Job Description Job Description On our expert team, you'll perform work focused on implementing and operating next generation security solutions for government and commercial clients. You'll perform hands-on evaluation, implementation, and operation of leading security cyber defense tools and technologies, and apply in-depth defense strategies to large and complex networks to rapidly identify vulnerabilities and threats, prioritize response actions, and develop effective countermeasures. You'll apply thought leadership in a highly collaborative and innovative work environment to solve complex security challenges. You will lead a team as they engineer solutions to complex challenges for customers using knowledge network engineering, Active Directory, and system administration. In this role, you'll closely impact mission success, protecting data and networks from malicious payloads and actors. With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers. Work with us as we secure and protect our nation's most sensitive capabilities. What You'll Work On: Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management. Manage infrastructure and cybersecurity controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises. Contribute to risk and vulnerability assessments in network, system, and application areas, and leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. Requirements Experience with the deployment or daily maintenance of Forescout CounterACT appliances 5+ years of experience performing systems administration for Windows or Linux, including performing basic troubleshooting and installation or configuration, monitoring system performance or availability, and performing security upgrades Experience architecting and designing IP networks, including developing and documenting network topologies Experience with network engineering, including physical or logical such as installation and activation of ports, configuration of switches, and LANS, VLANS, and network FW, or appliances or network administration services such as Active Directory, Guests LANS, and domain management Knowledge of multi-domain architectures, including data center, WAN, and LAN in virtualized architectures Active TS/SCI clearance; willingness to take a polygraph exam Associate's degree and 10+ years of experience supporting IT projects and activities, Bachelor's degree and 8+ years of experience supporting IT projects and activities, or Master's degree and 6+ years of experience supporting IT projects and activities DoD 8570 IAT Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date Nice If You Have: Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems Ability to install and deploy Forescout in a customer environment Ability to integrate cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk Ability to provide support in a Tier II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation Ability to be a self-starter, work without considerable direction, and work with a team Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
09/17/2026
Full time
Job Description Job Description On our expert team, you'll perform work focused on implementing and operating next generation security solutions for government and commercial clients. You'll perform hands-on evaluation, implementation, and operation of leading security cyber defense tools and technologies, and apply in-depth defense strategies to large and complex networks to rapidly identify vulnerabilities and threats, prioritize response actions, and develop effective countermeasures. You'll apply thought leadership in a highly collaborative and innovative work environment to solve complex security challenges. You will lead a team as they engineer solutions to complex challenges for customers using knowledge network engineering, Active Directory, and system administration. In this role, you'll closely impact mission success, protecting data and networks from malicious payloads and actors. With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers. Work with us as we secure and protect our nation's most sensitive capabilities. What You'll Work On: Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management. Manage infrastructure and cybersecurity controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises. Contribute to risk and vulnerability assessments in network, system, and application areas, and leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. Requirements Experience with the deployment or daily maintenance of Forescout CounterACT appliances 5+ years of experience performing systems administration for Windows or Linux, including performing basic troubleshooting and installation or configuration, monitoring system performance or availability, and performing security upgrades Experience architecting and designing IP networks, including developing and documenting network topologies Experience with network engineering, including physical or logical such as installation and activation of ports, configuration of switches, and LANS, VLANS, and network FW, or appliances or network administration services such as Active Directory, Guests LANS, and domain management Knowledge of multi-domain architectures, including data center, WAN, and LAN in virtualized architectures Active TS/SCI clearance; willingness to take a polygraph exam Associate's degree and 10+ years of experience supporting IT projects and activities, Bachelor's degree and 8+ years of experience supporting IT projects and activities, or Master's degree and 6+ years of experience supporting IT projects and activities DoD 8570 IAT Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date Nice If You Have: Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems Ability to install and deploy Forescout in a customer environment Ability to integrate cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk Ability to provide support in a Tier II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation Ability to be a self-starter, work without considerable direction, and work with a team Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
Job Description Job Description On our expert team, you'll perform work focused on implementing and operating next generation security solutions for government and commercial clients. You'll perform hands-on evaluation, implementation, and operation of leading security cyber defense tools and technologies, and apply in-depth defense strategies to large and complex networks to rapidly identify vulnerabilities and threats, prioritize response actions, and develop effective countermeasures. You'll apply thought leadership in a highly collaborative and innovative work environment to solve complex security challenges. You will lead a team as they engineer solutions to complex challenges for customers using knowledge network engineering, Active Directory, and system administration. In this role, you'll closely impact mission success, protecting data and networks from malicious payloads and actors. With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers. Work with us as we secure and protect our nation's most sensitive capabilities. What You'll Work On: Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management. Manage infrastructure and cybersecurity controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises. Contribute to risk and vulnerability assessments in network, system, and application areas, and leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. Requirements Experience with the deployment or daily maintenance of Forescout CounterACT appliances 5+ years of experience performing systems administration for Windows or Linux, including performing basic troubleshooting and installation or configuration, monitoring system performance or availability, and performing security upgrades Experience architecting and designing IP networks, including developing and documenting network topologies Experience with network engineering, including physical or logical such as installation and activation of ports, configuration of switches, and LANS, VLANS, and network FW, or appliances or network administration services such as Active Directory, Guests LANS, and domain management Knowledge of multi-domain architectures, including data center, WAN, and LAN in virtualized architectures Active TS/SCI clearance; willingness to take a polygraph exam Associate's degree and 10+ years of experience supporting IT projects and activities, Bachelor's degree and 8+ years of experience supporting IT projects and activities, or Master's degree and 6+ years of experience supporting IT projects and activities DoD 8570 IAT Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date Nice If You Have: Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems Ability to install and deploy Forescout in a customer environment Ability to integrate cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk Ability to provide support in a Tier II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation Ability to be a self-starter, work without considerable direction, and work with a team Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
09/17/2026
Full time
Job Description Job Description On our expert team, you'll perform work focused on implementing and operating next generation security solutions for government and commercial clients. You'll perform hands-on evaluation, implementation, and operation of leading security cyber defense tools and technologies, and apply in-depth defense strategies to large and complex networks to rapidly identify vulnerabilities and threats, prioritize response actions, and develop effective countermeasures. You'll apply thought leadership in a highly collaborative and innovative work environment to solve complex security challenges. You will lead a team as they engineer solutions to complex challenges for customers using knowledge network engineering, Active Directory, and system administration. In this role, you'll closely impact mission success, protecting data and networks from malicious payloads and actors. With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers. Work with us as we secure and protect our nation's most sensitive capabilities. What You'll Work On: Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management. Manage infrastructure and cybersecurity controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises. Contribute to risk and vulnerability assessments in network, system, and application areas, and leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. Requirements Experience with the deployment or daily maintenance of Forescout CounterACT appliances 5+ years of experience performing systems administration for Windows or Linux, including performing basic troubleshooting and installation or configuration, monitoring system performance or availability, and performing security upgrades Experience architecting and designing IP networks, including developing and documenting network topologies Experience with network engineering, including physical or logical such as installation and activation of ports, configuration of switches, and LANS, VLANS, and network FW, or appliances or network administration services such as Active Directory, Guests LANS, and domain management Knowledge of multi-domain architectures, including data center, WAN, and LAN in virtualized architectures Active TS/SCI clearance; willingness to take a polygraph exam Associate's degree and 10+ years of experience supporting IT projects and activities, Bachelor's degree and 8+ years of experience supporting IT projects and activities, or Master's degree and 6+ years of experience supporting IT projects and activities DoD 8570 IAT Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, within 30 days of start date Nice If You Have: Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems Ability to install and deploy Forescout in a customer environment Ability to integrate cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk Ability to provide support in a Tier II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation Ability to be a self-starter, work without considerable direction, and work with a team Possession of excellent verbal and written communication skills, including for coordinating efforts and establishing customer relations Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
Allstate is seeking an Infrastructure Solution Engineer to design, implement, and optimize secure, scalable infrastructure solutions supporting our insurance and financial platforms. In this senior role, you will architect cloud and hybrid environments, integrate networking, storage, and compute, and ensure reliability, performance, and compliance for mission-critical systems. You'll collaborate with security, application, and operations teams, automate infrastructure deployments, and support incident resolution. Allstate offers a collaborative culture, learning opportunities, and a chance to impact millions of customers. Responsibilities Design and architect secure, scalable infrastructure solutions for insurance and financial platforms Implement and manage cloud and hybrid infrastructure (compute, storage, networking) Collaborate with security, application, and operations teams on solution design and delivery Automate infrastructure provisioning, configuration, and deployments Monitor and optimize infrastructure performance, reliability, and capacity Ensure compliance with security, regulatory, and operational standards Participate in incident response, root-cause analysis, and remediation Document architectures, runbooks, and standards for infrastructure solutions Required Skills Infrastructure architecture and design Cloud platforms (AWS, Azure, or GCP) Networking (VPCs, firewalls, load balancers) Virtualization and containers (VMware, Docker, Kubernetes) Infrastructure as Code (Terraform, Cloud Formation, or similar) Linux/Windows server administration CI/CD and automation scripting (Python, Power Shell, or Bash) Monitoring and observability tools (Cloud Watch, Prometheus, Splunk, etc.) Security, compliance, and governance in regulated industries High availability and disaster recovery design
09/17/2026
Full time
Allstate is seeking an Infrastructure Solution Engineer to design, implement, and optimize secure, scalable infrastructure solutions supporting our insurance and financial platforms. In this senior role, you will architect cloud and hybrid environments, integrate networking, storage, and compute, and ensure reliability, performance, and compliance for mission-critical systems. You'll collaborate with security, application, and operations teams, automate infrastructure deployments, and support incident resolution. Allstate offers a collaborative culture, learning opportunities, and a chance to impact millions of customers. Responsibilities Design and architect secure, scalable infrastructure solutions for insurance and financial platforms Implement and manage cloud and hybrid infrastructure (compute, storage, networking) Collaborate with security, application, and operations teams on solution design and delivery Automate infrastructure provisioning, configuration, and deployments Monitor and optimize infrastructure performance, reliability, and capacity Ensure compliance with security, regulatory, and operational standards Participate in incident response, root-cause analysis, and remediation Document architectures, runbooks, and standards for infrastructure solutions Required Skills Infrastructure architecture and design Cloud platforms (AWS, Azure, or GCP) Networking (VPCs, firewalls, load balancers) Virtualization and containers (VMware, Docker, Kubernetes) Infrastructure as Code (Terraform, Cloud Formation, or similar) Linux/Windows server administration CI/CD and automation scripting (Python, Power Shell, or Bash) Monitoring and observability tools (Cloud Watch, Prometheus, Splunk, etc.) Security, compliance, and governance in regulated industries High availability and disaster recovery design
Job Description Job Description SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovative enterprise-wide solutions as well as targeted services addressing the complex challenges faced by our federal government clients. Our focus is on enabling our clients to deliver their mission most efficiently and effectively - anytime, anywhere, securely. We combine technical expertise, mission awareness, and an empowered workforce to produce meaningful results. SkyePoint Decisions is seeking a Software Packaging Engineer to support a Department of State (DOS) customer. This senior engineering position requires extensive hands-on experience in packaging, testing, and delivering baseline and non-baseline software to both classified and unclassified government networks. The software will be used on Standard Operating Environment (SOE) devices and made available via Intune, the Software Center, PAT, and/or MCM. The software packaging engineer is responsible for ensuring the interoperability of applications on supported Windows 11 endpoints. The position will have a hybrid telework arrangement with on-site presence three (3) days a week, at a secure government facility in Washington, DC. Work schedule will be Monday through Friday during normal business hours. Work location and schedule are subject to change based on government requirements. Responsibilities: Manage the workflow for packaging requests for baseline and non-baseline applications deployed on the SOE platforms on the unclassified and classified networks. This duty involves close coordination with application owners to build, test, perform user acceptance, and publish the package via Intune, PAT, MCM, Software Center or FTP. Perform Application Packaging Scripting in support of department Standards to ensure installed software meets specified guidance and customized installation requirements. Perform Operating System Deployment (OSD) engineering for Windows 11 platforms. These duties include Windows Imaging (WIM) creation, task sequence creation, testing, and publishing. Perform lifecycle application support related to security updates. This duty involves packaging, publishing, performing User Acceptance Testing, and providing Tier 3 software support. Responsibilities include supporting User Acceptance Testing (UAT), troubleshooting deployment issues, creating deployment scripts, and maintaining an application catalog. Creating and maintaining automated application deployment packages. Required Qualifications: Bachelor's degree and 9 years' experience; may accept experience in lieu of degree. Extensive hands-on experience in creating silent installations for Adobe, AutoCAD and Microsoft products. Extensive hands-on experience in preparing and deploying MS cumulative updates to endpoints via Intune. 3-5 years of experience with Microsoft MCM. 1-3 years of experience packaging applications for Windows 11 platforms. Experience working in classified and/or unclassified government environments with greater than 10,000 endpoints. Experience with scripting to include PowerShell and VBScript. Hands-on experience scripting silent installations for COTS/GOTS. Experience packaging applications with various licensing models. Experience working in team environments. Excellent written and verbal communication skills. Capable of working well within a collaborative environment as an integral member of a project team. Must have an Active Top Secret clearance. Must be a U.S. citizen. Preferred Qualifications: Experience with Intune's Delivery Optimization, Microsoft Connected Cache (MCC), Windows Update for Business (WUfB) and enterprise content distribution. Experience developing enterprise reporting using SQL, PowerShell, and Microsoft management platforms. Past experience supporting large government agencies. Experience with Microsoft Operating System Deployment (OSD) to include Task Sequences and WIMs. Compensation: Salary Range: $145,000-$165,000 The SkyePoint Decisions salary range for this position is a general guideline only. It represents an estimated range for this position and is just one piece of our total compensation package. Salary at SkyePoint is determined by various factors, including but not limited to location, work schedule, the candidate's combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability, market data and business considerations. In addition to a competitive salary, SkyePoint offers benefits including a certification incentive program, PTO, floating federal holiday options, several insurance options including HMO and High Deductible plans with Health Savings Accounts HSAs , Flex Spending Accounts FSAs , Full Dental Plans, Vision, ST/LT Disability, Life Insurance, and 401k matched. What We Can Offer You: At SkyePoint, we go B.I.G. (beginning in GRATITUDE) by recognizing all we have and giving back to our employees, families, and communities. It instills a positive mindset that permeates all we do. By beginning in gratitude, SkyePoint can continue to spread living in gratitude each day. Great Benefits: Several insurance options including HMO and High Deductible plans with Health Savings Accounts HSAs , Flex Spending Accounts FSAs , Full Dental Plans, ST/LT Disability, Life Insurance, floating federal holiday options, and 401k matched Certificate Incentive Program: To promote professional development, we recognize and reward employees who obtain new certifications aligned with business needs. Flexible Work Environment SkyePoint Decisions is an established ISO 9001:2015 and ISO/IEC 27001:2013 certified small business and appraised at CMMI Level 3 for Services and Development. We possess a common vision of excellence and foster a collaborative team culture built upon individual performance and accountability. We invest in our people and systems to create value for our clients. It is the SkyePoint Way. We are grateful for the opportunity to work with exceptional people and give back to the communities we serve. Our employees value the flexibility at SkyePoint that allows them to balance quality work and their personal lives. SkyePoint Decisions is a participating E-Verify Employer. U.S. Citizenship is required for most positions. Equal Opportunity Employer/Veterans/Disabled. CCPA Disclosure Notice Here
09/17/2026
Full time
Job Description Job Description SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovative enterprise-wide solutions as well as targeted services addressing the complex challenges faced by our federal government clients. Our focus is on enabling our clients to deliver their mission most efficiently and effectively - anytime, anywhere, securely. We combine technical expertise, mission awareness, and an empowered workforce to produce meaningful results. SkyePoint Decisions is seeking a Software Packaging Engineer to support a Department of State (DOS) customer. This senior engineering position requires extensive hands-on experience in packaging, testing, and delivering baseline and non-baseline software to both classified and unclassified government networks. The software will be used on Standard Operating Environment (SOE) devices and made available via Intune, the Software Center, PAT, and/or MCM. The software packaging engineer is responsible for ensuring the interoperability of applications on supported Windows 11 endpoints. The position will have a hybrid telework arrangement with on-site presence three (3) days a week, at a secure government facility in Washington, DC. Work schedule will be Monday through Friday during normal business hours. Work location and schedule are subject to change based on government requirements. Responsibilities: Manage the workflow for packaging requests for baseline and non-baseline applications deployed on the SOE platforms on the unclassified and classified networks. This duty involves close coordination with application owners to build, test, perform user acceptance, and publish the package via Intune, PAT, MCM, Software Center or FTP. Perform Application Packaging Scripting in support of department Standards to ensure installed software meets specified guidance and customized installation requirements. Perform Operating System Deployment (OSD) engineering for Windows 11 platforms. These duties include Windows Imaging (WIM) creation, task sequence creation, testing, and publishing. Perform lifecycle application support related to security updates. This duty involves packaging, publishing, performing User Acceptance Testing, and providing Tier 3 software support. Responsibilities include supporting User Acceptance Testing (UAT), troubleshooting deployment issues, creating deployment scripts, and maintaining an application catalog. Creating and maintaining automated application deployment packages. Required Qualifications: Bachelor's degree and 9 years' experience; may accept experience in lieu of degree. Extensive hands-on experience in creating silent installations for Adobe, AutoCAD and Microsoft products. Extensive hands-on experience in preparing and deploying MS cumulative updates to endpoints via Intune. 3-5 years of experience with Microsoft MCM. 1-3 years of experience packaging applications for Windows 11 platforms. Experience working in classified and/or unclassified government environments with greater than 10,000 endpoints. Experience with scripting to include PowerShell and VBScript. Hands-on experience scripting silent installations for COTS/GOTS. Experience packaging applications with various licensing models. Experience working in team environments. Excellent written and verbal communication skills. Capable of working well within a collaborative environment as an integral member of a project team. Must have an Active Top Secret clearance. Must be a U.S. citizen. Preferred Qualifications: Experience with Intune's Delivery Optimization, Microsoft Connected Cache (MCC), Windows Update for Business (WUfB) and enterprise content distribution. Experience developing enterprise reporting using SQL, PowerShell, and Microsoft management platforms. Past experience supporting large government agencies. Experience with Microsoft Operating System Deployment (OSD) to include Task Sequences and WIMs. Compensation: Salary Range: $145,000-$165,000 The SkyePoint Decisions salary range for this position is a general guideline only. It represents an estimated range for this position and is just one piece of our total compensation package. Salary at SkyePoint is determined by various factors, including but not limited to location, work schedule, the candidate's combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability, market data and business considerations. In addition to a competitive salary, SkyePoint offers benefits including a certification incentive program, PTO, floating federal holiday options, several insurance options including HMO and High Deductible plans with Health Savings Accounts HSAs , Flex Spending Accounts FSAs , Full Dental Plans, Vision, ST/LT Disability, Life Insurance, and 401k matched. What We Can Offer You: At SkyePoint, we go B.I.G. (beginning in GRATITUDE) by recognizing all we have and giving back to our employees, families, and communities. It instills a positive mindset that permeates all we do. By beginning in gratitude, SkyePoint can continue to spread living in gratitude each day. Great Benefits: Several insurance options including HMO and High Deductible plans with Health Savings Accounts HSAs , Flex Spending Accounts FSAs , Full Dental Plans, ST/LT Disability, Life Insurance, floating federal holiday options, and 401k matched Certificate Incentive Program: To promote professional development, we recognize and reward employees who obtain new certifications aligned with business needs. Flexible Work Environment SkyePoint Decisions is an established ISO 9001:2015 and ISO/IEC 27001:2013 certified small business and appraised at CMMI Level 3 for Services and Development. We possess a common vision of excellence and foster a collaborative team culture built upon individual performance and accountability. We invest in our people and systems to create value for our clients. It is the SkyePoint Way. We are grateful for the opportunity to work with exceptional people and give back to the communities we serve. Our employees value the flexibility at SkyePoint that allows them to balance quality work and their personal lives. SkyePoint Decisions is a participating E-Verify Employer. U.S. Citizenship is required for most positions. Equal Opportunity Employer/Veterans/Disabled. CCPA Disclosure Notice Here
Job Description Job Description About Us Vanderweil Engineers was founded in 1950 and is a top-ranked national full-service engineering firm specializing in MEP/FP design and technology services. With 500+ employees located across nine offices, we are proud to be one of the largest independently owned engineering firms in the country. As Senior Helpdesk Analyst (Tier 2/3), you will be a senior member of the Desktop Support team, delivering best in class support to Vanderweil internal clients. You will have opportunities to work with new technology and latitude to take ownership of business technology initiatives. You will be encouraged to use your versatility and problem-solving skills to deliver solutions and solve challenges. You will work with and learn from a long-term team of technology professionals. Key Responsibilities Endpoint & Identity Management Manage devices and users via Microsoft Intune / Endpoint Manager (deployment, compliance, lifecycle) Support Microsoft 365 environment including Teams, Exchange Online, and OneDrive Handle user access changes (adds, moves, changes) and identity management (Active Directory / Entra ID) Technical Support & Troubleshooting Act as Tier 2/3 escalation for complex technical issues Troubleshoot Windows 11, M365, VPN, MFA, SSO, and application issues Collaborate with infrastructure and cybersecurity teams to resolve incidents Manage vendor support tickets as needed AV & Onsite Support Set up and support conference room AV systems (e.g., Logitech RallyBar) Security & Compliance Support MFA enrollment and account recovery Assist with investigation and response to security incidents Documentation & Process Improvement Maintain knowledge base articles and SOPs Recommend improvements to tools and workflows Key Requirements 5+ years helpdesk/support experience with progression to advanced support Strong communication and problem-solving skills Knowledge of networking fundamentals (DNS, DHCP, TCP/IP, VPN) Experience with endpoint management (Intune, GPO, Windows Update) AEC industry or Autodesk experience preferred Ability to lift 35 lbs and travel occasionally Key Responsibilities We know that work/life integration is important to our employees. Our hybrid work style allows team members to have flexibility while building their skills through in-person exposure to industry experts. Our wellness programs prioritize our team members' physical and behavioral health. We are an equal opportunity employer committed to equity and inclusion in the workplace. The total compensation that we expect to pay for this role are $70,000 to $80,00.00 annually, depending on years of experience, skill sets, education and certifications.
