> Markdown version of [/jobs/ext/1340246-lead-unix-linux-security-engineer](https://www.wearedevelopers.com/jobs/ext/1340246-lead-unix-linux-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Unix/Linux Security Engineer - **Company:** Strategic Staffing Solutions - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $156,000.0 - $166,400.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Systems Engineering, User Authentication, Bash Shell, Ubuntu (Operating System), CentOS, System Configuration, Linux, Identity and Access Management, Python (Programming Language), Kerberos (Protocol), Lightweight Directory Access Protocols (LDAP), Linux Security Modules, Red Hat Enterprise Linux, Ansible, Enterprise Software Applications, Firewalls (Computer Science), Puppet, Operating System Security - **Published:** July 18, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=83893ff685b73e8c ## About the Role * 8+ years of experience as a Unix/Linux Systems Engineer, Linux Security Engineer, or similar role. * Strong hands-on experience with System Security Services Daemon (SSSD). * Experience configuring and supporting: * Kerberos * LDAP * Active Directory integration * Advanced experience administering: * Red Hat Enterprise Linux (RHEL) * CentOS * Ubuntu * Strong knowledge of: * Linux authentication * PAM configuration * sudo policy management * Enterprise identity management * Experience troubleshooting: * Authentication failures * Password expiration * SSSD caching * Domain joins * Cross-realm trust issues * Experience implementing Linux hardening and secure access models. * Experience coordinating with firewall teams on secure Linux communications. * Automation experience using Bash, Python, Ansible, or Puppet. Preferred Qualifications * Experience supporting large enterprise Linux environments. * Background in the financial services or insurance industry. * Familiarity with Endpoint Privileged Management (EPM) solutions. * Previous USAA experience is a plus, but not required. Top Skills * SSSD (System Security Services Daemon) - Expert-level experience * Kerberos, LDAP, and Active Directory Integration - Advanced experience * Enterprise Linux Administration (RHEL/CentOS/Ubuntu) - Advanced experience ## Description Our client is seeking a Lead Unix/Linux Security Engineer to support and enhance enterprise Linux authentication, identity integration, and operating system security across a large-scale environment. This hands-on engineering role is responsible for configuring, troubleshooting, and maintaining secure authentication services while partnering with infrastructure, security, and networking teams to ensure secure and reliable access to critical systems. The ideal candidate has extensive experience with SSSD, Kerberos, LDAP, Active Directory integration, and Linux security hardening, along with a strong background supporting enterprise Linux environments., * Configure, maintain, and troubleshoot enterprise Linux authentication services using SSSD. * Integrate Linux systems with Active Directory, LDAP, and Kerberos. * Diagnose and resolve authentication failures, SSSD caching issues, domain join problems, and cross-realm trust issues. * Configure and maintain Linux PAM stack and sudo policies. * Implement Linux security hardening and secure access best practices. * Coordinate with firewall and network teams to establish secure communication between Unix/Linux servers. * Create, modify, and manage Linux groups and permissions supporting enterprise applications. * Troubleshoot production issues related to password expiration, access permissions, group privileges, and authentication. * Support endpoint privileged management solutions and enterprise identity integrations. * Develop and maintain automation using Bash, Python, Ansible, or Puppet. * Participate in production change windows outside of normal business hours as needed. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Automate everything via NodeJS and Puppeteer](https://www.wearedevelopers.com/videos/322-automate-everything-via-nodejs-and-puppeteer) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [The Memory Leak That Ate Our Cluster: A Postmortem](https://www.wearedevelopers.com/videos/2057-the-memory-leak-that-ate-our-cluster-a-postmortem) ## Related Articles - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)