it job board logo
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
  • Recruiting? Post a job
  • Sign in
  • Sign up
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

146 jobs found

Email me jobs like this
Refine Search
Current Search
configuration manager
Software Packaging Engineer
System One Merrifield, Virginia
Job Description Job Description Software Packaging Engineer 6 month+ Contract Hybrid, 3 days/week onsite in Vienna, VA W2 Hourly Rate: $60/hr. range Description We are seeking an experienced Software Packaging Engineer contractor to support our client's EUC Software Delivery Enhancements Project, a strategic initiative focused on modernizing software packaging and application delivery across the enterprise. The primary objective of this role is to assess, package, test, and deploy our existing portfolio of enterprise applications using Liquidware FlexApp application layering technology. The engineer will work closely with End User Computing (EUC), Engineering, Infrastructure, Security, and Business stakeholders to transform traditionally installed applications into virtualized FlexApp packages that improve application delivery, reduce operational complexity, and support both Virtual Desktop Infrastructure (VDI) and physical Windows environments. This position requires extensive experience in software packaging, application deployment, troubleshooting, and lifecycle management, with a strong preference for candidates who have experience with Liquidware FlexApp application layering. Responsibilities Software Packaging & FlexApp Migration Application Testing & Validation Software Deployment & Administration Engineering & Operational Support Required Qualifications 3+ years of Software Packaging Engineering experience Experience packaging enterprise software in Windows environments Strong knowledge of MSI packaging, application repackaging, and deployment technologies Experience with Microsoft Endpoint Configuration Manager (MECM) Proficiency with PowerShell scripting and application automation Experience troubleshooting application installation and compatibility issues Familiarity with application lifecycle management and software delivery processes Strong analytical and problem-solving skills Excellent communication and technical documentation skills Ability to work independently and collaboratively across multiple technical teams Preferred Qualifications Experience creating and managing FlexApp virtualized apps and packaging workflows Experience supporting Virtual Desktop Infrastructure (VDI) environments Experience with application virtualization and layering technologies Experience with InstallShield or similar packaging tools Familiarity with profile management and user environment management solutions Experience with Splunk, UberAgent, or endpoint monitoring tools Experience with software delivery modernization initiatives System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan. System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law. Ref:
09/28/2026
Full time
Job Description Job Description Software Packaging Engineer 6 month+ Contract Hybrid, 3 days/week onsite in Vienna, VA W2 Hourly Rate: $60/hr. range Description We are seeking an experienced Software Packaging Engineer contractor to support our client's EUC Software Delivery Enhancements Project, a strategic initiative focused on modernizing software packaging and application delivery across the enterprise. The primary objective of this role is to assess, package, test, and deploy our existing portfolio of enterprise applications using Liquidware FlexApp application layering technology. The engineer will work closely with End User Computing (EUC), Engineering, Infrastructure, Security, and Business stakeholders to transform traditionally installed applications into virtualized FlexApp packages that improve application delivery, reduce operational complexity, and support both Virtual Desktop Infrastructure (VDI) and physical Windows environments. This position requires extensive experience in software packaging, application deployment, troubleshooting, and lifecycle management, with a strong preference for candidates who have experience with Liquidware FlexApp application layering. Responsibilities Software Packaging & FlexApp Migration Application Testing & Validation Software Deployment & Administration Engineering & Operational Support Required Qualifications 3+ years of Software Packaging Engineering experience Experience packaging enterprise software in Windows environments Strong knowledge of MSI packaging, application repackaging, and deployment technologies Experience with Microsoft Endpoint Configuration Manager (MECM) Proficiency with PowerShell scripting and application automation Experience troubleshooting application installation and compatibility issues Familiarity with application lifecycle management and software delivery processes Strong analytical and problem-solving skills Excellent communication and technical documentation skills Ability to work independently and collaboratively across multiple technical teams Preferred Qualifications Experience creating and managing FlexApp virtualized apps and packaging workflows Experience supporting Virtual Desktop Infrastructure (VDI) environments Experience with application virtualization and layering technologies Experience with InstallShield or similar packaging tools Familiarity with profile management and user environment management solutions Experience with Splunk, UberAgent, or endpoint monitoring tools Experience with software delivery modernization initiatives System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan. System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law. Ref:
Configuration Manager
Astrion Hanscom Afb, Massachusetts
Job Description Job Description Overview Configuration Manager WORK LOCATION: Hanscom AFB, (Bedford, MA) Salary Range: $105-115,000.00 depen ding on experience, certifications, and qualifications JOB STATUS: Full-Time; Salaried SECURITY CLEARANCE: Secret clearance required at time of hiring Astrion has an opportunity for a Configuration Manager to directly support the Cyberspace Security and Control System (CSCS) program, which is within the C3I and Infrastructure Division (AFLCMC/HNI) and located at Hanscom AFB, MA. REQUIRED QUALIFICATIONS: Bachelor's degree in a related field and at least five years of experience in the respective technical / professional discipline, three of which must be in the DoD OR, seven years of directly related experience with proper certifications as described in the PWS labor category performance requirements, five of which must be in the DoD. PREFERRED QUALIFITICATIONS/SKILLS: IT CM experience within the DoD environment Experience performing hardware and software configuration audits Experience performing the technical/administrative activities necessary to manage CM tools for inventory control, version control, data duplication, and media labeling. Experience producing release notes and CM reports An in-depth understanding of the configuration change control process, the role of the Change Control Board, and change control documentation Experience performing baseline administrative activities for multiple environments Experience developing briefings for management Understanding of all phases of the software development life cycle Ability to enter and manipulate data in a database Strong attention to detail Strong organizational skills and the ability to multi-task Ability to work independently and with a team Experience in MS Office Suite software require RESPONSIBILITIES: Assist in developing and administering CM plans; maintaining design traceability and integrity; convening and managing change boards; and preparing for and attending major events such as, but not limited to, Technical Interchange Meetings, Preliminary Design Reviews, Critical Design Reviews, Physical Configuration Audits, Functional Configuration Audits, and Configuration Control Boards. Provide configuration and CDRL data manager (CM/DM), quality assurance, program/project, requirements analysis, risk management, and software engineering support services in accordance with the program's Configuration Management (CM) Plan, Air Force SEAM CM processes, program development/sustainment contracts, and PMO practices. Support activities will range across the CM, quality assurance, program/project, requirements analysis, risk management, and software engineering activities outlined in the task order PWS. Activities will vary depending upon the current activities of the program/system, scope of the current development/sustainment cycle, and other corporate and program initiatives. The individual must have progressive experience in managing configuration of software, engineering documents, design drawings, engineering changes and notices, and planning/conducting design audits to enable Government ownership of the program technical baseline. The individual must have skills and experience necessary to perform the following tasks: Provide CM of all relevant program artifacts Archive acquisition documentation Review and analyze the development/sustainment Contractor's CM program and data deliveries for accuracy, completeness, and compliance Maintain CM files including configuration identification, change control, and status accounting records Convene and manage the Configuration Control Boards, Technical Review Boards, and record approved changes and results Participate in cross-functional change control boards to evaluate proposed changes. Review and analyze proposed changes to ensure operational and sustainment capabilities are not adversely affected by the changes Review the Configuration Control Board membership list for currency and completeness. Support Engineering Assessments Prepare for, conduct, and/or support major audits such as Physical Configuration Audits and Functional Configuration Audits Record and maintain assessment and audit findings, minutes, and action items Report the Development/Sustainment 's data delivery status Support pre- and post-contract award data reviews Review and analyze the development/sustainment Contractor's conformance to CDRL requirements Process Government and development/sustainment Contractor correspondence. Support the establishment of workflows Track data item deliverables and responses Support development/sustainment of paper and automated archival systems of all covered documentation Work closely with program management, systems engineers, quality managers, draftsmen and design/manufacturing engineers in an integrated product team environment Develop and administer CM plans Maintain design traceability and integrity Assist the Government with configuration control for IT systems. This shall include configuration planning, data analysis, maintenance of configuration documentation and data, and maintaining inventory/configuration status Manage configurations of software, engineering documents, design drawings, engineering changes and notices, and planning/conducting design audits. The Contractor must have skills and experience necessary to work closely with program management, systems engineers, quality managers, and design engineers in an integrated product team environment Support review boards via meeting attendance and capture meeting minutes including the Configuration Control Board Track Change Requests and Discrepancy Reports/Problem Reports Ensure integrity of the baseline including major releases, minor releases, patches, and software maintenance Provide Quality Assurance checks on system baselines Support Licensing tasks and packaging and delivering of software to users Maintain the CM library and software repository Manage and control product baselines Recommend and document comprehensive CM plans for software, hardware, firmware, and peripherals for IT systems Analyze data and prepare plans and briefings in support of software-driven systems Perform studies and monitoring effectiveness of CM plans to identify potential and existing problems and make recommendations for resolution Audit and review IT system configurations Control the configuration of IT systems Identify and maintain all baselines Oversee the CM USAP Self Inspection Checklists, input results in MICT Create and maintain revisions to the CDRL packages Prepare and issue Data Calls Convene, manage, and participate in Data Requirements Review Boards and record approved requirements Receive and distribute CDRL data deliverables Maintain distribution lists of points of contact (POCs) of CDRL data deliverable for program's method of transmittal (i.e., a common mailbox, Integrated Digital Environment, CD-ROM, etc.) Ensure integrity of CDRL justification forms Monitor Contractor compliance of CDRL data deliverables Provide CM/DM input into all program documentation. Hanscom Campaign
09/28/2026
Full time
Job Description Job Description Overview Configuration Manager WORK LOCATION: Hanscom AFB, (Bedford, MA) Salary Range: $105-115,000.00 depen ding on experience, certifications, and qualifications JOB STATUS: Full-Time; Salaried SECURITY CLEARANCE: Secret clearance required at time of hiring Astrion has an opportunity for a Configuration Manager to directly support the Cyberspace Security and Control System (CSCS) program, which is within the C3I and Infrastructure Division (AFLCMC/HNI) and located at Hanscom AFB, MA. REQUIRED QUALIFICATIONS: Bachelor's degree in a related field and at least five years of experience in the respective technical / professional discipline, three of which must be in the DoD OR, seven years of directly related experience with proper certifications as described in the PWS labor category performance requirements, five of which must be in the DoD. PREFERRED QUALIFITICATIONS/SKILLS: IT CM experience within the DoD environment Experience performing hardware and software configuration audits Experience performing the technical/administrative activities necessary to manage CM tools for inventory control, version control, data duplication, and media labeling. Experience producing release notes and CM reports An in-depth understanding of the configuration change control process, the role of the Change Control Board, and change control documentation Experience performing baseline administrative activities for multiple environments Experience developing briefings for management Understanding of all phases of the software development life cycle Ability to enter and manipulate data in a database Strong attention to detail Strong organizational skills and the ability to multi-task Ability to work independently and with a team Experience in MS Office Suite software require RESPONSIBILITIES: Assist in developing and administering CM plans; maintaining design traceability and integrity; convening and managing change boards; and preparing for and attending major events such as, but not limited to, Technical Interchange Meetings, Preliminary Design Reviews, Critical Design Reviews, Physical Configuration Audits, Functional Configuration Audits, and Configuration Control Boards. Provide configuration and CDRL data manager (CM/DM), quality assurance, program/project, requirements analysis, risk management, and software engineering support services in accordance with the program's Configuration Management (CM) Plan, Air Force SEAM CM processes, program development/sustainment contracts, and PMO practices. Support activities will range across the CM, quality assurance, program/project, requirements analysis, risk management, and software engineering activities outlined in the task order PWS. Activities will vary depending upon the current activities of the program/system, scope of the current development/sustainment cycle, and other corporate and program initiatives. The individual must have progressive experience in managing configuration of software, engineering documents, design drawings, engineering changes and notices, and planning/conducting design audits to enable Government ownership of the program technical baseline. The individual must have skills and experience necessary to perform the following tasks: Provide CM of all relevant program artifacts Archive acquisition documentation Review and analyze the development/sustainment Contractor's CM program and data deliveries for accuracy, completeness, and compliance Maintain CM files including configuration identification, change control, and status accounting records Convene and manage the Configuration Control Boards, Technical Review Boards, and record approved changes and results Participate in cross-functional change control boards to evaluate proposed changes. Review and analyze proposed changes to ensure operational and sustainment capabilities are not adversely affected by the changes Review the Configuration Control Board membership list for currency and completeness. Support Engineering Assessments Prepare for, conduct, and/or support major audits such as Physical Configuration Audits and Functional Configuration Audits Record and maintain assessment and audit findings, minutes, and action items Report the Development/Sustainment 's data delivery status Support pre- and post-contract award data reviews Review and analyze the development/sustainment Contractor's conformance to CDRL requirements Process Government and development/sustainment Contractor correspondence. Support the establishment of workflows Track data item deliverables and responses Support development/sustainment of paper and automated archival systems of all covered documentation Work closely with program management, systems engineers, quality managers, draftsmen and design/manufacturing engineers in an integrated product team environment Develop and administer CM plans Maintain design traceability and integrity Assist the Government with configuration control for IT systems. This shall include configuration planning, data analysis, maintenance of configuration documentation and data, and maintaining inventory/configuration status Manage configurations of software, engineering documents, design drawings, engineering changes and notices, and planning/conducting design audits. The Contractor must have skills and experience necessary to work closely with program management, systems engineers, quality managers, and design engineers in an integrated product team environment Support review boards via meeting attendance and capture meeting minutes including the Configuration Control Board Track Change Requests and Discrepancy Reports/Problem Reports Ensure integrity of the baseline including major releases, minor releases, patches, and software maintenance Provide Quality Assurance checks on system baselines Support Licensing tasks and packaging and delivering of software to users Maintain the CM library and software repository Manage and control product baselines Recommend and document comprehensive CM plans for software, hardware, firmware, and peripherals for IT systems Analyze data and prepare plans and briefings in support of software-driven systems Perform studies and monitoring effectiveness of CM plans to identify potential and existing problems and make recommendations for resolution Audit and review IT system configurations Control the configuration of IT systems Identify and maintain all baselines Oversee the CM USAP Self Inspection Checklists, input results in MICT Create and maintain revisions to the CDRL packages Prepare and issue Data Calls Convene, manage, and participate in Data Requirements Review Boards and record approved requirements Receive and distribute CDRL data deliverables Maintain distribution lists of points of contact (POCs) of CDRL data deliverable for program's method of transmittal (i.e., a common mailbox, Integrated Digital Environment, CD-ROM, etc.) Ensure integrity of CDRL justification forms Monitor Contractor compliance of CDRL data deliverables Provide CM/DM input into all program documentation. Hanscom Campaign
Technician - Fire Security PARCS
Baker Group Ankeny, Iowa
Job Description Job Description PURPOSE Provide installation, technical start-up, programming, and checkout for Building Access Control Systems, Fire Alarm, Parking Revenue Controls, and similar low voltage solutions. Maintain and grow the "Customer for Life" concept for existing and new customers. Performs related work as required. ESSENTIAL FUNCTIONS AND RESPONSIBILITIES The following duties are typical for this job. These are not to be constructed as exclusive or all inclusive. Other duties may be required and assigned. This is a field position with the primary responsibility to handle all aspects of service, installation, programming, and startup of Access Control, Burglary, Fire, Parking, Surveillance, and related systems. Primary market focus is Commercial Office, Data Centers, Government, Industrial, Healthcare, and Education. Desired candidate will have a minimum of 3 years of proven commercial enterprise type Access Control, Surveillance Video, Fire or Parking Revenue Control system and must be able to troubleshoot related serviceable systems. Program all Access Control Panels, Workstation Software, Surveillance Video systems, Fire Alarm, Parking Revenue Control system software and associated security services via their custom software application packages. Work with IT staff to coordinate the integration into customer networks and be willing to learn advanced network configurations and setup that apply to each system. Install mechanical lock systems that are either wirefree or wired lock system. Ensures customer satisfaction by continual follow-up, communication skills and complete final checkout of service and construction jobs where assigned. Provide sales support as needed to assist Project Manager to obtain recurring business. Have the drive to be the technical expert for our solutions and be willing to continue to learn our systems and provide value to customers. Assigned service calls to keep our offerings up and running with quick response and thorough checkout. Baker Group may supply a Van, Cell Phone, tools, and laptop. Provide documentation for operation and maintenance after a project is complete and communicate changes and modifications with Application Engineer. Attend turnover meetings between Project Manager and Applications Engineer discussing project scope, safety, timelines, etc. You will be required to obtain your NICET 1 and 2 certifications to maintain your State of Iowa Alarm License. Fire Alarm System knowledge is preferred for this position as well. You will be part of an On-Call schedule which is adjustable but currently once every 10 weeks. We do work all over Iowa and the Midwest. Our technicians must be agreeable to traveling overnight on occasions to install or startup a system that is out of town. You will be required to obtain your 30 HR OSHA certification within the 1st year. Baker Group allocates a budget for Baker Group Shirts that must be always worn, and pants must be in good condition with no holes or frays so that we all stay consistent with an image of Baker Group. MINIMUM EDUCATION & EXPERIENCE REQUIRED TO PERFORM ESSENTIAL FUNCTIONS Local 347 VDV Technician 2 Year Associates Degree in Related Technology High School Diploma CERTIFICATES, LICENSES, REGISTRATIONS Valid driver's license MENTAL AND PHYSICAL COMPETENCIES REQUIRED TO PERFORM ESSENTIAL FUNCTIONS Ability to perform all necessary duties unsupervised Knowledge of common Windows Office applications Knowledge of Microsoft SQL or other database applications preferred but not required Knowledge of Ethernet and serial network communication formats and hardware configurations Excellent interpersonal skills with ability to communicate effectively, both verbally and written Ability to take direction and fulfill commitments Value and support company core values and culture Understanding of construction site safety and display a high awareness of your surroundings Effectively prioritize and balance the "big picture" and immediate responsibilities Ability to listen effectively, value the opinions of others and acknowledge contributions of others Ability to communicate and work well with others at all levels ENVIRONMENTAL ADAPTABILITY At any given time, may be exposed to typical construction site and/or industrial site risks and environment Be able to work in exterior elements that come with all seasons (with or without temperature changes). EQUIPMENT/TOOLS Laptop PC Electronic Multimeter Hand tools/power tools Product Manufacturer Software Ladders and Lifts Required PPE is always in use. Baker Group is an Equal Opportunity Employer. In compliance with the Americans with Disabilities Act, Baker Group will consider reasonable accommodations for qualified individuals with disabilities and encourage prospective employees and incumbents to discuss potential accommodations with the Employer.
09/28/2026
Full time
Job Description Job Description PURPOSE Provide installation, technical start-up, programming, and checkout for Building Access Control Systems, Fire Alarm, Parking Revenue Controls, and similar low voltage solutions. Maintain and grow the "Customer for Life" concept for existing and new customers. Performs related work as required. ESSENTIAL FUNCTIONS AND RESPONSIBILITIES The following duties are typical for this job. These are not to be constructed as exclusive or all inclusive. Other duties may be required and assigned. This is a field position with the primary responsibility to handle all aspects of service, installation, programming, and startup of Access Control, Burglary, Fire, Parking, Surveillance, and related systems. Primary market focus is Commercial Office, Data Centers, Government, Industrial, Healthcare, and Education. Desired candidate will have a minimum of 3 years of proven commercial enterprise type Access Control, Surveillance Video, Fire or Parking Revenue Control system and must be able to troubleshoot related serviceable systems. Program all Access Control Panels, Workstation Software, Surveillance Video systems, Fire Alarm, Parking Revenue Control system software and associated security services via their custom software application packages. Work with IT staff to coordinate the integration into customer networks and be willing to learn advanced network configurations and setup that apply to each system. Install mechanical lock systems that are either wirefree or wired lock system. Ensures customer satisfaction by continual follow-up, communication skills and complete final checkout of service and construction jobs where assigned. Provide sales support as needed to assist Project Manager to obtain recurring business. Have the drive to be the technical expert for our solutions and be willing to continue to learn our systems and provide value to customers. Assigned service calls to keep our offerings up and running with quick response and thorough checkout. Baker Group may supply a Van, Cell Phone, tools, and laptop. Provide documentation for operation and maintenance after a project is complete and communicate changes and modifications with Application Engineer. Attend turnover meetings between Project Manager and Applications Engineer discussing project scope, safety, timelines, etc. You will be required to obtain your NICET 1 and 2 certifications to maintain your State of Iowa Alarm License. Fire Alarm System knowledge is preferred for this position as well. You will be part of an On-Call schedule which is adjustable but currently once every 10 weeks. We do work all over Iowa and the Midwest. Our technicians must be agreeable to traveling overnight on occasions to install or startup a system that is out of town. You will be required to obtain your 30 HR OSHA certification within the 1st year. Baker Group allocates a budget for Baker Group Shirts that must be always worn, and pants must be in good condition with no holes or frays so that we all stay consistent with an image of Baker Group. MINIMUM EDUCATION & EXPERIENCE REQUIRED TO PERFORM ESSENTIAL FUNCTIONS Local 347 VDV Technician 2 Year Associates Degree in Related Technology High School Diploma CERTIFICATES, LICENSES, REGISTRATIONS Valid driver's license MENTAL AND PHYSICAL COMPETENCIES REQUIRED TO PERFORM ESSENTIAL FUNCTIONS Ability to perform all necessary duties unsupervised Knowledge of common Windows Office applications Knowledge of Microsoft SQL or other database applications preferred but not required Knowledge of Ethernet and serial network communication formats and hardware configurations Excellent interpersonal skills with ability to communicate effectively, both verbally and written Ability to take direction and fulfill commitments Value and support company core values and culture Understanding of construction site safety and display a high awareness of your surroundings Effectively prioritize and balance the "big picture" and immediate responsibilities Ability to listen effectively, value the opinions of others and acknowledge contributions of others Ability to communicate and work well with others at all levels ENVIRONMENTAL ADAPTABILITY At any given time, may be exposed to typical construction site and/or industrial site risks and environment Be able to work in exterior elements that come with all seasons (with or without temperature changes). EQUIPMENT/TOOLS Laptop PC Electronic Multimeter Hand tools/power tools Product Manufacturer Software Ladders and Lifts Required PPE is always in use. Baker Group is an Equal Opportunity Employer. In compliance with the Americans with Disabilities Act, Baker Group will consider reasonable accommodations for qualified individuals with disabilities and encourage prospective employees and incumbents to discuss potential accommodations with the Employer.