09/17/2026
Full time
Job Description Job Description About Us Vanderweil Engineers was founded in 1950 and is a top-ranked national full-service engineering firm specializing in MEP/FP design and technology services. With 500+ employees located across nine offices, we are proud to be one of the largest independently owned engineering firms in the country. As Senior Helpdesk Analyst (Tier 2/3), you will be a senior member of the Desktop Support team, delivering best in class support to Vanderweil internal clients. You will have opportunities to work with new technology and latitude to take ownership of business technology initiatives. You will be encouraged to use your versatility and problem-solving skills to deliver solutions and solve challenges. You will work with and learn from a long-term team of technology professionals. Key Responsibilities Endpoint & Identity Management Manage devices and users via Microsoft Intune / Endpoint Manager (deployment, compliance, lifecycle) Support Microsoft 365 environment including Teams, Exchange Online, and OneDrive Handle user access changes (adds, moves, changes) and identity management (Active Directory / Entra ID) Technical Support & Troubleshooting Act as Tier 2/3 escalation for complex technical issues Troubleshoot Windows 11, M365, VPN, MFA, SSO, and application issues Collaborate with infrastructure and cybersecurity teams to resolve incidents Manage vendor support tickets as needed AV & Onsite Support Set up and support conference room AV systems (e.g., Logitech RallyBar) Security & Compliance Support MFA enrollment and account recovery Assist with investigation and response to security incidents Documentation & Process Improvement Maintain knowledge base articles and SOPs Recommend improvements to tools and workflows Key Requirements 5+ years helpdesk/support experience with progression to advanced support Strong communication and problem-solving skills Knowledge of networking fundamentals (DNS, DHCP, TCP/IP, VPN) Experience with endpoint management (Intune, GPO, Windows Update) AEC industry or Autodesk experience preferred Ability to lift 35 lbs and travel occasionally Key Responsibilities We know that work/life integration is important to our employees. Our hybrid work style allows team members to have flexibility while building their skills through in-person exposure to industry experts. Our wellness programs prioritize our team members' physical and behavioral health. We are an equal opportunity employer committed to equity and inclusion in the workplace. The total compensation that we expect to pay for this role are $70,000 to $80,00.00 annually, depending on years of experience, skill sets, education and certifications.
Job Description Job Description VIATEQ Corporation is looking for a Junior Endpoint Protection Analyst to support enterprise cybersecurity operations and IT administrative support services for a federal government client. This position requires the ability to obtain and maintain a government background investigation, PIV credentials, and all requisite IT access authorizations prior to performing work. Primary work will be performed at the client site in Washington, DC and approved remote/telework locations. This role serves as an important technical support function responsible for assisting in the administration, monitoring, and maintenance of enterprise endpoint security controls and endpoint protection platforms across a complex, geographically distributed federal IT environment spanning on-premises infrastructure, cloud platforms, and enterprise applications. The ideal candidate is an enthusiastic and detail-oriented early-career cybersecurity professional with foundational knowledge of endpoint security technologies, security operations practices, and Federal cybersecurity compliance requirements. This individual must possess a strong desire to learn and grow within a dynamic federal IT security environment, a collaborative mindset, and the technical foundation necessary to support the administration and monitoring of enterprise endpoint protection capabilities under the guidance of senior security personnel. The Junior Endpoint Protection Analyst will serve as a supporting technical contributor within the program's cybersecurity team, assisting senior security engineers and analysts in the day-to-day administration, monitoring, and maintenance of enterprise endpoint security controls and endpoint protection platforms. This individual supports the protection of Government endpoints-including workstations, laptops, servers, and mobile devices-against malware, unauthorized access, policy violations, and other security threats, contributing to the program's broader mission of maintaining a strong and continuously improving enterprise security posture in alignment with Federal cybersecurity frameworks and client security requirements. Responsibilities:Endpoint Protection Platform Administration Assist in the administration and maintenance of enterprise endpoint protection platforms, including Endpoint Detection and Response (EDR), antivirus, anti-malware, host-based intrusion detection, application control, and device management solutions under the guidance of senior security engineers. Support the configuration, deployment, and management of endpoint security agents across managed endpoints, ensuring agent coverage is comprehensive, current, and accurately tracked. Monitor endpoint protection platform dashboards and consoles, identifying endpoints with outdated agents, missing security policies, protection gaps, or active threats requiring investigation or remediation. Assist in the development and maintenance of endpoint security policies, configurations, and deployment packages, ensuring policies are aligned with applicable security baselines, DISA STIGs, CIS Benchmarks, and client security requirements. Support the management of endpoint protection platform exceptions, exclusions, and whitelists, ensuring all exceptions are properly documented, reviewed, and approved in accordance with defined governance procedures. Assist in the administration and maintenance of Mobile Device Management (MDM) and Unified Endpoint Management (UEM) platforms, supporting the enrollment, configuration, monitoring, and compliance enforcement of managed mobile and remote devices. Generate and distribute endpoint protection platform health and coverage reports, providing program leadership and Government stakeholders with accurate visibility into endpoint security posture and protection gaps. Threat Detection & Alert Monitoring Monitor endpoint protection platform alerts, EDR telemetry, and security event feeds, triaging security alerts and escalating confirmed or suspected security incidents to senior analysts and the incident response team in accordance with defined escalation procedures and SLA requirements. Assist in the investigation of endpoint security alerts, gathering relevant event data, endpoint telemetry, and contextual information to support accurate triage and escalation decisions under the guidance of senior security personnel. Support the development and maintenance of endpoint alert triage procedures, escalation playbooks, and response runbooks, contributing practical observations and lessons learned from daily monitoring activities. Assist in identifying and documenting false positive alert patterns, supporting senior engineers in refining detection rules, alert thresholds, and EDR platform tuning to improve alert fidelity and reduce analyst fatigue. Monitor endpoint protection platform health and availability, identifying and escalating platform performance issues, service disruptions, and coverage gaps that may impact the program's ability to detect and respond to endpoint threats. Vulnerability & Patch Management Support Assist in the execution of endpoint vulnerability scanning activities, supporting the scheduling, execution, and result collection of regular vulnerability scans across managed endpoints using enterprise vulnerability scanning platforms. Support the analysis and triage of endpoint vulnerability scan results, assisting senior engineers in identifying, categorizing, and prioritizing vulnerabilities based on severity, exploitability, and asset criticality under defined risk-based prioritization criteria. Assist in tracking and reporting on endpoint patch compliance status, monitoring patch deployment progress across managed endpoints and identifying systems with outstanding critical and high-severity patches requiring escalation. Support coordination with system administrators and desktop support personnel to facilitate timely endpoint patch deployment, providing technical assistance and escalation support as needed. Maintain accurate and current endpoint vulnerability and patch compliance records in the program's vulnerability management tracking system, supporting audit readiness and compliance reporting activities. Endpoint Hardening & Compliance Assist in the implementation and validation of endpoint hardening standards, supporting the application of DISA STIGs, CIS Benchmarks, and client-specific security baselines across managed Windows, Linux, and macOS endpoint environments. Support configuration compliance scanning activities, assisting in the execution and analysis of Security Content Automation Protocol (SCAP) scans and configuration compliance assessments across managed endpoints. Assist in tracking and reporting on endpoint configuration compliance status, identifying non-compliant endpoints and supporting remediation activities to bring endpoints into compliance with applicable security baselines. Support the development and maintenance of endpoint hardening documentation, including hardening guides, configuration baseline specifications, and compliance reporting templates. Incident Response Support Support cybersecurity incident response activities involving endpoint security events, assisting senior analysts and engineers in evidence collection, endpoint isolation, malware containment, and remediation activities under defined incident response procedures. Assist in the collection and preservation of endpoint forensic evidence, supporting chain of custody procedures and forensic acquisition activities under the guidance of senior digital forensics or incident response personnel. Document incident response activities accurately and completely in the program's ITSM platform, ensuring incident records contain sufficient detail to support post-incident review, root cause analysis, and lessons learned activities. Support post-incident review activities, contributing endpoint security observations and technical findings to root cause analysis discussions and corrective action development. Compliance & Documentation Support Assist in maintaining endpoint security compliance documentation, including security control implementation evidence, configuration compliance records, vulnerability remediation tracking data, and audit artifacts, supporting the program's ATO and continuous monitoring obligations. Support the development and maintenance of endpoint security standard operating procedures, operational runbooks, and knowledge base articles, contributing practical operational knowledge to the program's documentation library. Assist in the preparation of endpoint security status reports, compliance dashboards, and metrics summaries for program leadership and Government stakeholders. Ensure all endpoint security activities are conducted in compliance with applicable Federal regulations, client security policies, and program security requirements, including FISMA, NIST SP 800-53, applicable DISA STIGs, and client-specific cybersecurity policies. Ensure all activities involving personally identifiable information (PII), CUI, or other sensitive data categories are handled in accordance with applicable privacy protection requirements and data handling restrictions. Professional Development & Learning Actively pursue professional development and skills growth in endpoint security, cybersecurity operations, and Federal IT compliance, leveraging available training resources, mentorship from senior team members . click apply for full job details
09/17/2026
Full time
Job Description Job Description VIATEQ Corporation is looking for a Junior Endpoint Protection Analyst to support enterprise cybersecurity operations and IT administrative support services for a federal government client. This position requires the ability to obtain and maintain a government background investigation, PIV credentials, and all requisite IT access authorizations prior to performing work. Primary work will be performed at the client site in Washington, DC and approved remote/telework locations. This role serves as an important technical support function responsible for assisting in the administration, monitoring, and maintenance of enterprise endpoint security controls and endpoint protection platforms across a complex, geographically distributed federal IT environment spanning on-premises infrastructure, cloud platforms, and enterprise applications. The ideal candidate is an enthusiastic and detail-oriented early-career cybersecurity professional with foundational knowledge of endpoint security technologies, security operations practices, and Federal cybersecurity compliance requirements. This individual must possess a strong desire to learn and grow within a dynamic federal IT security environment, a collaborative mindset, and the technical foundation necessary to support the administration and monitoring of enterprise endpoint protection capabilities under the guidance of senior security personnel. The Junior Endpoint Protection Analyst will serve as a supporting technical contributor within the program's cybersecurity team, assisting senior security engineers and analysts in the day-to-day administration, monitoring, and maintenance of enterprise endpoint security controls and endpoint protection platforms. This individual supports the protection of Government endpoints-including workstations, laptops, servers, and mobile devices-against malware, unauthorized access, policy violations, and other security threats, contributing to the program's broader mission of maintaining a strong and continuously improving enterprise security posture in alignment with Federal cybersecurity frameworks and client security requirements. Responsibilities:Endpoint Protection Platform Administration Assist in the administration and maintenance of enterprise endpoint protection platforms, including Endpoint Detection and Response (EDR), antivirus, anti-malware, host-based intrusion detection, application control, and device management solutions under the guidance of senior security engineers. Support the configuration, deployment, and management of endpoint security agents across managed endpoints, ensuring agent coverage is comprehensive, current, and accurately tracked. Monitor endpoint protection platform dashboards and consoles, identifying endpoints with outdated agents, missing security policies, protection gaps, or active threats requiring investigation or remediation. Assist in the development and maintenance of endpoint security policies, configurations, and deployment packages, ensuring policies are aligned with applicable security baselines, DISA STIGs, CIS Benchmarks, and client security requirements. Support the management of endpoint protection platform exceptions, exclusions, and whitelists, ensuring all exceptions are properly documented, reviewed, and approved in accordance with defined governance procedures. Assist in the administration and maintenance of Mobile Device Management (MDM) and Unified Endpoint Management (UEM) platforms, supporting the enrollment, configuration, monitoring, and compliance enforcement of managed mobile and remote devices. Generate and distribute endpoint protection platform health and coverage reports, providing program leadership and Government stakeholders with accurate visibility into endpoint security posture and protection gaps. Threat Detection & Alert Monitoring Monitor endpoint protection platform alerts, EDR telemetry, and security event feeds, triaging security alerts and escalating confirmed or suspected security incidents to senior analysts and the incident response team in accordance with defined escalation procedures and SLA requirements. Assist in the investigation of endpoint security alerts, gathering relevant event data, endpoint telemetry, and contextual information to support accurate triage and escalation decisions under the guidance of senior security personnel. Support the development and maintenance of endpoint alert triage procedures, escalation playbooks, and response runbooks, contributing practical observations and lessons learned from daily monitoring activities. Assist in identifying and documenting false positive alert patterns, supporting senior engineers in refining detection rules, alert thresholds, and EDR platform tuning to improve alert fidelity and reduce analyst fatigue. Monitor endpoint protection platform health and availability, identifying and escalating platform performance issues, service disruptions, and coverage gaps that may impact the program's ability to detect and respond to endpoint threats. Vulnerability & Patch Management Support Assist in the execution of endpoint vulnerability scanning activities, supporting the scheduling, execution, and result collection of regular vulnerability scans across managed endpoints using enterprise vulnerability scanning platforms. Support the analysis and triage of endpoint vulnerability scan results, assisting senior engineers in identifying, categorizing, and prioritizing vulnerabilities based on severity, exploitability, and asset criticality under defined risk-based prioritization criteria. Assist in tracking and reporting on endpoint patch compliance status, monitoring patch deployment progress across managed endpoints and identifying systems with outstanding critical and high-severity patches requiring escalation. Support coordination with system administrators and desktop support personnel to facilitate timely endpoint patch deployment, providing technical assistance and escalation support as needed. Maintain accurate and current endpoint vulnerability and patch compliance records in the program's vulnerability management tracking system, supporting audit readiness and compliance reporting activities. Endpoint Hardening & Compliance Assist in the implementation and validation of endpoint hardening standards, supporting the application of DISA STIGs, CIS Benchmarks, and client-specific security baselines across managed Windows, Linux, and macOS endpoint environments. Support configuration compliance scanning activities, assisting in the execution and analysis of Security Content Automation Protocol (SCAP) scans and configuration compliance assessments across managed endpoints. Assist in tracking and reporting on endpoint configuration compliance status, identifying non-compliant endpoints and supporting remediation activities to bring endpoints into compliance with applicable security baselines. Support the development and maintenance of endpoint hardening documentation, including hardening guides, configuration baseline specifications, and compliance reporting templates. Incident Response Support Support cybersecurity incident response activities involving endpoint security events, assisting senior analysts and engineers in evidence collection, endpoint isolation, malware containment, and remediation activities under defined incident response procedures. Assist in the collection and preservation of endpoint forensic evidence, supporting chain of custody procedures and forensic acquisition activities under the guidance of senior digital forensics or incident response personnel. Document incident response activities accurately and completely in the program's ITSM platform, ensuring incident records contain sufficient detail to support post-incident review, root cause analysis, and lessons learned activities. Support post-incident review activities, contributing endpoint security observations and technical findings to root cause analysis discussions and corrective action development. Compliance & Documentation Support Assist in maintaining endpoint security compliance documentation, including security control implementation evidence, configuration compliance records, vulnerability remediation tracking data, and audit artifacts, supporting the program's ATO and continuous monitoring obligations. Support the development and maintenance of endpoint security standard operating procedures, operational runbooks, and knowledge base articles, contributing practical operational knowledge to the program's documentation library. Assist in the preparation of endpoint security status reports, compliance dashboards, and metrics summaries for program leadership and Government stakeholders. Ensure all endpoint security activities are conducted in compliance with applicable Federal regulations, client security policies, and program security requirements, including FISMA, NIST SP 800-53, applicable DISA STIGs, and client-specific cybersecurity policies. Ensure all activities involving personally identifiable information (PII), CUI, or other sensitive data categories are handled in accordance with applicable privacy protection requirements and data handling restrictions. Professional Development & Learning Actively pursue professional development and skills growth in endpoint security, cybersecurity operations, and Federal IT compliance, leveraging available training resources, mentorship from senior team members . click apply for full job details
