Secure Intranet Architect
Aegis Power Systems, Inc.
Murphy, United States of America
22 days ago
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
English Experience level
SeniorJob location
Murphy, United States of America
Tech stack
Java
Microsoft Windows
Microsoft Active Directory
Artificial Intelligence
Applications Architecture
LAMP
Collaborative Software
Information Systems
Linux
Django
Drupal
Identity and Access Management
Python
Knowledge Management
Lightweight Directory Access Protocols (LDAP)
Role-Based Access Control
Zero Trust Network Access
Security Assertion Markup Language (SAML)
SharePoint
Selinux
Information Technology
Docker
Vulnerability Analysis
Job description
Aegis is seeking a Secure Intranet Architect to design, deploy, and manage a highly secure, air-gapped internal content and knowledge management ecosystem. This role owns the full lifecycle architecture, hardening, and governance of an offline collaboration platform supporting sensitive defense-related operations., Architecture & Deployment
- Design and deploy a secure, air-gapped intranet platform (SharePoint, XWiki, Drupal, or Plone).
- Architect infrastructure within mixed Linux/Windows offline environments.
- Implement secure local AI and train on internal knowledge assets.
- Establish high-availability and redundancy strategies for internal networks.
Security & Compliance
- Implement Role-Based Access Control (RBAC) and integrate with LDAP/Active Directory/SAML.
- Enforce Zero Data Egress standards and harden systems (SELinux/AppArmor, firewall controls).
- Conduct security audits, vulnerability assessments, and compliance reviews.
- Eliminate external telemetry and external dependencies.
Offline Operations
- Maintain local package repositories and secure update processes.
- Deploy and manage containerized services (Docker/Podman).
- Maintain secure internal container registries and isolated application environments.
Governance & Documentation
- Develop architecture documentation, configuration baselines, and operational playbooks.
- Support cybersecurity audits and provide internal training.
Requirements
- 5+ years in secure web application architecture (LAMP, Java/Spring, or Python/Django).
- Experience operating in air-gapped or offline environments.
- IAM integration experience (LDAP, AD, SAML).
- Proficiency in Docker or Podman.
- Experience managing internal package repositories and secure patching processes.
- U.S. Person status (ITAR compliant).
Education
- Bachelor's Degree in Computer Science, required
- Master's degree in information systems or information technology, preferred, * Experience in DoD, aerospace, or defense manufacturing environments.
- Familiarity with NIST 800-171, CMMC, or zero-trust architectures.
- Background in secure knowledge management systems.
Benefits & conditions
Professional development assistance, Health insurance, Retirement plan, Paid time off, Vision insurance, Health savings account, Dental insurance, Flexible spending account, * Medical, Dental, Vision insurance
- Health Savings Account (HSA) & Flexible Spending Account (FSA)
- Life insurance
- Paid time off
- Professional development assistance
- Employee Assistance Program (EAP)
- Retirement plan
- Relocation assistance
About the company
Aegis Power Systems is a leading designer and manufacturer of advanced power conversion solutions for defense and aerospace applications. We are committed to engineering excellence, operational integrity, and mission-critical reliability.