Internal Systems Technician
In-Telecom Slidell, Louisiana
Job Description Job Description Description The Internal Systems Technician serves as the technical backbone for internal operations, supporting team members across Louisiana, Texas, and Georgia. This role manages internal service desk escalations, maintains documentation and automation workflows, and oversees the technical onboarding and offboarding lifecycle. Acting as a core Tier 2 resource, the technician bridges day-to-day user support with systems administration-maintaining core Microsoft cloud infrastructure, diagnosing advanced endpoint and network issues, and driving continuous operational reliability. Key Responsibilities L2 Incident Escalation & Systems Support: Serve as the primary escalation point for internal service tickets via ConnectWise PSA. Conduct root-cause analysis on recurring technical faults, resolve complex application and OS crashes, and address advanced system issues: Identity & Directory Services: Manage hybrid identity synchronization, troubleshoot Microsoft Entra ID (Azure AD Connect / Cloud Sync), and resolve complex on-prem Active Directory, DNS, and GPO conflicts. Microsoft 365 Administration: Troubleshoot advanced Exchange Online mail flow, transport rules, message trace diagnostics, shared mailbox delegation, and OneDrive/SharePoint access governance. Endpoint & Intune Management: Build, deploy, and remediate Windows endpoint configurations using Microsoft Intune (Endpoint Manager), including compliance policies, configuration profiles, BitLocker recovery, and Autopilot deployment. Network & Connectivity: Diagnose internal VLAN segmentation, switch port mappings, VPN client/gateway routing, firewall policies, and VoIP jitter/packet-loss issues. Advanced OS Remediation: Perform deep registry modifications, profile corruption fixes, driver-level debugging, and Windows Event Viewer log forensics. Provisioning & Endpoint Lifecycle: Own end-to-end hardware/software deployment and decommissioning. Standardize zero-touch or light-touch imaging and configuration using Microsoft Intune, Windows Autopilot, and immy.bot. Internal Infrastructure & Collaboration Administration: Maintain internal collaboration structures, guest access controls, retention policies, and shared storage hierarchies across Microsoft Teams and SharePoint Online. Security, Compliance & Access Hygiene: Enforce Role-Based Access Control (RBAC) and least-privilege principles. Monitor identity security policies, Conditional Access rules, self-service password reset (SSPR), and endpoint defense platforms including DUO MFA, Huntress, and Avanan. Automation & Scripting: Leverage PowerShell to automate recurring admin tasks, bulk user provisioning, license assignments, and tenant reporting. Partner with team leads to build workflows in Rewst, zofIQ, and Power Automate. Documentation & Asset Governance: Maintain internal Standard Operating Procedures (SOPs) and infrastructure architecture diagrams in Hudu. Track hardware depreciation, lifecycle health, and Microsoft licensing tiers via Lifecycle Manager. Skills, Knowledge and Expertise Experience: 2-4 years of progressive IT systems support or MSP experience handling Tier 2 ticket resolution and identity workflows. Microsoft Cloud & Identity Stack: Proficiency with Microsoft 365 Admin Center, Exchange Admin Center, and Microsoft Entra ID. Practical experience managing and enrolling devices through Microsoft Intune / Endpoint Manager. Familiarity with Conditional Access policies, Microsoft Defender for Endpoint/Office 365, and modern authentication frameworks. Working knowledge of hybrid directory structures (Active Directory + Entra ID synchronization). Scripting & Command Line: Practical ability to run and modify basic PowerShell scripts for M365 tenant management and client troubleshooting. Networking Fundamentals: Solid understanding of TCP/IP, subnetting, DHCP reservations, DNS record management, VLAN routing, and IPsec/SSL VPNs. Platform & Tooling Ecosystem: Core & PSA/RMM: ConnectWise PSA/Manage, ConnectWise Automate/RMM, Auvik. Security & Provisioning: Huntress, Avanan/Check Point, DUO Security, immy.bot. Documentation & Automation: Hudu, Liongard, Lifecycle Manager, Rewst. Core Competencies: Analytical problem-solving mindset, methodical incident isolation skills, clear technical documentation habits, and polished communication when collaborating with cross-functional internal stakeholders. Preferred Certifications: Microsoft Certified: Endpoint Administrator Associate (MD-102), Microsoft 365 Certified: Fundamentals (MS-900), CompTIA Network+, or CompTIA Security+. Benefits Health & Wellness: Medical, dental, and vision insurance. Life Insurance: Employer-paid life insurance. Retirement: 401(k) retirement plan with company match. Time Off: Paid Time Off (PTO) and paid company holidays. Growth & Culture: Professional development and training opportunities, career advancement pathways, and employee recognition programs.
09/28/2026
Full time
Job Description Job Description Description The Internal Systems Technician serves as the technical backbone for internal operations, supporting team members across Louisiana, Texas, and Georgia. This role manages internal service desk escalations, maintains documentation and automation workflows, and oversees the technical onboarding and offboarding lifecycle. Acting as a core Tier 2 resource, the technician bridges day-to-day user support with systems administration-maintaining core Microsoft cloud infrastructure, diagnosing advanced endpoint and network issues, and driving continuous operational reliability. Key Responsibilities L2 Incident Escalation & Systems Support: Serve as the primary escalation point for internal service tickets via ConnectWise PSA. Conduct root-cause analysis on recurring technical faults, resolve complex application and OS crashes, and address advanced system issues: Identity & Directory Services: Manage hybrid identity synchronization, troubleshoot Microsoft Entra ID (Azure AD Connect / Cloud Sync), and resolve complex on-prem Active Directory, DNS, and GPO conflicts. Microsoft 365 Administration: Troubleshoot advanced Exchange Online mail flow, transport rules, message trace diagnostics, shared mailbox delegation, and OneDrive/SharePoint access governance. Endpoint & Intune Management: Build, deploy, and remediate Windows endpoint configurations using Microsoft Intune (Endpoint Manager), including compliance policies, configuration profiles, BitLocker recovery, and Autopilot deployment. Network & Connectivity: Diagnose internal VLAN segmentation, switch port mappings, VPN client/gateway routing, firewall policies, and VoIP jitter/packet-loss issues. Advanced OS Remediation: Perform deep registry modifications, profile corruption fixes, driver-level debugging, and Windows Event Viewer log forensics. Provisioning & Endpoint Lifecycle: Own end-to-end hardware/software deployment and decommissioning. Standardize zero-touch or light-touch imaging and configuration using Microsoft Intune, Windows Autopilot, and immy.bot. Internal Infrastructure & Collaboration Administration: Maintain internal collaboration structures, guest access controls, retention policies, and shared storage hierarchies across Microsoft Teams and SharePoint Online. Security, Compliance & Access Hygiene: Enforce Role-Based Access Control (RBAC) and least-privilege principles. Monitor identity security policies, Conditional Access rules, self-service password reset (SSPR), and endpoint defense platforms including DUO MFA, Huntress, and Avanan. Automation & Scripting: Leverage PowerShell to automate recurring admin tasks, bulk user provisioning, license assignments, and tenant reporting. Partner with team leads to build workflows in Rewst, zofIQ, and Power Automate. Documentation & Asset Governance: Maintain internal Standard Operating Procedures (SOPs) and infrastructure architecture diagrams in Hudu. Track hardware depreciation, lifecycle health, and Microsoft licensing tiers via Lifecycle Manager. Skills, Knowledge and Expertise Experience: 2-4 years of progressive IT systems support or MSP experience handling Tier 2 ticket resolution and identity workflows. Microsoft Cloud & Identity Stack: Proficiency with Microsoft 365 Admin Center, Exchange Admin Center, and Microsoft Entra ID. Practical experience managing and enrolling devices through Microsoft Intune / Endpoint Manager. Familiarity with Conditional Access policies, Microsoft Defender for Endpoint/Office 365, and modern authentication frameworks. Working knowledge of hybrid directory structures (Active Directory + Entra ID synchronization). Scripting & Command Line: Practical ability to run and modify basic PowerShell scripts for M365 tenant management and client troubleshooting. Networking Fundamentals: Solid understanding of TCP/IP, subnetting, DHCP reservations, DNS record management, VLAN routing, and IPsec/SSL VPNs. Platform & Tooling Ecosystem: Core & PSA/RMM: ConnectWise PSA/Manage, ConnectWise Automate/RMM, Auvik. Security & Provisioning: Huntress, Avanan/Check Point, DUO Security, immy.bot. Documentation & Automation: Hudu, Liongard, Lifecycle Manager, Rewst. Core Competencies: Analytical problem-solving mindset, methodical incident isolation skills, clear technical documentation habits, and polished communication when collaborating with cross-functional internal stakeholders. Preferred Certifications: Microsoft Certified: Endpoint Administrator Associate (MD-102), Microsoft 365 Certified: Fundamentals (MS-900), CompTIA Network+, or CompTIA Security+. Benefits Health & Wellness: Medical, dental, and vision insurance. Life Insurance: Employer-paid life insurance. Retirement: 401(k) retirement plan with company match. Time Off: Paid Time Off (PTO) and paid company holidays. Growth & Culture: Professional development and training opportunities, career advancement pathways, and employee recognition programs.
Principal Spacecraft Operations Engineer - Secret Clearance
Rocket Lab Corporation Long Beach, California
Job Description Job Description ABOUT ROCKET LAB Rocket Lab is the end-to-end space company building rockets, spacecraft, and critical subsystems that keep the world connected, protected, expand humanity's reach to the Moon, Mars, and beyond. We move fast, build real hardware for meaningful missions, and make the impossible routine. Come shape the future with us. SPACE SYSTEMS At Rocket Lab, we're not just launching rockets - we're building the future of space. Our Space Systems team builds everything from complete spacecraft, precision payloads to the components and subsystems that allow them to thrive in space, like solar panels, flight software, star trackers, optical systems, separation systems, radios, and more. Our Space Systems team has enabled more than 1,700 missions, ranging from interplanetary exploration, in-space manufacturing to national security and defense initiatives. The team has built spacecraft, payloads, and components for missions to the Moon and Mars, working with partners including NASA, the Space Development Agency, and the U.S. Space Force. Whether it's a single high-performance spacecraft, constellation, or the vertically integrated components that help them get to space - our world class Space Systems team is empowering some of the boldest and most ambitious space missions PRINCIPAL SPACECRAFT OPERATIONS ENGINEER II- SECRET CLEARANCE Based on site at Rocket Lab's headquarters in Long Beach, CA the PrincipalSpacecraft Operations Engineer is responsible for ensuring the health, safety, and optimal performance of a growing fleet of satellites while meeting mission objectives and SLAs for both commercial and government customers. This includes supporting diverse missions such as LEO constellations, interplanetary exploration, LEO rendezvous, and SDA-related deployments. Your expertise would be critical during commissioning, orbit raising, routine operations, and potentially re-entry phases, ensuring the health and safety of Rocket Lab's expanding fleet. The Spacecraft Operations team works closely with related teams, such as spacecraft design, AIT, flight software, propulsion, GNC, flight dynamics and ground software development to help improve both the ground and satellite-based capabilities over time. The space operations experience at Rocket Lab is unique because you will cover a multitude of roles/positions and responsibilities, with the large majority of the technical products being supplied through the vertical integration/in-house. WHAT YOU'LL GET TO DO: Serve as the program's mission operations technical lead: set the technical direction and strategy for operations, plan and prioritize the work of the mission operations staff, and act as the primary operations point of contact for program-level design decisions and trades Advocate for operability across the program: influence spacecraft and ground architecture upstream so vehicles are designed to be operated safely, efficiently, and autonomously, and push for changes to program design and execution when operational needs demand it Own mission operations requirements and lead requirements validation and verification for spacecraft missions and system-level capability and function Define the automation strategy and lead the development of robust, software-driven methods for mission operations, testing, and data analysis to ensure efficient, repeatable, and reliable spacecraft operation Design, develop, and test flight software sequences and FDIR/telemetry configurations to ensure spacecraft health and fault management through software-driven processes Architect, develop, and test ground software for long-duration operations, including scripting and automation frameworks that make operations robust, hands-off, and scalable across a growing fleet Establish and steward the integration, testing, and maintenance of mission operations tooling and codebases, including CI, version control, and release discipline. Ensure the on-call or shift schedules of operations Author and own interface specifications, CONOPS, contingency procedures, and other operational design documents Lead validation of flight products and procedures against spacecraft simulation tools, including flatsat, HITL, SIL, and digital twins Support AIT teams across multiple spacecraft integrated tests (TVAC, propulsion stack, DITL Provide program and product support to team leads and program managers, and serve as a key technical interface between the NZ and USA engineering teams Represent mission operations in program milestone reviews, design reviews, and readiness gates, and drive continuous improvement through post-mission lessons learned YOU'LL BRING THESE QUALIFICATIONS AS A PRINCIPALSPACECRAFT OPERATIONS ENGINEER: Bachelor's degree in engineering (software, computer, electrical, aerospace, mechanical, or other technical engineering discipline) 12+ years of direct experience in any of the following: space mission design, satellite subsystems, ground systems, spacecraft command control, or spacecraft operations 5+ years of experience leading teams of engineers through spacecraft missions or related aerospace projects Previous experience in roles such as Mission Lead, Mission Director, Flight Director, or Senior Spacecraft Operations Engineer Previous experience supporting mission operations activities in an on-console or operator-in-the-loop capacity Thorough understanding of key spacecraft subsystems and associated components, including attitude determination and control systems (ADCS), electrical power systems (EPS), space-to-ground communications, command and data handling (C&DH), thermal control systems (TCS), spacecraft propulsion systems, and fault detection, isolation, and recovery (FDIR) Understanding of the space environment, orbital mechanics, and rigid body dynamics 5+ years of direct software development experience (Python/Ruby/C/C++/other high-level languages), covering items such as spacecraft onboard flight scripts, ground scripting and automation, and data manipulation and analysis US citizenship is required due to program requirements Active U.S. Government Secret Security Clearance THESE QUALIFICATIONS WOULD BE NICE TO HAVE: Master's or PhD engineering in engineering (software, computer, electrical, aerospace, mechanical, or other technical engineering discipline) Prior experience in spacecraft operations Prior experience in satellite system design Prior experience in satellite ground systems Exposure to modern development practices - GIT, CI/CD, cloud infrastructure Proficiency with Agile issue-tracking tools, specifically Jira, for mission task management, status tracking, and bug reporting Software-in-the-Loop (SIL) Testing: Exposure to testing frameworks that simulate software behavior in operational environments. Hardware-in-the-Loop (HIL) Testing: Familiarity with testing frameworks that integrate software and hardware systems. Active TS/SCI U.S. Government Security Clearance This position may require prolonged periods of sitting, standing, walking, computer work, and occasional exposure to moderate levels of noise, dust, and fumes in production areas Anticipated annual equity grant value is designed around function, level, experience, and other factors; realized value depends on vesting and stock-price performance. Join one of the world's fastest-growing space companies and own a piece of it. In addition to competitive base pay, you'll receive company stock as part of your total compensation package, giving you a direct stake in our success. As we expand to new launch sites, groundbreaking missions, and global markets, your ownership has the opportunity to grow alongside the company. Our comprehensive benefits package includes our industry-leading Employee Stock Purchase Program (with a 15% discount on company stock), top-tier medical plans (HMO, PPO, and a zero cost HDHP option with a significant HSA company contribution), dental and vision coverage, paid vacation and sick time, 11 paid holidays, flexible spending and dependent care accounts, paid parental leave, disability and life insurance, and a 401(k) retirement plan with company match. Additional perks include subsidized EV charging, onsite fitness centers (where available), discounted gym memberships, complimentary snacks and beverages, 50% employee discount on our popular merch store, and a variety of other employee discounts. Level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, and experience. Total Compensation (base and equity) $223,025-$339,400 USD Base Salary $173,300-$259,850 USD WHAT TO EXPECT We're on a mission to unlock the potential of space to improve life on Earth, but that's not an easy task. It takes hard work, determination, relentless innovation, teamwork, grit, and an unwavering commitment to achieving what others often deem impossible. Our people out-think, out-work, and out-pace. We pride ourselves on having each other's backs, checking our egos at the door, and rolling up our sleeves on all tasks big and small. We thrive under pressure, work to tight deadlines, and our focus is always on how we can deliver, rather than dwelling on the challenges that stand in the way. Important information: . click apply for full job details
09/28/2026
Full time
Job Description Job Description ABOUT ROCKET LAB Rocket Lab is the end-to-end space company building rockets, spacecraft, and critical subsystems that keep the world connected, protected, expand humanity's reach to the Moon, Mars, and beyond. We move fast, build real hardware for meaningful missions, and make the impossible routine. Come shape the future with us. SPACE SYSTEMS At Rocket Lab, we're not just launching rockets - we're building the future of space. Our Space Systems team builds everything from complete spacecraft, precision payloads to the components and subsystems that allow them to thrive in space, like solar panels, flight software, star trackers, optical systems, separation systems, radios, and more. Our Space Systems team has enabled more than 1,700 missions, ranging from interplanetary exploration, in-space manufacturing to national security and defense initiatives. The team has built spacecraft, payloads, and components for missions to the Moon and Mars, working with partners including NASA, the Space Development Agency, and the U.S. Space Force. Whether it's a single high-performance spacecraft, constellation, or the vertically integrated components that help them get to space - our world class Space Systems team is empowering some of the boldest and most ambitious space missions PRINCIPAL SPACECRAFT OPERATIONS ENGINEER II- SECRET CLEARANCE Based on site at Rocket Lab's headquarters in Long Beach, CA the PrincipalSpacecraft Operations Engineer is responsible for ensuring the health, safety, and optimal performance of a growing fleet of satellites while meeting mission objectives and SLAs for both commercial and government customers. This includes supporting diverse missions such as LEO constellations, interplanetary exploration, LEO rendezvous, and SDA-related deployments. Your expertise would be critical during commissioning, orbit raising, routine operations, and potentially re-entry phases, ensuring the health and safety of Rocket Lab's expanding fleet. The Spacecraft Operations team works closely with related teams, such as spacecraft design, AIT, flight software, propulsion, GNC, flight dynamics and ground software development to help improve both the ground and satellite-based capabilities over time. The space operations experience at Rocket Lab is unique because you will cover a multitude of roles/positions and responsibilities, with the large majority of the technical products being supplied through the vertical integration/in-house. WHAT YOU'LL GET TO DO: Serve as the program's mission operations technical lead: set the technical direction and strategy for operations, plan and prioritize the work of the mission operations staff, and act as the primary operations point of contact for program-level design decisions and trades Advocate for operability across the program: influence spacecraft and ground architecture upstream so vehicles are designed to be operated safely, efficiently, and autonomously, and push for changes to program design and execution when operational needs demand it Own mission operations requirements and lead requirements validation and verification for spacecraft missions and system-level capability and function Define the automation strategy and lead the development of robust, software-driven methods for mission operations, testing, and data analysis to ensure efficient, repeatable, and reliable spacecraft operation Design, develop, and test flight software sequences and FDIR/telemetry configurations to ensure spacecraft health and fault management through software-driven processes Architect, develop, and test ground software for long-duration operations, including scripting and automation frameworks that make operations robust, hands-off, and scalable across a growing fleet Establish and steward the integration, testing, and maintenance of mission operations tooling and codebases, including CI, version control, and release discipline. Ensure the on-call or shift schedules of operations Author and own interface specifications, CONOPS, contingency procedures, and other operational design documents Lead validation of flight products and procedures against spacecraft simulation tools, including flatsat, HITL, SIL, and digital twins Support AIT teams across multiple spacecraft integrated tests (TVAC, propulsion stack, DITL Provide program and product support to team leads and program managers, and serve as a key technical interface between the NZ and USA engineering teams Represent mission operations in program milestone reviews, design reviews, and readiness gates, and drive continuous improvement through post-mission lessons learned YOU'LL BRING THESE QUALIFICATIONS AS A PRINCIPALSPACECRAFT OPERATIONS ENGINEER: Bachelor's degree in engineering (software, computer, electrical, aerospace, mechanical, or other technical engineering discipline) 12+ years of direct experience in any of the following: space mission design, satellite subsystems, ground systems, spacecraft command control, or spacecraft operations 5+ years of experience leading teams of engineers through spacecraft missions or related aerospace projects Previous experience in roles such as Mission Lead, Mission Director, Flight Director, or Senior Spacecraft Operations Engineer Previous experience supporting mission operations activities in an on-console or operator-in-the-loop capacity Thorough understanding of key spacecraft subsystems and associated components, including attitude determination and control systems (ADCS), electrical power systems (EPS), space-to-ground communications, command and data handling (C&DH), thermal control systems (TCS), spacecraft propulsion systems, and fault detection, isolation, and recovery (FDIR) Understanding of the space environment, orbital mechanics, and rigid body dynamics 5+ years of direct software development experience (Python/Ruby/C/C++/other high-level languages), covering items such as spacecraft onboard flight scripts, ground scripting and automation, and data manipulation and analysis US citizenship is required due to program requirements Active U.S. Government Secret Security Clearance THESE QUALIFICATIONS WOULD BE NICE TO HAVE: Master's or PhD engineering in engineering (software, computer, electrical, aerospace, mechanical, or other technical engineering discipline) Prior experience in spacecraft operations Prior experience in satellite system design Prior experience in satellite ground systems Exposure to modern development practices - GIT, CI/CD, cloud infrastructure Proficiency with Agile issue-tracking tools, specifically Jira, for mission task management, status tracking, and bug reporting Software-in-the-Loop (SIL) Testing: Exposure to testing frameworks that simulate software behavior in operational environments. Hardware-in-the-Loop (HIL) Testing: Familiarity with testing frameworks that integrate software and hardware systems. Active TS/SCI U.S. Government Security Clearance This position may require prolonged periods of sitting, standing, walking, computer work, and occasional exposure to moderate levels of noise, dust, and fumes in production areas Anticipated annual equity grant value is designed around function, level, experience, and other factors; realized value depends on vesting and stock-price performance. Join one of the world's fastest-growing space companies and own a piece of it. In addition to competitive base pay, you'll receive company stock as part of your total compensation package, giving you a direct stake in our success. As we expand to new launch sites, groundbreaking missions, and global markets, your ownership has the opportunity to grow alongside the company. Our comprehensive benefits package includes our industry-leading Employee Stock Purchase Program (with a 15% discount on company stock), top-tier medical plans (HMO, PPO, and a zero cost HDHP option with a significant HSA company contribution), dental and vision coverage, paid vacation and sick time, 11 paid holidays, flexible spending and dependent care accounts, paid parental leave, disability and life insurance, and a 401(k) retirement plan with company match. Additional perks include subsidized EV charging, onsite fitness centers (where available), discounted gym memberships, complimentary snacks and beverages, 50% employee discount on our popular merch store, and a variety of other employee discounts. Level and base salary will be determined on a case-by-case basis and may vary based on the following considerations: job-related knowledge and skills, education, and experience. Total Compensation (base and equity) $223,025-$339,400 USD Base Salary $173,300-$259,850 USD WHAT TO EXPECT We're on a mission to unlock the potential of space to improve life on Earth, but that's not an easy task. It takes hard work, determination, relentless innovation, teamwork, grit, and an unwavering commitment to achieving what others often deem impossible. Our people out-think, out-work, and out-pace. We pride ourselves on having each other's backs, checking our egos at the door, and rolling up our sleeves on all tasks big and small. We thrive under pressure, work to tight deadlines, and our focus is always on how we can deliver, rather than dwelling on the challenges that stand in the way. Important information: . click apply for full job details
Configuration Manager
Omitron, Inc. Colorado Springs, Colorado