BP Energy seeks a Senior Enterprise Technology Engineer to design, implement, and optimize large scale IT solutions supporting our global Energy, Gas, Oil, and Electric operations. In this senior role, you will architect secure, resilient infrastructure across hybrid cloud and on prem environments, integrating OT/IT systems to enable safe, reliable, and low carbon energy delivery. You'll lead complex projects, define standards, and mentor engineers while collaborating with cybersecurity, networking, applications, and business teams. BP offers a safety first, inclusive culture, strong learning focus, and international growth opportunities in Houston and beyond. Responsibilities Architect, design, and implement enterprise infrastructure across hybrid cloud and on prem environments for global energy operations. Integrate IT and OT systems to support secure, reliable Energy, Gas, Oil, and Electric assets and trading platforms. Lead end to end delivery of complex technology projects, from requirements and design through deployment and transition to operations. Establish and enforce standards, patterns, and best practices for scalability, security, observability, and reliability. Collaborate with cybersecurity, networking, applications, and business stakeholders to align technology solutions with strategic goals. Troubleshoot and resolve high severity production issues, driving root cause analysis and long term remediation. Mentor and coach junior and mid level engineers, fostering a culture of learning, inclusion, and continuous improvement. Evaluate and introduce emerging technologies that support BP's low carbon, digital, and automation objectives. Ensure compliance with safety, regulatory, and security requirements across global environments. Produce high quality technical documentation, diagrams, and runbooks for architecture and operations teams. Required Skills Enterprise infrastructure architecture Hybrid cloud (Azure/AWS/GCP) engineering Windows and Linux server administration Network and security fundamentals (firewalls, VPN, routing) Virtualization and containerization (VMware, Kubernetes, Docker) Infrastructure as Code (Terraform/Ansible) CI/CD and automation scripting (Power Shell, Python, Bash) Monitoring, logging, and observability tools Identity and access management (Azure AD/AD) IT/OT integration and industrial protocols
09/16/2026
Full time
BP Energy seeks a Senior Enterprise Technology Engineer to design, implement, and optimize large scale IT solutions supporting our global Energy, Gas, Oil, and Electric operations. In this senior role, you will architect secure, resilient infrastructure across hybrid cloud and on prem environments, integrating OT/IT systems to enable safe, reliable, and low carbon energy delivery. You'll lead complex projects, define standards, and mentor engineers while collaborating with cybersecurity, networking, applications, and business teams. BP offers a safety first, inclusive culture, strong learning focus, and international growth opportunities in Houston and beyond. Responsibilities Architect, design, and implement enterprise infrastructure across hybrid cloud and on prem environments for global energy operations. Integrate IT and OT systems to support secure, reliable Energy, Gas, Oil, and Electric assets and trading platforms. Lead end to end delivery of complex technology projects, from requirements and design through deployment and transition to operations. Establish and enforce standards, patterns, and best practices for scalability, security, observability, and reliability. Collaborate with cybersecurity, networking, applications, and business stakeholders to align technology solutions with strategic goals. Troubleshoot and resolve high severity production issues, driving root cause analysis and long term remediation. Mentor and coach junior and mid level engineers, fostering a culture of learning, inclusion, and continuous improvement. Evaluate and introduce emerging technologies that support BP's low carbon, digital, and automation objectives. Ensure compliance with safety, regulatory, and security requirements across global environments. Produce high quality technical documentation, diagrams, and runbooks for architecture and operations teams. Required Skills Enterprise infrastructure architecture Hybrid cloud (Azure/AWS/GCP) engineering Windows and Linux server administration Network and security fundamentals (firewalls, VPN, routing) Virtualization and containerization (VMware, Kubernetes, Docker) Infrastructure as Code (Terraform/Ansible) CI/CD and automation scripting (Power Shell, Python, Bash) Monitoring, logging, and observability tools Identity and access management (Azure AD/AD) IT/OT integration and industrial protocols
Job Description Job Description AURIGA JOB POSTING Auriga Corporation was established in 1990, to provide high-quality design, engineering and project management services for Electric Power, Telecommunication and Information Technology systems. Auriga's cliental includes: investor owned and municipal utilities, rail and transit agencies, federal, state and local government agencies, and international public and private sector organizations. Auriga Corporation currently has following vacancies in the Los Angeles, California Office: Microsoft 365 & Azure Architect Job Responsibilities: Own the architecture, configuration baseline, and lifecycle of the M365 tenant supporting active directory accounts, including Exchange Online, SharePoint Online, OneDrive, Teams etc. Define and enforce tenant-wide policies for identity, licensing, data loss prevention, retention, eDiscovery, best practices and information protection. Lead remediation of legacy configurations, technical debt, and drift accumulated in the existing M365 environment, with a clear roadmap to a hardened target state. Manage hybrid identity through Entra ID (Azure AD), Entra Connect, Conditional Access, and PIM, including integration with on-premises Active Directory and downstream applications. Govern Microsoft licensing strategy across E3, E5, and add-on SKUs to align entitlements with security requirements and budget constraints. Architect and operate Azure subscriptions, management groups, and policy structures aligned to Microsoft Cloud Adoption Framework and Zero Trust principles. Design, harden, and optimize Azure Virtual Machines and supporting services, including VM sizing, availability sets, scale sets, disk encryption, backup, patching, and Just-in-Time access. Implement and tune Microsoft Defender for Cloud, Defender for Servers, Microsoft Sentinel, and Azure Monitor to deliver actionable telemetry to the SOC. Partner directly with the Cybersecurity organization to translate security requirements into enforceable Microsoft platform controls. Implement and continuously improve Conditional Access, MFA, privileged access management, and identity governance across all M365 and Azure workloads. Maintain alignment with NIST 800-53 where applicable, CIS Microsoft 365 and Azure Benchmarks, and any state and federal mandates relevant to a transit agency. Establish secure configuration baselines for collaboration tooling that account for the operational realities of a 24/7 transit workforce. Minimum Requirements: Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related field. Equivalent professional experience considered in lieu of a degree. Minimum 8 years of progressive experience designing and operating enterprise Microsoft environments, with at least 5 years focused on M365 and Azure at scale. Expert-level command of Microsoft 365 administration, including hands-on experience with tenants of 10,000 accounts or more. Demonstrated expertise in Azure IaaS and PaaS, with deep knowledge of Azure Virtual Machines, networking, storage, identity, and governance. Strong working knowledge of Active Directory, Group Policy, Windows Server, certificate services, and traditional on-premises Microsoft infrastructure. Proven track record applying NIST, CIS, or equivalent frameworks to Microsoft cloud environments. Proficiency with PowerShell, including Microsoft Graph, Exchange Online, and Azure modules. Excellent written and verbal communication skills, with the ability to brief both engineers and executives. Preferred Qualifications: Prior experience in a government, transit, utility, or other regulated public sector environment. Active Microsoft certifications such as Azure Solutions Architect Expert, Cybersecurity Architect Expert, Identity and Access Administrator, or Microsoft 365 Administrator Expert. Experience with Microsoft Sentinel, Defender XDR, Purview, and Intune at enterprise scale. CISSP, CCSP, or equivalent senior security certification. Hands-on experience with infrastructure-as-code, CI/CD pipelines, and GitHub or Azure DevOps in a controlled-change environment. Auriga is an Equal Opportunity Employer. Auriga provides compensation and benefits commensurate with the qualifications and experience.
09/16/2026
Full time
Job Description Job Description AURIGA JOB POSTING Auriga Corporation was established in 1990, to provide high-quality design, engineering and project management services for Electric Power, Telecommunication and Information Technology systems. Auriga's cliental includes: investor owned and municipal utilities, rail and transit agencies, federal, state and local government agencies, and international public and private sector organizations. Auriga Corporation currently has following vacancies in the Los Angeles, California Office: Microsoft 365 & Azure Architect Job Responsibilities: Own the architecture, configuration baseline, and lifecycle of the M365 tenant supporting active directory accounts, including Exchange Online, SharePoint Online, OneDrive, Teams etc. Define and enforce tenant-wide policies for identity, licensing, data loss prevention, retention, eDiscovery, best practices and information protection. Lead remediation of legacy configurations, technical debt, and drift accumulated in the existing M365 environment, with a clear roadmap to a hardened target state. Manage hybrid identity through Entra ID (Azure AD), Entra Connect, Conditional Access, and PIM, including integration with on-premises Active Directory and downstream applications. Govern Microsoft licensing strategy across E3, E5, and add-on SKUs to align entitlements with security requirements and budget constraints. Architect and operate Azure subscriptions, management groups, and policy structures aligned to Microsoft Cloud Adoption Framework and Zero Trust principles. Design, harden, and optimize Azure Virtual Machines and supporting services, including VM sizing, availability sets, scale sets, disk encryption, backup, patching, and Just-in-Time access. Implement and tune Microsoft Defender for Cloud, Defender for Servers, Microsoft Sentinel, and Azure Monitor to deliver actionable telemetry to the SOC. Partner directly with the Cybersecurity organization to translate security requirements into enforceable Microsoft platform controls. Implement and continuously improve Conditional Access, MFA, privileged access management, and identity governance across all M365 and Azure workloads. Maintain alignment with NIST 800-53 where applicable, CIS Microsoft 365 and Azure Benchmarks, and any state and federal mandates relevant to a transit agency. Establish secure configuration baselines for collaboration tooling that account for the operational realities of a 24/7 transit workforce. Minimum Requirements: Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related field. Equivalent professional experience considered in lieu of a degree. Minimum 8 years of progressive experience designing and operating enterprise Microsoft environments, with at least 5 years focused on M365 and Azure at scale. Expert-level command of Microsoft 365 administration, including hands-on experience with tenants of 10,000 accounts or more. Demonstrated expertise in Azure IaaS and PaaS, with deep knowledge of Azure Virtual Machines, networking, storage, identity, and governance. Strong working knowledge of Active Directory, Group Policy, Windows Server, certificate services, and traditional on-premises Microsoft infrastructure. Proven track record applying NIST, CIS, or equivalent frameworks to Microsoft cloud environments. Proficiency with PowerShell, including Microsoft Graph, Exchange Online, and Azure modules. Excellent written and verbal communication skills, with the ability to brief both engineers and executives. Preferred Qualifications: Prior experience in a government, transit, utility, or other regulated public sector environment. Active Microsoft certifications such as Azure Solutions Architect Expert, Cybersecurity Architect Expert, Identity and Access Administrator, or Microsoft 365 Administrator Expert. Experience with Microsoft Sentinel, Defender XDR, Purview, and Intune at enterprise scale. CISSP, CCSP, or equivalent senior security certification. Hands-on experience with infrastructure-as-code, CI/CD pipelines, and GitHub or Azure DevOps in a controlled-change environment. Auriga is an Equal Opportunity Employer. Auriga provides compensation and benefits commensurate with the qualifications and experience.
Job Description Job Description This role requires deep technical expertise in Microsoft 365/Azure combined with strong consulting skills to ensure our clients' infrastructure is secure, scalable, and fully optimized. The responsibilities include but are not limited to architecting and developing migration plans, creatively building solutions that are technically sound, performing engineering tasks for the delivery of solutions and migrations, developing documentation for the handoff to support, and serving as a point of escalation for Microsoft 365 related efforts. As a large portion of this role is client-facing, superior interpersonal communication and customer service skills are a must. The qualified individual will possess the ability to multi-task effectively while leading multi-thread project efforts and the aptitude to work both independently and collaboratively while generating a high-quality work product. While a majority of work can be performed remotely, occasional onsite visits to our clients located in Northeast Ohio may be required. Essential Functions Cloud Engineering 70% (client-facing & project delivery) Plan and execute client migrations to Microsoft 365 (Exchange Online, SharePoint, Teams, OneDrive) from on-prem and legacy environments Design and maintain end-to-end modern endpoint management, leveraging Windows Autopilot and Microsoft Intune for comprehensive MDM/MAM device configuration, compliance enforcement, and application lifecycle deployment across all endpoints Manage hybrid identities using EntraID, including provisioning and conditional access baseline setups Use migration tools such as BitTitan, AvePoint, and Azure Migrate Perform pre-migration assessments, including mailbox sizing, permissions audits, and DNS analysis Monitor migration projects, troubleshoot errors, and resolve escalation issues from cloud engineers Document migration runbooks, cutover plans, and post-migration validation steps Communicate with end users and clients during cutovers, providing clear status updates and instructions Perform MX record cutovers, complete DNS updates, and troubleshoot email routing configurations Lead post-migration tasks, including license assignment and policy application Handle complex long-term focused projects involving multiple disciplines and business units Standardize migration runbooks, cutover plans, and post-migration validations steps Serve as the final internal escalation point for the NOC team, taking escalation calls from on-call engineers outside of business hours as needed Mentor Cloud Services Engineers and the NOC team Evaluate, understand, and recommend cloud partner level requirements and certifications to leadership Consulting/Presales 30% Lead client-facing discovery sessions, scoping efforts, and technical architecture planning Design customized, cost-effective Microsoft Cloud and hybrid solutions aligned with client business goals Develop detailed Statements of Work, migrations plans, and project timelines Consult with clients on Microsoft licensing optimization Qualifications Education: Degree in Computer Science, Information Technology, or equivalent hands-on MSP experience Experience: 4+ years of experience dedicated to Azure IaaS, hybrid infrastructure setups, and the broader Microsoft Cloud stack Preferred certifications: MD-102, MS-900, AZ-104, AZ-305 Technical Proficiencies: Strong understanding of Windows Server, Exchange Online, Intune, Entra ID, Teams, SharePoint Online, DNS, and networking principles Soft Skills: Superior communication and customer service skills required for client-facing consultations and end-user support Environment Suitability: Prior MSP or IT consulting experience strongly preferred; proven ability to manage multiple concurrent projects autonomously Company Description Integrated IT Group is a comprehensive provider of managed, shared, and stand-alone services for clients throughout Northeast Ohio. These services include managed IT support, cloud solutions, cybersecurity, network solutions, IT consulting, mobile solutions, and disaster recovery for companies in commercial and public sector markets. Company Description Integrated IT Group is a comprehensive provider of managed, shared, and stand-alone services for clients throughout Northeast Ohio. These services include managed IT support, cloud solutions, cybersecurity, network solutions, IT consulting, mobile solutions, and disaster recovery for companies in commercial and public sector markets.
