|
Readiness Delivered.iKratos has an exciting opportunity for an onsite Security System Administrator.iThe Security System Administrator will work closely with cybersecurity compliance personnel to implement security controls, maintain secure configurations, identify and remediate vulnerabilities, support security assessments, and provide technical evidence demonstrating effective implementation of security requirements derived from the Risk Management Framework (RMF) and Cybersecurity Maturity Model Certification (CMMC). Security System Administration Knowledge, Skills, and Responsibilities
- Administer and maintain physical and virtual Windows and Linux servers and associated infrastructure.
- Configure, secure, monitor, troubleshoot, and maintain operating systems, applications, virtualization platforms, and network devices.
- Administer Microsoft Active Directory, Group Policy, user and computer accounts, authentication mechanisms, and access controls.
- Manage Linux systems, including user access, services, package management, SSH, system security, logging, and security configurations.
- Administer and maintain virtualization infrastructure, including virtual machines, hypervisors, virtual networking, and associated security controls.
- Configure and maintain network infrastructure, including switches, VLANs, and ACLs, and other security-related network technologies.
- Implement and maintain secure configuration baselines for operating systems, applications, network devices, and virtualization platforms.
- Apply security patches, updates, and configuration changes in accordance with established patch management procedures.
- Support vulnerability assessments and remediate identified vulnerabilities within established timelines.
- Support incident response activities, including identification, containment, investigation, remediation, and recovery.
- Implement and maintain access controls based on least privilege and separation-of-duties principles.
- Manage privileged and administrative accounts and support periodic access reviews.
- Support the implementation and ongoing operation of security controls required by NIST 800-53, NIST 800-171, and NN-801.
- Assist with NN-801 assessments and provide technical evidence demonstrating implementation and effectiveness of security controls.
- Support activities in the development and maintenance of System Security Plans (SSPs), Plans of Action and Milestones (POA&Ms), configuration documentation, network diagrams, asset inventories, and other cybersecurity documentation.
- Maintain accurate records of system configurations and administrative actions.
- Develop and maintain scripts and automation to improve system administration, security validation, compliance monitoring, and evidence collection.
- Participate in security reviews, configuration audits, vulnerability assessments, penetration testing activities, and other cybersecurity assessments.
- Troubleshoot complex problems spanning operating systems, applications, virtualization, networking, authentication, and security technologies.
- Ensure system changes are appropriately tested, documented, authorized, and implemented.
- Maintain awareness of emerging vulnerabilities, security threats, technologies, and applicable cybersecurity requirements.
- Perform other duties related to the secure operation and maintenance of the enclave as assigned.
Keyword: Senior Security System Administrator
Required Experience:
- Current or ability to obtain a DoW Secret (or Interim Secret) Security Clearance
- BS in Information Technology, Cybersecurity, or similar subject
- 3i5 years of hands-on systems administration or cybersecurity experience preferred, with experience supporting Windows and Linux environments, preferably supporting a government customer
- Industry Certification to meet DoDD 8140.03 IAT II requirements. (Security+, CASP+, etc.)
- Ability to execute, manage, and coordinate technically complex changes on an operational IT system
- Strong interpersonal and communication skills; ability to triage competing priorities, train users as needed on various topics, and interact positively with management and end-users
- Independent problem-solving, self-direction
- Works well independently and on a team
Preferred Skills/Experience
- Experience administering systems within a CUI or otherwise regulated environment
- Experience implementing or maintaining NIST SP 800-171 controls
- Experience supporting NIST SP 800-171A or similar cybersecurity assessments
- Experience with DISA STIGs and/or other system-hardening standards
- Experience with DISA/DoW cybersecurity tools such as SCAP Compliance Checker, EvaluateSTIG, and STIG Viewer
- Experience with VMware, Hyper-V, or other enterprise virtualization platforms
- Experience with enterprise firewalls and managed network switches
- Experience developing PowerShell, Bash, or Python automation
#LI-Onsite Competitive salary based on experience and education Kratos is valued for our ability to design and deliver leading edge, resilient solutions for aerospace communication, control, awareness and mission success across a continuum of offeringsifrom commercial to tailored custom solutions and integrated programs. Customers trust us to stay relevant and know we are in it for the long-haul. We bring both the capability and confidence that our customers value and depend on. And we always deliver.
From: Kratos Defense
|