Job Description Job Description Omitron is seeking a Configuration Manager to support the CROWN effort in Colorado Springs, CO. This role owns configuration management across the CROWN lifecycle, from establishing CM planning and configuration identification through baseline management, change control, configuration status accounting, verification, and audit. The Configuration Manager is responsible for ensuring CROWN's hardware, software, network configurations, technical documentation, and associated configuration items remain controlled, traceable, reproducible, and auditable throughout the system lifecycle. This role requires someone capable of building and owning CM structure where it does not yet exist and maintaining that discipline within an evolving, Agile-driven technical environment. The ideal candidate can establish configuration baselines, operate a Change Control Board (CCB), maintain configuration status accounting, control changes across hardware and software components, and coordinate with Omitron and Government stakeholders to ensure configuration integrity throughout development, deployment, operations, and sustainment. The Configuration Manager will work closely with systems engineering, network engineering, software, cybersecurity, installation, operations, logistics, and program management personnel to ensure that the approved configuration accurately reflects what is designed, tested, deployed, and operating in the field. Key Responsibilities Develop and document the life cycle of CM planning, including program milestones and schedules to monitor CM status. Implement an internal CM system to manage all configuration documentation, physical media, and system components (hardware and software). Ensure CM practices cover engineering, implementation, and testing environments in accordance with evolving requirements. Implement change control guidelines for managing updates to project baselines and associated documentation. Establish and facilitate a Change Control Board (CCB) to review and approve changes. Track and maintain configuration baselines for each Prime Mission Product, including Commercial Off-The-Shelf (COTS) and Free and Open-Source Software (FOSS) components. Coordinate CM activities with Omitron and government stakeholders to ensure compliance with Agile product development processes and government requirements. Work closely with engineering, cybersecurity, and operations personnel to ensure configuration traceability, auditability, and consistent documentation across CROWN's lifecycle. Coordinate with installation and operations teams to ensure fielded system configurations accurately reflect approved baselines and as-built documentation. Conduct or support Functional Configuration Audits (FCA), Physical Configuration Audits (PCA), baseline reviews, and internal CM audits as applicable. Continuously improve CM processes as CROWN capabilities, deployments, and operational requirements evolve. Required Qualifications US citizenship required Security Clearance: Active TS/SCI clearance. Education: Bachelor's degree. Experience: 6+ years of relevant experience in configuration management, or an equivalent combination of education and experience. Demonstrated experience developing and implementing CM plans, baselines, and change control processes for a complex technical program. Experience establishing or facilitating a Change Control Board (CCB) or equivalent change management process. Strong coordination and documentation skills, with the ability to work across engineering, cybersecurity, and operations teams and with government stakeholders. Experience with version control, release management, or software configuration management concepts. Experience identifying and managing Configuration Items across hardware, software, firmware, and technical documentation. Preferred Qualifications Experience supporting DoD, Space Force, NRO, or other federal/IC programs. Familiarity with Agile product development processes and how CM practices adapt within an Agile environment. Industry certifications in configuration management (e.g., CMPIC, ITIL) or related disciplines. Familiarity with the CROWN program or similar network/systems delivery initiatives. Industry certification in configuration management or related disciplines, such as CMPIC, CM2, ITIL, or equivalent. Experience managing configuration for enterprise networks, distributed systems, mission systems, or other complex IT infrastructure. Compensation and Benefits: The salary range for this role is $120,000 to $160,000. Actual compensation will be determined based on factors including, but not limited to, relevant experience, education, technical expertise, certifications, security clearance, geographic location, internal equity, market conditions, contract requirements, and other factors. Benefits include: Health, Dental and Vision Insurance HSA or FSA accounts Company paid ST/LT Disability and AD&D insurance Paid Federal Holidays Paid Vacation Leave and Sick Leave Parental Leave 401k with company match Supplemental Insurance options like AFLAC Professional Development Reimbursement Voluntary Life Insurance Company Overview: Omitron is an Aerospace Engineering and Information Technology small business firm headquartered in Beltsville, Maryland with a field office located in Colorado Springs, Colorado. Since 1984, Omitron has provided excellence in engineering services and product development to government and industry customers for both civilian and military aerospace programs. Omitron recognizes that outstanding people are the key to our success. Our goal is to select highly qualified and motivated individuals and provide them with an environment necessary to stimulate and nurture engineering and business objectives. Omitron offers its employees competitive salaries, a full benefits package, and excellent career growth opportunities. We welcome talented professionals who wish to take advantage of the opportunities we offer. At Omitron, we believe that a workplace that fosters innovation and collaboration will be a successful one. We are committed to attracting, developing, and retaining top talent from a broad range of backgrounds, perspectives, and experiences. Per Title VII, our hiring decisions are made based on qualifications, skills, and experience, in accordance with our commitment to equal opportunity employment and nondiscrimination policies. We welcome all individuals who share our passion for excellence and encourage applicants from diverse backgrounds to apply. We also support a workplace where every employee feels valued, respected, and empowered to contribute their best work. Our workplace initiatives are open to all and designed to create a culture of belonging for everyone. E-Verify Participation. Powered by JazzHR KBcXtmP5bX
09/28/2026
Full time
Job Description Job Description Omitron is seeking a Configuration Manager to support the CROWN effort in Colorado Springs, CO. This role owns configuration management across the CROWN lifecycle, from establishing CM planning and configuration identification through baseline management, change control, configuration status accounting, verification, and audit. The Configuration Manager is responsible for ensuring CROWN's hardware, software, network configurations, technical documentation, and associated configuration items remain controlled, traceable, reproducible, and auditable throughout the system lifecycle. This role requires someone capable of building and owning CM structure where it does not yet exist and maintaining that discipline within an evolving, Agile-driven technical environment. The ideal candidate can establish configuration baselines, operate a Change Control Board (CCB), maintain configuration status accounting, control changes across hardware and software components, and coordinate with Omitron and Government stakeholders to ensure configuration integrity throughout development, deployment, operations, and sustainment. The Configuration Manager will work closely with systems engineering, network engineering, software, cybersecurity, installation, operations, logistics, and program management personnel to ensure that the approved configuration accurately reflects what is designed, tested, deployed, and operating in the field. Key Responsibilities Develop and document the life cycle of CM planning, including program milestones and schedules to monitor CM status. Implement an internal CM system to manage all configuration documentation, physical media, and system components (hardware and software). Ensure CM practices cover engineering, implementation, and testing environments in accordance with evolving requirements. Implement change control guidelines for managing updates to project baselines and associated documentation. Establish and facilitate a Change Control Board (CCB) to review and approve changes. Track and maintain configuration baselines for each Prime Mission Product, including Commercial Off-The-Shelf (COTS) and Free and Open-Source Software (FOSS) components. Coordinate CM activities with Omitron and government stakeholders to ensure compliance with Agile product development processes and government requirements. Work closely with engineering, cybersecurity, and operations personnel to ensure configuration traceability, auditability, and consistent documentation across CROWN's lifecycle. Coordinate with installation and operations teams to ensure fielded system configurations accurately reflect approved baselines and as-built documentation. Conduct or support Functional Configuration Audits (FCA), Physical Configuration Audits (PCA), baseline reviews, and internal CM audits as applicable. Continuously improve CM processes as CROWN capabilities, deployments, and operational requirements evolve. Required Qualifications US citizenship required Security Clearance: Active TS/SCI clearance. Education: Bachelor's degree. Experience: 6+ years of relevant experience in configuration management, or an equivalent combination of education and experience. Demonstrated experience developing and implementing CM plans, baselines, and change control processes for a complex technical program. Experience establishing or facilitating a Change Control Board (CCB) or equivalent change management process. Strong coordination and documentation skills, with the ability to work across engineering, cybersecurity, and operations teams and with government stakeholders. Experience with version control, release management, or software configuration management concepts. Experience identifying and managing Configuration Items across hardware, software, firmware, and technical documentation. Preferred Qualifications Experience supporting DoD, Space Force, NRO, or other federal/IC programs. Familiarity with Agile product development processes and how CM practices adapt within an Agile environment. Industry certifications in configuration management (e.g., CMPIC, ITIL) or related disciplines. Familiarity with the CROWN program or similar network/systems delivery initiatives. Industry certification in configuration management or related disciplines, such as CMPIC, CM2, ITIL, or equivalent. Experience managing configuration for enterprise networks, distributed systems, mission systems, or other complex IT infrastructure. Compensation and Benefits: The salary range for this role is $120,000 to $160,000. Actual compensation will be determined based on factors including, but not limited to, relevant experience, education, technical expertise, certifications, security clearance, geographic location, internal equity, market conditions, contract requirements, and other factors. Benefits include: Health, Dental and Vision Insurance HSA or FSA accounts Company paid ST/LT Disability and AD&D insurance Paid Federal Holidays Paid Vacation Leave and Sick Leave Parental Leave 401k with company match Supplemental Insurance options like AFLAC Professional Development Reimbursement Voluntary Life Insurance Company Overview: Omitron is an Aerospace Engineering and Information Technology small business firm headquartered in Beltsville, Maryland with a field office located in Colorado Springs, Colorado. Since 1984, Omitron has provided excellence in engineering services and product development to government and industry customers for both civilian and military aerospace programs. Omitron recognizes that outstanding people are the key to our success. Our goal is to select highly qualified and motivated individuals and provide them with an environment necessary to stimulate and nurture engineering and business objectives. Omitron offers its employees competitive salaries, a full benefits package, and excellent career growth opportunities. We welcome talented professionals who wish to take advantage of the opportunities we offer. At Omitron, we believe that a workplace that fosters innovation and collaboration will be a successful one. We are committed to attracting, developing, and retaining top talent from a broad range of backgrounds, perspectives, and experiences. Per Title VII, our hiring decisions are made based on qualifications, skills, and experience, in accordance with our commitment to equal opportunity employment and nondiscrimination policies. We welcome all individuals who share our passion for excellence and encourage applicants from diverse backgrounds to apply. We also support a workplace where every employee feels valued, respected, and empowered to contribute their best work. Our workplace initiatives are open to all and designed to create a culture of belonging for everyone. E-Verify Participation. Powered by JazzHR KBcXtmP5bX
Mid-Level Configuration Manager
LAUNCHTECH Colorado Springs, Colorado
Job Description Job Description Location: Schriever Space Force Base, Colorado Springs, CO Clearance Required: Active DoW Secret Security Clearance Travel Required: Up to 10% of the time LaunchTech is a veteran-owned company that prides itself on delivering service before self and excellence in all we do. We are seeking dynamic professionals who embody our core values of Integrity, Commitment, and Excellence to join our growing Crew in support of our customers across the federal, state, and commercial markets. Ready to bring your configuration management expertise to a role that directly shapes mission readiness? This role directly supports the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract, where your precision and attention to detail keep critical technical systems accurately documented and operationally sound. What You'll Be Doing Conduct comprehensive audits of artifacts to create and maintain accurate, as-built models and drawings for all ITSD technical areas. Use the BMC Helix ticketing system for working tasks Use Visio or MBSE tools to create and maintain as-built configuration drawings or models. Help create and maintain an MBSE program to transition from Visio diagrams to an MBSE environment. The successful candidate will: Take the initiative to make improvements to processes and procedures. Maintain a positive and friendly working relationship with customers and peers Have strong interpersonal skills Have a sharp eye for details Have the ability to move between big-picture to small details thinking when needed. What You Bring Basic Requirements: Must have 3, or more, years of general (full-time) work experience May be reduced with completion of advanced education Must have 2, or more, years of directly related experience Must be proficient with Microsoft Outlook, Word, Visio and Excel Must have, or obtain, an active DoW Secret Security Clearance Desired Requirements: Have experience using Helix ticketing system Have experience working with Configuration Management Have experience maintaining baselined drawings and other CM artifacts Have a current DoD 8570 approved IAT Level II certification such as Security+ Have an ITIL certification such as ITIL Foundations Have experience with an MBSE tool such as Cameo Why LaunchTech? LaunchTech is built on a single standard: Excellence, Period. This role puts your configuration management skills at the center of a mission-critical defense enterprise where accuracy and technical rigor directly support national security. We offer: Medical, Dental, and Vision coverage 401(k) with company match Paid Time Off (PTO) Mission-driven work with opportunities to grow And more Ready to Join the LaunchTech Crew? LaunchTech is an Equal Opportunity Employer. We prohibit discrimination and harassment of any kind. All qualified applicants will receive consideration for employment without regard to race, protected veteran status, color, sex, religion, sexual orientation, national origin, disability, genetic information, age, pregnancy, or any other status protected under federal, state, or local law. Visit to learn more about how we deliver Excellence, Period. Powered by JazzHR SrAU4i7NgW
09/28/2026
Full time
Job Description Job Description Location: Schriever Space Force Base, Colorado Springs, CO Clearance Required: Active DoW Secret Security Clearance Travel Required: Up to 10% of the time LaunchTech is a veteran-owned company that prides itself on delivering service before self and excellence in all we do. We are seeking dynamic professionals who embody our core values of Integrity, Commitment, and Excellence to join our growing Crew in support of our customers across the federal, state, and commercial markets. Ready to bring your configuration management expertise to a role that directly shapes mission readiness? This role directly supports the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract, where your precision and attention to detail keep critical technical systems accurately documented and operationally sound. What You'll Be Doing Conduct comprehensive audits of artifacts to create and maintain accurate, as-built models and drawings for all ITSD technical areas. Use the BMC Helix ticketing system for working tasks Use Visio or MBSE tools to create and maintain as-built configuration drawings or models. Help create and maintain an MBSE program to transition from Visio diagrams to an MBSE environment. The successful candidate will: Take the initiative to make improvements to processes and procedures. Maintain a positive and friendly working relationship with customers and peers Have strong interpersonal skills Have a sharp eye for details Have the ability to move between big-picture to small details thinking when needed. What You Bring Basic Requirements: Must have 3, or more, years of general (full-time) work experience May be reduced with completion of advanced education Must have 2, or more, years of directly related experience Must be proficient with Microsoft Outlook, Word, Visio and Excel Must have, or obtain, an active DoW Secret Security Clearance Desired Requirements: Have experience using Helix ticketing system Have experience working with Configuration Management Have experience maintaining baselined drawings and other CM artifacts Have a current DoD 8570 approved IAT Level II certification such as Security+ Have an ITIL certification such as ITIL Foundations Have experience with an MBSE tool such as Cameo Why LaunchTech? LaunchTech is built on a single standard: Excellence, Period. This role puts your configuration management skills at the center of a mission-critical defense enterprise where accuracy and technical rigor directly support national security. We offer: Medical, Dental, and Vision coverage 401(k) with company match Paid Time Off (PTO) Mission-driven work with opportunities to grow And more Ready to Join the LaunchTech Crew? LaunchTech is an Equal Opportunity Employer. We prohibit discrimination and harassment of any kind. All qualified applicants will receive consideration for employment without regard to race, protected veteran status, color, sex, religion, sexual orientation, national origin, disability, genetic information, age, pregnancy, or any other status protected under federal, state, or local law. Visit to learn more about how we deliver Excellence, Period. Powered by JazzHR SrAU4i7NgW
System Engineer III, Firewalls - Network Infrastructure and Security Engineering/Information Solutio
MUSC Adams Run, South Carolina
Job Description Job Description Job Description Summary The System Engineer III, Firewalls, reports to the Manager, Network Infrastructure and Security Engineering in support of MUSC's academic, research and healthcare missions. Areas of expertise include firewall administration, patching, VPN configuration, address translation, routing, IP address management, network segmentation, security group tags, SDWAN, dynamic routing protocols, SSO, certificate management, and advanced troubleshooting. This position serves as a subject matter expert for network security services, evaluates and resolves complex technical issues and demonstrates strong analytical and communication skills to maximize the benefit of services the team provides for Information Solutions. Generates appropriate documentation, communications, processes, and educational plans to identify and remove obstacles to, and mitigate the disruption of change related to the design, management, implementation, and operations of the network; is responsible for the timely resolution of network issues; takes a lead role in projects; participates in team and project meetings and provides input on solutions to improve efficiency. The position coaches and transfers knowledge to peers and staff, maintains high professional standards, and exhibits excellent customer service skills while performing assigned tasks. Entity MUSC Community Physicians (MCP) Worker Type Employee Worker Sub-Type Regular Cost Center CC006134 MCP - Information Solutions Pay Rate Type Salary Pay Grade Health-30 Scheduled Weekly Hours 40 Work Shift Job Description The System Engineer III, Firewalls, reports to the Manager, Network Infrastructure and Security Engineering in support of MUSC's academic, research and healthcare missions. Areas of expertise include firewall administration, patching, VPN configuration, address translation, routing, IP address management, network segmentation, security group tags, SDWAN, dynamic routing protocols, SSO, certificate management, and advanced troubleshooting. This position serves as a subject matter expert for network security services, evaluates and resolves complex technical issues and demonstrates strong analytical and communication skills to maximize the benefit of services the team provides for Information Solutions. Generates appropriate documentation, communications, processes, and educational plans to identify and remove obstacles to, and mitigate the disruption of change related to the design, management, implementation, and operations of the network; is responsible for the timely resolution of network issues; takes a lead role in projects; participates in team and project meetings and provides input on solutions to improve efficiency. The position coaches and transfers knowledge to peers and staff, maintains high professional standards, and exhibits excellent customer service skills while performing assigned tasks. Additional Job Description Requirements (Education, Work Experience, Licensure, Registry &/or Certifications) A bachelor's degree and five years directly related experience; or a high school diploma and nine years directly related experience; or a Masters' degree and 3 years directly related experience required. 7+ years of Network experience is preferred. Must possess strong interpersonal, project management, analytical and communication skills. Experience in implementing, administering, and troubleshooting network security devices, including: firewalls, network access control, and monitoring applications. Knowledge of communication or information systems. Knowledge and technical expertise in networking protocols, security, and wireless communications. If you like working with energetic enthusiastic individuals, you will enjoy your career with us! The Medical University of South Carolina is an Equal Opportunity Employer. MUSC does not discriminate on the basis of race, color, religion or belief, age, sex, national origin, gender identity, sexual orientation, disability, protected veteran status, family or parental status, or any other status protected by state laws and/or federal regulations. All qualified applicants are encouraged to apply and will receive consideration for employment based upon applicable qualifications, merit and business need. Medical University of South Carolina participates in the federal E-Verify program to confirm the identity and employment authorization of all newly hired employees. For further information about the E-Verify program, please click here: -verify/employees
09/28/2026
Full time
Job Description Job Description Job Description Summary The System Engineer III, Firewalls, reports to the Manager, Network Infrastructure and Security Engineering in support of MUSC's academic, research and healthcare missions. Areas of expertise include firewall administration, patching, VPN configuration, address translation, routing, IP address management, network segmentation, security group tags, SDWAN, dynamic routing protocols, SSO, certificate management, and advanced troubleshooting. This position serves as a subject matter expert for network security services, evaluates and resolves complex technical issues and demonstrates strong analytical and communication skills to maximize the benefit of services the team provides for Information Solutions. Generates appropriate documentation, communications, processes, and educational plans to identify and remove obstacles to, and mitigate the disruption of change related to the design, management, implementation, and operations of the network; is responsible for the timely resolution of network issues; takes a lead role in projects; participates in team and project meetings and provides input on solutions to improve efficiency. The position coaches and transfers knowledge to peers and staff, maintains high professional standards, and exhibits excellent customer service skills while performing assigned tasks. Entity MUSC Community Physicians (MCP) Worker Type Employee Worker Sub-Type Regular Cost Center CC006134 MCP - Information Solutions Pay Rate Type Salary Pay Grade Health-30 Scheduled Weekly Hours 40 Work Shift Job Description The System Engineer III, Firewalls, reports to the Manager, Network Infrastructure and Security Engineering in support of MUSC's academic, research and healthcare missions. Areas of expertise include firewall administration, patching, VPN configuration, address translation, routing, IP address management, network segmentation, security group tags, SDWAN, dynamic routing protocols, SSO, certificate management, and advanced troubleshooting. This position serves as a subject matter expert for network security services, evaluates and resolves complex technical issues and demonstrates strong analytical and communication skills to maximize the benefit of services the team provides for Information Solutions. Generates appropriate documentation, communications, processes, and educational plans to identify and remove obstacles to, and mitigate the disruption of change related to the design, management, implementation, and operations of the network; is responsible for the timely resolution of network issues; takes a lead role in projects; participates in team and project meetings and provides input on solutions to improve efficiency. The position coaches and transfers knowledge to peers and staff, maintains high professional standards, and exhibits excellent customer service skills while performing assigned tasks. Additional Job Description Requirements (Education, Work Experience, Licensure, Registry &/or Certifications) A bachelor's degree and five years directly related experience; or a high school diploma and nine years directly related experience; or a Masters' degree and 3 years directly related experience required. 7+ years of Network experience is preferred. Must possess strong interpersonal, project management, analytical and communication skills. Experience in implementing, administering, and troubleshooting network security devices, including: firewalls, network access control, and monitoring applications. Knowledge of communication or information systems. Knowledge and technical expertise in networking protocols, security, and wireless communications. If you like working with energetic enthusiastic individuals, you will enjoy your career with us! The Medical University of South Carolina is an Equal Opportunity Employer. MUSC does not discriminate on the basis of race, color, religion or belief, age, sex, national origin, gender identity, sexual orientation, disability, protected veteran status, family or parental status, or any other status protected by state laws and/or federal regulations. All qualified applicants are encouraged to apply and will receive consideration for employment based upon applicable qualifications, merit and business need. Medical University of South Carolina participates in the federal E-Verify program to confirm the identity and employment authorization of all newly hired employees. For further information about the E-Verify program, please click here: -verify/employees
Senior Network Security Engineer
NPO USA Chicago, Illinois
Job Description Job Description About Us: NPO Torino is a specialized Digital Transformation company, recently acquired by the Fondo Italiano d'Investimento (Italian Investment Fund). With our headquarters in Turin and an operational presence in the United States and Brazil, we support companies in their technological evolution journey by combining consulting expertise with advanced IT solutions. We offer services in cloud computing, cybersecurity, AI for business, FinOps, system integration, and IT governance, featuring a customized and results-driven approach. Our mission is to simplify digital complexity and transform it into strategic value for enterprises. Backed by the Fondo Italiano d'Investimento , NPO Torino is accelerating its growth as a partner of choice for companies looking to tackle innovation challenges with vision, pragmatism, and sustainability. Salary range $80K to $92K. Work is partially remote with occasional travel to USA, and in Canada. Role Description: We are looking for a highly qualified Senior Network Security Engineer to join our Network & Security Business Unit. The professional will be responsible for the design, implementation, maintenance, and troubleshooting of complex network security infrastructures. The ideal candidate has deep, vertical expertise with leading security vendors (Fortinet, Palo Alto Networks, Cisco, F5) and a proven track record of managing modern architectures, including SASE solutions. Key Responsibilities: Design and manage security architectures based on Next-Generation Firewalls (NGFW). Implement and manage SASE (Secure Access Service Edge) solutions for distributed environments. Perform configuration , policy management, and advanced troubleshooting on multi-vendor equipment. Manage perimeter and internal security within Enterprise environments. Conduct log analysis, incident management, and system hardening. Provide technical mentoring for junior team members (optional, if required). Fundamental Technical Requirements (Must-Have) The candidate must demonstrate practical, in-depth, hands-on experience with the following technologies: Palo Alto Networks: Advanced configuration and management of NGFW (PA Series). Solid experience with Panorama for centralized management. Proven experience with SASE solutions (Prisma Access) and GlobalProtect. Fortinet: Advanced management of FortiGate (including VDOM, SD-WAN, SSL Inspection). Experience with the wider Fortinet ecosystem (FortiManager, FortiAnalyzer). Cisco Security: Experience with Cisco Security solutions (Firepower/FTD, ASA). Knowledge of Cisco ISE (Identity Services Engine) and TrustSec architectures is a strong plus. F5 Networks: Implementation and management of F5 BIG-IP solutions. Strong configuration and troubleshooting skills on LTM (Local Traffic Manager) and/or APM (Access Policy Manager) / AWAF modules. Soft Skills & Additional Requirements: Minimum of 5+ years of experience in Network Security Engineering roles. Excellent troubleshooting and problem-solving skills under pressure. Preferred Certifications (Nice-to-Have): Palo Alto: PCNSE (Palo Alto Networks Certified Network Security Engineer). Fortinet: NSE 4 / NSE 7. Cisco: CCNP Security or CCIE Security. F5: F5 Certified Administrator (F5-CA) or Technology Specialist (F5-CTS). Introduce Yourself (Screening Questions): "Do you have direct implementation experience with Prisma Access? Can you briefly describe a SASE architecture you have managed?" "Have you ever managed migrations between these vendors (e.g., from Cisco to Fortinet or vice versa)?" What We Offer: Salary commensurate with experience. Structured training and certification plans. Corporate benefits: Welfare Plan, Smart Working.