09/15/2026
Full time
Job Description Job Description This role requires deep technical expertise in Microsoft 365/Azure combined with strong consulting skills to ensure our clients' infrastructure is secure, scalable, and fully optimized. The responsibilities include but are not limited to architecting and developing migration plans, creatively building solutions that are technically sound, performing engineering tasks for the delivery of solutions and migrations, developing documentation for the handoff to support, and serving as a point of escalation for Microsoft 365 related efforts. As a large portion of this role is client-facing, superior interpersonal communication and customer service skills are a must. The qualified individual will possess the ability to multi-task effectively while leading multi-thread project efforts and the aptitude to work both independently and collaboratively while generating a high-quality work product. While a majority of work can be performed remotely, occasional onsite visits to our clients located in Northeast Ohio may be required. Essential Functions Cloud Engineering 70% (client-facing & project delivery) Plan and execute client migrations to Microsoft 365 (Exchange Online, SharePoint, Teams, OneDrive) from on-prem and legacy environments Design and maintain end-to-end modern endpoint management, leveraging Windows Autopilot and Microsoft Intune for comprehensive MDM/MAM device configuration, compliance enforcement, and application lifecycle deployment across all endpoints Manage hybrid identities using EntraID, including provisioning and conditional access baseline setups Use migration tools such as BitTitan, AvePoint, and Azure Migrate Perform pre-migration assessments, including mailbox sizing, permissions audits, and DNS analysis Monitor migration projects, troubleshoot errors, and resolve escalation issues from cloud engineers Document migration runbooks, cutover plans, and post-migration validation steps Communicate with end users and clients during cutovers, providing clear status updates and instructions Perform MX record cutovers, complete DNS updates, and troubleshoot email routing configurations Lead post-migration tasks, including license assignment and policy application Handle complex long-term focused projects involving multiple disciplines and business units Standardize migration runbooks, cutover plans, and post-migration validations steps Serve as the final internal escalation point for the NOC team, taking escalation calls from on-call engineers outside of business hours as needed Mentor Cloud Services Engineers and the NOC team Evaluate, understand, and recommend cloud partner level requirements and certifications to leadership Consulting/Presales 30% Lead client-facing discovery sessions, scoping efforts, and technical architecture planning Design customized, cost-effective Microsoft Cloud and hybrid solutions aligned with client business goals Develop detailed Statements of Work, migrations plans, and project timelines Consult with clients on Microsoft licensing optimization Qualifications Education: Degree in Computer Science, Information Technology, or equivalent hands-on MSP experience Experience: 4+ years of experience dedicated to Azure IaaS, hybrid infrastructure setups, and the broader Microsoft Cloud stack Preferred certifications: MD-102, MS-900, AZ-104, AZ-305 Technical Proficiencies: Strong understanding of Windows Server, Exchange Online, Intune, Entra ID, Teams, SharePoint Online, DNS, and networking principles Soft Skills: Superior communication and customer service skills required for client-facing consultations and end-user support Environment Suitability: Prior MSP or IT consulting experience strongly preferred; proven ability to manage multiple concurrent projects autonomously Company Description Integrated IT Group is a comprehensive provider of managed, shared, and stand-alone services for clients throughout Northeast Ohio. These services include managed IT support, cloud solutions, cybersecurity, network solutions, IT consulting, mobile solutions, and disaster recovery for companies in commercial and public sector markets. Company Description Integrated IT Group is a comprehensive provider of managed, shared, and stand-alone services for clients throughout Northeast Ohio. These services include managed IT support, cloud solutions, cybersecurity, network solutions, IT consulting, mobile solutions, and disaster recovery for companies in commercial and public sector markets.
Job Description Job Description Reflect Health is the evolution of S&S Health, a trusted independent third-party administrator founded in 1994 to meet the growing need for access, simplified connectivity, and benefits administration. Headquartered in Mason, OH, we have built a reputation based on innovation, service excellence, and a deep understanding of how to drive better outcomes at lower cost. Over the years, we grew into a national presence serving employers, TPAs, health systems, and benefit consultants across all 50 states. We developed proprietary claims technology, expanded our offerings to include level-funded and fully funded programs, and delivered tangible savings and enhanced experiences for millions of members. We are seeking a Lead IT Systems Engineer to modernize and optimize identity management, workflow automation, and employee technology experience. This hands-on technical leadership role will oversee identity and access management, IT workflow engineering, onboarding automation, and virtual desktop infrastructure (VDI) while driving operational efficiency, security, and service excellence. The ideal candidate is an experienced IT professional with strong expertise in automation, systems engineering, identity management, and infrastructure who is passionate about improving employee experiences through scalable technology solutions. Responsibilities Identity & Access Management: Design, implement, and manage automated identity lifecycle processes, including user provisioning, role changes, and deprovisioning across cloud and business applications. Develop role-based access controls, automate approval workflows, enforce least-privilege access, and support periodic access reviews to maintain security and compliance. Workflow Engineering: Design, configure, and optimize Jira and Jira Service Management workflows, intake processes, automation rules, service queues, dashboards, and reporting. Streamline request management through standardized templates, intelligent routing, and automation to improve visibility, efficiency, and service delivery. Employee Onboarding Automation: Develop and maintain automated onboarding processes that ensure user accounts, system access, hardware, and software are prepared prior to employees' first day. Coordinate workflow automation between IT, Human Resources, and hiring managers while creating user-friendly onboarding resources that enhance the employee experience. Virtual Desktop Infrastructure (VDI): Engineer, deploy, administer, and support Reflect Health's virtual desktop infrastructure environment. Design standardized desktop images, application delivery processes, user profile management, monitoring, patching, capacity planning, and operational documentation to ensure a secure, reliable, and scalable platform. Automation & Process Improvement: Identify opportunities to automate manual IT processes, integrate enterprise systems using APIs and scripting, and implement solutions that improve operational efficiency, reduce administrative overhead, and enhance service quality. Security & Compliance: Support identity governance, access management, infrastructure security, and compliance initiatives by implementing security best practices, maintaining audit readiness, and protecting sensitive business and member information. Reporting & Documentation: Develop operational dashboards, system documentation, technical standards, workflows, and reporting to support performance monitoring, issue tracking, capacity planning, and continuous process improvement. Cross-Functional Collaboration: Partner with Infrastructure, Security, Human Resources, Operations, and business stakeholders to deliver technology solutions that improve employee productivity, strengthen security, and support organizational growth. Qualifications Education & Experience: Background in Computer Science, Information Technology, or a related field, or equivalent practical experience in IT engineering or systems administration, including experience in a senior or lead technical role. Identity & Access Management: Strong experience administering identity and access management platforms and directory services, including Okta, Microsoft Entra ID (Azure Active Directory), Active Directory, or similar technologies. Experience implementing automated identity lifecycle management and role-based access controls preferred. Workflow & Automation: Experience configuring Jira and Jira Service Management, including workflow design, automation, dashboards, and service management processes. Strong scripting and automation skills using PowerShell, Python, APIs, or similar technologies. Infrastructure & Virtual Desktop Experience: Hands-on experience designing, implementing, or supporting virtual desktop infrastructure platforms such as Azure Virtual Desktop, Citrix, VMware Horizon, Windows 365, or similar technologies. Technical Skills: Experience integrating enterprise systems through APIs, automating business processes, and supporting modern cloud infrastructure and endpoint management technologies. Familiarity with infrastructure-as-code and configuration management tools preferred. Analytical & Problem-Solving Skills: Strong analytical and troubleshooting abilities with experience identifying operational inefficiencies, designing scalable technical solutions, and driving continuous improvement initiatives. Project Management Skills: Ability to manage multiple technical initiatives simultaneously, prioritize competing demands, maintain documentation, and successfully deliver projects in a fast-paced environment. Communication Skills: Excellent verbal and written communication skills with the ability to explain technical concepts, collaborate across departments, and provide exceptional internal customer service. Industry Experience: Experience within healthcare, health insurance, benefits administration, or another highly regulated industry is preferred. Familiarity with security frameworks, compliance requirements, and protection of sensitive information, including Protected Health Information (PHI), is highly desirable. Reflect Health is committed to providing a safe and secure workplace for all employees. All final candidates will be subject to background checks and drug screening as part of the hiring process.
09/15/2026
Full time
Job Description Job Description Reflect Health is the evolution of S&S Health, a trusted independent third-party administrator founded in 1994 to meet the growing need for access, simplified connectivity, and benefits administration. Headquartered in Mason, OH, we have built a reputation based on innovation, service excellence, and a deep understanding of how to drive better outcomes at lower cost. Over the years, we grew into a national presence serving employers, TPAs, health systems, and benefit consultants across all 50 states. We developed proprietary claims technology, expanded our offerings to include level-funded and fully funded programs, and delivered tangible savings and enhanced experiences for millions of members. We are seeking a Lead IT Systems Engineer to modernize and optimize identity management, workflow automation, and employee technology experience. This hands-on technical leadership role will oversee identity and access management, IT workflow engineering, onboarding automation, and virtual desktop infrastructure (VDI) while driving operational efficiency, security, and service excellence. The ideal candidate is an experienced IT professional with strong expertise in automation, systems engineering, identity management, and infrastructure who is passionate about improving employee experiences through scalable technology solutions. Responsibilities Identity & Access Management: Design, implement, and manage automated identity lifecycle processes, including user provisioning, role changes, and deprovisioning across cloud and business applications. Develop role-based access controls, automate approval workflows, enforce least-privilege access, and support periodic access reviews to maintain security and compliance. Workflow Engineering: Design, configure, and optimize Jira and Jira Service Management workflows, intake processes, automation rules, service queues, dashboards, and reporting. Streamline request management through standardized templates, intelligent routing, and automation to improve visibility, efficiency, and service delivery. Employee Onboarding Automation: Develop and maintain automated onboarding processes that ensure user accounts, system access, hardware, and software are prepared prior to employees' first day. Coordinate workflow automation between IT, Human Resources, and hiring managers while creating user-friendly onboarding resources that enhance the employee experience. Virtual Desktop Infrastructure (VDI): Engineer, deploy, administer, and support Reflect Health's virtual desktop infrastructure environment. Design standardized desktop images, application delivery processes, user profile management, monitoring, patching, capacity planning, and operational documentation to ensure a secure, reliable, and scalable platform. Automation & Process Improvement: Identify opportunities to automate manual IT processes, integrate enterprise systems using APIs and scripting, and implement solutions that improve operational efficiency, reduce administrative overhead, and enhance service quality. Security & Compliance: Support identity governance, access management, infrastructure security, and compliance initiatives by implementing security best practices, maintaining audit readiness, and protecting sensitive business and member information. Reporting & Documentation: Develop operational dashboards, system documentation, technical standards, workflows, and reporting to support performance monitoring, issue tracking, capacity planning, and continuous process improvement. Cross-Functional Collaboration: Partner with Infrastructure, Security, Human Resources, Operations, and business stakeholders to deliver technology solutions that improve employee productivity, strengthen security, and support organizational growth. Qualifications Education & Experience: Background in Computer Science, Information Technology, or a related field, or equivalent practical experience in IT engineering or systems administration, including experience in a senior or lead technical role. Identity & Access Management: Strong experience administering identity and access management platforms and directory services, including Okta, Microsoft Entra ID (Azure Active Directory), Active Directory, or similar technologies. Experience implementing automated identity lifecycle management and role-based access controls preferred. Workflow & Automation: Experience configuring Jira and Jira Service Management, including workflow design, automation, dashboards, and service management processes. Strong scripting and automation skills using PowerShell, Python, APIs, or similar technologies. Infrastructure & Virtual Desktop Experience: Hands-on experience designing, implementing, or supporting virtual desktop infrastructure platforms such as Azure Virtual Desktop, Citrix, VMware Horizon, Windows 365, or similar technologies. Technical Skills: Experience integrating enterprise systems through APIs, automating business processes, and supporting modern cloud infrastructure and endpoint management technologies. Familiarity with infrastructure-as-code and configuration management tools preferred. Analytical & Problem-Solving Skills: Strong analytical and troubleshooting abilities with experience identifying operational inefficiencies, designing scalable technical solutions, and driving continuous improvement initiatives. Project Management Skills: Ability to manage multiple technical initiatives simultaneously, prioritize competing demands, maintain documentation, and successfully deliver projects in a fast-paced environment. Communication Skills: Excellent verbal and written communication skills with the ability to explain technical concepts, collaborate across departments, and provide exceptional internal customer service. Industry Experience: Experience within healthcare, health insurance, benefits administration, or another highly regulated industry is preferred. Familiarity with security frameworks, compliance requirements, and protection of sensitive information, including Protected Health Information (PHI), is highly desirable. Reflect Health is committed to providing a safe and secure workplace for all employees. All final candidates will be subject to background checks and drug screening as part of the hiring process.
Job Description Job Description Location: Schriever Space Force Base, Colorado Springs, CO Clearance Required: Active DoW Secret Security Clearance Travel Required: Up to 10% of the time LaunchTech is a veteran-owned company that prides itself on delivering service before self and excellence in all we do. We are seeking dynamic professionals who embody our core values of Integrity, Commitment, and Excellence to join our growing Crew in support of our customers across the federal, state, and commercial markets. We are seeking a GNOSC Watch Officer/Network Engineer to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. What You'll Be Doing Be responsible for all facets of a continuous 24/7 Global Network Operations and Security Center. Execute network, system, and cloud systems monitoring/surveillance, environmental monitoring, incident management and MDA Cybersecurity. Support and service maintenance activities to include Change Management coordination during the assigned quarterly rotating shift day/night shifts. Be responsible for all aspects of IT incident management and escalation, ensuring that incidents are effectively escalated, managed and resolved with full communication of status, plans, and actions provided to executive management and the Government customer. The successful candidate will: Have excellent communication skills, verbal and written, at both technical and senior/Executive management levels. Understand Command level Management. Be able to speak clearly to diverse cultural audiences, VIPs, and dignitaries. Be able to perform as a section trainer and create lesson plans. Be able to operate within a stressful high speed Operational environment and be able to multi-task. What You Bring Basic Requirements: Must have 1, or more, years of IT experience Must have a current DoD 8570.01 IAT Level II Certification such as CompTIA Security+ CE Certification or higher. Must have an active DoW Secret Security Clearance Desired Requirements: Have experience in metrics-based IT Operations and Maintenance (O&M) teams. Have experience with Remedy and SNMP monitoring tools (e.g., SolarWinds and StruxureWare Datacenter Expert). Have education or experience with ITIL framework and ITIL-based processes, to include continual service improvement, change management, and problem investigation. Have previous work experience as a Windows/Linux System Administrator supporting a large Enterprise with knowledge of Microsoft Active Directory, Windows 2008/2012, Linux/UNIX Operating Systems, EMC Storage, Symantec NetBackup and SCCM Patch Management solutions. Have previous work experience as a network engineer, including hands-on experience designing, implementing and managing network components including switches, routers, firewalls, and cryptographic devices. Have experience with Cyber-defense or information assurance, including experience with DISA mandated security tools to include Assured Compliance Assessment Solution (ACAS), Host Based Security System (HBSS), analyze results and create reports Have knowledge of IT Network Operations and connectivity devices that inter-relate with Public Key Infrastructure authentication and Information Security practices. Have Network Operations experience in a network operations center or other 24x7x365 IT Operations environment. Have knowledge of Cybersecurity principles and how to execute system/network security analysis. Have a working knowledge of Tier III Information Assurance practices, IT security governance, security administration, project management, logistics, and Cybersecurity compliance requirements. Have Quality Assurance/Quality Control Inspection process knowledge. Why LaunchTech? LaunchTech is built on a single standard: Excellence, Period. This role places you at the operational heart of a 24/7 enterprise network operations center defending the nation's missile defense infrastructure around the clock. We offer: Medical, Dental, and Vision coverage 401(k) with company match Paid Time Off (PTO) Mission-driven work with opportunities to grow And more Ready to Join the LaunchTech Crew? LaunchTech is an Equal Opportunity Employer. We prohibit discrimination and harassment of any kind. All qualified applicants will receive consideration for employment without regard to race, protected veteran status, color, sex, religion, sexual orientation, national origin, disability, genetic information, age, pregnancy, or any other status protected under federal, state, or local law. Visit to learn more about how we deliver Excellence, Period. Powered by JazzHR NYRvODyGdv
09/15/2026
Full time
Job Description Job Description Location: Schriever Space Force Base, Colorado Springs, CO Clearance Required: Active DoW Secret Security Clearance Travel Required: Up to 10% of the time LaunchTech is a veteran-owned company that prides itself on delivering service before self and excellence in all we do. We are seeking dynamic professionals who embody our core values of Integrity, Commitment, and Excellence to join our growing Crew in support of our customers across the federal, state, and commercial markets. We are seeking a GNOSC Watch Officer/Network Engineer to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. What You'll Be Doing Be responsible for all facets of a continuous 24/7 Global Network Operations and Security Center. Execute network, system, and cloud systems monitoring/surveillance, environmental monitoring, incident management and MDA Cybersecurity. Support and service maintenance activities to include Change Management coordination during the assigned quarterly rotating shift day/night shifts. Be responsible for all aspects of IT incident management and escalation, ensuring that incidents are effectively escalated, managed and resolved with full communication of status, plans, and actions provided to executive management and the Government customer. The successful candidate will: Have excellent communication skills, verbal and written, at both technical and senior/Executive management levels. Understand Command level Management. Be able to speak clearly to diverse cultural audiences, VIPs, and dignitaries. Be able to perform as a section trainer and create lesson plans. Be able to operate within a stressful high speed Operational environment and be able to multi-task. What You Bring Basic Requirements: Must have 1, or more, years of IT experience Must have a current DoD 8570.01 IAT Level II Certification such as CompTIA Security+ CE Certification or higher. Must have an active DoW Secret Security Clearance Desired Requirements: Have experience in metrics-based IT Operations and Maintenance (O&M) teams. Have experience with Remedy and SNMP monitoring tools (e.g., SolarWinds and StruxureWare Datacenter Expert). Have education or experience with ITIL framework and ITIL-based processes, to include continual service improvement, change management, and problem investigation. Have previous work experience as a Windows/Linux System Administrator supporting a large Enterprise with knowledge of Microsoft Active Directory, Windows 2008/2012, Linux/UNIX Operating Systems, EMC Storage, Symantec NetBackup and SCCM Patch Management solutions. Have previous work experience as a network engineer, including hands-on experience designing, implementing and managing network components including switches, routers, firewalls, and cryptographic devices. Have experience with Cyber-defense or information assurance, including experience with DISA mandated security tools to include Assured Compliance Assessment Solution (ACAS), Host Based Security System (HBSS), analyze results and create reports Have knowledge of IT Network Operations and connectivity devices that inter-relate with Public Key Infrastructure authentication and Information Security practices. Have Network Operations experience in a network operations center or other 24x7x365 IT Operations environment. Have knowledge of Cybersecurity principles and how to execute system/network security analysis. Have a working knowledge of Tier III Information Assurance practices, IT security governance, security administration, project management, logistics, and Cybersecurity compliance requirements. Have Quality Assurance/Quality Control Inspection process knowledge. Why LaunchTech? LaunchTech is built on a single standard: Excellence, Period. This role places you at the operational heart of a 24/7 enterprise network operations center defending the nation's missile defense infrastructure around the clock. We offer: Medical, Dental, and Vision coverage 401(k) with company match Paid Time Off (PTO) Mission-driven work with opportunities to grow And more Ready to Join the LaunchTech Crew? LaunchTech is an Equal Opportunity Employer. We prohibit discrimination and harassment of any kind. All qualified applicants will receive consideration for employment without regard to race, protected veteran status, color, sex, religion, sexual orientation, national origin, disability, genetic information, age, pregnancy, or any other status protected under federal, state, or local law. Visit to learn more about how we deliver Excellence, Period. Powered by JazzHR NYRvODyGdv
Job Description Job Description Overview We are seeking a CSfC Senior Network Engineer to join our team supporting Network Enterprise Technology Command (NETCOM) in Honolulu, HI. TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. "Technology moving at the speed of thought" embodies these principles - the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers. We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays. Visit us at . Apply now to explore jobs with us! The safety and health of our employees is of the utmost importance. Employees are required to comply with any vaccination requirements mandated by contract, applicable law or regulation. By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP". As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration. Responsibilities RESPONSIBILITIES Assists the PM in the day-to-day management of leading Network Engineers. Must have an in-depth understanding of advanced networking O&M Commercial Solutions for Classified (CSfC) concepts and processes and experience applying these with little to no guidance. Must be able to provide guidance to others. Must be able to perform successfully in complex, unstructured situations. Must be proficient in multivendor networking environments in configuring firewalls, Intrusion Prevention/Detection systems, VPN gateways, routers, and switches (Cisco, Aruba, Juniper, Cisco ASA, etc.) Be able to develop and modify system scripts. Write standardized system documentation, including configuration guides, test procedures, test results, and training materials. Provide onsite training to technical and non-technical users on the daily use, management, and troubleshooting of the solution after installation. Support all Cross-Domain solution requirements Collaborate with other operations departments to design approved infrastructure Serve as the escalation contact during large outages for Tier 2 and 3 systems. Author network Engineering Design Packages to include detailed implementation project plans and procedures. Configures network, software, and hardware components to meet NSA CSfC, NIAP, and DoD requirements Performs network design and systems integration Designs, develops, implements, tests, and maintains complex secure communications networks Configuring/managing PKI Certificate Authorities for CSfC solutions Familiarity with Certificate Authority configuration (ISC CertAgent/MS Windows Server/Red Hat Certificate systems) Document configuration, test procedure, results, and training materials Preparing test reports and configuration documentation according to customer standards. Providing customer on-site training on solution daily use, management, and troubleshooting Provide tier 2 and 3 support as part of a technical team. Identify and recommend hardware and support solutions based on research and analysis of new technologies, interfacing with customers and vendors. Enhance department and organization reputation by accepting ownership for accomplishing new and different requests; exploring opportunities to add value to the company. Apply DoD STIGs and IAVAs Perform special projects and other duties as assigned. REQUIRED QUALIFICATIONS Top Secret OR Higher OR Secret Clearance level with completed T5 investigation Active Professional Network certification (CCNP-Security, CCNA, HPE Aruba Networking Certified Professional - Switching, etc.) Must have experience with one or more networking vendors: Cisco, Aruba, Juniper, etc. One of the following DoD8140 Certifications : SecurityX/CASP+ CCNA CCNP Security CCSP (Certified Cloud Security Professional) GCED (GIAC Certified Enterprise Defender) GCIA (GIAC Certified Intrusion Analyst) GCLD (GIAC Cloud Security Essentials) GDSA (GIAC Defensible Security Architecture) GFACT (GIAC Foundational Cybersecurity Technologies) 10 or more years of experience in engineering MA/MS= 10 years; BS=12 years Qualifications WORK ENVIRONMENT AND PHYSICAL DEMANDS The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Location: Honolulu, HI Type of environment: Office Noise level: Low Work schedule: CONUS Schedule is day shift Monday - Friday. May be requested to work evenings and weekends to meet program and contract needs. Amount of Travel: Less than 20% PHYSICAL DEMANDS The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus. WORK AUTHORIZATION/SECURITY CLEARANCE United States Citizenship Top Secret Clearance requirement WAGE INFORMATION Target salary range: $133,000.00 - $165,000.00. The salary range displayed is an estimate only and is not a guarantee of compensation or salary, and will be determined on several factors regarding the individual's particular combination of education, knowledge, skills, competencies and experience, as well as contract parameters and organizational requirements. The displayed salary is one component of the total compensation package for employees. OTHER INFORMATION Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. TekSynap is a drug-free workplace. We reserve the right to conduct drug testing in accordance with federal, state, and local laws. All employees and candidates may be subject to drug screening if deemed necessary to ensure a safe and compliant working environment. Many positions require specific certifications and/or the ability to obtain a security clearance. Security clearances may only be granted to U.S. citizens. Applicants who accept an offer of employment may be subject to investigations performed by TekSynap and/or the Government to verify the candidate meets the required qualifications and other eligibility requirements. EQUAL EMPLOYMENT OPPORTUNITY In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as "protected status"). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.
