Senior IT Systems & Security Engineer (CedD226)
About the role
Role Description:
We are seeking a Senior Technical Implementation Engineer to join Commercial Cyber Operations. This person will lead hands-on technical work across varied customer environments. Compliance Leads will own NIST SP 800-171 interpretation and assessment readiness; this engineer will design, implement, and validate the systems that support those requirements.
Responsibilities:
The listed responsibilities are not exhaustive and additional responsibilities may be assigned based on the evolving needs of the organization. We are seeking a dynamic individual who is able to adapt and take on new responsibilities as they arise.
- Assess unfamiliar customer environments and lead technical implementation plans with the Compliance Lead.
- Configure and secure Microsoft 365, GCC High, Azure, Entra ID, Active Directory, Google Workspace, Google Cloud Identity, and hybrid environments.
- Design, migrate, and operate endpoint-management programs across multiple mobile device management and unified endpoint management platforms, including Jamf and Microsoft Intune.
- Implement identity, multifactor authentication, least privilege, endpoint security, logging, vulnerability management, patching, backup, and recovery controls.
- Configure and troubleshoot Windows, macOS, iOS, Android, networks, firewalls, VPNs, segmentation, DNS, and secure remote access.
- Work directly with customer IT teams, service providers, and vendors to resolve complex technical issues.
- Validate completed work and produce clear configuration records, diagrams, evidence, and runbooks.
- Guide other implementation engineers and turn repeatable work into standards, scripts, and automation.
Minimum Experience and Qualifications:
- Senior-level experience designing, administering, securing, and troubleshooting varied business IT environments.
- Strong hands-on experience with both Microsoft and Google environments, including Microsoft 365, Entra ID, Active Directory, and Google Workspace.
- Broad mobile device management and unified endpoint management experience across multiple platforms, with strong practical experience using Jamf and Microsoft Intune.
- Experience managing Windows, macOS, iOS, and Android devices.
- Experience with networking, firewalls, VPNs, identity, logging, endpoint protection, vulnerability management, patching, and backup systems.
- Ability to lead customer implementations, make sound technical decisions independently, and explain those decisions in plain English.
- Ability to produce accurate technical documentation and work effectively in a remote, asynchronous environment.
- US citizenship with CUI access.
Preferred Experience and Qualifications:
- GCC High, Azure, Google Cloud Identity, Apple Business Manager, Android
- Enterprise, Microsoft Defender, or Microsoft Purview experience.
- Defense contractor or government experience, particularly with NIST SP 800-171 or NIST SP 800-53 controls.
- Cybersecurity Maturity Model Certification (CMMC) 2.0 experience.
- PowerShell, shell scripting, infrastructure as code, security monitoring, or workflow-automation experience.
- Relevant Microsoft, Google, Apple, cloud, networking, or security certifications.
Travel Expectations: 10%-25%
Full compensation packages are based on candidate experience. Compensation ranges are established using national benchmarking data and apply across all geographic locations within the United States.
Remote - USA
$148,750
—
$201,250 USD