09/28/2026
Full time
Job Description Job Description About Us: NPO Torino is a specialized Digital Transformation company, recently acquired by the Fondo Italiano d'Investimento (Italian Investment Fund). With our headquarters in Turin and an operational presence in the United States and Brazil, we support companies in their technological evolution journey by combining consulting expertise with advanced IT solutions. We offer services in cloud computing, cybersecurity, AI for business, FinOps, system integration, and IT governance, featuring a customized and results-driven approach. Our mission is to simplify digital complexity and transform it into strategic value for enterprises. Backed by the Fondo Italiano d'Investimento , NPO Torino is accelerating its growth as a partner of choice for companies looking to tackle innovation challenges with vision, pragmatism, and sustainability. Salary range $80K to $92K. Work is partially remote with occasional travel to USA, and in Canada. Role Description: We are looking for a highly qualified Senior Network Security Engineer to join our Network & Security Business Unit. The professional will be responsible for the design, implementation, maintenance, and troubleshooting of complex network security infrastructures. The ideal candidate has deep, vertical expertise with leading security vendors (Fortinet, Palo Alto Networks, Cisco, F5) and a proven track record of managing modern architectures, including SASE solutions. Key Responsibilities: Design and manage security architectures based on Next-Generation Firewalls (NGFW). Implement and manage SASE (Secure Access Service Edge) solutions for distributed environments. Perform configuration , policy management, and advanced troubleshooting on multi-vendor equipment. Manage perimeter and internal security within Enterprise environments. Conduct log analysis, incident management, and system hardening. Provide technical mentoring for junior team members (optional, if required). Fundamental Technical Requirements (Must-Have) The candidate must demonstrate practical, in-depth, hands-on experience with the following technologies: Palo Alto Networks: Advanced configuration and management of NGFW (PA Series). Solid experience with Panorama for centralized management. Proven experience with SASE solutions (Prisma Access) and GlobalProtect. Fortinet: Advanced management of FortiGate (including VDOM, SD-WAN, SSL Inspection). Experience with the wider Fortinet ecosystem (FortiManager, FortiAnalyzer). Cisco Security: Experience with Cisco Security solutions (Firepower/FTD, ASA). Knowledge of Cisco ISE (Identity Services Engine) and TrustSec architectures is a strong plus. F5 Networks: Implementation and management of F5 BIG-IP solutions. Strong configuration and troubleshooting skills on LTM (Local Traffic Manager) and/or APM (Access Policy Manager) / AWAF modules. Soft Skills & Additional Requirements: Minimum of 5+ years of experience in Network Security Engineering roles. Excellent troubleshooting and problem-solving skills under pressure. Preferred Certifications (Nice-to-Have): Palo Alto: PCNSE (Palo Alto Networks Certified Network Security Engineer). Fortinet: NSE 4 / NSE 7. Cisco: CCNP Security or CCIE Security. F5: F5 Certified Administrator (F5-CA) or Technology Specialist (F5-CTS). Introduce Yourself (Screening Questions): "Do you have direct implementation experience with Prisma Access? Can you briefly describe a SASE architecture you have managed?" "Have you ever managed migrations between these vendors (e.g., from Cisco to Fortinet or vice versa)?" What We Offer: Salary commensurate with experience. Structured training and certification plans. Corporate benefits: Welfare Plan, Smart Working.
Network Engineer/Architect
Career Listings Fort Belvoir, Virginia
Job Description Job Description Benefits: 401(k) 401(k) matching Dental insurance Health insurance Paid time off Profit sharing Training & development Tuition assistance Vision insurance Job Description SarelaTech is seeking an experienced Network Engineer (SME) to join our Integrated Information Technology Support Services (I3TS) team, who will support an extensive digital modernization program critical to Defense Threat Reduction Agency (DTRA) in Fort Belvoir, VA. The Network Engineer will work closely with the Leidos and Government technical leadership team to help drive innovation, growth, and efficiencies within the I3TS portfolio. Primary Responsibilities: The Commercial Solutions for Classified (CSfC) Network & Security Engineer will architect and operate secure, dual-layer cryptographic boundaries utilizing Cisco and Aruba IPsec/SSL VPNs and dynamic routing (BGP/OSPF) in strict compliance with NSA Capability Packages. In this role, you will author and tune Palo Alto NGFW security policies and IDS/IPS threat prevention signatures, implement enterprise network access control and 802.1X policies via Cisco ISE and Aruba ClearPass, integrate enterprise PKI/OCSP services and hardened NTP, and generate key engineering artifacts required for NSA CSfC PMO registration and compliance auditing. Architect, deploy, and maintain CSfC infrastructure operating within Black/Gray/Red networks. Design, configure, and maintain multi-layered Commercial Solutions for Classified (CSfC) architectures in alignment with NSA Mobile Access (MA), Multi-Sight (MSC) Capability Packages, with Campus Wireless LAN (WLAN) experience a bonus. Ensure strict compliance with vendor diversity and dual-tunnel encryption mandates. Understanding of NIAP approved list and monitors for changes Design, configure, and maintain multi-layered Commercial Solutions for Classified (CSfC) architectures in alignment with NSA Capability Packages (MSC, MA, and CWLAN). Ensure strict compliance with vendor diversity and dual-tunnel encryption mandates. Implement enterprise routing protocols (BGP, OSPF) alongside redundant outer and inner IPsec VPN tunnels across Cisco and Aruba appliances. Configure remote access SSL VPNs and ensure end-to-end traffic separation. Author, optimize, and audit Palo Alto Next-Generation Firewall (NGFW) security policies, App-ID, User-ID, and URL filtering. Configure and tune Palo Alto IDS/IPS threat signatures, anti-spyware, and vulnerability protection. Architect and manage Cisco Identity Services Engine (ISE) and Aruba ClearPass policy managers for 802.1X network access control, RADIUS/TACACS+ administration, posture assessment, and endpoint profiling. Integrate enterprise Public Key Infrastructure (PKI) components, managing X.509 certificate lifecycles, Certificate Authorities (CAs), CRL/OCSP validation, and hardened, authenticated Network Time Protocol (NTP) infrastructure. Prepare CSfC compliance artifacts, Key Management Plans (KMPs), Continuous Monitoring Plans (CMPs), and registration packages for NSA CSfC PMO submission. Required Qualifications: Bachelor's degree or higher in Computer Science, Information Technology, Engineering, Engineering Management, Management Information Systems, or related STEM degree program, and 12-15 years of relevant experience. Specific experience, education and training may be considered in lieu of degree. 12+ years of progressive network engineering experience within DoD/DoW, federal, or defense contractor enterprise environments Active TS/SCI Clearance Active DoD 8570.01-M / DoD 8140 IAT Level II or III baseline certification (e.g., Security+ CE, CySA+, CASP+, or CISSP). Active Computing Environment certification, including one or more of: Cisco CCNA, CCNP, Aruba ACSA or ACSP Proven expertise configuring Cisco (IOS-XE/ASR) and Aruba (Mobility Controllers/Gateways) IPsec and SSL VPNs, including IKEv2, Suite B/CNSA cryptography, and dynamic routing (BGP, OSPF). Demonstrated engineering experience with Palo Alto Networks firewalls (PAN-OS), Panorama central management, and advanced IDS/IPS inspection profiles. Hands-on deployment experience with both Cisco ISE and/or Aruba ClearPass implementing 802.1X, EAP-TLS authentication, and role-based access policies. Strong working knowledge of X.509 certificates, CA hierarchy integration, certificate revocation lists (CRLs), OCSP, and secure NTP stratum synchronization. Direct prior experience preparing and successfully registering NSA CSfC Capability Package solutions (Mobile Access, Multi-Site Connectivity, or Campus WLAN). Deep understanding of Commercial National Security Algorithm (CNSA) Suite requirements, post-quantum readiness considerations, and hardware security modules (HSMs). Familiarity with Ansible, for automating network device configuration backups, policy compliance checks, and certificate rotations. Certified in any of the following - Cisco CCNP/CCIE (Security or Enterprise), Palo Alto PCNSE, Aruba Certified ClearPass Expert (ACCX), or Aruba Certified Mobility Expert (ACMX).
09/28/2026
Full time
Job Description Job Description Benefits: 401(k) 401(k) matching Dental insurance Health insurance Paid time off Profit sharing Training & development Tuition assistance Vision insurance Job Description SarelaTech is seeking an experienced Network Engineer (SME) to join our Integrated Information Technology Support Services (I3TS) team, who will support an extensive digital modernization program critical to Defense Threat Reduction Agency (DTRA) in Fort Belvoir, VA. The Network Engineer will work closely with the Leidos and Government technical leadership team to help drive innovation, growth, and efficiencies within the I3TS portfolio. Primary Responsibilities: The Commercial Solutions for Classified (CSfC) Network & Security Engineer will architect and operate secure, dual-layer cryptographic boundaries utilizing Cisco and Aruba IPsec/SSL VPNs and dynamic routing (BGP/OSPF) in strict compliance with NSA Capability Packages. In this role, you will author and tune Palo Alto NGFW security policies and IDS/IPS threat prevention signatures, implement enterprise network access control and 802.1X policies via Cisco ISE and Aruba ClearPass, integrate enterprise PKI/OCSP services and hardened NTP, and generate key engineering artifacts required for NSA CSfC PMO registration and compliance auditing. Architect, deploy, and maintain CSfC infrastructure operating within Black/Gray/Red networks. Design, configure, and maintain multi-layered Commercial Solutions for Classified (CSfC) architectures in alignment with NSA Mobile Access (MA), Multi-Sight (MSC) Capability Packages, with Campus Wireless LAN (WLAN) experience a bonus. Ensure strict compliance with vendor diversity and dual-tunnel encryption mandates. Understanding of NIAP approved list and monitors for changes Design, configure, and maintain multi-layered Commercial Solutions for Classified (CSfC) architectures in alignment with NSA Capability Packages (MSC, MA, and CWLAN). Ensure strict compliance with vendor diversity and dual-tunnel encryption mandates. Implement enterprise routing protocols (BGP, OSPF) alongside redundant outer and inner IPsec VPN tunnels across Cisco and Aruba appliances. Configure remote access SSL VPNs and ensure end-to-end traffic separation. Author, optimize, and audit Palo Alto Next-Generation Firewall (NGFW) security policies, App-ID, User-ID, and URL filtering. Configure and tune Palo Alto IDS/IPS threat signatures, anti-spyware, and vulnerability protection. Architect and manage Cisco Identity Services Engine (ISE) and Aruba ClearPass policy managers for 802.1X network access control, RADIUS/TACACS+ administration, posture assessment, and endpoint profiling. Integrate enterprise Public Key Infrastructure (PKI) components, managing X.509 certificate lifecycles, Certificate Authorities (CAs), CRL/OCSP validation, and hardened, authenticated Network Time Protocol (NTP) infrastructure. Prepare CSfC compliance artifacts, Key Management Plans (KMPs), Continuous Monitoring Plans (CMPs), and registration packages for NSA CSfC PMO submission. Required Qualifications: Bachelor's degree or higher in Computer Science, Information Technology, Engineering, Engineering Management, Management Information Systems, or related STEM degree program, and 12-15 years of relevant experience. Specific experience, education and training may be considered in lieu of degree. 12+ years of progressive network engineering experience within DoD/DoW, federal, or defense contractor enterprise environments Active TS/SCI Clearance Active DoD 8570.01-M / DoD 8140 IAT Level II or III baseline certification (e.g., Security+ CE, CySA+, CASP+, or CISSP). Active Computing Environment certification, including one or more of: Cisco CCNA, CCNP, Aruba ACSA or ACSP Proven expertise configuring Cisco (IOS-XE/ASR) and Aruba (Mobility Controllers/Gateways) IPsec and SSL VPNs, including IKEv2, Suite B/CNSA cryptography, and dynamic routing (BGP, OSPF). Demonstrated engineering experience with Palo Alto Networks firewalls (PAN-OS), Panorama central management, and advanced IDS/IPS inspection profiles. Hands-on deployment experience with both Cisco ISE and/or Aruba ClearPass implementing 802.1X, EAP-TLS authentication, and role-based access policies. Strong working knowledge of X.509 certificates, CA hierarchy integration, certificate revocation lists (CRLs), OCSP, and secure NTP stratum synchronization. Direct prior experience preparing and successfully registering NSA CSfC Capability Package solutions (Mobile Access, Multi-Site Connectivity, or Campus WLAN). Deep understanding of Commercial National Security Algorithm (CNSA) Suite requirements, post-quantum readiness considerations, and hardware security modules (HSMs). Familiarity with Ansible, for automating network device configuration backups, policy compliance checks, and certificate rotations. Certified in any of the following - Cisco CCNP/CCIE (Security or Enterprise), Palo Alto PCNSE, Aruba Certified ClearPass Expert (ACCX), or Aruba Certified Mobility Expert (ACMX).