09/15/2026
Full time
Job Description Job Description Overview We are seeking a CSfC Senior Network Engineer to join our team supporting Network Enterprise Technology Command (NETCOM) in Honolulu, HI. TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. "Technology moving at the speed of thought" embodies these principles - the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers. We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays. Visit us at . Apply now to explore jobs with us! The safety and health of our employees is of the utmost importance. Employees are required to comply with any vaccination requirements mandated by contract, applicable law or regulation. By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP". As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration. Responsibilities RESPONSIBILITIES Assists the PM in the day-to-day management of leading Network Engineers. Must have an in-depth understanding of advanced networking O&M Commercial Solutions for Classified (CSfC) concepts and processes and experience applying these with little to no guidance. Must be able to provide guidance to others. Must be able to perform successfully in complex, unstructured situations. Must be proficient in multivendor networking environments in configuring firewalls, Intrusion Prevention/Detection systems, VPN gateways, routers, and switches (Cisco, Aruba, Juniper, Cisco ASA, etc.) Be able to develop and modify system scripts. Write standardized system documentation, including configuration guides, test procedures, test results, and training materials. Provide onsite training to technical and non-technical users on the daily use, management, and troubleshooting of the solution after installation. Support all Cross-Domain solution requirements Collaborate with other operations departments to design approved infrastructure Serve as the escalation contact during large outages for Tier 2 and 3 systems. Author network Engineering Design Packages to include detailed implementation project plans and procedures. Configures network, software, and hardware components to meet NSA CSfC, NIAP, and DoD requirements Performs network design and systems integration Designs, develops, implements, tests, and maintains complex secure communications networks Configuring/managing PKI Certificate Authorities for CSfC solutions Familiarity with Certificate Authority configuration (ISC CertAgent/MS Windows Server/Red Hat Certificate systems) Document configuration, test procedure, results, and training materials Preparing test reports and configuration documentation according to customer standards. Providing customer on-site training on solution daily use, management, and troubleshooting Provide tier 2 and 3 support as part of a technical team. Identify and recommend hardware and support solutions based on research and analysis of new technologies, interfacing with customers and vendors. Enhance department and organization reputation by accepting ownership for accomplishing new and different requests; exploring opportunities to add value to the company. Apply DoD STIGs and IAVAs Perform special projects and other duties as assigned. REQUIRED QUALIFICATIONS Top Secret OR Higher OR Secret Clearance level with completed T5 investigation Active Professional Network certification (CCNP-Security, CCNA, HPE Aruba Networking Certified Professional - Switching, etc.) Must have experience with one or more networking vendors: Cisco, Aruba, Juniper, etc. One of the following DoD8140 Certifications : SecurityX/CASP+ CCNA CCNP Security CCSP (Certified Cloud Security Professional) GCED (GIAC Certified Enterprise Defender) GCIA (GIAC Certified Intrusion Analyst) GCLD (GIAC Cloud Security Essentials) GDSA (GIAC Defensible Security Architecture) GFACT (GIAC Foundational Cybersecurity Technologies) 10 or more years of experience in engineering MA/MS= 10 years; BS=12 years Qualifications WORK ENVIRONMENT AND PHYSICAL DEMANDS The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Location: Honolulu, HI Type of environment: Office Noise level: Low Work schedule: CONUS Schedule is day shift Monday - Friday. May be requested to work evenings and weekends to meet program and contract needs. Amount of Travel: Less than 20% PHYSICAL DEMANDS The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus. WORK AUTHORIZATION/SECURITY CLEARANCE United States Citizenship Top Secret Clearance requirement WAGE INFORMATION Target salary range: $133,000.00 - $165,000.00. The salary range displayed is an estimate only and is not a guarantee of compensation or salary, and will be determined on several factors regarding the individual's particular combination of education, knowledge, skills, competencies and experience, as well as contract parameters and organizational requirements. The displayed salary is one component of the total compensation package for employees. OTHER INFORMATION Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. TekSynap is a drug-free workplace. We reserve the right to conduct drug testing in accordance with federal, state, and local laws. All employees and candidates may be subject to drug screening if deemed necessary to ensure a safe and compliant working environment. Many positions require specific certifications and/or the ability to obtain a security clearance. Security clearances may only be granted to U.S. citizens. Applicants who accept an offer of employment may be subject to investigations performed by TekSynap and/or the Government to verify the candidate meets the required qualifications and other eligibility requirements. EQUAL EMPLOYMENT OPPORTUNITY In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as "protected status"). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.
Job Description Job Description Description: Company Background and Position Summary Vaylent is a Cerberus-backed aerospace and defense manufacturing platform building the enterprise infrastructure, capabilities, and operational foundation to support a growing network of manufacturing companies, including Votaw Precision Technologies. Through its operating companies, Vaylent supports demanding aerospace, defense, and industrial programs by combining advanced manufacturing expertise with scalable business and technology infrastructure. This position reports directly to the Chief Information Officer and carries platform-wide technical scope across all Vaylent operating environments. It is a senior individual-contributor role with meaningful technical ownership and direct access to decision-making. This is an engineering role. You will spend your time inside the technology - identifying weaknesses, designing controls, implementing them and validating that they work. It is not a SOC analyst role, and it is not a GRC or documentation role. You own security requirements, architecture, standards, baselines, and technical validation. Infrastructure and network engineering owns operation of the underlying infrastructure. In shared areas - firewall policy, segmentation, secure remote access, identity, cloud - the teams design and sustain controls jointly. You will spend your time inside the technology - identifying weaknesses, designing controls, implementing them and validating that they work. What You Will Work On Security engineering across Microsoft 365, Entra ID, Defender, Intune, Active Directory, and Windows environments. Conditional Access, MFA, privileged access, identity protection, and device compliance. Security architecture and controls in Microsoft 365 GCC High and AWS GovCloud. Technical ownership of the vulnerability-management lifecycle, from identification and prioritization through remediation coordination and validation. Secure configuration standards and hardening for Windows, Linux, network devices, endpoints, and cloud services. Technical partnership with a 24 7 managed SOC/MDR provider. The provider handles continuous monitoring and initial alert triage; you own internal escalation, investigation, containment coordination, and remediation. Security requirements for network segmentation, firewall policy, and secure remote access, in partnership with infrastructure and network engineering. Cybersecurity across manufacturing, OT, IoT, and CNC environments, balanced against production availability and safety. Technical controls supporting NIST SP 800-171 and CMMC Level 2. Secure integration of newly acquired companies, facilities, and networks. Close partnership with infrastructure and network engineering, platform systems administration, enterprise applications, and site IT support. Requirements: What You Will Need One of the following: Bachelor's degree in Cybersecurity, IT, Computer Science, Engineering, or a related discipline and 6+ years of relevant experience. Graduate degree in a related discipline and 4+ years of relevant experience. 10+ years of directly relevant experience in lieu of a degree. Plus: Hands-on experience in cybersecurity engineering, infrastructure security, or security-focused systems administration. Working knowledge of Microsoft security technologies - Entra ID, Defender, Intune, Conditional Access, MFA, Active Directory, or comparable platforms. Experience with vulnerability management, secure configuration, and system hardening. Working knowledge of network security - segmentation, firewalls, VPNs, secure remote access - and cloud-security principles including IAM, encryption, logging, and least privilege. The ability to investigate complex security issues independently and implement practical fixes. Nice to Have Aerospace, defense, federal contracting, or regulated manufacturing background. Microsoft 365 GCC High, Azure Government, or AWS GovCloud experience. NIST SP 800-171 or CMMC Level 2 implementation experience. Experience securing manufacturing, OT, IoT, or CNC environments. PowerShell, Python, or infrastructure-as-code experience. Certifications such as Security+, CySA+, CISSP, CCSP, GIAC, Microsoft Security, or AWS Security are welcome but not required. Personal Attributes Highly self-motivated and directed. Keen attention to detail. Ability to effectively prioritize and execute tasks in a high-pressure environment. Ability to work both independently and in a team-oriented, collaborative environment. Work Conditions This position operates within a precision manufacturing environment supporting the production of mission-critical aerospace and defense components. Success requires a high sense of urgency, attention to detail, proactive problem-solving, and the ability to coordinate effectively across multiple departments to ensure uninterrupted manufacturing operations and customer delivery commitments. Travel to company operating locations as required (up to 20%). Additional Requirements This position requires the use of information or access to hardware subject to the International Traffic in Arms Regulations (ITAR). All applicants must be U.S. persons as defined by ITAR. A U.S. security clearance is not required. An active or recently active DoD Secret clearance is a plus. Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge, skills, education, and experience. Vaylent is an Equal Opportunity Employer including Disability/Vets.
09/15/2026
Full time
Job Description Job Description Description: Company Background and Position Summary Vaylent is a Cerberus-backed aerospace and defense manufacturing platform building the enterprise infrastructure, capabilities, and operational foundation to support a growing network of manufacturing companies, including Votaw Precision Technologies. Through its operating companies, Vaylent supports demanding aerospace, defense, and industrial programs by combining advanced manufacturing expertise with scalable business and technology infrastructure. This position reports directly to the Chief Information Officer and carries platform-wide technical scope across all Vaylent operating environments. It is a senior individual-contributor role with meaningful technical ownership and direct access to decision-making. This is an engineering role. You will spend your time inside the technology - identifying weaknesses, designing controls, implementing them and validating that they work. It is not a SOC analyst role, and it is not a GRC or documentation role. You own security requirements, architecture, standards, baselines, and technical validation. Infrastructure and network engineering owns operation of the underlying infrastructure. In shared areas - firewall policy, segmentation, secure remote access, identity, cloud - the teams design and sustain controls jointly. You will spend your time inside the technology - identifying weaknesses, designing controls, implementing them and validating that they work. What You Will Work On Security engineering across Microsoft 365, Entra ID, Defender, Intune, Active Directory, and Windows environments. Conditional Access, MFA, privileged access, identity protection, and device compliance. Security architecture and controls in Microsoft 365 GCC High and AWS GovCloud. Technical ownership of the vulnerability-management lifecycle, from identification and prioritization through remediation coordination and validation. Secure configuration standards and hardening for Windows, Linux, network devices, endpoints, and cloud services. Technical partnership with a 24 7 managed SOC/MDR provider. The provider handles continuous monitoring and initial alert triage; you own internal escalation, investigation, containment coordination, and remediation. Security requirements for network segmentation, firewall policy, and secure remote access, in partnership with infrastructure and network engineering. Cybersecurity across manufacturing, OT, IoT, and CNC environments, balanced against production availability and safety. Technical controls supporting NIST SP 800-171 and CMMC Level 2. Secure integration of newly acquired companies, facilities, and networks. Close partnership with infrastructure and network engineering, platform systems administration, enterprise applications, and site IT support. Requirements: What You Will Need One of the following: Bachelor's degree in Cybersecurity, IT, Computer Science, Engineering, or a related discipline and 6+ years of relevant experience. Graduate degree in a related discipline and 4+ years of relevant experience. 10+ years of directly relevant experience in lieu of a degree. Plus: Hands-on experience in cybersecurity engineering, infrastructure security, or security-focused systems administration. Working knowledge of Microsoft security technologies - Entra ID, Defender, Intune, Conditional Access, MFA, Active Directory, or comparable platforms. Experience with vulnerability management, secure configuration, and system hardening. Working knowledge of network security - segmentation, firewalls, VPNs, secure remote access - and cloud-security principles including IAM, encryption, logging, and least privilege. The ability to investigate complex security issues independently and implement practical fixes. Nice to Have Aerospace, defense, federal contracting, or regulated manufacturing background. Microsoft 365 GCC High, Azure Government, or AWS GovCloud experience. NIST SP 800-171 or CMMC Level 2 implementation experience. Experience securing manufacturing, OT, IoT, or CNC environments. PowerShell, Python, or infrastructure-as-code experience. Certifications such as Security+, CySA+, CISSP, CCSP, GIAC, Microsoft Security, or AWS Security are welcome but not required. Personal Attributes Highly self-motivated and directed. Keen attention to detail. Ability to effectively prioritize and execute tasks in a high-pressure environment. Ability to work both independently and in a team-oriented, collaborative environment. Work Conditions This position operates within a precision manufacturing environment supporting the production of mission-critical aerospace and defense components. Success requires a high sense of urgency, attention to detail, proactive problem-solving, and the ability to coordinate effectively across multiple departments to ensure uninterrupted manufacturing operations and customer delivery commitments. Travel to company operating locations as required (up to 20%). Additional Requirements This position requires the use of information or access to hardware subject to the International Traffic in Arms Regulations (ITAR). All applicants must be U.S. persons as defined by ITAR. A U.S. security clearance is not required. An active or recently active DoD Secret clearance is a plus. Your actual level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge, skills, education, and experience. Vaylent is an Equal Opportunity Employer including Disability/Vets.
