Systems Engineer

State of Kansas
Shawnee County, KS, United States
17 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$90,000.0 - $105,000.0
Working hours
Regular working hours
Job source

Tech stack

Active Directory Domain Controllers Amazon Web Services Systems Engineering User Authentication Microsoft Azure Microsoft Online Services Cyber Security Domain Name System (DNS) Identity and Access Management Kerberos (Protocol) Windows Servers
+16 more
OAuth Public Key Infrastructure Windows PowerShell Role-Based Access Control Azure Active Directory Zero Trust Network Access Security Information and Event Management Single Sign-On Software Engineering Systems Integration Scripting Cloud Platform System Virtual Environment Microsoft InTune Information Technology Firewall Services Module

Job description

Kansas Legislature seeks a talented and highly motivated individual to join the Kansas Legislative Office of Information Services team as a Systems Engineer. The Systems Engineer oversees the design, administration, and security of the organization’s hybrid platforms. This role is responsible for managing on-premises Active Directory, Entra ID, and related Microsoft cloud services, ensuring secure authentication, authorization, and directory integrity. The engineer applies security best practices, monitors identity threats, and strengthens the organization’s overall identity security posture by working closely with security engineers.

The Systems Engineer works closely with security, application development, and business teams to ensure security is integrated into all aspects of technology operations. The Systems Engineer develops and maintains on-premises and cloud platforms, implements enterprise policies for platforms, and supports compliance with applicable laws, regulations, and industry best practices.

The successful candidate will bring professional experience in most if not all aspects of systems engineering. Candidates who meet some or most of the required skills are encouraged to apply., Systems Administration

  • Administer and maintain on-premises Active Directory, and Entra ID platform.
  • Manage user lifecycle operations, group policies (GPO), organizational units (OUs), role-based access (RBAC), and conditional access policies.
  • Administer M365 suite including Exchange hybrid and Intune for the organization.
  • Configure and secure Azure cloud services including Entra Connect, Enterprise Apps, and SSO integrations.
  • Maintain, upgrade, and patch windows servers in virtual environments.

Systems Security

  • Implement and enforce identity security standards including MFA, Privileged Access Management (PAM), and Zero Trust principles.
  • Monitor and respond to identity-related security incidents using tools such as Microsoft Entra, Defender, XDR, and SIEM platforms.
  • Develop and maintain identity governance workflows including access reviews, entitlement management, and privileged account auditing.
  • Conduct routine assessments to identify misconfigurations or risks in Active Directory, Entra ID, and related security infrastructure.
  • Work with security engineers to maintain network segmentations and firewall rules.

Continuous improvement

  • Support directory modernization initiatives, cloud migration, and hybrid identity architecture improvements.
  • Automate recurring administrative and security tasks using PowerShell and other scripting tools.
  • Maintain documentation of identity systems, security procedures, and operational playbooks.
  • Stay current on identity security trends, vulnerabilities, and Microsoft cloud advancements.

Requirements

  • Five (5) years of progressively responsible experience in information technology as systems administrator/engineer.
  • Bachelor’s degree in information technology, cybersecurity, or related field or equivalent professional experience).
  • Strong understanding of Active Directory architecture, DNS, Group Policy, and domain controllers.
  • Experience administering AD, Entra ID, Conditional Access, and RBAC principles.
  • Working understanding of networking, operating systems, and cloud environments.
  • Knowledge of identity security concepts such as MFA, SSO, PKI, Kerberos, OAuth, and directory hardening.
  • Experience supporting hybrid identity infrastructures including Entra ID Connect.
  • Familiarity with security tools such as Microsoft Defender, CrowdStrike or other EDR/XDR solutions., * Proficiency with PowerShell for identity automation and remediation.
  • Certifications in Azure or AWS platforms.
  • Experience in government, or regulated environments.
  • Understanding of Zero Trust, privileged access strategies, and identity governance workflows.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

2:16 min

Addressing single sign-on challenges in enterprise environments

Alexander Schwartz Alexander Schwartz · WWC 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

1:24 min

Evaluating formal AWS certifications versus raw practical engineering experience

Jan Giacomelli · LIVE

Videos

See all

Related articles

See all