10/11, Red Hat, and other Linux distributions in enterprise or DoD environments., • Expertise troubleshooting services and protocols such as TCP/IP, DNS, FTP, SSH, SCP, SSL, HTTP/HTTPS, • Ability to obtain and maintain one or more of the following: CAP, CND, CompTIA Security+, and CompTIA CySA+., • Self-starter, highly motivated, able to multi-task and meet tight deadlines. A strong candidate must have the ability to work well under pressure and deal with changing priorities., • Must have excellent work habits, including a willingness to work the hours necessary to get the job done., • Excellent communication skills (oral and written), ability to work in team environment, and must work well with others., • Effective problem solving and a proven ability to cope with conflict, stress and crisis situations. Strongly Preferred • Proficiency in managing Windows Server Active Directory, Group Policies, and Red Hat system security configurations (e.g., SELinux, FAPolicyD, firewall rules), • Experience configuring systems to comply with DoD STIGs, NIST SP 800-53, or NIST SP 800-171 requirements, • Experience with desktop virtualization programs (e.g., VMware Workstation, Oracle’s VirualBox), SSL VPN clients, Adobe, and Office365 tools and programs, • Preference for experience in Research & Development and US military environments supporting complex COTS and GOTS integration, • Familiarity with scripting (e.g., PowerShell, Ansible, Java, Python, Bash) to automate system administration tasks, • Knowledge of vulnerability scanning tools (e.g., Nessus, OpenSCAP, SCC) and configuration management tools, • Understanding of network protocols, firewalls, and secure file transfer methods., • Working knowledge of NIST SP 800-171, NIST SP 800-53, NIST SP 800-30, NISPOM, RMF JSIG, and DOD/DCSA security policies, • Familiarity with RMF processes, including SCRs, SSPs, RARs, and POA&Ms About Apogee Research Apogee Research offers a comprehensive benefits package that includes health, dental, vision, life, and disability insurance, FSAs, paid vacation, sick leave, and paid holidays. Conveniently located in Arlington, VA, we are a short walking distance from the Ballston Metro station. We offer the choice of paid garage parking or a contribution towards a transit account. Apogee Research, LLC is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, parental status, military service, or other non-merit factors.