Job Description Job Description We are seeking a Senior Network Security Engineer for an operations-first role supporting enterprise network security infrastructure across on-premises, remote-access, hybrid-cloud, and cloud-connected environments. This is not primarily an architecture/design role. The priority is a hands-on engineer who can administer, configure, maintain, troubleshoot, patch, upgrade, back up, validate, document, and operate production security platforms with minimal ramp-up. Firewall operations: hands-on Cisco and Palo Alto firewall administration, rule changes, NAT, troubleshooting, policy cleanup, upgrades, backups, logging, and production support. VPN / remote access: support for remote-access VPN, site-to-site VPN, user connectivity issues, certificates, authentication flows, and after-hours troubleshooting. RSA / MFA administration: RSA SecurID or equivalent MFA operations, token support, server administration, user troubleshooting, VPN integration, certificates, patching, backups, logs, and monitoring. Day-to-day operations: ticket resolution, monitoring alerts, health checks, change requests, incident support, maintenance windows, operational reporting, and customer support. Configuration and administration: installing, configuring, maintaining, patching, upgrading, backing up, validating, and troubleshooting assigned security platforms. Production troubleshooting: strong TCP/IP, DNS, routing, firewall logs, packet captures, VPN authentication, certificate, and connectivity troubleshooting. Documentation and process discipline: SOPs, runbooks, diagrams, change records, rollback plans, evidence collection, knowledge transfer, and formal change management. Federal/customer environment maturity: Public Trust eligibility, regulated-environment documentation, customer support, cross-team coordination, and comfort working with government stakeholders. The best candidate can credibly say: "I have operated enterprise Cisco and Palo Alto firewalls in production, handled firewall rule changes and troubleshooting, supported VPN users and site-to-site tunnels, administered or supported RSA/MFA tied to VPN access, followed formal change-management processes, maintained documentation and backups, and can step into daily operational support with minimal ramp-up." Scope and Role Boundaries Primary platforms include Cisco ASA/Firepower/FTD/FMC, Palo Alto NGFW/Panorama/GlobalProtect, remote-access and site-to-site VPN, RSA SecurID Authentication Manager or comparable MFA, monitoring/logging/SIEM integrations, and related network security controls. Coordinate with SOC/NOC, cloud, identity/directory, wireless/LAN, server, endpoint, system owner, application, governance, and vendor teams during changes, incidents, troubleshooting, compliance, and audit support. Cloudflare, Cisco ISE/NAC, secure web/email gateways, packet visibility tools, SD-WAN/SASE/ZTNA, AWS/Azure security, and F5/application-delivery awareness are useful where they intersect with assigned operational support, but the core need is firewall, VPN, RSA/MFA, and production operations. Key Responsibilities Provide daily, weekly, monthly, and annual operational support for assigned security systems, including tickets, alerts, health checks, email/phone support, metrics, status reporting, and operational validation. Administer and troubleshoot enterprise firewalls, including rule bases, NAT, segmentation, high availability, threat prevention, VPN integration, logging, secure baselines, rule reviews, recertification, cleanup, and decommissioning. Install, configure, maintain, patch, upgrade, back up, and validate firewall, VPN, MFA, and related network security systems in production environments. Support remote-access VPN, site-to-site VPN, partner connectivity, cloud connectivity, mobile/remote users, certificates, authentication policies, availability, utilization, and user access issues. Maintain and troubleshoot RSA SecurID Authentication Manager or equivalent MFA services, including servers/appliances, agents, certificates, HA, backups, logs, monitoring, directory integration, VPN authentication, and token lifecycle support. Respond to incidents, vulnerability notices, urgent requests, vendor advisories, PSIRT notices, system alerts, and emergency troubleshooting while minimizing service disruption. Use firewall logs, VPN logs, packet captures, SIEM data, monitoring tools, DNS/routing checks, and standard diagnostics to resolve complex connectivity, authentication, TLS/certificate, and application-flow issues. Create and maintain topology diagrams, equipment inventories, configurations, SOPs, runbooks, implementation plans, rollback plans, build/upgrade procedures, troubleshooting notes, and knowledge articles. Follow approved change, release, incident, problem, and configuration-management processes; prepare change records, peer-review materials, validation evidence, root-cause analysis, metrics, and audit artifacts. Support vulnerability remediation, POA&M tracking, continuous monitoring, compliance reviews, audit evidence collection, and coordination with ISSO, system owner, and security governance teams. Requirements 7+ years of experience in network security engineering, network infrastructure, cybersecurity infrastructure, or a closely related role. 5+ years of hands-on experience administering, maintaining, and troubleshooting enterprise firewall platforms in production environments. Hands-on experience with Cisco security technologies such as Cisco ASA, Firepower, FTD, FMC, AnyConnect/Secure Client, or equivalent Cisco firewall/VPN platforms. Hands-on experience with Palo Alto Networks technologies such as NGFW, Panorama, GlobalProtect, security profiles, App-ID/User-ID, logging, and policy optimization. Experience administering or supporting RSA SecurID Authentication Manager or comparable enterprise MFA/two-factor authentication platforms, including token support, server operations, patching/upgrades, backups, certificates, monitoring, and directory/VPN integration. Strong knowledge of firewall policy, NAT, VPNs, routing, DNS, DHCP, BGP, TLS/certificates, packet captures, log analysis, segmentation, high availability, and common network diagnostic tools. Experience with enterprise monitoring, logging, SIEM, alerting, vulnerability management, incident response, formal change management, and regulated-environment documentation. Ability to create clear technical documentation, support customers and stakeholders, prioritize operational work, communicate clearly, and coordinate across technical teams. Ability to obtain and maintain a Public Trust background investigation. Desired Certifications Relevant certifications are helpful but should not replace demonstrated hands-on experience. Examples include CCNP Security, CCIE Security, PCNSE, PCCSE, CISSP, CCSP, AWS Certified Security - Specialty, AWS Advanced Networking - Specialty, Microsoft Certified: Azure Security Engineer Associate, Microsoft Certified: Azure Network Engineer Associate, CompTIA Security+, CompTIA CySA+, GIAC certifications, or equivalent vendor/cloud certifications. Core Competencies Enterprise firewall engineering and policy lifecycle management VPN, remote access, RSA/MFA, and token lifecycle operations Cloudflare, edge security, secure access, and Zero Trust support Content filtering, secure web/email gateway, and NAC operations Hybrid-cloud network security and secure connectivity Monitoring, logging, SIEM integration, and incident response support Security visibility, packet analysis, and advanced troubleshooting Vulnerability remediation, compliance evidence, and POA&M support Change management, documentation, reporting, and operational metrics Technical leadership, customer support, and cross-team collaboration Benefits 401(k) 401(k) matching Dental insurance Flexible schedule Flexible spending account Health insurance Health savings account Life insurance Paid time off Professional development assistance Referral program Retirement plan Tuition reimbursement Vision insurance
09/15/2026
Full time
Job Description Job Description We are seeking a Senior Network Security Engineer for an operations-first role supporting enterprise network security infrastructure across on-premises, remote-access, hybrid-cloud, and cloud-connected environments. This is not primarily an architecture/design role. The priority is a hands-on engineer who can administer, configure, maintain, troubleshoot, patch, upgrade, back up, validate, document, and operate production security platforms with minimal ramp-up. Firewall operations: hands-on Cisco and Palo Alto firewall administration, rule changes, NAT, troubleshooting, policy cleanup, upgrades, backups, logging, and production support. VPN / remote access: support for remote-access VPN, site-to-site VPN, user connectivity issues, certificates, authentication flows, and after-hours troubleshooting. RSA / MFA administration: RSA SecurID or equivalent MFA operations, token support, server administration, user troubleshooting, VPN integration, certificates, patching, backups, logs, and monitoring. Day-to-day operations: ticket resolution, monitoring alerts, health checks, change requests, incident support, maintenance windows, operational reporting, and customer support. Configuration and administration: installing, configuring, maintaining, patching, upgrading, backing up, validating, and troubleshooting assigned security platforms. Production troubleshooting: strong TCP/IP, DNS, routing, firewall logs, packet captures, VPN authentication, certificate, and connectivity troubleshooting. Documentation and process discipline: SOPs, runbooks, diagrams, change records, rollback plans, evidence collection, knowledge transfer, and formal change management. Federal/customer environment maturity: Public Trust eligibility, regulated-environment documentation, customer support, cross-team coordination, and comfort working with government stakeholders. The best candidate can credibly say: "I have operated enterprise Cisco and Palo Alto firewalls in production, handled firewall rule changes and troubleshooting, supported VPN users and site-to-site tunnels, administered or supported RSA/MFA tied to VPN access, followed formal change-management processes, maintained documentation and backups, and can step into daily operational support with minimal ramp-up." Scope and Role Boundaries Primary platforms include Cisco ASA/Firepower/FTD/FMC, Palo Alto NGFW/Panorama/GlobalProtect, remote-access and site-to-site VPN, RSA SecurID Authentication Manager or comparable MFA, monitoring/logging/SIEM integrations, and related network security controls. Coordinate with SOC/NOC, cloud, identity/directory, wireless/LAN, server, endpoint, system owner, application, governance, and vendor teams during changes, incidents, troubleshooting, compliance, and audit support. Cloudflare, Cisco ISE/NAC, secure web/email gateways, packet visibility tools, SD-WAN/SASE/ZTNA, AWS/Azure security, and F5/application-delivery awareness are useful where they intersect with assigned operational support, but the core need is firewall, VPN, RSA/MFA, and production operations. Key Responsibilities Provide daily, weekly, monthly, and annual operational support for assigned security systems, including tickets, alerts, health checks, email/phone support, metrics, status reporting, and operational validation. Administer and troubleshoot enterprise firewalls, including rule bases, NAT, segmentation, high availability, threat prevention, VPN integration, logging, secure baselines, rule reviews, recertification, cleanup, and decommissioning. Install, configure, maintain, patch, upgrade, back up, and validate firewall, VPN, MFA, and related network security systems in production environments. Support remote-access VPN, site-to-site VPN, partner connectivity, cloud connectivity, mobile/remote users, certificates, authentication policies, availability, utilization, and user access issues. Maintain and troubleshoot RSA SecurID Authentication Manager or equivalent MFA services, including servers/appliances, agents, certificates, HA, backups, logs, monitoring, directory integration, VPN authentication, and token lifecycle support. Respond to incidents, vulnerability notices, urgent requests, vendor advisories, PSIRT notices, system alerts, and emergency troubleshooting while minimizing service disruption. Use firewall logs, VPN logs, packet captures, SIEM data, monitoring tools, DNS/routing checks, and standard diagnostics to resolve complex connectivity, authentication, TLS/certificate, and application-flow issues. Create and maintain topology diagrams, equipment inventories, configurations, SOPs, runbooks, implementation plans, rollback plans, build/upgrade procedures, troubleshooting notes, and knowledge articles. Follow approved change, release, incident, problem, and configuration-management processes; prepare change records, peer-review materials, validation evidence, root-cause analysis, metrics, and audit artifacts. Support vulnerability remediation, POA&M tracking, continuous monitoring, compliance reviews, audit evidence collection, and coordination with ISSO, system owner, and security governance teams. Requirements 7+ years of experience in network security engineering, network infrastructure, cybersecurity infrastructure, or a closely related role. 5+ years of hands-on experience administering, maintaining, and troubleshooting enterprise firewall platforms in production environments. Hands-on experience with Cisco security technologies such as Cisco ASA, Firepower, FTD, FMC, AnyConnect/Secure Client, or equivalent Cisco firewall/VPN platforms. Hands-on experience with Palo Alto Networks technologies such as NGFW, Panorama, GlobalProtect, security profiles, App-ID/User-ID, logging, and policy optimization. Experience administering or supporting RSA SecurID Authentication Manager or comparable enterprise MFA/two-factor authentication platforms, including token support, server operations, patching/upgrades, backups, certificates, monitoring, and directory/VPN integration. Strong knowledge of firewall policy, NAT, VPNs, routing, DNS, DHCP, BGP, TLS/certificates, packet captures, log analysis, segmentation, high availability, and common network diagnostic tools. Experience with enterprise monitoring, logging, SIEM, alerting, vulnerability management, incident response, formal change management, and regulated-environment documentation. Ability to create clear technical documentation, support customers and stakeholders, prioritize operational work, communicate clearly, and coordinate across technical teams. Ability to obtain and maintain a Public Trust background investigation. Desired Certifications Relevant certifications are helpful but should not replace demonstrated hands-on experience. Examples include CCNP Security, CCIE Security, PCNSE, PCCSE, CISSP, CCSP, AWS Certified Security - Specialty, AWS Advanced Networking - Specialty, Microsoft Certified: Azure Security Engineer Associate, Microsoft Certified: Azure Network Engineer Associate, CompTIA Security+, CompTIA CySA+, GIAC certifications, or equivalent vendor/cloud certifications. Core Competencies Enterprise firewall engineering and policy lifecycle management VPN, remote access, RSA/MFA, and token lifecycle operations Cloudflare, edge security, secure access, and Zero Trust support Content filtering, secure web/email gateway, and NAC operations Hybrid-cloud network security and secure connectivity Monitoring, logging, SIEM integration, and incident response support Security visibility, packet analysis, and advanced troubleshooting Vulnerability remediation, compliance evidence, and POA&M support Change management, documentation, reporting, and operational metrics Technical leadership, customer support, and cross-team collaboration Benefits 401(k) 401(k) matching Dental insurance Flexible schedule Flexible spending account Health insurance Health savings account Life insurance Paid time off Professional development assistance Referral program Retirement plan Tuition reimbursement Vision insurance
Job Description Job Description Benefits: 401(k) Competitive salary Dental insurance Health insurance Paid time off Vision insurance Cimarron is seeking a GNOSC Watch Officer/Network Engineer to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract at Schriever Space Force Base in the Colorado Springs, CO area. Key Duties: Responsible for all facets of a continuous 24/7 Global Network Operations and Security Center. Execute network, system, and cloud systems monitoring/surveillance, environmental monitoring, incident management and MDA Cybersecurity. Be responsible for all aspects of IT incident management and escalation, ensuring that incidents are effectively escalated, managed and resolved with full communication of status, plans, and actions provided to executive management and the Government customer. Support and service maintenance activities to include Change Management coordination during the assigned quarterly rotating shift day/night shifts. Required Skills, Experience, and Education: Due to facility security requirements, only U.S. citizens are eligible for consideration at this time. Ability to complete a pre-employment background check and drug screening, which will include, but is not limited to, testing for marijuana use. This position requires access to federal facilities. Candidates must possess a valid, unexpired Real ID-compliant driver's license or state-issued identification card at the time of hire. If you are unsure whether your ID is Real ID-compliant, please check for the star symbol in the upper portion of your driver's license or state ID. Active Secret Clearance. Current DoD 8570 IAT Level II certification (ex., Security + CE, CySA, etc.). 1 or more years of IT experience. Excellent communication skills, verbal and written, at both technical and senior/Executive management levels. Understanding of Command level Management. Able to speak clearly to diverse cultural audiences, VIPs, and dignitaries. Able to perform as a section trainer and create lesson plans. Able to operate within a stressful high speed Operational environment and be able to multi-task. Desired Skills, Experience, and Education: Experience in metrics-based IT Operations and Maintenance (O&M) teams. Experience with Remedy and SNMP monitoring tools (e.g., SolarWinds and StruxureWare Datacenter Expert). Have education or experience with ITIL framework and ITIL-based processes, to include continual service improvement, change management, and problem investigation. Previous work experience as a Windows/Linux System Administrator supporting a large Enterprise with knowledge of Microsoft Active Directory, Windows 2008/2012, Linux/UNIX Operating Systems, EMC Storage, Symantec NetBackup and SCCM Patch Management solutions. Previous work experience as a network engineer, including hands-on experience designing, implementing and managing network components including switches, routers, firewalls, and cryptographic devices. Experience with Cyber-defense or information assurance, including experience with DISA mandated security tools to include Assured Compliance Assessment Solution (ACAS), Host Based Security System (HBSS), analyze results and create reports Knowledge of IT Network Operations and connectivity devices that inter-relate with Public Key Infrastructure authentication and Information Security practices. Network Operations experience in a network operations center or other 24x7x365 IT Operations environment. Knowledge of Cybersecurity principles and how to execute system/network security analysis. Have a working knowledge of Tier III Information Assurance practices, IT security governance, security administration, project management, logistics, and Cybersecurity compliance requirements. Quality Assurance/Quality Control Inspection process knowledge.
09/15/2026
Full time
Job Description Job Description Benefits: 401(k) Competitive salary Dental insurance Health insurance Paid time off Vision insurance Cimarron is seeking a GNOSC Watch Officer/Network Engineer to support the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract at Schriever Space Force Base in the Colorado Springs, CO area. Key Duties: Responsible for all facets of a continuous 24/7 Global Network Operations and Security Center. Execute network, system, and cloud systems monitoring/surveillance, environmental monitoring, incident management and MDA Cybersecurity. Be responsible for all aspects of IT incident management and escalation, ensuring that incidents are effectively escalated, managed and resolved with full communication of status, plans, and actions provided to executive management and the Government customer. Support and service maintenance activities to include Change Management coordination during the assigned quarterly rotating shift day/night shifts. Required Skills, Experience, and Education: Due to facility security requirements, only U.S. citizens are eligible for consideration at this time. Ability to complete a pre-employment background check and drug screening, which will include, but is not limited to, testing for marijuana use. This position requires access to federal facilities. Candidates must possess a valid, unexpired Real ID-compliant driver's license or state-issued identification card at the time of hire. If you are unsure whether your ID is Real ID-compliant, please check for the star symbol in the upper portion of your driver's license or state ID. Active Secret Clearance. Current DoD 8570 IAT Level II certification (ex., Security + CE, CySA, etc.). 1 or more years of IT experience. Excellent communication skills, verbal and written, at both technical and senior/Executive management levels. Understanding of Command level Management. Able to speak clearly to diverse cultural audiences, VIPs, and dignitaries. Able to perform as a section trainer and create lesson plans. Able to operate within a stressful high speed Operational environment and be able to multi-task. Desired Skills, Experience, and Education: Experience in metrics-based IT Operations and Maintenance (O&M) teams. Experience with Remedy and SNMP monitoring tools (e.g., SolarWinds and StruxureWare Datacenter Expert). Have education or experience with ITIL framework and ITIL-based processes, to include continual service improvement, change management, and problem investigation. Previous work experience as a Windows/Linux System Administrator supporting a large Enterprise with knowledge of Microsoft Active Directory, Windows 2008/2012, Linux/UNIX Operating Systems, EMC Storage, Symantec NetBackup and SCCM Patch Management solutions. Previous work experience as a network engineer, including hands-on experience designing, implementing and managing network components including switches, routers, firewalls, and cryptographic devices. Experience with Cyber-defense or information assurance, including experience with DISA mandated security tools to include Assured Compliance Assessment Solution (ACAS), Host Based Security System (HBSS), analyze results and create reports Knowledge of IT Network Operations and connectivity devices that inter-relate with Public Key Infrastructure authentication and Information Security practices. Network Operations experience in a network operations center or other 24x7x365 IT Operations environment. Knowledge of Cybersecurity principles and how to execute system/network security analysis. Have a working knowledge of Tier III Information Assurance practices, IT security governance, security administration, project management, logistics, and Cybersecurity compliance requirements. Quality Assurance/Quality Control Inspection process knowledge.