Senior Network Security Engineer
Ignite IT
Job Description Job Description We are seeking a Senior Network Security Engineer for an operations-first role supporting enterprise network security infrastructure across on-premises, remote-access, hybrid-cloud, and cloud-connected environments. This is not primarily an architecture/design role. The priority is a hands-on engineer who can administer, configure, maintain, troubleshoot, patch, upgrade, back up, validate, document, and operate production security platforms with minimal ramp-up. Firewall operations: hands-on Cisco and Palo Alto firewall administration, rule changes, NAT, troubleshooting, policy cleanup, upgrades, backups, logging, and production support. VPN / remote access: support for remote-access VPN, site-to-site VPN, user connectivity issues, certificates, authentication flows, and after-hours troubleshooting. RSA / MFA administration: RSA SecurID or equivalent MFA operations, token support, server administration, user troubleshooting, VPN integration, certificates, patching, backups, logs, and monitoring. Day-to-day operations: ticket resolution, monitoring alerts, health checks, change requests, incident support, maintenance windows, operational reporting, and customer support. Configuration and administration: installing, configuring, maintaining, patching, upgrading, backing up, validating, and troubleshooting assigned security platforms. Production troubleshooting: strong TCP/IP, DNS, routing, firewall logs, packet captures, VPN authentication, certificate, and connectivity troubleshooting. Documentation and process discipline: SOPs, runbooks, diagrams, change records, rollback plans, evidence collection, knowledge transfer, and formal change management. Federal/customer environment maturity: Public Trust eligibility, regulated-environment documentation, customer support, cross-team coordination, and comfort working with government stakeholders. The best candidate can credibly say: "I have operated enterprise Cisco and Palo Alto firewalls in production, handled firewall rule changes and troubleshooting, supported VPN users and site-to-site tunnels, administered or supported RSA/MFA tied to VPN access, followed formal change-management processes, maintained documentation and backups, and can step into daily operational support with minimal ramp-up." Scope and Role Boundaries Primary platforms include Cisco ASA/Firepower/FTD/FMC, Palo Alto NGFW/Panorama/GlobalProtect, remote-access and site-to-site VPN, RSA SecurID Authentication Manager or comparable MFA, monitoring/logging/SIEM integrations, and related network security controls. Coordinate with SOC/NOC, cloud, identity/directory, wireless/LAN, server, endpoint, system owner, application, governance, and vendor teams during changes, incidents, troubleshooting, compliance, and audit support. Cloudflare, Cisco ISE/NAC, secure web/email gateways, packet visibility tools, SD-WAN/SASE/ZTNA, AWS/Azure security, and F5/application-delivery awareness are useful where they intersect with assigned operational support, but the core need is firewall, VPN, RSA/MFA, and production operations. Key Responsibilities Provide daily, weekly, monthly, and annual operational support for assigned security systems, including tickets, alerts, health checks, email/phone support, metrics, status reporting, and operational validation. Administer and troubleshoot enterprise firewalls, including rule bases, NAT, segmentation, high availability, threat prevention, VPN integration, logging, secure baselines, rule reviews, recertification, cleanup, and decommissioning. Install, configure, maintain, patch, upgrade, back up, and validate firewall, VPN, MFA, and related network security systems in production environments. Support remote-access VPN, site-to-site VPN, partner connectivity, cloud connectivity, mobile/remote users, certificates, authentication policies, availability, utilization, and user access issues. Maintain and troubleshoot RSA SecurID Authentication Manager or equivalent MFA services, including servers/appliances, agents, certificates, HA, backups, logs, monitoring, directory integration, VPN authentication, and token lifecycle support. Respond to incidents, vulnerability notices, urgent requests, vendor advisories, PSIRT notices, system alerts, and emergency troubleshooting while minimizing service disruption. Use firewall logs, VPN logs, packet captures, SIEM data, monitoring tools, DNS/routing checks, and standard diagnostics to resolve complex connectivity, authentication, TLS/certificate, and application-flow issues. Create and maintain topology diagrams, equipment inventories, configurations, SOPs, runbooks, implementation plans, rollback plans, build/upgrade procedures, troubleshooting notes, and knowledge articles. Follow approved change, release, incident, problem, and configuration-management processes; prepare change records, peer-review materials, validation evidence, root-cause analysis, metrics, and audit artifacts. Support vulnerability remediation, POA&M tracking, continuous monitoring, compliance reviews, audit evidence collection, and coordination with ISSO, system owner, and security governance teams. Requirements 7+ years of experience in network security engineering, network infrastructure, cybersecurity infrastructure, or a closely related role. 5+ years of hands-on experience administering, maintaining, and troubleshooting enterprise firewall platforms in production environments. Hands-on experience with Cisco security technologies such as Cisco ASA, Firepower, FTD, FMC, AnyConnect/Secure Client, or equivalent Cisco firewall/VPN platforms. Hands-on experience with Palo Alto Networks technologies such as NGFW, Panorama, GlobalProtect, security profiles, App-ID/User-ID, logging, and policy optimization. Experience administering or supporting RSA SecurID Authentication Manager or comparable enterprise MFA/two-factor authentication platforms, including token support, server operations, patching/upgrades, backups, certificates, monitoring, and directory/VPN integration. Strong knowledge of firewall policy, NAT, VPNs, routing, DNS, DHCP, BGP, TLS/certificates, packet captures, log analysis, segmentation, high availability, and common network diagnostic tools. Experience with enterprise monitoring, logging, SIEM, alerting, vulnerability management, incident response, formal change management, and regulated-environment documentation. Ability to create clear technical documentation, support customers and stakeholders, prioritize operational work, communicate clearly, and coordinate across technical teams. Ability to obtain and maintain a Public Trust background investigation. Desired Certifications Relevant certifications are helpful but should not replace demonstrated hands-on experience. Examples include CCNP Security, CCIE Security, PCNSE, PCCSE, CISSP, CCSP, AWS Certified Security - Specialty, AWS Advanced Networking - Specialty, Microsoft Certified: Azure Security Engineer Associate, Microsoft Certified: Azure Network Engineer Associate, CompTIA Security+, CompTIA CySA+, GIAC certifications, or equivalent vendor/cloud certifications. Core Competencies Enterprise firewall engineering and policy lifecycle management VPN, remote access, RSA/MFA, and token lifecycle operations Cloudflare, edge security, secure access, and Zero Trust support Content filtering, secure web/email gateway, and NAC operations Hybrid-cloud network security and secure connectivity Monitoring, logging, SIEM integration, and incident response support Security visibility, packet analysis, and advanced troubleshooting Vulnerability remediation, compliance evidence, and POA&M support Change management, documentation, reporting, and operational metrics Technical leadership, customer support, and cross-team collaboration Benefits 401(k) 401(k) matching Dental insurance Flexible schedule Flexible spending account Health insurance Health savings account Life insurance Paid time off Professional development assistance Referral program Retirement plan Tuition reimbursement Vision insurance
09/28/2026
Full time
Job Description Job Description We are seeking a Senior Network Security Engineer for an operations-first role supporting enterprise network security infrastructure across on-premises, remote-access, hybrid-cloud, and cloud-connected environments. This is not primarily an architecture/design role. The priority is a hands-on engineer who can administer, configure, maintain, troubleshoot, patch, upgrade, back up, validate, document, and operate production security platforms with minimal ramp-up. Firewall operations: hands-on Cisco and Palo Alto firewall administration, rule changes, NAT, troubleshooting, policy cleanup, upgrades, backups, logging, and production support. VPN / remote access: support for remote-access VPN, site-to-site VPN, user connectivity issues, certificates, authentication flows, and after-hours troubleshooting. RSA / MFA administration: RSA SecurID or equivalent MFA operations, token support, server administration, user troubleshooting, VPN integration, certificates, patching, backups, logs, and monitoring. Day-to-day operations: ticket resolution, monitoring alerts, health checks, change requests, incident support, maintenance windows, operational reporting, and customer support. Configuration and administration: installing, configuring, maintaining, patching, upgrading, backing up, validating, and troubleshooting assigned security platforms. Production troubleshooting: strong TCP/IP, DNS, routing, firewall logs, packet captures, VPN authentication, certificate, and connectivity troubleshooting. Documentation and process discipline: SOPs, runbooks, diagrams, change records, rollback plans, evidence collection, knowledge transfer, and formal change management. Federal/customer environment maturity: Public Trust eligibility, regulated-environment documentation, customer support, cross-team coordination, and comfort working with government stakeholders. The best candidate can credibly say: "I have operated enterprise Cisco and Palo Alto firewalls in production, handled firewall rule changes and troubleshooting, supported VPN users and site-to-site tunnels, administered or supported RSA/MFA tied to VPN access, followed formal change-management processes, maintained documentation and backups, and can step into daily operational support with minimal ramp-up." Scope and Role Boundaries Primary platforms include Cisco ASA/Firepower/FTD/FMC, Palo Alto NGFW/Panorama/GlobalProtect, remote-access and site-to-site VPN, RSA SecurID Authentication Manager or comparable MFA, monitoring/logging/SIEM integrations, and related network security controls. Coordinate with SOC/NOC, cloud, identity/directory, wireless/LAN, server, endpoint, system owner, application, governance, and vendor teams during changes, incidents, troubleshooting, compliance, and audit support. Cloudflare, Cisco ISE/NAC, secure web/email gateways, packet visibility tools, SD-WAN/SASE/ZTNA, AWS/Azure security, and F5/application-delivery awareness are useful where they intersect with assigned operational support, but the core need is firewall, VPN, RSA/MFA, and production operations. Key Responsibilities Provide daily, weekly, monthly, and annual operational support for assigned security systems, including tickets, alerts, health checks, email/phone support, metrics, status reporting, and operational validation. Administer and troubleshoot enterprise firewalls, including rule bases, NAT, segmentation, high availability, threat prevention, VPN integration, logging, secure baselines, rule reviews, recertification, cleanup, and decommissioning. Install, configure, maintain, patch, upgrade, back up, and validate firewall, VPN, MFA, and related network security systems in production environments. Support remote-access VPN, site-to-site VPN, partner connectivity, cloud connectivity, mobile/remote users, certificates, authentication policies, availability, utilization, and user access issues. Maintain and troubleshoot RSA SecurID Authentication Manager or equivalent MFA services, including servers/appliances, agents, certificates, HA, backups, logs, monitoring, directory integration, VPN authentication, and token lifecycle support. Respond to incidents, vulnerability notices, urgent requests, vendor advisories, PSIRT notices, system alerts, and emergency troubleshooting while minimizing service disruption. Use firewall logs, VPN logs, packet captures, SIEM data, monitoring tools, DNS/routing checks, and standard diagnostics to resolve complex connectivity, authentication, TLS/certificate, and application-flow issues. Create and maintain topology diagrams, equipment inventories, configurations, SOPs, runbooks, implementation plans, rollback plans, build/upgrade procedures, troubleshooting notes, and knowledge articles. Follow approved change, release, incident, problem, and configuration-management processes; prepare change records, peer-review materials, validation evidence, root-cause analysis, metrics, and audit artifacts. Support vulnerability remediation, POA&M tracking, continuous monitoring, compliance reviews, audit evidence collection, and coordination with ISSO, system owner, and security governance teams. Requirements 7+ years of experience in network security engineering, network infrastructure, cybersecurity infrastructure, or a closely related role. 5+ years of hands-on experience administering, maintaining, and troubleshooting enterprise firewall platforms in production environments. Hands-on experience with Cisco security technologies such as Cisco ASA, Firepower, FTD, FMC, AnyConnect/Secure Client, or equivalent Cisco firewall/VPN platforms. Hands-on experience with Palo Alto Networks technologies such as NGFW, Panorama, GlobalProtect, security profiles, App-ID/User-ID, logging, and policy optimization. Experience administering or supporting RSA SecurID Authentication Manager or comparable enterprise MFA/two-factor authentication platforms, including token support, server operations, patching/upgrades, backups, certificates, monitoring, and directory/VPN integration. Strong knowledge of firewall policy, NAT, VPNs, routing, DNS, DHCP, BGP, TLS/certificates, packet captures, log analysis, segmentation, high availability, and common network diagnostic tools. Experience with enterprise monitoring, logging, SIEM, alerting, vulnerability management, incident response, formal change management, and regulated-environment documentation. Ability to create clear technical documentation, support customers and stakeholders, prioritize operational work, communicate clearly, and coordinate across technical teams. Ability to obtain and maintain a Public Trust background investigation. Desired Certifications Relevant certifications are helpful but should not replace demonstrated hands-on experience. Examples include CCNP Security, CCIE Security, PCNSE, PCCSE, CISSP, CCSP, AWS Certified Security - Specialty, AWS Advanced Networking - Specialty, Microsoft Certified: Azure Security Engineer Associate, Microsoft Certified: Azure Network Engineer Associate, CompTIA Security+, CompTIA CySA+, GIAC certifications, or equivalent vendor/cloud certifications. Core Competencies Enterprise firewall engineering and policy lifecycle management VPN, remote access, RSA/MFA, and token lifecycle operations Cloudflare, edge security, secure access, and Zero Trust support Content filtering, secure web/email gateway, and NAC operations Hybrid-cloud network security and secure connectivity Monitoring, logging, SIEM integration, and incident response support Security visibility, packet analysis, and advanced troubleshooting Vulnerability remediation, compliance evidence, and POA&M support Change management, documentation, reporting, and operational metrics Technical leadership, customer support, and cross-team collaboration Benefits 401(k) 401(k) matching Dental insurance Flexible schedule Flexible spending account Health insurance Health savings account Life insurance Paid time off Professional development assistance Referral program Retirement plan Tuition reimbursement Vision insurance
Configuration Manager
Lunar Outpost Arvada, Colorado
Job Description Job Description Are you passionate about shaping the future of humanity's presence in space? Lunar Outpost, an industry leader in space robotics and planetary vehicles, invites you to join our team! Lunar Outpost is dedicated to creating a permanent presence in space, while also driving positive impacts here on Earth. We are currently seeking a Configuration Manager to contribute to our mission in a dynamic startup environment. As a Configuration Manager, you will be responsible for monitoring, maintaining, and reporting on the accuracy and completeness of Configuration Item (CI) data. You will also manage the implementation, documentation, and approval of configuration changes, including leading Change Control Board (CCB) meetings. You will develop and enforce configuration management plans (CMPs), including defining, developing, and operating Configuration Management (CM) baselines. Working Conditions / Schedule: This position is required to be onsite Monday, Tuesday, Thursday, and Friday from 9:00 a.m. to 5:00 p.m. Where applicable, employees may work remotely on Wednesdays from 9:00 a.m. to 5:00 p.m. Additional hours may be required based on business needs. Key Responsibilities: Ensure all engineering documentation, drawings, bills of material (BOMs), and as-built configurations are accurately maintained and traceable Interface with systems engineering, supply chain, and quality teams to ensure consistency between hardware configurations and verified designs Manage functional and physical configuration audits (FCAs and PCAs) and prepare required reports and verification documentation Required Qualifications: Bachelor's Degree in Mechanical Engineering, Aerospace Engineering, Computer Science, or related discipline 7+ years of configuration management, DevOps, or Systems Administration in the aerospace or defense industry Experience with Configuration Management tools (Windchill, Bild, Jira, etc), and version control systems Self-motivated, focused, and driven to meet critical deadlines Excellent organization and time management skills Excellent written and oral communication skills U.S. Person Preferred Qualifications: Support compliance with ITAR, export control, and government data management requirements Hands on experience following AS9100 quality requirements and CMMI processes Compensation & Benefits: Compensation level and base salary are competitively structured and thoughtfully determined based on factors such as relevant skills, experience, education, and the scope of the role. Comprehensive health coverage: Medical, dental, and vision benefits, with 70% of premiums covered by the employer Paid time off: Three (3) weeks per year of vacation Retirement plan: Up to 4% employer match on 401(k) contributions Paid holidays: 11 company-recognized holidays Parental leave Educational reimbursement opportunities to support company objectives, continued learning, and career development Lunar Outpost Inc. is an equal opportunity employer. Lunar Outpost Inc. does not discriminate on the basis of race, color, religion, sex (including pregnancy, sexual orientation, and gender identity), national origin, ethnicity, age, disability, veteran status, genetic information, or any other characteristic protected by applicable law. All employees, including executives and human resources personnel, are expected to conduct themselves with professionalism and treat others with dignity and respect in accordance with this policy.
09/28/2026
Full time
Job Description Job Description Are you passionate about shaping the future of humanity's presence in space? Lunar Outpost, an industry leader in space robotics and planetary vehicles, invites you to join our team! Lunar Outpost is dedicated to creating a permanent presence in space, while also driving positive impacts here on Earth. We are currently seeking a Configuration Manager to contribute to our mission in a dynamic startup environment. As a Configuration Manager, you will be responsible for monitoring, maintaining, and reporting on the accuracy and completeness of Configuration Item (CI) data. You will also manage the implementation, documentation, and approval of configuration changes, including leading Change Control Board (CCB) meetings. You will develop and enforce configuration management plans (CMPs), including defining, developing, and operating Configuration Management (CM) baselines. Working Conditions / Schedule: This position is required to be onsite Monday, Tuesday, Thursday, and Friday from 9:00 a.m. to 5:00 p.m. Where applicable, employees may work remotely on Wednesdays from 9:00 a.m. to 5:00 p.m. Additional hours may be required based on business needs. Key Responsibilities: Ensure all engineering documentation, drawings, bills of material (BOMs), and as-built configurations are accurately maintained and traceable Interface with systems engineering, supply chain, and quality teams to ensure consistency between hardware configurations and verified designs Manage functional and physical configuration audits (FCAs and PCAs) and prepare required reports and verification documentation Required Qualifications: Bachelor's Degree in Mechanical Engineering, Aerospace Engineering, Computer Science, or related discipline 7+ years of configuration management, DevOps, or Systems Administration in the aerospace or defense industry Experience with Configuration Management tools (Windchill, Bild, Jira, etc), and version control systems Self-motivated, focused, and driven to meet critical deadlines Excellent organization and time management skills Excellent written and oral communication skills U.S. Person Preferred Qualifications: Support compliance with ITAR, export control, and government data management requirements Hands on experience following AS9100 quality requirements and CMMI processes Compensation & Benefits: Compensation level and base salary are competitively structured and thoughtfully determined based on factors such as relevant skills, experience, education, and the scope of the role. Comprehensive health coverage: Medical, dental, and vision benefits, with 70% of premiums covered by the employer Paid time off: Three (3) weeks per year of vacation Retirement plan: Up to 4% employer match on 401(k) contributions Paid holidays: 11 company-recognized holidays Parental leave Educational reimbursement opportunities to support company objectives, continued learning, and career development Lunar Outpost Inc. is an equal opportunity employer. Lunar Outpost Inc. does not discriminate on the basis of race, color, religion, sex (including pregnancy, sexual orientation, and gender identity), national origin, ethnicity, age, disability, veteran status, genetic information, or any other characteristic protected by applicable law. All employees, including executives and human resources personnel, are expected to conduct themselves with professionalism and treat others with dignity and respect in accordance with this policy.
Network Security Engineer
MDVIP LLC Boca Raton, Florida
Job Description Job Description Description: MDVIP: Transforming Primary Care, One Patient at a Time MDVIP is a national leader in personalized healthcare, empowering over 425,000 members to achieve their health and wellness goals through a network of more than 1,400 concierge primary care physicians. Our program emphasizes preventive medicine, offering comprehensive screenings, advanced diagnostics, and individualized wellness plans. Recognized as a Great Place to Work since 2018, MDVIP is committed to excellence in patient care and employee satisfaction. Position Summary The Network Security Engineer is an individual contributor role reporting to the Sr. Network Operations Manager. This is a contract-to-perm position (6-month contract), based in Boca Raton, FL (Hybrid), supporting the Boca Raton and Atlanta (ATL) data centers. This role provides dedicated engineering capacity for the ownership, hardening, and reliability of the organization's on-premises and hybrid infrastructure. The Network Security Engineer sustains a predictable remediation cadence across recurring security obligations - including monthly patching, zero-day response, vulnerability remediation, OS hardening, and cloud security score - while maintaining core platform services that underpin 24/7 operational reliability. This role is critical to reducing key-person risk, closing the capacity gap between rising compliance/audit workloads and existing staffing, and ensuring remediation tied to penetration tests, annual Security Risk Assessments (SRAs), and HIPAA assessments is completed on schedule. Key Responsibilities Security Remediation & Compliance Execute remediation for findings from penetration tests, annual Security Risk Assessments (SRAs), and HIPAA assessments, ensuring items are tracked to closure within defined SLAs; work with Project Managers, technology stack owners, and third-party resources to ensure timely delivery. Lead monthly patching cycles and rapid zero-day response across on-prem and hybrid server environments. Apply security remediations on infrastructure appliances including Cisco switches, firewalls (Palo Alto, Fortinet, Cisco Meraki), Linux appliances, and the virtual server environment and SANs (VMware, vSphere). Perform vulnerability remediation and OS/system hardening in line with established security baselines and audit requirements. Maintain a remediation burndown and support reporting on patch/vulnerability KPIs, including critical remediation timelines and cloud security score. Core Platform & Infrastructure Ownership Track Azure Security Score trends and drive remediation of flagged recommendations, providing regular posture reporting to leadership and audit stakeholders. Manage the full PKI infrastructure/SSL certificate lifecycle, including issuance, renewal, tracking, and remediation of expiring or non-compliant certificates, and manage key vault rotations for critical cloud-hosted applications. Utilize automation tools to deploy required machine certificates across the organization. Manage syslog retention and forwarding across on-premises and cloud infrastructure, supporting the Security team's SIEM ingestion, correlation, and compliance reporting needs. Administer network micro-segmentation using Illumio, including policy design, enforcement, and ongoing tuning. Review and administer security tools to harden network edge security, including next generation firewalls, SD-WAN, and switching, striving for zero trust networks. Manage wireless security, including network access control (NAC), utilizing Cisco wireless and HPE Aruba ClearPass. Administer Identity and Access Management/Privileged Access Management (IAM/PAM) using BeyondTrust for remote server access, including access reviews and privileged session controls. Manage and review Azure RBAC roles and access privileges, and perform Active Directory hardening in compliance with discovered vulnerabilities and best practices. Review and secure SDLC servers and hosted applications, both on-premises and in Azure, applying measures to keep all public endpoints secure. Operational Reliability & Risk Reduction Balance day-to-day operational demands (SSL renewals/rotations, security remediation, configuration hardening, troubleshooting) with planned, time-bound deliverables. Identify and reduce single-point-of-failure risk by documenting procedures and cross-training across PKI, AD, cloud access, segmentation, and patching functions. Partner with the Azure DevOps and Security teams to align on-prem/hybrid remediation with broader cloud governance and security initiatives. Escalate emerging risks, audit exceptions, and outage-driving conflicts between operational and remediation priorities to leadership. Key Competencies Analytical: synthesizes complex or diverse technical information, using intuition and experience to complement data. Collaboration: openly partners with security operations, DevOps, and business stakeholders, valuing diverse perspectives and building productive relationships. Communication: listens and responds effectively to stakeholder needs; writes and speaks clearly and persuasively. Initiative and personal accountability: identifies and creates solutions independently, sets and meets deadlines, and reports timely and prepared. Problem solving/decision making: thinks strategically, drawing on diverse sources to identify issues, risks, and trends and determine optimal, timely solutions. Strong troubleshooting skills and the ability to manage competing priorities between reactive operational work and scheduled remediation projects. Ability to support 24/7 platform reliability, including scheduled evening and weekend work for monthly patching cycles, zero-day response, and maintenance outside normal business hours. Ability to travel periodically between the Boca Raton, FL and Atlanta (ATL) data centers as needed. Requirements: Qualifications Required Qualifications Bachelor's degree in Computer Science, Information Security, or a related field; at least five (5) years of related business experience in network security, systems engineering, or infrastructure operations in an enterprise environment, or an equivalent combination of education and professional experience. Hands-on experience with both on-premises and cloud infrastructure platforms, including vulnerability management, patch management, and OS hardening across Windows and/or Linux server environments. Experience with PKI/SSL certificate lifecycle management and IAM/PAM tools (e.g., BeyondTrust or equivalent). Experience partnering with security operations/SIEM teams to onboard new log sources and ensure reliable syslog delivery from network infrastructure. Working knowledge of hybrid Active Directory/Microsoft Entra ID environments and familiarity with network segmentation concepts and tools (e.g., Illumio or comparable micro-segmentation platforms). Experience supporting audit and compliance remediation cycles, such as HIPAA assessments, SRAs, or penetration test findings. Proficiency with firewalls and network security appliances (Palo Alto, Fortinet, Cisco Meraki, Cisco switches), SD-WAN/next-generation firewall administration, and wireless security/NAC (Cisco wireless, HPE Aruba ClearPass). This is a hybrid role based in Boca Raton, FL, with periodic on-site support required at the Boca Raton and Atlanta (ATL) data centers. At no time may work be performed, or computer systems accessed, from outside of the U.S. Preferred Qualifications Vendor-specific certifications, Microsoft Azure, Security+, CISSP, GIAC, or an equivalent security certification. Scripting/automation experience (e.g., PowerShell) for remediation and hardening tasks. Why Join MDVIP? Be part of a mission-driven organization leading innovation in personalized healthcare. Drive transformation and growth in a dynamic, fast-paced environment. Competitive Compensation: Attractive base salary complemented by performance-based incentives. Comprehensive Benefits: Health, dental, vision insurance, and retirement plans. Professional Development: Access to ongoing training and leadership development programs. Positive Work Environment: Consistently recognized as a Great Place to Work , fostering a culture of collaboration and excellence. MDVIP is an Equal Opportunity Employer and is committed to fostering an inclusive and diverse workplace. We welcome applicants of all backgrounds and do not discriminate based on race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, veteran status, or any other protected status. We believe that diversity and inclusion drive innovation and strengthen our company culture. If you require accommodations during the application or interview process, please let us know, and we will be happy to assist. Pay Transparency: Our compensation reflects the cost of labor across appropriate US geographic markets. Pay is based on several factors including but not limited to market location and may vary depending on job-related knowledge, skills, and education/training and a candidate's work experience. Hired applicants are offered annual incentive compensation programs, subject to applicable eligibility requirements . click apply for full job details
09/28/2026
Full time
