RHEL Systems Engineer

ASCENT SERVICES GROUP LLC
United States
about 2 months ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Application Firewall Systems Engineering Computer Networks Data Centers Software Debugging Linux Domain Name System (DNS) Supervisory Control and Data Acquisition (SCADA) Java Virtual Machine (JVM) Routing Red Hat Enterprise Linux
+7 more
Ansible Tcpdump Wireshark Operational Systems Firewall Services Module Software Version Control Docker

Job description

Term: Full Time, Direct Hire - remote but may need to travel to client locations periodically, especially at the start or kick off of a project., Our client delivers turnkey clean energy and power infrastructure solutions across the Americas. We design, build, and operate advanced Battery Energy Storage Systems (BESS) and mission-critical networks for data centers, utilities, and industrial clients. Our technology-first mindset powers systems from SCADA to cloud-and everything in between. About The Position The Senior RHEL engineer will own the OS and container platform behind our on-premises energy-management deployments. You’ll build and harden the tailored RHEL image and the containerized Ignition SCADA workload running on industrial PCs across U.S. data-center sites, and act as our deep RHEL authority and L3 escalation point. This is a platform-engineering and expertise role - not field installation. You will own our OS architectures, container builds and configuration, and the runtime that hosts Ignition, while the SCADA team owns everything configured inside Ignition (tags, screens, logic). On the network side, the host firewall and OS-level networking (interfaces, routing, DNS, firewalld/nftables) are yours, while the physical and site network beyond the host NIC belongs to Operational Technology (OT). Travel to third-party data-center sites is for troubleshooting and support only. The separate OT team commissions and deploys every machine, so you won’t install systems in the field., * Build, version, and maintain a reproducible, turnkey RHEL image tailored to the SCADA host’s needs (time sync, firewall/ports, storage, service ordering, resource tuning).

  • Own the SCADA container image end to end: Containerfile, base image, JVM, persistence, ports, hardening, scanning, and registry.
  • Run containers as systemd services via Podman and quadlets.
  • Harden the OS and images to a recognized baseline (CIS/STIG) and define a patching and lifecycle strategy for OT uptime and restricted/disconnected sites (offline/mirrored registry).
  • Troubleshoot full-stack - OS, container runtime, and application runtime behavior - remotely and on-site, handing off application-level issues to the SCADA team.
  • Own host-level networking and firewall configuration (interfaces, routing, DNS, firewalld/nftables, and port exposure for the SCADA container), and lead connectivity troubleshooting between the host and site infrastructure.
  • Document runbooks for the OT team and help define the connectivity and security posture.
  • Maintain the Windows image pipeline (Packer-based) in steady state once established: periodic patching, hardening updates, and image rebuilds.

Requirements

  • 7+ years of senior, hands-on production RHEL/Linux engineering.
  • Container-native delivery: Podman, quadlets/systemd, building and owning container images (including packaging a JVM-based app such as Ignition), and registry management.
  • Reproducible, turnkey, versioned RHEL image building (bootc, Kickstart, Image Builder/osbuild, or Ansible-driven).
  • OS and image hardening to a recognized baseline (CIS/STIG).
  • Patch and lifecycle management for restricted/disconnected environments, including offline/mirrored content and registries.
  • Automation (Ansible) and version control.
  • Strong Linux networking and diagnostics: firewall administration (firewalld/nftables) and packet/connectivity tooling (Wireshark, tcpdump, ss, ip), plus containerized debug environments (toolbox).
  • Confidence operating as the RHEL authority, with strong documentation habits.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:39 min

Experiencing core Linux capabilities for DevOps administration

Michael Cade · LIVE

52 sec

Introduction to eBPF as a secure virtual machine

Ayesha Kaleem · World Congress 2023

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · World Congress 2025

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

2:34 min

Docker sandbox architecture and microVM environment integration

Manuel de la Peña Manuel de la Peña · World Congress 2026 Europe

Videos

See all

Related articles

See all