About T2 Group: T2 Group is a dynamic consulting and workforce solutions firm specializing in healthcare IT, revenue cycle, and patient access. We partner with leading health systems and organizations nationwide to deliver innovative, high-impact solutions that drive operational efficiency and improve patient outcomes. At T2 Group, we believe in empowering talent, embracing flexibility, and fostering a culture of collaboration, accountability, and growth. Join a team where your expertise makes a difference and your contributions are valued. Sr. Systems Engineer Engineering Los Angeles, CA Costa Mesa, CA About T2 Group: T2 Group is a premier technology consulting and workforce solutions partner. We deliver modern IT operations, infrastructure engineering, and cloud endpoint management to leading organizations nationwide. For our clients, we turn complex technology challenges into seamless, scalable operational performance. For our team, T2 is a launchpad - offering exposure to the latest enterprise technology, a culture of autonomy and continuous growth, and an environment where your work makes a visible impact every day. Position Summary: As Senior Systems Engineer, you will serve as the lead onsite technical anchor and trusted IT advisor for our premier VIP client in Costa Mesa, CA. Backed by our remote senior cloud architects, you will take total ownership of the local IT ecosystem - driving zero-touch Microsoft Autopilot provisioning, Intune app rollouts, hardware deployments, and deep-level endpoint remediation. This high-visibility role combines elite white-glove executive support with modern endpoint engineering. If you thrive on operational self-discipline, technical leadership, and direct client impact, this is your platform to excel. Responsibilities: Manage end-to-end device lifecycles via Microsoft Autopilot and Intune (zero-touch provisioning, profile configuration, app deployment, and compliance enforcement). Establish secure, elevated remote administrative access workflows to perform deep-level operating system, driver, and application remediation directly on end-user machines. Utilize SolarWinds for real-time network/systems performance monitoring, proactive alert response, and health reporting. Lead local network troubleshooting (switches, patch panels, cabling, VLAN access, and Wi-Fi access points) and collaborate directly with the remote Senior Network Architect to diagnose, support, and remediate core infrastructure issues. Support local identity and access workflows in Entra ID (group policy application, Conditional Access troubleshooting, and MFA resolution). Act as the senior onsite escalation lead for complex endpoint, identity, and system issues across the Costa Mesa facility; partner with remote Chief Architects to test and validate global policies prior to deployment. Deliver high-touch, white-glove technical support to executive leadership and critical utility operations staff. Maintain accurate support ticketing records, SOPs, local IT infrastructure floor/rack diagrams, and knowledge base articles while adhering to established change control, security, and escalation protocols. Required Qualifications: 5+ years of progressive experience in endpoint engineering, systems administration, or senior IT support within an enterprise environment. Strong hands-on experience administering Windows 11, Microsoft 365 (E5), Entra ID, and Microsoft Intune / Autopilot zero-touch deployment workflows. Demonstrated expertise in utilizing remote support tools and executing privileged administrative elevations to perform deep-level endpoint troubleshooting and system remediation. Practical knowledge of local network troubleshooting (TCP/IP, VLANs, DNS, DHCP, VPNs, switches, patch panels, and Wi-Fi access points) to partner effectively with the remote Senior Network Architect. Hands-on experience or working familiarity with SolarWinds (or equivalent enterprise monitoring tools) for performance tracking, alert triage, and health reporting. White-Glove VIP Support: Exceptional interpersonal and communication skills with a proven track record of delivering patient, high-touch support to executive leadership and critical utility operations personnel. Process & Documentation Discipline: Strong organizational skills and the ability to write clear SOPs, technical escalation notes, and site infrastructure diagrams without working in a silo. Onsite Commitment: Must be able to work full-time onsite in Costa Mesa, CA, and satisfy client onboarding/background clearance requirements. Preferred Qualifications: Certifications: Microsoft Certified: Endpoint Administrator Associate, CompTIA Network+, Security+, or equivalent. Industry Experience: Prior experience supporting public utilities, municipal water organizations, critical infrastructure, or high-touch VIP enterprise accounts. Physical Requirements: Mobility: Ability to move throughout client office and utility operations facilities to deliver onsite hardware setup, cable routing, and technical support. Hardware Handling: Ability to lift, move, and position IT equipment (desktop PCs, monitors, servers, switches, and rack devices) weighing up to 40 lbs. Technical Dexterity: Manual dexterity to assemble computer hardware, connect network cabling, and operate diagnostic tools. Communication & Vision: Clear visual acuity and verbal communication skills to interface directly with VIP end users, conduct remote support sessions, and analyze technical diagnostics. This job description outlines the general scope of the position; duties and requirements may change based on business or client needs. T2 Group is committed to providing reasonable accommodation to qualified individuals with disabilities in accordance with applicable federal, state, and local laws. PI62412c7bac97-0256
09/15/2026
Full time
About T2 Group: T2 Group is a dynamic consulting and workforce solutions firm specializing in healthcare IT, revenue cycle, and patient access. We partner with leading health systems and organizations nationwide to deliver innovative, high-impact solutions that drive operational efficiency and improve patient outcomes. At T2 Group, we believe in empowering talent, embracing flexibility, and fostering a culture of collaboration, accountability, and growth. Join a team where your expertise makes a difference and your contributions are valued. Sr. Systems Engineer Engineering Los Angeles, CA Costa Mesa, CA About T2 Group: T2 Group is a premier technology consulting and workforce solutions partner. We deliver modern IT operations, infrastructure engineering, and cloud endpoint management to leading organizations nationwide. For our clients, we turn complex technology challenges into seamless, scalable operational performance. For our team, T2 is a launchpad - offering exposure to the latest enterprise technology, a culture of autonomy and continuous growth, and an environment where your work makes a visible impact every day. Position Summary: As Senior Systems Engineer, you will serve as the lead onsite technical anchor and trusted IT advisor for our premier VIP client in Costa Mesa, CA. Backed by our remote senior cloud architects, you will take total ownership of the local IT ecosystem - driving zero-touch Microsoft Autopilot provisioning, Intune app rollouts, hardware deployments, and deep-level endpoint remediation. This high-visibility role combines elite white-glove executive support with modern endpoint engineering. If you thrive on operational self-discipline, technical leadership, and direct client impact, this is your platform to excel. Responsibilities: Manage end-to-end device lifecycles via Microsoft Autopilot and Intune (zero-touch provisioning, profile configuration, app deployment, and compliance enforcement). Establish secure, elevated remote administrative access workflows to perform deep-level operating system, driver, and application remediation directly on end-user machines. Utilize SolarWinds for real-time network/systems performance monitoring, proactive alert response, and health reporting. Lead local network troubleshooting (switches, patch panels, cabling, VLAN access, and Wi-Fi access points) and collaborate directly with the remote Senior Network Architect to diagnose, support, and remediate core infrastructure issues. Support local identity and access workflows in Entra ID (group policy application, Conditional Access troubleshooting, and MFA resolution). Act as the senior onsite escalation lead for complex endpoint, identity, and system issues across the Costa Mesa facility; partner with remote Chief Architects to test and validate global policies prior to deployment. Deliver high-touch, white-glove technical support to executive leadership and critical utility operations staff. Maintain accurate support ticketing records, SOPs, local IT infrastructure floor/rack diagrams, and knowledge base articles while adhering to established change control, security, and escalation protocols. Required Qualifications: 5+ years of progressive experience in endpoint engineering, systems administration, or senior IT support within an enterprise environment. Strong hands-on experience administering Windows 11, Microsoft 365 (E5), Entra ID, and Microsoft Intune / Autopilot zero-touch deployment workflows. Demonstrated expertise in utilizing remote support tools and executing privileged administrative elevations to perform deep-level endpoint troubleshooting and system remediation. Practical knowledge of local network troubleshooting (TCP/IP, VLANs, DNS, DHCP, VPNs, switches, patch panels, and Wi-Fi access points) to partner effectively with the remote Senior Network Architect. Hands-on experience or working familiarity with SolarWinds (or equivalent enterprise monitoring tools) for performance tracking, alert triage, and health reporting. White-Glove VIP Support: Exceptional interpersonal and communication skills with a proven track record of delivering patient, high-touch support to executive leadership and critical utility operations personnel. Process & Documentation Discipline: Strong organizational skills and the ability to write clear SOPs, technical escalation notes, and site infrastructure diagrams without working in a silo. Onsite Commitment: Must be able to work full-time onsite in Costa Mesa, CA, and satisfy client onboarding/background clearance requirements. Preferred Qualifications: Certifications: Microsoft Certified: Endpoint Administrator Associate, CompTIA Network+, Security+, or equivalent. Industry Experience: Prior experience supporting public utilities, municipal water organizations, critical infrastructure, or high-touch VIP enterprise accounts. Physical Requirements: Mobility: Ability to move throughout client office and utility operations facilities to deliver onsite hardware setup, cable routing, and technical support. Hardware Handling: Ability to lift, move, and position IT equipment (desktop PCs, monitors, servers, switches, and rack devices) weighing up to 40 lbs. Technical Dexterity: Manual dexterity to assemble computer hardware, connect network cabling, and operate diagnostic tools. Communication & Vision: Clear visual acuity and verbal communication skills to interface directly with VIP end users, conduct remote support sessions, and analyze technical diagnostics. This job description outlines the general scope of the position; duties and requirements may change based on business or client needs. T2 Group is committed to providing reasonable accommodation to qualified individuals with disabilities in accordance with applicable federal, state, and local laws. PI62412c7bac97-0256
DNI (Delaware Nation Industries)
Alexandria, Virginia
Job Description Job Description The Bureau of Diplomatic Security (DS) is the security and law enforcement arm of the U.S. Department of State (the Department). DS is a world leader in international investigations, threat analysis, cyber security, counterterrorism, security technology, and protection of people, property, and information. Its primary mission is to provide a safe and secure environment for the conduct of U.S. foreign policy. The Office of Security Technology (ST) supports the DS mission through the application and use of appropriate technical security countermeasures. Description Evaluates new technologies and possible security vulnerabilities associated with them. Assist in the planning of policies and guidelines involving state-of-the-art equipment and their possible implementation in State Department resources. Responsible for testing the vulnerabilities associated with the software applications and hardware for networks. Works with a laboratory focused local area network. Designs and deploys network and video infrastructure cabling. Must be able to analyze computer and network architectures to optimize network performance, security, and laboratory testing functionality. Must have excellent oral and writing communication skills in order to document for senior Department of State managers the testing procedures, results, and recommendations for implementing tested technologies securely. Must be able to troubleshoot a variety of hardware and software issues in a timely manner while under tight time and resource constraints. Must be able to research, test, review, and report on emergent technologies. Requirements Must have a current Interim Top-Secret clearance with the ability to obtain a U.S. Government final TOP SECRET Personnel Security Clearance and be able to qualify for SCI access. Must be eligible for and able to obtain and maintain required Security Clearance/access approvals. Must have five years of experience and a master's degree in computer science or engineering, or at least ten years of equivalent work experience and a bachelor's degree in computer science or engineering, or equivalent work experience. Must have experience in the following: configuring, designing, and maintaining Window servers; designing, configuring, and testing personal computer and network software components in a laboratory environment; programming software and command line interfaces; and setting up patch management software and backup management solutions. Must be fluent in VMWare, C, C++, Objective C, Java, communication protocol implementation, Wi-Fi, RFID, Bluetooth, TCP-IP, VoIP, and Linux/Windows/OSX scripting. Must have experience with commercial and government best practices in securing computers, networks, and mobile devices. Must know how to use all major MS Windows applications. Must have detailed understanding and experience in Android/iOS/Blackberry operating systems. Must understand system architecture, application design, and device management and deployment. Must have knowledge of active directory application mode, lightweight directory access protocol, and online certificate status protocol. Must have knowledge of bandwidth utilization. Benefits Covers 100% of employee benefit premiums, including Medical (PPO or HDHP Option), Vision, Dental Matching 401K Short- and Long-Term Disability Pet Insurance Professional Development/Education Reimbursement Parking and Transit Benefits for NY, NJ, ATL, and DC Metro areas Other Duties: Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.
09/15/2026
Full time
Job Description Job Description The Bureau of Diplomatic Security (DS) is the security and law enforcement arm of the U.S. Department of State (the Department). DS is a world leader in international investigations, threat analysis, cyber security, counterterrorism, security technology, and protection of people, property, and information. Its primary mission is to provide a safe and secure environment for the conduct of U.S. foreign policy. The Office of Security Technology (ST) supports the DS mission through the application and use of appropriate technical security countermeasures. Description Evaluates new technologies and possible security vulnerabilities associated with them. Assist in the planning of policies and guidelines involving state-of-the-art equipment and their possible implementation in State Department resources. Responsible for testing the vulnerabilities associated with the software applications and hardware for networks. Works with a laboratory focused local area network. Designs and deploys network and video infrastructure cabling. Must be able to analyze computer and network architectures to optimize network performance, security, and laboratory testing functionality. Must have excellent oral and writing communication skills in order to document for senior Department of State managers the testing procedures, results, and recommendations for implementing tested technologies securely. Must be able to troubleshoot a variety of hardware and software issues in a timely manner while under tight time and resource constraints. Must be able to research, test, review, and report on emergent technologies. Requirements Must have a current Interim Top-Secret clearance with the ability to obtain a U.S. Government final TOP SECRET Personnel Security Clearance and be able to qualify for SCI access. Must be eligible for and able to obtain and maintain required Security Clearance/access approvals. Must have five years of experience and a master's degree in computer science or engineering, or at least ten years of equivalent work experience and a bachelor's degree in computer science or engineering, or equivalent work experience. Must have experience in the following: configuring, designing, and maintaining Window servers; designing, configuring, and testing personal computer and network software components in a laboratory environment; programming software and command line interfaces; and setting up patch management software and backup management solutions. Must be fluent in VMWare, C, C++, Objective C, Java, communication protocol implementation, Wi-Fi, RFID, Bluetooth, TCP-IP, VoIP, and Linux/Windows/OSX scripting. Must have experience with commercial and government best practices in securing computers, networks, and mobile devices. Must know how to use all major MS Windows applications. Must have detailed understanding and experience in Android/iOS/Blackberry operating systems. Must understand system architecture, application design, and device management and deployment. Must have knowledge of active directory application mode, lightweight directory access protocol, and online certificate status protocol. Must have knowledge of bandwidth utilization. Benefits Covers 100% of employee benefit premiums, including Medical (PPO or HDHP Option), Vision, Dental Matching 401K Short- and Long-Term Disability Pet Insurance Professional Development/Education Reimbursement Parking and Transit Benefits for NY, NJ, ATL, and DC Metro areas Other Duties: Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.