Job Description Job Description Description: MDVIP: Transforming Primary Care, One Patient at a Time MDVIP is a national leader in personalized healthcare, empowering over 425,000 members to achieve their health and wellness goals through a network of more than 1,400 concierge primary care physicians. Our program emphasizes preventive medicine, offering comprehensive screenings, advanced diagnostics, and individualized wellness plans. Recognized as a Great Place to Work since 2018, MDVIP is committed to excellence in patient care and employee satisfaction. Position Summary The Network Security Engineer is an individual contributor role reporting to the Sr. Network Operations Manager. This is a contract-to-perm position (6-month contract), based in Boca Raton, FL (Hybrid), supporting the Boca Raton and Atlanta (ATL) data centers. This role provides dedicated engineering capacity for the ownership, hardening, and reliability of the organization's on-premises and hybrid infrastructure. The Network Security Engineer sustains a predictable remediation cadence across recurring security obligations - including monthly patching, zero-day response, vulnerability remediation, OS hardening, and cloud security score - while maintaining core platform services that underpin 24/7 operational reliability. This role is critical to reducing key-person risk, closing the capacity gap between rising compliance/audit workloads and existing staffing, and ensuring remediation tied to penetration tests, annual Security Risk Assessments (SRAs), and HIPAA assessments is completed on schedule. Key Responsibilities Security Remediation & Compliance Execute remediation for findings from penetration tests, annual Security Risk Assessments (SRAs), and HIPAA assessments, ensuring items are tracked to closure within defined SLAs; work with Project Managers, technology stack owners, and third-party resources to ensure timely delivery. Lead monthly patching cycles and rapid zero-day response across on-prem and hybrid server environments. Apply security remediations on infrastructure appliances including Cisco switches, firewalls (Palo Alto, Fortinet, Cisco Meraki), Linux appliances, and the virtual server environment and SANs (VMware, vSphere). Perform vulnerability remediation and OS/system hardening in line with established security baselines and audit requirements. Maintain a remediation burndown and support reporting on patch/vulnerability KPIs, including critical remediation timelines and cloud security score. Core Platform & Infrastructure Ownership Track Azure Security Score trends and drive remediation of flagged recommendations, providing regular posture reporting to leadership and audit stakeholders. Manage the full PKI infrastructure/SSL certificate lifecycle, including issuance, renewal, tracking, and remediation of expiring or non-compliant certificates, and manage key vault rotations for critical cloud-hosted applications. Utilize automation tools to deploy required machine certificates across the organization. Manage syslog retention and forwarding across on-premises and cloud infrastructure, supporting the Security team's SIEM ingestion, correlation, and compliance reporting needs. Administer network micro-segmentation using Illumio, including policy design, enforcement, and ongoing tuning. Review and administer security tools to harden network edge security, including next generation firewalls, SD-WAN, and switching, striving for zero trust networks. Manage wireless security, including network access control (NAC), utilizing Cisco wireless and HPE Aruba ClearPass. Administer Identity and Access Management/Privileged Access Management (IAM/PAM) using BeyondTrust for remote server access, including access reviews and privileged session controls. Manage and review Azure RBAC roles and access privileges, and perform Active Directory hardening in compliance with discovered vulnerabilities and best practices. Review and secure SDLC servers and hosted applications, both on-premises and in Azure, applying measures to keep all public endpoints secure. Operational Reliability & Risk Reduction Balance day-to-day operational demands (SSL renewals/rotations, security remediation, configuration hardening, troubleshooting) with planned, time-bound deliverables. Identify and reduce single-point-of-failure risk by documenting procedures and cross-training across PKI, AD, cloud access, segmentation, and patching functions. Partner with the Azure DevOps and Security teams to align on-prem/hybrid remediation with broader cloud governance and security initiatives. Escalate emerging risks, audit exceptions, and outage-driving conflicts between operational and remediation priorities to leadership. Key Competencies Analytical: synthesizes complex or diverse technical information, using intuition and experience to complement data. Collaboration: openly partners with security operations, DevOps, and business stakeholders, valuing diverse perspectives and building productive relationships. Communication: listens and responds effectively to stakeholder needs; writes and speaks clearly and persuasively. Initiative and personal accountability: identifies and creates solutions independently, sets and meets deadlines, and reports timely and prepared. Problem solving/decision making: thinks strategically, drawing on diverse sources to identify issues, risks, and trends and determine optimal, timely solutions. Strong troubleshooting skills and the ability to manage competing priorities between reactive operational work and scheduled remediation projects. Ability to support 24/7 platform reliability, including scheduled evening and weekend work for monthly patching cycles, zero-day response, and maintenance outside normal business hours. Ability to travel periodically between the Boca Raton, FL and Atlanta (ATL) data centers as needed. Requirements: Qualifications Required Qualifications Bachelor's degree in Computer Science, Information Security, or a related field; at least five (5) years of related business experience in network security, systems engineering, or infrastructure operations in an enterprise environment, or an equivalent combination of education and professional experience. Hands-on experience with both on-premises and cloud infrastructure platforms, including vulnerability management, patch management, and OS hardening across Windows and/or Linux server environments. Experience with PKI/SSL certificate lifecycle management and IAM/PAM tools (e.g., BeyondTrust or equivalent). Experience partnering with security operations/SIEM teams to onboard new log sources and ensure reliable syslog delivery from network infrastructure. Working knowledge of hybrid Active Directory/Microsoft Entra ID environments and familiarity with network segmentation concepts and tools (e.g., Illumio or comparable micro-segmentation platforms). Experience supporting audit and compliance remediation cycles, such as HIPAA assessments, SRAs, or penetration test findings. Proficiency with firewalls and network security appliances (Palo Alto, Fortinet, Cisco Meraki, Cisco switches), SD-WAN/next-generation firewall administration, and wireless security/NAC (Cisco wireless, HPE Aruba ClearPass). This is a hybrid role based in Boca Raton, FL, with periodic on-site support required at the Boca Raton and Atlanta (ATL) data centers. At no time may work be performed, or computer systems accessed, from outside of the U.S. Preferred Qualifications Vendor-specific certifications, Microsoft Azure, Security+, CISSP, GIAC, or an equivalent security certification. Scripting/automation experience (e.g., PowerShell) for remediation and hardening tasks. Why Join MDVIP? Be part of a mission-driven organization leading innovation in personalized healthcare. Drive transformation and growth in a dynamic, fast-paced environment. Competitive Compensation: Attractive base salary complemented by performance-based incentives. Comprehensive Benefits: Health, dental, vision insurance, and retirement plans. Professional Development: Access to ongoing training and leadership development programs. Positive Work Environment: Consistently recognized as a Great Place to Work , fostering a culture of collaboration and excellence. MDVIP is an Equal Opportunity Employer and is committed to fostering an inclusive and diverse workplace. We welcome applicants of all backgrounds and do not discriminate based on race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, veteran status, or any other protected status. We believe that diversity and inclusion drive innovation and strengthen our company culture. If you require accommodations during the application or interview process, please let us know, and we will be happy to assist. Pay Transparency: Our compensation reflects the cost of labor across appropriate US geographic markets. Pay is based on several factors including but not limited to market location and may vary depending on job-related knowledge, skills, and education/training and a candidate's work experience. Hired applicants are offered annual incentive compensation programs, subject to applicable eligibility requirements . click apply for full job details
Network & Security Engineer
Citadel Completions LLC Dallas, Texas
Job Description Job Description Purpose Information technology is foundational to how Citadel Aviation operates at every site, from the systems that move work across the hangar floor and the shops to the platforms that support administrative staff. Secure, reliable network and identity infrastructure enable Citadel to operate without interruption, protect its work and its people, and meet its obligations to customers and partners. This role owns the design, operation, and security of Citadel's network and identity infrastructure across every Citadel site: reliable connectivity, a hardened identity platform, and a security posture that scales with the business. The role serves as Citadel's internal technical counterpart to the company's security SOC and managed detection and response (MDR) provider, partners with IT leadership and peers across IT and the business, owns assigned IT projects, and is accountable for the reliability of the network and the strength of the security posture across every site. Environment The technology stack includes Palo Alto next-generation firewalls, Cisco switching, Meraki wireless, Microsoft 365 with Entra ID for identity, Microsoft Defender for Endpoint and Intune for endpoint security and management, Tenable for vulnerability management, and KnowBe4 for security awareness. Security operations are delivered in partnership with an external SOC and MDR provider. Essential Job Functions Own the design, operation, and security of Citadel's network infrastructure across all sites. Maintain firewalls, switching, wireless, ISP connectivity, and backup connectivity. Design and implement upgrades to support growth, lead network design and turn-up for new Citadel facilities, and maintain secure connectivity between sites, between sites and the cloud, and for remote users. Own the design, operation, and security of Citadel's voice and unified communications infrastructure, including the company's calling system, VOIP infrastructure, and integration with Microsoft 365 communications. Maintain consistent network and security service quality across all Citadel sites. Travel between sites is heavier during the initial standardization phase across existing sites and during turn-up of new sites, and lighter once the environment reaches steady state. Perform in line with established KPIs and service-level targets, including network availability, security patch SLA, mean time to remediate vulnerabilities, mean time to respond to security incidents, and related measures. Track and report performance regularly to IT leadership. Serve as the internal technical counterpart to the company's security SOC and MDR provider, who operate detection, monitoring, and response. Partner closely on detection tuning, alert triage, investigation, and remediation. Own endpoint security policy across the Microsoft 365 platform, including Microsoft Defender for Endpoint configuration, conditional access, identity hardening, and Intune security baselines. Partner with the IT manager and the support team on day-to-day operation and enforcement. Own technical email security controls, including anti-phishing, anti-malware, secure transport, and tenant security configuration. Partner with the IT manager on user-facing reporting and response workflows. Run Citadel's vulnerability management process in partnership with the MDR provider. Operate scanning tooling, prioritize findings, and drive remediation across the IT organization. Own identity and access management hardening, including multi-factor authentication, conditional access policy, privileged access controls, and account lifecycle hygiene. Set program direction and content for Citadel's cybersecurity awareness program, including training plans, phishing simulation strategy, and ongoing user education topics. Partner with the IT manager, who runs the user-facing activities and reporting. Conduct third-party security review of new vendors, software platforms, and integrations before they enter the environment. Assess data handling, integration security, and ongoing risk; track approval and remediation. Coordinate Citadel's response to external security assessments, including penetration testing, cyber insurance reviews, customer security questionnaires, and regulatory inquiries. Scope engagements, work with vendors, maintain evidence, and track remediation. Deliver assigned IT projects within networking and security, and contribute to broader IT initiatives. Coordinate with IT leadership and peers, and engage external specialists and contractors as needed. Partner with IT leadership and peers in infrastructure, support, and software development on initiatives originating in those service lines. Contribute network and security expertise to keep delivery on track. Own vendor relationships within the network and security portfolio, including ISPs, network hardware, security tooling, and specialized contractors. Take on broader IT vendor relationships as assigned. Own the network and security operating budget, with broader budget scope as assigned. Track expenses, project upcoming needs, and provide input on annual IT budget planning. Own the on-call rotation for network and security incidents. Drive diagnosis, coordinate internal and external resources, and engage directly in resolution. Own incident communication for network and security events. Notify IT leadership and impacted business stakeholders, provide regular status updates throughout an incident, and deliver post-incident summaries with root cause and follow-up actions. Conduct periodic internal security audits across user access, identity hygiene, configuration baselines, vulnerability posture, and policy adherence. Remediate findings in partnership with the IT manager. Maintain and enforce IT network and security policies, procedures, runbooks, technical documentation, and asset inventory. Contribute to the creation and modification of policies as needed. Identify and propose improvements in network design, security posture, monitoring coverage, and tool consolidation. Deliver approved initiatives. Non-Essential Functions Running cables and installing hardware. Other duties as assigned. Minimum Qualifications or Experience Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Network Engineering, or a related technical discipline. Equivalent professional experience considered in lieu of degree. 5+ years of progressive experience in enterprise network engineering and information security. Hands-on experience with endpoint security platforms, including Microsoft Defender for Endpoint and modern identity and access management (Microsoft Entra ID, conditional access, multi-factor authentication). Experience operating in partnership with a managed detection and response (MDR) provider or security operations center (SOC). Experience with vulnerability management, including scanning tooling (Tenable Nessus or comparable), prioritization, and driving remediation across an organization. Experience operating in an environment with regular external security assessments (penetration testing, cyber insurance reviews, customer security audits) and remediating findings under deadline. Experience supporting multi-site operations or production environments where uptime, security, and consistency of service are operational requirements. Experience delivering IT projects from scope through completion, including scheduling, vendor coordination, and budget tracking. Demonstrated ability to communicate technical concepts clearly to non-technical business stakeholders and to senior leadership. Demonstrated experience adhering to and enforcing security best practices across network, endpoint, and identity domains. Preferred Qualifications or Experience Experience in aviation, aerospace, manufacturing, MRO, or other regulated operational environments. Hands-on experience with endpoint security platforms, including Microsoft Defender for Endpoint and modern identity and access management (Microsoft Entra ID, conditional access, multi-factor authentication). Active IT industry certifications such as CompTIA Security+ or Network+, Cisco CCNA / CCNP, Palo Alto PCNSA / PCNSE, Microsoft Security or Identity certifications, CISSP, GIAC, or comparable. Experience designing and bringing up network infrastructure at new sites or facilities. Experience with SD-WAN, zero-trust architecture, network segmentation, or related modern network design patterns. Familiarity with security frameworks (NIST, CIS) and audit or compliance work. Experience with security awareness platforms (KnowBe4 or comparable). Experience administering identity and access controls in a hybrid or cloud-first environment. Experience with VOIP or unified communications infrastructure. Supervisory Responsibilities This position has no direct reports. Coordinates day-to-day with external network and security contractors, managed-service providers, and the company's SOC and MDR partner. Provides technical guidance and security expertise to IT team peers and to business stakeholders as needed. Knowledge, Skills, and Other Attributes Deep technical expertise across enterprise networking (firewalls, switching, wireless, routing) and information security (endpoint, identity, vulnerability management, security monitoring). . click apply for full job details
09/28/2026
Full time
Job Description Job Description Purpose Information technology is foundational to how Citadel Aviation operates at every site, from the systems that move work across the hangar floor and the shops to the platforms that support administrative staff. Secure, reliable network and identity infrastructure enable Citadel to operate without interruption, protect its work and its people, and meet its obligations to customers and partners. This role owns the design, operation, and security of Citadel's network and identity infrastructure across every Citadel site: reliable connectivity, a hardened identity platform, and a security posture that scales with the business. The role serves as Citadel's internal technical counterpart to the company's security SOC and managed detection and response (MDR) provider, partners with IT leadership and peers across IT and the business, owns assigned IT projects, and is accountable for the reliability of the network and the strength of the security posture across every site. Environment The technology stack includes Palo Alto next-generation firewalls, Cisco switching, Meraki wireless, Microsoft 365 with Entra ID for identity, Microsoft Defender for Endpoint and Intune for endpoint security and management, Tenable for vulnerability management, and KnowBe4 for security awareness. Security operations are delivered in partnership with an external SOC and MDR provider. Essential Job Functions Own the design, operation, and security of Citadel's network infrastructure across all sites. Maintain firewalls, switching, wireless, ISP connectivity, and backup connectivity. Design and implement upgrades to support growth, lead network design and turn-up for new Citadel facilities, and maintain secure connectivity between sites, between sites and the cloud, and for remote users. Own the design, operation, and security of Citadel's voice and unified communications infrastructure, including the company's calling system, VOIP infrastructure, and integration with Microsoft 365 communications. Maintain consistent network and security service quality across all Citadel sites. Travel between sites is heavier during the initial standardization phase across existing sites and during turn-up of new sites, and lighter once the environment reaches steady state. Perform in line with established KPIs and service-level targets, including network availability, security patch SLA, mean time to remediate vulnerabilities, mean time to respond to security incidents, and related measures. Track and report performance regularly to IT leadership. Serve as the internal technical counterpart to the company's security SOC and MDR provider, who operate detection, monitoring, and response. Partner closely on detection tuning, alert triage, investigation, and remediation. Own endpoint security policy across the Microsoft 365 platform, including Microsoft Defender for Endpoint configuration, conditional access, identity hardening, and Intune security baselines. Partner with the IT manager and the support team on day-to-day operation and enforcement. Own technical email security controls, including anti-phishing, anti-malware, secure transport, and tenant security configuration. Partner with the IT manager on user-facing reporting and response workflows. Run Citadel's vulnerability management process in partnership with the MDR provider. Operate scanning tooling, prioritize findings, and drive remediation across the IT organization. Own identity and access management hardening, including multi-factor authentication, conditional access policy, privileged access controls, and account lifecycle hygiene. Set program direction and content for Citadel's cybersecurity awareness program, including training plans, phishing simulation strategy, and ongoing user education topics. Partner with the IT manager, who runs the user-facing activities and reporting. Conduct third-party security review of new vendors, software platforms, and integrations before they enter the environment. Assess data handling, integration security, and ongoing risk; track approval and remediation. Coordinate Citadel's response to external security assessments, including penetration testing, cyber insurance reviews, customer security questionnaires, and regulatory inquiries. Scope engagements, work with vendors, maintain evidence, and track remediation. Deliver assigned IT projects within networking and security, and contribute to broader IT initiatives. Coordinate with IT leadership and peers, and engage external specialists and contractors as needed. Partner with IT leadership and peers in infrastructure, support, and software development on initiatives originating in those service lines. Contribute network and security expertise to keep delivery on track. Own vendor relationships within the network and security portfolio, including ISPs, network hardware, security tooling, and specialized contractors. Take on broader IT vendor relationships as assigned. Own the network and security operating budget, with broader budget scope as assigned. Track expenses, project upcoming needs, and provide input on annual IT budget planning. Own the on-call rotation for network and security incidents. Drive diagnosis, coordinate internal and external resources, and engage directly in resolution. Own incident communication for network and security events. Notify IT leadership and impacted business stakeholders, provide regular status updates throughout an incident, and deliver post-incident summaries with root cause and follow-up actions. Conduct periodic internal security audits across user access, identity hygiene, configuration baselines, vulnerability posture, and policy adherence. Remediate findings in partnership with the IT manager. Maintain and enforce IT network and security policies, procedures, runbooks, technical documentation, and asset inventory. Contribute to the creation and modification of policies as needed. Identify and propose improvements in network design, security posture, monitoring coverage, and tool consolidation. Deliver approved initiatives. Non-Essential Functions Running cables and installing hardware. Other duties as assigned. Minimum Qualifications or Experience Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Network Engineering, or a related technical discipline. Equivalent professional experience considered in lieu of degree. 5+ years of progressive experience in enterprise network engineering and information security. Hands-on experience with endpoint security platforms, including Microsoft Defender for Endpoint and modern identity and access management (Microsoft Entra ID, conditional access, multi-factor authentication). Experience operating in partnership with a managed detection and response (MDR) provider or security operations center (SOC). Experience with vulnerability management, including scanning tooling (Tenable Nessus or comparable), prioritization, and driving remediation across an organization. Experience operating in an environment with regular external security assessments (penetration testing, cyber insurance reviews, customer security audits) and remediating findings under deadline. Experience supporting multi-site operations or production environments where uptime, security, and consistency of service are operational requirements. Experience delivering IT projects from scope through completion, including scheduling, vendor coordination, and budget tracking. Demonstrated ability to communicate technical concepts clearly to non-technical business stakeholders and to senior leadership. Demonstrated experience adhering to and enforcing security best practices across network, endpoint, and identity domains. Preferred Qualifications or Experience Experience in aviation, aerospace, manufacturing, MRO, or other regulated operational environments. Hands-on experience with endpoint security platforms, including Microsoft Defender for Endpoint and modern identity and access management (Microsoft Entra ID, conditional access, multi-factor authentication). Active IT industry certifications such as CompTIA Security+ or Network+, Cisco CCNA / CCNP, Palo Alto PCNSA / PCNSE, Microsoft Security or Identity certifications, CISSP, GIAC, or comparable. Experience designing and bringing up network infrastructure at new sites or facilities. Experience with SD-WAN, zero-trust architecture, network segmentation, or related modern network design patterns. Familiarity with security frameworks (NIST, CIS) and audit or compliance work. Experience with security awareness platforms (KnowBe4 or comparable). Experience administering identity and access controls in a hybrid or cloud-first environment. Experience with VOIP or unified communications infrastructure. Supervisory Responsibilities This position has no direct reports. Coordinates day-to-day with external network and security contractors, managed-service providers, and the company's SOC and MDR partner. Provides technical guidance and security expertise to IT team peers and to business stakeholders as needed. Knowledge, Skills, and Other Attributes Deep technical expertise across enterprise networking (firewalls, switching, wireless, routing) and information security (endpoint, identity, vulnerability management, security monitoring). . click apply for full job details
Security Engineer - Network & Identity (Contractor)
Sungrow USA Corporation Houston, Texas
Job Description Job Description About the Company : Sungrow North America is a leading provider of renewable energy solutions, specializing in the development and manufacturing of photovoltaic inverters and energy storage systems. The company offers a comprehensive range of products and services designed to optimize the performance and efficiency of solar power installations. Sungrow North America aims to provide sustainable and reliable energy solutions to meet the growing demand for clean power and is known for its commitment to innovation, high-quality standards, and exceptional customer service. Security Engineer - Network & Identity: The Security Engineer (Network & Identity) is a hands-on engineering role within the IT team responsible for designing, implementing, securing, and automating Sungrow USA's network security, PKI and certificate management, and identity & access infrastructure across on-premises, cloud, and SaaS environments. This role serves as the technical owner for network security architecture, cryptographic services, certificate lifecycle management, authentication, and access controls. The position focuses on Zero Trust security, network segmentation, certificate-based authentication, and identity protection to reduce organizational risk and enable secure business operations and platform ownership rather than SOC operations, threat monitoring, or incident response. Essential Duties and Responsibilities: Network Security Design, implement, and maintain secure enterprise network architectures across corporate offices, data centers, cloud platforms, and remote workforce environments. Architect network segmentation, Zero Trust access controls, and secure connectivity standards using Fortinet and Zscaler security solutions. Develop and maintain Zero Trust architectures across network, identity, endpoint, application, and cloud environments. Design and administer secure remote access using Zscaler Private Access, VPN technologies, and identity-aware access controls. Manage firewall policies, network security controls, routing security, DNS security, and hybrid-cloud connectivity. Design and support Network Access Control architectures using IEEE 802.1X, RADIUS, and certificate-based authentication. Assess network security posture, develop remediation plans, and drive continuous security improvements. Cryptography, PKI & Certificate Management Own the enterprise PKI, cryptography, and certificate lifecycle management architecture, standards, and governance program. Design and manage certificate-based authentication and machine identity solutions for users, devices, servers, applications, cloud workloads, and network infrastructure across Azure, AWS, and hybrid environments. Implement and maintain certificate lifecycle automation using Microsoft Cloud PKI, Keyfactor, CyberArk Certificate Manager, EJBCA, DigiCert, AppViewX, or comparable platforms. Manage certificate issuance, enrollment, discovery, deployment, monitoring, renewal, revocation, auditing, and compliance across the enterprise. Design and support cryptographic services and certificate-based security controls, including TLS/mTLS, code signing, PKI trust hierarchies, certificate-based authentication, SCEP, PKCS, and machine identities. Establish PKI and cryptographic standards, key management practices, and security controls to support Zero Trust, regulatory compliance, and enterprise security requirements. Troubleshoot and resolve complex certificate, cryptographic, trust chain, authentication, and secure communications issues across enterprise systems and applications. Identity & Access Define authentication and authorization standards for workforce, partner, application, service, and machine identities. Design, implement, and maintain Microsoft Entra ID architecture, tenant governance, and identity security controls. Develop, test, and enforce Conditional Access policies and Zero Trust access controls. Implement and maintain MFA, passwordless authentication, phishing-resistant authentication, and Microsoft Entra ID Protection capabilities. Design and support enterprise SSO and federation integrations using SAML, OAuth 2.0, OpenID Connect, and SCIM. Implement least-privilege and risk-based access models across enterprise platforms. Administer RBAC, administrative separation, Microsoft Entra Privileged Identity Management, and least-privilege access controls. Govern application registrations, service principals, enterprise applications, API permissions, and managed identities. Support B2B collaboration, guest-user governance, external workforce access, and third-party identity integrations. Design and implement security controls across Microsoft Azure and AWS environments. Apply least privilege, RBAC, encryption, secrets management, and secure configuration standards to on-prem and cloud resources. Automate identity provisioning and deprovisioning, access governance, certificate management, configuration validation, and security operations. Create reusable secure-by-default templates and reduce manual administration through automation and orchestration Conduct access reviews, entitlement certifications, and identity governance activities. Education or Desired License and Certificates: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field, or equivalent professional experience. Microsoft Certified: Identity and Access Administrator Associate (SC-300) preferred. Microsoft Certified: Azure Security Engineer Associate (AZ-500) preferred. CCNA, Fortinet, Zscaler, AWS Security, CISSP, CISM, Terraform, or relevant PKI certification preferred Preferred Experience & Qualifications: 5+ years of experience in security engineering, identity & access management (IAM), network security, cloud security, or a related enterprise IT discipline. Hands-on experience with Microsoft Entra ID, including Conditional Access, MFA, SSO, Identity Protection, PIM, RBAC, identity governance, and modern authentication protocols (SAML, OAuth, OpenID Connect, SCIM). Experience designing, implementing, and securing enterprise identity, privileged access, and machine identity solutions across hybrid and multi-cloud environments. Hands-on experience with Fortinet, Zscaler (ZIA/ZPA), Zero Trust architectures, least-privilege access models, and network security controls. Experience designing and operating enterprise PKI, certificate lifecycle management, certificate-based authentication, and machine identity platforms such as Keyfactor, DigiCert, EJBCA, AppViewX, CyberArk Certificate Manager, or similar solutions. Experience securing Azure and AWS environments, including identity, networking, encryption, secrets management, logging, and security monitoring. Experience with PAM and IGA platforms such as CyberArk, Delinea, BeyondTrust, SailPoint, Saviynt, or similar technologies. Experience integrating identity, network, cloud, and security telemetry with SIEM and security operations platforms. Strong automation and Infrastructure as Code skills using PowerShell, Python, Microsoft Graph API, REST APIs, Terraform, or similar technologies. Strong troubleshooting skills across authentication, federation, certificates, PKI, network security, cloud access, application integrations, and enterprise identity services. Knowledge of cybersecurity and compliance frameworks including SOC 2, ISO/IEC 27001, NIST CSF, NIST 800-63, CIS Controls, Zero Trust, and NERC CIP. Competencies: Mandarin fluency preferred but not required. Strong analytical, troubleshooting, and problem-solving skills. Ability to work independently and collaboratively in a fast-paced environment. Excellent communication, stakeholder management, and technical documentation skills. Strong organization, attention to detail, initiative, and ownership. Ability to balance security, reliability, usability, scalability, and business requirements. Proactive approach to automation, standardization, and continuous improvement. Travel 5%-20% Work Location and Status: Full time, Hybrid at any Sungrow USA office in Phoenix, Costa Mesa, or Houston No visa sponsorship Compensation: Compensation commensurate with experience Competitive salary and annual bonus eligibility Comprehensive benefits package including health, dental, vision, and retirement plans Strong personal and company growth opportunities Sungrow is an equal opportunity employer. Due to strong interest in this position, Sungrow will only reach out to those candidates who best meet the requirements. Thank you for your interest in Sungrow.