OverviewThe cybersecurity engineer has a dual role in the Bank: a responsibility for architecting, building, and maintaining secure environments and applications that are designed to protect the Bank's networks, data and digital assets from risk. In addition, a responsibility for monitoring, detecting, and responding to security related risks. Their primary focus is strengthening defenses, identifying vulnerabilities and weaknesses, responding to threats, and implementing measures to continually strengthen the Banks security posture. Please note: New hires work on-site in the Massachusetts office for 90 days before transitioning to a hybrid or remote schedule. Responsibilities Threat Hunting, Monitoring, Detection, and Response: Monitor security alerts and dashboards (SIEM, Vulnerability Management etc.) for suspicious activity. Triage and respond to security incidents. Escalate to senior analysts or the incident response team when necessary. Investigate and document security observations/incidents, ensuring resolution. Analyze logs, network traffic, and endpoint activity for signs for malicious behavior. Perform regular vulnerability assessments and prioritize risk within the network, system, and applications. Create formal incidents and support the investigation of such incidents. Conduct Security Assessments: Perform regular security audits, vulnerability assessments, and penetration testing to identify and mitigate potential risks. Correlate telemetry data from security systems to identity cyber threats, risk patterns, and control weaknesses. System & Security Application Administration: Implementation, secure configuration, and ongoing management of the Bank's security environments and applications. Examples of systems/functions a Cyber Security Engineer may be responsible for are firewall management, IDS/IPS, perimeter security, protective DNS, vulnerability detection/response, secure email and spam protection, application whitelisting, remote access, etc.). Server ownership - building, hardening, securing, and ongoing management of assigned server assets. Identifying and mitigating vulnerabilities on assigned assets. Ensures assigned systems and required data is backed up successfully. Ensures adherence to IT security control requirements. Security Application ownership Effective configuration of application functionality, detection, and mitigation abilities. Identifying and mitigating vulnerabilities on assigned applications. Review system, application, and security logs across assigned systems to ensure that all are functional and secure. Manages and leverages third party vendor relationships as required. Participates in the planning and execution of the Business Continuity and Disaster Recovery Plan. Ensures assigned systems and applications are prepared for planned or unplanned DR failover. Manages and communicates system and applications changes using the change management process. Track and understand emerging security practices and threats. Leverage this knowledge to improve security configurations across the enterprise and hunt for potential or active threats.RequirementsEducation Bachelor's Degree in computer science, information systems or equivalent work experience is requiredWork Experience Experience managing and securing Microsoft Windows or Linux is is required 5+ years experience supporting security components and applying security best practices across an enterprise application/network infrastructure is requiredKnowledge, Skills, and Abilities Working knowledge of IT security controls and how to manage their effectiveness. Strong understanding of cybersecurity protocols, including intrusion detection systems, firewalls, patch management, and vulnerability management. Formal technical training on Microsoft technologies, Network Operating Systems and Internet perimeter components required. Working knowledge of CIS Top 18 Controls or alternative security frameworks. Certified Information Systems Security Professional (CISSP) desired but not required. An ability to perform independent analysis of complex problems and distill relevant findings and root causes Must possess excellent analytical, organizational and documentation skills. Experience analyzing and interpreting alert notifications from organizations such as FS-ISAC and CERN Candidates for this position must be authorized to work in the United States on a full time basis for any employer without restriction Visa Sponsorship will not be provided for this position Valid Drivers License required No relocation assistance is provided.Licenses and Certifications Industry standard certification required in a technical discipline to include one of the following Network Operating System (Microsoft), or Network infrastructure, or Information Security. RequiredExpected Pay RangeThe expected annual pay range for this role is $76,463 to $135,731. This pay range is the annual salary we in good faith expect to pay for this role at the time of posting. Actual compensation paid may fluctuate higher or lower than the posted range and the range may be modified in the future due to several factors including, but not limited to, relevant experience, certifications, and qualifications, internal equity, adjustments to the requirements and responsibilities of the job, business needs, and economic and market data.EEO StatementMiddlesex Savings Bank is an Equal Opportunity Employer/protected Veterans/Individuals with Disabilities
09/15/2026
OverviewThe cybersecurity engineer has a dual role in the Bank: a responsibility for architecting, building, and maintaining secure environments and applications that are designed to protect the Bank's networks, data and digital assets from risk. In addition, a responsibility for monitoring, detecting, and responding to security related risks. Their primary focus is strengthening defenses, identifying vulnerabilities and weaknesses, responding to threats, and implementing measures to continually strengthen the Banks security posture. Please note: New hires work on-site in the Massachusetts office for 90 days before transitioning to a hybrid or remote schedule. Responsibilities Threat Hunting, Monitoring, Detection, and Response: Monitor security alerts and dashboards (SIEM, Vulnerability Management etc.) for suspicious activity. Triage and respond to security incidents. Escalate to senior analysts or the incident response team when necessary. Investigate and document security observations/incidents, ensuring resolution. Analyze logs, network traffic, and endpoint activity for signs for malicious behavior. Perform regular vulnerability assessments and prioritize risk within the network, system, and applications. Create formal incidents and support the investigation of such incidents. Conduct Security Assessments: Perform regular security audits, vulnerability assessments, and penetration testing to identify and mitigate potential risks. Correlate telemetry data from security systems to identity cyber threats, risk patterns, and control weaknesses. System & Security Application Administration: Implementation, secure configuration, and ongoing management of the Bank's security environments and applications. Examples of systems/functions a Cyber Security Engineer may be responsible for are firewall management, IDS/IPS, perimeter security, protective DNS, vulnerability detection/response, secure email and spam protection, application whitelisting, remote access, etc.). Server ownership - building, hardening, securing, and ongoing management of assigned server assets. Identifying and mitigating vulnerabilities on assigned assets. Ensures assigned systems and required data is backed up successfully. Ensures adherence to IT security control requirements. Security Application ownership Effective configuration of application functionality, detection, and mitigation abilities. Identifying and mitigating vulnerabilities on assigned applications. Review system, application, and security logs across assigned systems to ensure that all are functional and secure. Manages and leverages third party vendor relationships as required. Participates in the planning and execution of the Business Continuity and Disaster Recovery Plan. Ensures assigned systems and applications are prepared for planned or unplanned DR failover. Manages and communicates system and applications changes using the change management process. Track and understand emerging security practices and threats. Leverage this knowledge to improve security configurations across the enterprise and hunt for potential or active threats.RequirementsEducation Bachelor's Degree in computer science, information systems or equivalent work experience is requiredWork Experience Experience managing and securing Microsoft Windows or Linux is is required 5+ years experience supporting security components and applying security best practices across an enterprise application/network infrastructure is requiredKnowledge, Skills, and Abilities Working knowledge of IT security controls and how to manage their effectiveness. Strong understanding of cybersecurity protocols, including intrusion detection systems, firewalls, patch management, and vulnerability management. Formal technical training on Microsoft technologies, Network Operating Systems and Internet perimeter components required. Working knowledge of CIS Top 18 Controls or alternative security frameworks. Certified Information Systems Security Professional (CISSP) desired but not required. An ability to perform independent analysis of complex problems and distill relevant findings and root causes Must possess excellent analytical, organizational and documentation skills. Experience analyzing and interpreting alert notifications from organizations such as FS-ISAC and CERN Candidates for this position must be authorized to work in the United States on a full time basis for any employer without restriction Visa Sponsorship will not be provided for this position Valid Drivers License required No relocation assistance is provided.Licenses and Certifications Industry standard certification required in a technical discipline to include one of the following Network Operating System (Microsoft), or Network infrastructure, or Information Security. RequiredExpected Pay RangeThe expected annual pay range for this role is $76,463 to $135,731. This pay range is the annual salary we in good faith expect to pay for this role at the time of posting. Actual compensation paid may fluctuate higher or lower than the posted range and the range may be modified in the future due to several factors including, but not limited to, relevant experience, certifications, and qualifications, internal equity, adjustments to the requirements and responsibilities of the job, business needs, and economic and market data.EEO StatementMiddlesex Savings Bank is an Equal Opportunity Employer/protected Veterans/Individuals with Disabilities
Job Description Job Description AURIGA JOB POSTING Auriga Corporation was established in 1990, to provide high-quality design, engineering and project management services for Electric Power, Telecommunication and Information Technology systems. Auriga's cliental includes: investor owned and municipal utilities, rail and transit agencies, federal, state and local government agencies, and international public and private sector organizations. Auriga Corporation currently has following vacancies in the Los Angeles, California Office: Microsoft 365 & Azure Architect Job Responsibilities: Own the architecture, configuration baseline, and lifecycle of the M365 tenant supporting active directory accounts, including Exchange Online, SharePoint Online, OneDrive, Teams etc. Define and enforce tenant-wide policies for identity, licensing, data loss prevention, retention, eDiscovery, best practices and information protection. Lead remediation of legacy configurations, technical debt, and drift accumulated in the existing M365 environment, with a clear roadmap to a hardened target state. Manage hybrid identity through Entra ID (Azure AD), Entra Connect, Conditional Access, and PIM, including integration with on-premises Active Directory and downstream applications. Govern Microsoft licensing strategy across E3, E5, and add-on SKUs to align entitlements with security requirements and budget constraints. Architect and operate Azure subscriptions, management groups, and policy structures aligned to Microsoft Cloud Adoption Framework and Zero Trust principles. Design, harden, and optimize Azure Virtual Machines and supporting services, including VM sizing, availability sets, scale sets, disk encryption, backup, patching, and Just-in-Time access. Implement and tune Microsoft Defender for Cloud, Defender for Servers, Microsoft Sentinel, and Azure Monitor to deliver actionable telemetry to the SOC. Partner directly with the Cybersecurity organization to translate security requirements into enforceable Microsoft platform controls. Implement and continuously improve Conditional Access, MFA, privileged access management, and identity governance across all M365 and Azure workloads. Maintain alignment with NIST 800-53 where applicable, CIS Microsoft 365 and Azure Benchmarks, and any state and federal mandates relevant to a transit agency. Establish secure configuration baselines for collaboration tooling that account for the operational realities of a 24/7 transit workforce. Minimum Requirements: Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related field. Equivalent professional experience considered in lieu of a degree. Minimum 8 years of progressive experience designing and operating enterprise Microsoft environments, with at least 5 years focused on M365 and Azure at scale. Expert-level command of Microsoft 365 administration, including hands-on experience with tenants of 10,000 accounts or more. Demonstrated expertise in Azure IaaS and PaaS, with deep knowledge of Azure Virtual Machines, networking, storage, identity, and governance. Strong working knowledge of Active Directory, Group Policy, Windows Server, certificate services, and traditional on-premises Microsoft infrastructure. Proven track record applying NIST, CIS, or equivalent frameworks to Microsoft cloud environments. Proficiency with PowerShell, including Microsoft Graph, Exchange Online, and Azure modules. Excellent written and verbal communication skills, with the ability to brief both engineers and executives. Preferred Qualifications: Prior experience in a government, transit, utility, or other regulated public sector environment. Active Microsoft certifications such as Azure Solutions Architect Expert, Cybersecurity Architect Expert, Identity and Access Administrator, or Microsoft 365 Administrator Expert. Experience with Microsoft Sentinel, Defender XDR, Purview, and Intune at enterprise scale. CISSP, CCSP, or equivalent senior security certification. Hands-on experience with infrastructure-as-code, CI/CD pipelines, and GitHub or Azure DevOps in a controlled-change environment. Auriga is an Equal Opportunity Employer. Auriga provides compensation and benefits commensurate with the qualifications and experience.
09/14/2026
Full time
Job Description Job Description AURIGA JOB POSTING Auriga Corporation was established in 1990, to provide high-quality design, engineering and project management services for Electric Power, Telecommunication and Information Technology systems. Auriga's cliental includes: investor owned and municipal utilities, rail and transit agencies, federal, state and local government agencies, and international public and private sector organizations. Auriga Corporation currently has following vacancies in the Los Angeles, California Office: Microsoft 365 & Azure Architect Job Responsibilities: Own the architecture, configuration baseline, and lifecycle of the M365 tenant supporting active directory accounts, including Exchange Online, SharePoint Online, OneDrive, Teams etc. Define and enforce tenant-wide policies for identity, licensing, data loss prevention, retention, eDiscovery, best practices and information protection. Lead remediation of legacy configurations, technical debt, and drift accumulated in the existing M365 environment, with a clear roadmap to a hardened target state. Manage hybrid identity through Entra ID (Azure AD), Entra Connect, Conditional Access, and PIM, including integration with on-premises Active Directory and downstream applications. Govern Microsoft licensing strategy across E3, E5, and add-on SKUs to align entitlements with security requirements and budget constraints. Architect and operate Azure subscriptions, management groups, and policy structures aligned to Microsoft Cloud Adoption Framework and Zero Trust principles. Design, harden, and optimize Azure Virtual Machines and supporting services, including VM sizing, availability sets, scale sets, disk encryption, backup, patching, and Just-in-Time access. Implement and tune Microsoft Defender for Cloud, Defender for Servers, Microsoft Sentinel, and Azure Monitor to deliver actionable telemetry to the SOC. Partner directly with the Cybersecurity organization to translate security requirements into enforceable Microsoft platform controls. Implement and continuously improve Conditional Access, MFA, privileged access management, and identity governance across all M365 and Azure workloads. Maintain alignment with NIST 800-53 where applicable, CIS Microsoft 365 and Azure Benchmarks, and any state and federal mandates relevant to a transit agency. Establish secure configuration baselines for collaboration tooling that account for the operational realities of a 24/7 transit workforce. Minimum Requirements: Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related field. Equivalent professional experience considered in lieu of a degree. Minimum 8 years of progressive experience designing and operating enterprise Microsoft environments, with at least 5 years focused on M365 and Azure at scale. Expert-level command of Microsoft 365 administration, including hands-on experience with tenants of 10,000 accounts or more. Demonstrated expertise in Azure IaaS and PaaS, with deep knowledge of Azure Virtual Machines, networking, storage, identity, and governance. Strong working knowledge of Active Directory, Group Policy, Windows Server, certificate services, and traditional on-premises Microsoft infrastructure. Proven track record applying NIST, CIS, or equivalent frameworks to Microsoft cloud environments. Proficiency with PowerShell, including Microsoft Graph, Exchange Online, and Azure modules. Excellent written and verbal communication skills, with the ability to brief both engineers and executives. Preferred Qualifications: Prior experience in a government, transit, utility, or other regulated public sector environment. Active Microsoft certifications such as Azure Solutions Architect Expert, Cybersecurity Architect Expert, Identity and Access Administrator, or Microsoft 365 Administrator Expert. Experience with Microsoft Sentinel, Defender XDR, Purview, and Intune at enterprise scale. CISSP, CCSP, or equivalent senior security certification. Hands-on experience with infrastructure-as-code, CI/CD pipelines, and GitHub or Azure DevOps in a controlled-change environment. Auriga is an Equal Opportunity Employer. Auriga provides compensation and benefits commensurate with the qualifications and experience.
DNI (Delaware Nation Industries)
Alexandria, Virginia
Job Description Job Description The Bureau of Diplomatic Security (DS) is the security and law enforcement arm of the U.S. Department of State (the Department). DS is a world leader in international investigations, threat analysis, cyber security, counterterrorism, security technology, and protection of people, property, and information. Its primary mission is to provide a safe and secure environment for the conduct of U.S. foreign policy. The Office of Security Technology (ST) supports the DS mission through the application and use of appropriate technical security countermeasures. Description Evaluates new technologies and possible security vulnerabilities associated with them. Assist in the planning of policies and guidelines involving state-of-the-art equipment and their possible implementation in State Department resources. Responsible for testing the vulnerabilities associated with the software applications and hardware for networks. Works with a laboratory focused local area network. Designs and deploys network and video infrastructure cabling. Must be able to analyze computer and network architectures to optimize network performance, security, and laboratory testing functionality. Must have excellent oral and writing communication skills in order to document for senior Department of State managers the testing procedures, results, and recommendations for implementing tested technologies securely. Must be able to troubleshoot a variety of hardware and software issues in a timely manner while under tight time and resource constraints. Must be able to research, test, review, and report on emergent technologies. Requirements Must have a current Interim Top-Secret clearance with the ability to obtain a U.S. Government final TOP SECRET Personnel Security Clearance and be able to qualify for SCI access. Must be eligible for and able to obtain and maintain required Security Clearance/access approvals. Must have five years of experience and a master's degree in computer science or engineering, or at least ten years of equivalent work experience and a bachelor's degree in computer science or engineering, or equivalent work experience. Must have experience in the following: configuring, designing, and maintaining Window servers; designing, configuring, and testing personal computer and network software components in a laboratory environment; programming software and command line interfaces; and setting up patch management software and backup management solutions. Must be fluent in VMWare, C, C++, Objective C, Java, communication protocol implementation, Wi-Fi, RFID, Bluetooth, TCP-IP, VoIP, and Linux/Windows/OSX scripting. Must have experience with commercial and government best practices in securing computers, networks, and mobile devices. Must know how to use all major MS Windows applications. Must have detailed understanding and experience in Android/iOS/Blackberry operating systems. Must understand system architecture, application design, and device management and deployment. Must have knowledge of active directory application mode, lightweight directory access protocol, and online certificate status protocol. Must have knowledge of bandwidth utilization. Benefits Covers 100% of employee benefit premiums, including Medical (PPO or HDHP Option), Vision, Dental Matching 401K Short- and Long-Term Disability Pet Insurance Professional Development/Education Reimbursement Parking and Transit Benefits for NY, NJ, ATL, and DC Metro areas Other Duties: Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.
09/13/2026
Full time
Job Description Job Description The Bureau of Diplomatic Security (DS) is the security and law enforcement arm of the U.S. Department of State (the Department). DS is a world leader in international investigations, threat analysis, cyber security, counterterrorism, security technology, and protection of people, property, and information. Its primary mission is to provide a safe and secure environment for the conduct of U.S. foreign policy. The Office of Security Technology (ST) supports the DS mission through the application and use of appropriate technical security countermeasures. Description Evaluates new technologies and possible security vulnerabilities associated with them. Assist in the planning of policies and guidelines involving state-of-the-art equipment and their possible implementation in State Department resources. Responsible for testing the vulnerabilities associated with the software applications and hardware for networks. Works with a laboratory focused local area network. Designs and deploys network and video infrastructure cabling. Must be able to analyze computer and network architectures to optimize network performance, security, and laboratory testing functionality. Must have excellent oral and writing communication skills in order to document for senior Department of State managers the testing procedures, results, and recommendations for implementing tested technologies securely. Must be able to troubleshoot a variety of hardware and software issues in a timely manner while under tight time and resource constraints. Must be able to research, test, review, and report on emergent technologies. Requirements Must have a current Interim Top-Secret clearance with the ability to obtain a U.S. Government final TOP SECRET Personnel Security Clearance and be able to qualify for SCI access. Must be eligible for and able to obtain and maintain required Security Clearance/access approvals. Must have five years of experience and a master's degree in computer science or engineering, or at least ten years of equivalent work experience and a bachelor's degree in computer science or engineering, or equivalent work experience. Must have experience in the following: configuring, designing, and maintaining Window servers; designing, configuring, and testing personal computer and network software components in a laboratory environment; programming software and command line interfaces; and setting up patch management software and backup management solutions. Must be fluent in VMWare, C, C++, Objective C, Java, communication protocol implementation, Wi-Fi, RFID, Bluetooth, TCP-IP, VoIP, and Linux/Windows/OSX scripting. Must have experience with commercial and government best practices in securing computers, networks, and mobile devices. Must know how to use all major MS Windows applications. Must have detailed understanding and experience in Android/iOS/Blackberry operating systems. Must understand system architecture, application design, and device management and deployment. Must have knowledge of active directory application mode, lightweight directory access protocol, and online certificate status protocol. Must have knowledge of bandwidth utilization. Benefits Covers 100% of employee benefit premiums, including Medical (PPO or HDHP Option), Vision, Dental Matching 401K Short- and Long-Term Disability Pet Insurance Professional Development/Education Reimbursement Parking and Transit Benefits for NY, NJ, ATL, and DC Metro areas Other Duties: Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.