09/28/2026
Full time
Job Description Job Description About the Company : Sungrow North America is a leading provider of renewable energy solutions, specializing in the development and manufacturing of photovoltaic inverters and energy storage systems. The company offers a comprehensive range of products and services designed to optimize the performance and efficiency of solar power installations. Sungrow North America aims to provide sustainable and reliable energy solutions to meet the growing demand for clean power and is known for its commitment to innovation, high-quality standards, and exceptional customer service. Security Engineer - Network & Identity: The Security Engineer (Network & Identity) is a hands-on engineering role within the IT team responsible for designing, implementing, securing, and automating Sungrow USA's network security, PKI and certificate management, and identity & access infrastructure across on-premises, cloud, and SaaS environments. This role serves as the technical owner for network security architecture, cryptographic services, certificate lifecycle management, authentication, and access controls. The position focuses on Zero Trust security, network segmentation, certificate-based authentication, and identity protection to reduce organizational risk and enable secure business operations and platform ownership rather than SOC operations, threat monitoring, or incident response. Essential Duties and Responsibilities: Network Security Design, implement, and maintain secure enterprise network architectures across corporate offices, data centers, cloud platforms, and remote workforce environments. Architect network segmentation, Zero Trust access controls, and secure connectivity standards using Fortinet and Zscaler security solutions. Develop and maintain Zero Trust architectures across network, identity, endpoint, application, and cloud environments. Design and administer secure remote access using Zscaler Private Access, VPN technologies, and identity-aware access controls. Manage firewall policies, network security controls, routing security, DNS security, and hybrid-cloud connectivity. Design and support Network Access Control architectures using IEEE 802.1X, RADIUS, and certificate-based authentication. Assess network security posture, develop remediation plans, and drive continuous security improvements. Cryptography, PKI & Certificate Management Own the enterprise PKI, cryptography, and certificate lifecycle management architecture, standards, and governance program. Design and manage certificate-based authentication and machine identity solutions for users, devices, servers, applications, cloud workloads, and network infrastructure across Azure, AWS, and hybrid environments. Implement and maintain certificate lifecycle automation using Microsoft Cloud PKI, Keyfactor, CyberArk Certificate Manager, EJBCA, DigiCert, AppViewX, or comparable platforms. Manage certificate issuance, enrollment, discovery, deployment, monitoring, renewal, revocation, auditing, and compliance across the enterprise. Design and support cryptographic services and certificate-based security controls, including TLS/mTLS, code signing, PKI trust hierarchies, certificate-based authentication, SCEP, PKCS, and machine identities. Establish PKI and cryptographic standards, key management practices, and security controls to support Zero Trust, regulatory compliance, and enterprise security requirements. Troubleshoot and resolve complex certificate, cryptographic, trust chain, authentication, and secure communications issues across enterprise systems and applications. Identity & Access Define authentication and authorization standards for workforce, partner, application, service, and machine identities. Design, implement, and maintain Microsoft Entra ID architecture, tenant governance, and identity security controls. Develop, test, and enforce Conditional Access policies and Zero Trust access controls. Implement and maintain MFA, passwordless authentication, phishing-resistant authentication, and Microsoft Entra ID Protection capabilities. Design and support enterprise SSO and federation integrations using SAML, OAuth 2.0, OpenID Connect, and SCIM. Implement least-privilege and risk-based access models across enterprise platforms. Administer RBAC, administrative separation, Microsoft Entra Privileged Identity Management, and least-privilege access controls. Govern application registrations, service principals, enterprise applications, API permissions, and managed identities. Support B2B collaboration, guest-user governance, external workforce access, and third-party identity integrations. Design and implement security controls across Microsoft Azure and AWS environments. Apply least privilege, RBAC, encryption, secrets management, and secure configuration standards to on-prem and cloud resources. Automate identity provisioning and deprovisioning, access governance, certificate management, configuration validation, and security operations. Create reusable secure-by-default templates and reduce manual administration through automation and orchestration Conduct access reviews, entitlement certifications, and identity governance activities. Education or Desired License and Certificates: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field, or equivalent professional experience. Microsoft Certified: Identity and Access Administrator Associate (SC-300) preferred. Microsoft Certified: Azure Security Engineer Associate (AZ-500) preferred. CCNA, Fortinet, Zscaler, AWS Security, CISSP, CISM, Terraform, or relevant PKI certification preferred Preferred Experience & Qualifications: 5+ years of experience in security engineering, identity & access management (IAM), network security, cloud security, or a related enterprise IT discipline. Hands-on experience with Microsoft Entra ID, including Conditional Access, MFA, SSO, Identity Protection, PIM, RBAC, identity governance, and modern authentication protocols (SAML, OAuth, OpenID Connect, SCIM). Experience designing, implementing, and securing enterprise identity, privileged access, and machine identity solutions across hybrid and multi-cloud environments. Hands-on experience with Fortinet, Zscaler (ZIA/ZPA), Zero Trust architectures, least-privilege access models, and network security controls. Experience designing and operating enterprise PKI, certificate lifecycle management, certificate-based authentication, and machine identity platforms such as Keyfactor, DigiCert, EJBCA, AppViewX, CyberArk Certificate Manager, or similar solutions. Experience securing Azure and AWS environments, including identity, networking, encryption, secrets management, logging, and security monitoring. Experience with PAM and IGA platforms such as CyberArk, Delinea, BeyondTrust, SailPoint, Saviynt, or similar technologies. Experience integrating identity, network, cloud, and security telemetry with SIEM and security operations platforms. Strong automation and Infrastructure as Code skills using PowerShell, Python, Microsoft Graph API, REST APIs, Terraform, or similar technologies. Strong troubleshooting skills across authentication, federation, certificates, PKI, network security, cloud access, application integrations, and enterprise identity services. Knowledge of cybersecurity and compliance frameworks including SOC 2, ISO/IEC 27001, NIST CSF, NIST 800-63, CIS Controls, Zero Trust, and NERC CIP. Competencies: Mandarin fluency preferred but not required. Strong analytical, troubleshooting, and problem-solving skills. Ability to work independently and collaboratively in a fast-paced environment. Excellent communication, stakeholder management, and technical documentation skills. Strong organization, attention to detail, initiative, and ownership. Ability to balance security, reliability, usability, scalability, and business requirements. Proactive approach to automation, standardization, and continuous improvement. Travel 5%-20% Work Location and Status: Full time, Hybrid at any Sungrow USA office in Phoenix, Costa Mesa, or Houston No visa sponsorship Compensation: Compensation commensurate with experience Competitive salary and annual bonus eligibility Comprehensive benefits package including health, dental, vision, and retirement plans Strong personal and company growth opportunities Sungrow is an equal opportunity employer. Due to strong interest in this position, Sungrow will only reach out to those candidates who best meet the requirements. Thank you for your interest in Sungrow.
Staff / Principal Platform Engineer
AppGate Cybersecurity, Inc. New York, New York
Job Description Job Description Staff / Principal Platform Engineer Location: New York City Hybrid Department: AI Platform & Infrastructure Team Reports to: Vangie Shue - Principal Engineering Manager About AppGate AppGate secures and protects an organization's most valuable assets with its high performance Zero Trust Network Access (ZTNA) solution and Cyber Advisory Services. AppGate ZTNA is the only direct-routed Zero Trust solution built for peak performance, superior protection and seamless interoperability. AppGate Cyber Advisory Services harden your security posture and ensure business continuity. AppGate safeguards Fortune 500 enterprises and government agencies worldwide. Learn more at About the Role As we expand our platform, we are standing up a new AI Platform & Infrastructure team: the engine room of AppGate's AI strategy. This team owns the infrastructure layer that every next-generation security capability is built on, from network observability to AI-driven threat detection and the secure operation of emerging Agentic AI systems. We're looking for a Staff or Principal Platform Engineer to build and operate the foundational platform behind AppGate's AI products. You combine deep DevOps and cloud infrastructure expertise with hands-on experience operationalizing AI/ML systems, and you treat observability as a first-class engineering discipline. This is a rare opportunity to join a small, private, high-impact company where your work directly shapes the architecture, reliability and core platform that defines the future of security. You'll own the platform spanning APIs, cloud and self-managed solutions and AI/ML infrastructure, and you'll make it fast, reliable and observable at scale. This is a high-leverage, hands-on role for a senior engineer who sets technical direction and still ships. Key Responsibilities Build the Platform: design, build and operate the cloud infrastructure, services and pipelines that AppGate's AI and cloud products run on. Strong experience with self-managed technologies (kafka, elasticsearch) and Kubernetes are a must. Infrastructure as Code & Deployment Orchestration: Terraform and Helm for cloud provisioning, service deployment and configuration management. Implement Observability: instrument APIs, cloud services and AI/ML infrastructure with metrics, logging, tracing and alerting, and define SLOs and operational health metrics that teams trust. Data Platform: real-time and batch data ingestion pipelines, feature stores and data quality. Integrations: third-party connectors, APIs and platform integrations. Operationalize AI/ML: build model serving and inference pipelines, experiment tracking and the MLOps tooling for deployment, versioning, drift monitoring and lifecycle management. Engineer for reliability & automation: apply SRE practices to reduce toil, improve resilience and keep latency and uptime within target across the platform. Automate everything - deliver infrastructure-as-code, CI/CD and self-service tooling so product teams ship safely and quickly. Set technical direction: define platform standards, architecture and best practices, and raise the engineering bar through design reviews and mentorship. Collaborate cross-functionally: partner with data scientists, product teams and leadership to align platform investment with AppGate's strategic vision. Required Qualifications Experience: extensive platform, infrastructure or SRE engineering experience, with a track record of operating production systems at scale. Staff-level candidates typically bring 8+ years and Principal-level candidates 12+ years, though we hire on demonstrated impact. DevOps depth: strong command of infrastructure-as-code (Terraform or equivalent), CI/CD, containers and orchestration (Docker, Kubernetes), and cloud platforms (AWS). Observability expertise: hands-on experience implementing observability across APIs, cloud services and distributed systems using tools such as Prometheus, Grafana, OpenTelemetry, the ELK stack or comparable, including SLO and error-budget practice. Data platform skills: familiarity with real-time and batch ingestion pipelines, feature stores and data quality at production scale. Engineering craft: fluency in a primary backend language (Python, Go or similar) and a strong bias toward automation, testing and reliable, maintainable systems. Leadership: a record of setting technical direction, leading complex initiatives across teams, mentoring senior engineers, while still being very hands-on. Mindset: pragmatic, rigorous and ownership-driven. You thrive in a small, fast-moving environment and enjoy building foundations others depend on. Preferred Qualifications AI/ML infrastructure: experience building or operating model serving, inference pipelines and MLOps tooling such as MLflow, Kubeflow, SageMaker or equivalent, including model deployment, versioning and drift monitoring. Networking & Zero Trust fundamentals: working knowledge of the network and routing layer beneath modern access solutions - TCP/IP, TLS, tunneling/overlay networks, packet routing and filtering, DNS and firewalling - and familiarity with Zero Trust Network Access (ZTNA) or adjacent domains (VPN, SDP, SASE, software-defined networking). You can reason about traffic paths, latency and throughput end-to-end, and instrument the network as a first-class observability signal. Compensation Staff: 185k-225k base Principal: 215k-270k base We offer performance bonuses and considerable equity. AppGate is An Equal Opportunity/Affirmative Action Employer and a federal contractor subject to the Rehabilitation Act of 1973 and the Vietnam Era Veterans Readjustment Assistance Act of 1974 as amended, and their corresponding regulations. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class. Further, AppGate is an affirmative action employer committed to taking positive steps to employ, advance in employment and otherwise afford equal employment opportunity to protected veterans and individuals with disabilities. In furtherance of AppGate's policy regarding affirmative action and equal employment opportunity, AppGate has developed a written affirmative action program. This program is available for review upon request by any applicant or employee during normal business hours by contacting the company's EEO Coordinator.
09/28/2026
Full time
Job Description Job Description Staff / Principal Platform Engineer Location: New York City Hybrid Department: AI Platform & Infrastructure Team Reports to: Vangie Shue - Principal Engineering Manager About AppGate AppGate secures and protects an organization's most valuable assets with its high performance Zero Trust Network Access (ZTNA) solution and Cyber Advisory Services. AppGate ZTNA is the only direct-routed Zero Trust solution built for peak performance, superior protection and seamless interoperability. AppGate Cyber Advisory Services harden your security posture and ensure business continuity. AppGate safeguards Fortune 500 enterprises and government agencies worldwide. Learn more at About the Role As we expand our platform, we are standing up a new AI Platform & Infrastructure team: the engine room of AppGate's AI strategy. This team owns the infrastructure layer that every next-generation security capability is built on, from network observability to AI-driven threat detection and the secure operation of emerging Agentic AI systems. We're looking for a Staff or Principal Platform Engineer to build and operate the foundational platform behind AppGate's AI products. You combine deep DevOps and cloud infrastructure expertise with hands-on experience operationalizing AI/ML systems, and you treat observability as a first-class engineering discipline. This is a rare opportunity to join a small, private, high-impact company where your work directly shapes the architecture, reliability and core platform that defines the future of security. You'll own the platform spanning APIs, cloud and self-managed solutions and AI/ML infrastructure, and you'll make it fast, reliable and observable at scale. This is a high-leverage, hands-on role for a senior engineer who sets technical direction and still ships. Key Responsibilities Build the Platform: design, build and operate the cloud infrastructure, services and pipelines that AppGate's AI and cloud products run on. Strong experience with self-managed technologies (kafka, elasticsearch) and Kubernetes are a must. Infrastructure as Code & Deployment Orchestration: Terraform and Helm for cloud provisioning, service deployment and configuration management. Implement Observability: instrument APIs, cloud services and AI/ML infrastructure with metrics, logging, tracing and alerting, and define SLOs and operational health metrics that teams trust. Data Platform: real-time and batch data ingestion pipelines, feature stores and data quality. Integrations: third-party connectors, APIs and platform integrations. Operationalize AI/ML: build model serving and inference pipelines, experiment tracking and the MLOps tooling for deployment, versioning, drift monitoring and lifecycle management. Engineer for reliability & automation: apply SRE practices to reduce toil, improve resilience and keep latency and uptime within target across the platform. Automate everything - deliver infrastructure-as-code, CI/CD and self-service tooling so product teams ship safely and quickly. Set technical direction: define platform standards, architecture and best practices, and raise the engineering bar through design reviews and mentorship. Collaborate cross-functionally: partner with data scientists, product teams and leadership to align platform investment with AppGate's strategic vision. Required Qualifications Experience: extensive platform, infrastructure or SRE engineering experience, with a track record of operating production systems at scale. Staff-level candidates typically bring 8+ years and Principal-level candidates 12+ years, though we hire on demonstrated impact. DevOps depth: strong command of infrastructure-as-code (Terraform or equivalent), CI/CD, containers and orchestration (Docker, Kubernetes), and cloud platforms (AWS). Observability expertise: hands-on experience implementing observability across APIs, cloud services and distributed systems using tools such as Prometheus, Grafana, OpenTelemetry, the ELK stack or comparable, including SLO and error-budget practice. Data platform skills: familiarity with real-time and batch ingestion pipelines, feature stores and data quality at production scale. Engineering craft: fluency in a primary backend language (Python, Go or similar) and a strong bias toward automation, testing and reliable, maintainable systems. Leadership: a record of setting technical direction, leading complex initiatives across teams, mentoring senior engineers, while still being very hands-on. Mindset: pragmatic, rigorous and ownership-driven. You thrive in a small, fast-moving environment and enjoy building foundations others depend on. Preferred Qualifications AI/ML infrastructure: experience building or operating model serving, inference pipelines and MLOps tooling such as MLflow, Kubeflow, SageMaker or equivalent, including model deployment, versioning and drift monitoring. Networking & Zero Trust fundamentals: working knowledge of the network and routing layer beneath modern access solutions - TCP/IP, TLS, tunneling/overlay networks, packet routing and filtering, DNS and firewalling - and familiarity with Zero Trust Network Access (ZTNA) or adjacent domains (VPN, SDP, SASE, software-defined networking). You can reason about traffic paths, latency and throughput end-to-end, and instrument the network as a first-class observability signal. Compensation Staff: 185k-225k base Principal: 215k-270k base We offer performance bonuses and considerable equity. AppGate is An Equal Opportunity/Affirmative Action Employer and a federal contractor subject to the Rehabilitation Act of 1973 and the Vietnam Era Veterans Readjustment Assistance Act of 1974 as amended, and their corresponding regulations. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class. Further, AppGate is an affirmative action employer committed to taking positive steps to employ, advance in employment and otherwise afford equal employment opportunity to protected veterans and individuals with disabilities. In furtherance of AppGate's policy regarding affirmative action and equal employment opportunity, AppGate has developed a written affirmative action program. This program is available for review upon request by any applicant or employee during normal business hours by contacting the company's EEO Coordinator.
Security Control Assessor Representative (SCAR)
Dark Wolf Solutions Ogden, Utah
Job Description Job Description Dark Wolf is hiring in Ogden, Utah for a Security Controls Assessor Representative (SCAR). This position works with fellow SCARs, Security Controls Assessors (SCAs), Information System Security Managers (ISSM), Program Managers (PM), and Authorizing Official (AO) representatives to obtain and maintain Authority toOperate (ATO) approvals for various AFNWC weapon subsystems and supporting IT systems by adhering to the Risk Management Framework (RMF). This position is responsible for reviewing, assessing, and providing advice/recommendations to the SCA/AO throughout the RMF process for assigned programs. This is an on-site position on Hill Air Force Base. Required Qualifications: 10+ years of relevant work experience, including experience as an ISSO, ISSM, SCA, SCAR, or similar roles. Mastery of the NIST Risk Management Framework (RMF), including all seven steps and in-depth knowledge of NIST SP 800-53 security controls and their application to complex government information systems. Comprehensive technical understanding and practical experience with Windows/Linux OS hardening (including STIGs), network protocols (TCP/IP), firewall configurations, IDS/IPS, cloud security (FedRAMP, AWS/Azure GovCloud), virtualization, and database security. Hands-on experience with vulnerability scanning (ACAS/Tenable.sc/Nessus), configuration assessment (SCAP/STIG tools), and log analysis/SIEM platforms (e.g., Splunk, Elastic Stack) to identify and evaluate security posture. Expert-level knowledge of DoD/Agency-specific security requirements (e.g., DoDI 8500.01, CNSSI 1253), IAVMs, and STIG implementation/verification. Proven ability to develop and review System Security Plans (SSPs), write comprehensive Security Assessment Reports (SARs), and manage Plans of Action and Milestones (POA&Ms). Strong capability in analyzing control effectiveness, identifying critical risks, and articulating residual risk to Authorizing Officials (AOs). A Bachelors degree in a relevant field or 3+ years of relevant experience in lieu of degree. US Citizenship and an active Top Secret security clearance with SCI eligibility. This location is located on Hill AFB in Ogden, Utah. On-site presence is expected 5 days per week. We are hiring for multiple levels, with base salary estimates ranging from $130,000.00 - $190,000.00, commensurate on experience and technical skillset. We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role. We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories. In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.
09/28/2026
Full time
Job Description Job Description Dark Wolf is hiring in Ogden, Utah for a Security Controls Assessor Representative (SCAR). This position works with fellow SCARs, Security Controls Assessors (SCAs), Information System Security Managers (ISSM), Program Managers (PM), and Authorizing Official (AO) representatives to obtain and maintain Authority toOperate (ATO) approvals for various AFNWC weapon subsystems and supporting IT systems by adhering to the Risk Management Framework (RMF). This position is responsible for reviewing, assessing, and providing advice/recommendations to the SCA/AO throughout the RMF process for assigned programs. This is an on-site position on Hill Air Force Base. Required Qualifications: 10+ years of relevant work experience, including experience as an ISSO, ISSM, SCA, SCAR, or similar roles. Mastery of the NIST Risk Management Framework (RMF), including all seven steps and in-depth knowledge of NIST SP 800-53 security controls and their application to complex government information systems. Comprehensive technical understanding and practical experience with Windows/Linux OS hardening (including STIGs), network protocols (TCP/IP), firewall configurations, IDS/IPS, cloud security (FedRAMP, AWS/Azure GovCloud), virtualization, and database security. Hands-on experience with vulnerability scanning (ACAS/Tenable.sc/Nessus), configuration assessment (SCAP/STIG tools), and log analysis/SIEM platforms (e.g., Splunk, Elastic Stack) to identify and evaluate security posture. Expert-level knowledge of DoD/Agency-specific security requirements (e.g., DoDI 8500.01, CNSSI 1253), IAVMs, and STIG implementation/verification. Proven ability to develop and review System Security Plans (SSPs), write comprehensive Security Assessment Reports (SARs), and manage Plans of Action and Milestones (POA&Ms). Strong capability in analyzing control effectiveness, identifying critical risks, and articulating residual risk to Authorizing Officials (AOs). A Bachelors degree in a relevant field or 3+ years of relevant experience in lieu of degree. US Citizenship and an active Top Secret security clearance with SCI eligibility. This location is located on Hill AFB in Ogden, Utah. On-site presence is expected 5 days per week. We are hiring for multiple levels, with base salary estimates ranging from $130,000.00 - $190,000.00, commensurate on experience and technical skillset. We are strictly looking for direct, full-time W2 employees. We do not engage with third-party staffing agencies, C2C, or 1099 independent contractors for this role. We are proud to be an EEO/AA employer Minorities/Women/Veterans/Disabled and other protected categories. In compliance with federal law, all persons hired will be required to verify identity, confirm US Citizenship, and complete the required employment eligibility verification upon hire.
Secret Cleared Lead Palo Alto Firewall Engineer MIDs (11:00pm-7:30am)
Conceras Beltsville, Maryland
Job Description Job Description PALO ALTO FIREWALL ENGINEER Position Description Description This is an opening for a Firewall Engineer/Team Lead to support a Department of State (DoS) Bureau of Diplomatic Technology (DT) program. This program provides transparent, interconnected systems and security supporting the DoS in successfully carrying out its U.S. foreign policy mission. DT provides enterprise architecture design, engineering, operations and maintenance support services for servers, networks, firewalls, and enterprise applications across the Department. Program is named "Vanguard" and is an IT consolidation consisting of the Department's servers, mainframes, network devices, network perimeter, anti-virus engineering, public key infrastructure (PKI)/biometrics/encryption, monitoring tools, telephony, mobile computing platform, virtual environment, and enclave design/security engineering. This is a firewall engineer position within the Vanguard 2025 program, providing general Tier II monitoring, configuration, and support to multiple firewalls and perimeter security systems. The position directly supports DoS on-site to provide perimeter security protection to over 80,000 customers globally. This is a hybrid position based out of Beltsville, MD with 3 days on-site. Shift is MIDs (11:00pm-7:30am), Sun-Thurs after training. During the 6-8 week training period, it will be 5 days on-site Mon-Fri (7:00am-3:30pm). Your responsibilities will include: Provides Tier 2 support in the monitoring, management, and troubleshooting of perimeter devices to include firewalls, proxies, and mail transport agents. Along with being a Team Lead for the MID shift. As the Lead you will be expectant to give a turnover of events for the past shift, create weekly Quad Chart, and be able to direct work to other firewall operations staff. Must be able to guide other staff on tasks assigned to the team. Review request for time off and stay in touch with the manager on all events happening on the shift. Monitor Service Now application for Firewall Operations incident and service requests. Implements firewall rules and policies, perform troubleshoots of firewall, email, and Proxy platforms for performance issues. Analyzes network traffic captures. Escalates issues as required to Tier 3 staff and monitors issues throughout a problem's life cycle. Performs recurring maintenance activities such as device reboots and software upgrades on perimeter devices. Records and reports on firewall operations, utilization, and maintenance. Collaborate across Bureaus and Agencies to implement and repair network changes as they relate to perimeter security devices. Support Diplomatic Security Computer Incident Response Team (CIRT) by implementing block requests for IP's, Websites, and Email addresses. Update architecture diagrams using Visio. Monitor and perform health checks on multiple perimeter security devices. Draft, coordinate and publish outage notifications as required. Update shift logs and provide reports to leadership daily. Maintain standard operating procedures (SOP), work instructions, and other working documents. Attend weekly teleconferences, onsite meetings, and participate in working groups as required. Qualifications Required Education & Experience BA degree and 6 years of experience; may accept additional experience in lieu of degree. In Depth experience using Palo Alto Firewalls and Panorama monitoring tools to troubleshoot and configure a Firewall infrastructure. Strong understanding of networking, proxy, and packet filtering technologies. Minimum 5 years IT Customer Support experience (Tier I and/or Tier II). First-hand experience with supporting the monitoring and configuration of Firewall/DMZ infrastructure including Network and Application Firewall Packet Filtering technologies (StoneGate, Palo Alto, FortiGate, Azure Firewall, Cloudflare, Cisco Email Security Appliances (ESA), A10 proxy devices). CLI experience preferred. Experienced in utilizing network monitoring tools such as Nagios and NeuralStar. Basic Microsoft Windows Server 2016 implementation and troubleshooting from a security/firewall perspective. Experienced with TCP/IP network implementation and troubleshooting. Required Clearance US Citizenship. An Interim Secret clearance is required to start work and requires eligibility to obtain a Top Secret clearance. Powered by JazzHR ZpLPHj5F0L
09/28/2026
Full time
Job Description Job Description PALO ALTO FIREWALL ENGINEER Position Description Description This is an opening for a Firewall Engineer/Team Lead to support a Department of State (DoS) Bureau of Diplomatic Technology (DT) program. This program provides transparent, interconnected systems and security supporting the DoS in successfully carrying out its U.S. foreign policy mission. DT provides enterprise architecture design, engineering, operations and maintenance support services for servers, networks, firewalls, and enterprise applications across the Department. Program is named "Vanguard" and is an IT consolidation consisting of the Department's servers, mainframes, network devices, network perimeter, anti-virus engineering, public key infrastructure (PKI)/biometrics/encryption, monitoring tools, telephony, mobile computing platform, virtual environment, and enclave design/security engineering. This is a firewall engineer position within the Vanguard 2025 program, providing general Tier II monitoring, configuration, and support to multiple firewalls and perimeter security systems. The position directly supports DoS on-site to provide perimeter security protection to over 80,000 customers globally. This is a hybrid position based out of Beltsville, MD with 3 days on-site. Shift is MIDs (11:00pm-7:30am), Sun-Thurs after training. During the 6-8 week training period, it will be 5 days on-site Mon-Fri (7:00am-3:30pm). Your responsibilities will include: Provides Tier 2 support in the monitoring, management, and troubleshooting of perimeter devices to include firewalls, proxies, and mail transport agents. Along with being a Team Lead for the MID shift. As the Lead you will be expectant to give a turnover of events for the past shift, create weekly Quad Chart, and be able to direct work to other firewall operations staff. Must be able to guide other staff on tasks assigned to the team. Review request for time off and stay in touch with the manager on all events happening on the shift. Monitor Service Now application for Firewall Operations incident and service requests. Implements firewall rules and policies, perform troubleshoots of firewall, email, and Proxy platforms for performance issues. Analyzes network traffic captures. Escalates issues as required to Tier 3 staff and monitors issues throughout a problem's life cycle. Performs recurring maintenance activities such as device reboots and software upgrades on perimeter devices. Records and reports on firewall operations, utilization, and maintenance. Collaborate across Bureaus and Agencies to implement and repair network changes as they relate to perimeter security devices. Support Diplomatic Security Computer Incident Response Team (CIRT) by implementing block requests for IP's, Websites, and Email addresses. Update architecture diagrams using Visio. Monitor and perform health checks on multiple perimeter security devices. Draft, coordinate and publish outage notifications as required. Update shift logs and provide reports to leadership daily. Maintain standard operating procedures (SOP), work instructions, and other working documents. Attend weekly teleconferences, onsite meetings, and participate in working groups as required. Qualifications Required Education & Experience BA degree and 6 years of experience; may accept additional experience in lieu of degree. In Depth experience using Palo Alto Firewalls and Panorama monitoring tools to troubleshoot and configure a Firewall infrastructure. Strong understanding of networking, proxy, and packet filtering technologies. Minimum 5 years IT Customer Support experience (Tier I and/or Tier II). First-hand experience with supporting the monitoring and configuration of Firewall/DMZ infrastructure including Network and Application Firewall Packet Filtering technologies (StoneGate, Palo Alto, FortiGate, Azure Firewall, Cloudflare, Cisco Email Security Appliances (ESA), A10 proxy devices). CLI experience preferred. Experienced in utilizing network monitoring tools such as Nagios and NeuralStar. Basic Microsoft Windows Server 2016 implementation and troubleshooting from a security/firewall perspective. Experienced with TCP/IP network implementation and troubleshooting. Required Clearance US Citizenship. An Interim Secret clearance is required to start work and requires eligibility to obtain a Top Secret clearance. Powered by JazzHR ZpLPHj5F0L
Configuration Manager - JAX
Tactical Air Support Jacksonville, Florida
Job Description Job Description Tactical Air Support Inc.Configuration Manager Jacksonville, FLSalary range: $110,000 - $135,000, DOESummaryTactical Air Support (TAS) is seeking a Configuration Manager to serve as the enterprise leader responsible for establishing and maintaining configuration management (CM) processes that ensure integrity, traceability, and control of product data throughout the entire lifecycle. This role plays a critical part in maintaining compliance with aerospace regulatory standards, contract compliance, and ensuring alignment across engineering, manufacturing, quality, supply chain, and program management.This position will communicate and collaborate with aircraft maintenance, pilots, engineering team members, and program management. The Configuration Manager will report to the VP of Engineering and Technology.Key ResponsibilitiesDevelop, implement, and maintain CM plans and procedures in compliance with aerospace standards (AS9100, EIA-649).Control and manage product baselines.Lead and coordinate Change Control Boards, including review, approval, and implementation of engineering changes.Ensure accurate documentation, version control, and release of drawings, specifications, and technical data packages.Maintain traceability of requirements, parts, assemblies, and system configurations.Manage configuration audits (FCAs, PCAs)Support customer and regulatory audits, including FAA, DoD, and other regulatory authorities as applicableRegular travel to various work sites throughout the U.S. may be required and ability to support detachments as assignedRequirementsBachelor 's degree in Engineering, Aerospace, Systems Engineering or related technical field, advanced degree preferred.Five (5+) years of CM experience in aerospace, defense, or highly regulated manufacturing environments.Strong knowledge of configuration management principles and standards (EIA-649, MIL-HDBK-61, AS9100).Strong knowledge and experience with engineering software tools like CAD and SolidWorks PDM.Excellent organizational, communication, and cross-functional collaboration skills.Ability to manage multiple programs and deadlines in a fast-paced environment.Eligible for U.S. government security clearance; current Secret clearance preferred.Must be lawfully eligible to work in the United States, complete a U.S. government I-9 form, and successfully pass a government background check.Work AuthorizationMust be lawfully eligible to work in the United States and complete a U.S. government I-9 FormPre-employment, random, or for cause drug/alcohol testing (including marijuana) requiredOccasional aircraft hangar or warehouse environment with exposure to loud noises, fumes from engines and chemicals, unpredictable climate (hot/cold), and electrical shock, or trip or slip hazards.May be exposed to or required to handle hazardous materialsTactical Air Support is an EEO/AA/DEI/Disabled/Veterans EmployerI understand that if an offer of employment is made, I may be required to undergo investigation into all statements and references contained in this application. Said investigation may include credit, driving, criminal background, professional references, and other background checks. By applying for this position, I authorize post-offer investigation into my background as necessary and as a condition of employment. Note: a criminal conviction does not constitute an automatic bar to employment and will be considered only as it substantially relates to the position in question. California Only: You have a right to receive public records documenting an arrest, indictment, conviction, civil judicial action, tax lien, or outstanding judgment that are obtained without using the services of an investigative consumer reporting agency (CA Civil Code 1786.53). Pursuant to California law, you are entitled to waive this right.
09/28/2026
Full time
Job Description Job Description Tactical Air Support Inc.Configuration Manager Jacksonville, FLSalary range: $110,000 - $135,000, DOESummaryTactical Air Support (TAS) is seeking a Configuration Manager to serve as the enterprise leader responsible for establishing and maintaining configuration management (CM) processes that ensure integrity, traceability, and control of product data throughout the entire lifecycle. This role plays a critical part in maintaining compliance with aerospace regulatory standards, contract compliance, and ensuring alignment across engineering, manufacturing, quality, supply chain, and program management.This position will communicate and collaborate with aircraft maintenance, pilots, engineering team members, and program management. The Configuration Manager will report to the VP of Engineering and Technology.Key ResponsibilitiesDevelop, implement, and maintain CM plans and procedures in compliance with aerospace standards (AS9100, EIA-649).Control and manage product baselines.Lead and coordinate Change Control Boards, including review, approval, and implementation of engineering changes.Ensure accurate documentation, version control, and release of drawings, specifications, and technical data packages.Maintain traceability of requirements, parts, assemblies, and system configurations.Manage configuration audits (FCAs, PCAs)Support customer and regulatory audits, including FAA, DoD, and other regulatory authorities as applicableRegular travel to various work sites throughout the U.S. may be required and ability to support detachments as assignedRequirementsBachelor 's degree in Engineering, Aerospace, Systems Engineering or related technical field, advanced degree preferred.Five (5+) years of CM experience in aerospace, defense, or highly regulated manufacturing environments.Strong knowledge of configuration management principles and standards (EIA-649, MIL-HDBK-61, AS9100).Strong knowledge and experience with engineering software tools like CAD and SolidWorks PDM.Excellent organizational, communication, and cross-functional collaboration skills.Ability to manage multiple programs and deadlines in a fast-paced environment.Eligible for U.S. government security clearance; current Secret clearance preferred.Must be lawfully eligible to work in the United States, complete a U.S. government I-9 form, and successfully pass a government background check.Work AuthorizationMust be lawfully eligible to work in the United States and complete a U.S. government I-9 FormPre-employment, random, or for cause drug/alcohol testing (including marijuana) requiredOccasional aircraft hangar or warehouse environment with exposure to loud noises, fumes from engines and chemicals, unpredictable climate (hot/cold), and electrical shock, or trip or slip hazards.May be exposed to or required to handle hazardous materialsTactical Air Support is an EEO/AA/DEI/Disabled/Veterans EmployerI understand that if an offer of employment is made, I may be required to undergo investigation into all statements and references contained in this application. Said investigation may include credit, driving, criminal background, professional references, and other background checks. By applying for this position, I authorize post-offer investigation into my background as necessary and as a condition of employment. Note: a criminal conviction does not constitute an automatic bar to employment and will be considered only as it substantially relates to the position in question. California Only: You have a right to receive public records documenting an arrest, indictment, conviction, civil judicial action, tax lien, or outstanding judgment that are obtained without using the services of an investigative consumer reporting agency (CA Civil Code 1786.53). Pursuant to California law, you are entitled to waive this right.
On-Site Audio-Visual Support Specialist
AV-Tech Media Solutions Atlanta, Georgia
Job Description Job Description Role: The On-Site AV Support Specialist is responsible for the daily execution and technical support of audiovisual services for the Client. This position provides exceptional customer service while supporting conference rooms, meeting spaces, training programs, events, and integrated AV systems throughout the facilities. The On-Site AV Support Specialist, is expected to maintain a working knowledge of current AV technologies, troubleshoot technical issues, and independently learn and support new technologies as they are introduced. You will be located at the client's Atlanta, GA location, reporting to AV-Tech's Manager - Onsite Services, for all company obligations under the agreement between client and AV-Tech. Your primary responsibilities will be: The essential functions include, but are not limited to the following: Provide outstanding customer service by establishing and maintaining excellent working relationships with clients, facility representatives, company employees, and vendors. Support client training programs by serving as an in-room technician and providing technical assistance as needed. Setup, test, operate, and tear down audiovisual equipment, including video data display systems, computers, audio systems, web- and videoconference equipment, video switchers, audio processing equipment, microphones, video cameras, digital signage, video walls, and integrated AV systems. Provide technical support for Microsoft Teams Rooms, including operation, troubleshooting, and support of meeting controls, cameras, microphones, displays, and conferencing peripherals. Demonstrate working knowledge of and the ability to operate ProPresenter, PVP, PowerPoint, Stream Deck, and other presentation and content-management platforms used to support meetings, presentations, events, and live productions. Operate and support video wall systems, including content routing, source selection, display configuration, and basic troubleshooting. Provide on-call technical support for conference rooms, meeting spaces, and event spaces, including troubleshooting and resolving issues with AV systems, Microsoft Teams Rooms, presentation systems, video walls, and related technology. Maintain a working knowledge of current AV technologies, software, and systems used throughout the facilities, with the ability to independently learn, operate, troubleshoot, and support new technologies. Conduct periodic inspections of AV equipment and systems to identify needed repairs, replacements, upgrades, or other areas requiring attention. Provide weekly written reports documenting work performed, notable technical issues, and other relevant activities, and complete accurate and legible paperwork and documentation in a timely manner. Participate in onsite team conference calls, providing updates and contributing to team development and continuous improvement. Perform all work in accordance with established safety procedures. Comply with all company policies and procedures and adhere to company standards. Core Expectations Customer-focused and professional in all interactions. Reliable, responsive, and able to provide on-call technical support when required. Capable of working independently while contributing effectively as part of a team. Willing and able to continuously develop technical knowledge and adapt to new AV technologies. Detail-oriented with strong communication, documentation, and problem-solving skills.
09/28/2026
Full time
Job Description Job Description Role: The On-Site AV Support Specialist is responsible for the daily execution and technical support of audiovisual services for the Client. This position provides exceptional customer service while supporting conference rooms, meeting spaces, training programs, events, and integrated AV systems throughout the facilities. The On-Site AV Support Specialist, is expected to maintain a working knowledge of current AV technologies, troubleshoot technical issues, and independently learn and support new technologies as they are introduced. You will be located at the client's Atlanta, GA location, reporting to AV-Tech's Manager - Onsite Services, for all company obligations under the agreement between client and AV-Tech. Your primary responsibilities will be: The essential functions include, but are not limited to the following: Provide outstanding customer service by establishing and maintaining excellent working relationships with clients, facility representatives, company employees, and vendors. Support client training programs by serving as an in-room technician and providing technical assistance as needed. Setup, test, operate, and tear down audiovisual equipment, including video data display systems, computers, audio systems, web- and videoconference equipment, video switchers, audio processing equipment, microphones, video cameras, digital signage, video walls, and integrated AV systems. Provide technical support for Microsoft Teams Rooms, including operation, troubleshooting, and support of meeting controls, cameras, microphones, displays, and conferencing peripherals. Demonstrate working knowledge of and the ability to operate ProPresenter, PVP, PowerPoint, Stream Deck, and other presentation and content-management platforms used to support meetings, presentations, events, and live productions. Operate and support video wall systems, including content routing, source selection, display configuration, and basic troubleshooting. Provide on-call technical support for conference rooms, meeting spaces, and event spaces, including troubleshooting and resolving issues with AV systems, Microsoft Teams Rooms, presentation systems, video walls, and related technology. Maintain a working knowledge of current AV technologies, software, and systems used throughout the facilities, with the ability to independently learn, operate, troubleshoot, and support new technologies. Conduct periodic inspections of AV equipment and systems to identify needed repairs, replacements, upgrades, or other areas requiring attention. Provide weekly written reports documenting work performed, notable technical issues, and other relevant activities, and complete accurate and legible paperwork and documentation in a timely manner. Participate in onsite team conference calls, providing updates and contributing to team development and continuous improvement. Perform all work in accordance with established safety procedures. Comply with all company policies and procedures and adhere to company standards. Core Expectations Customer-focused and professional in all interactions. Reliable, responsive, and able to provide on-call technical support when required. Capable of working independently while contributing effectively as part of a team. Willing and able to continuously develop technical knowledge and adapt to new AV technologies. Detail-oriented with strong communication, documentation, and problem-solving skills.

Modal Window

  • Home
  • Contact
  • About Us
  • FAQs
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • IT blog
  • Facebook
  • Twitter
  • LinkedIn
  • Youtube
© 2008-2026 IT Job Board