IT Systems Administrator (IT006)
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+23 more
Job description
PER is seeking a highly autonomous and self-reliant IT Systems Administrator / ISSO to assist with owning, managing, and keeping our corporate IT footprint secure. Reporting directly to the Information System Security Manager (ISSM), you will serve as an operational partner for our 30+ employee user base.
This is not a basic helpdesk role or a heavily supervised position. The successful candidate must possess final tier-1 and tier-2 resolution authority, demonstrating the technical maturity to research, troubleshoot, and solve obscure systems errors independently. You will balance daily, hands-on workstation and infrastructure operations with strict technical security execution to enforce NIST SP 800-53, 800-88, and 800-171 controls.
Primary Responsibilities (Operational & Security Governance)
ยท Execute Configuration Changes: Act as the primary technical actor responsible for deploying, maintaining, and upgrading operating systems, applications, laptops, firewalls, and network assets in accordance with established security baselines.
ยท Enforce Access Control Systems: Technically grant permissions and manage identities within Microsoft Entra ID and local Active Directory. Ensure all user modifications align with documented approvals from HR and Department Heads (Resource Owners).
ยท Enforce Separation of Duties (SoD): Operate strictly within a โRequest-Authorize-Executeโ compliance workflow, ensuring you do not independently authorize your own changes or access rights.
ยท Own the Technical Helpdesk: Drive full lifecycle resolution for all employee technical issues, leveraging independent research and event log analysis before escalating to the ISSM.
ยท Manage Cryptographic Systems: Maintain the lifecycle of encryption keys, certificates, and secure BitLocker/LAPS escrow protocols.
ยท Execute Compliance Monitoring: Conduct weekly audit log reviews, run automated vulnerability scans (e.g., SCAP/STIG, Nessus, OpenVAS, MDE), and provide initial technical support for incident response containment and forensic efforts.
ยท Ensure Data & Media Integrity: Conduct routine, scheduled audits of system backups and execute formal media sanitization processes in compliance with NIST SP 800-53, 800-88, and 800-171
Daily and Monthly Responsibilities (Hybrid Architecture Management)
ยท On-Premises Infrastructure Management: Maintain and optimize local network assets including our departmentally isolated file server, local Active Directory, DNS servers, PBX phone systems, switches, routers, and edge firewalls.
ยท Cloud Ecosystem Administration: Administer our sovereign Microsoft 365 GCC High tenant, managing configurations across Microsoft Entra ID, Intune, SharePoint Online, and Defender for Endpoint.
ยท Workstation Hardening: Enforce endpoint security profiles via Intune and local Group Policy Objects (GPOs), actively maintaining blocks on nonessential functions (e.g., peer-to-peer sharing, consumer-grade cloud resource sharing).
ยท Log Preservation: Monitor, triage, and preserve event logs, tracking all system variations inside the corporate Change Management Log.
ยท Availability: Provide on-call support during critical system upgrades, outages, or mandatory maintenance windows that may occasionally occur outside of regular business hours.
Requirements
ยท High Autonomy: Proven track record of operating as a sole or primary system administrator; capability to resolve complex technical blockers with minimal supervision.
ยท Hybrid Systems Experience: Deep technical familiarity with both local Windows Server administration (Active Directory, GPOs, local file shares) and cloud tenant administration.
ยท Sovereign Cloud Knowledge: Direct operational experience working within a Microsoft 365 GCC High or government-sovereign cloud environment.
ยท Troubleshooting Proficiency: Demonstrated ability to read, interpret, and act upon Windows error messages and Event Logs, network packet captures, and security telemetry.
ยท Ability to manage time and tasks.
ยท Proficiency with Microsoft Office Suite
ยท Clearance Eligibility: eligible to obtain a U.S. Secret security clearance.
ยท Physical Demands: Ability to lift and move up to 25 lbs.
Desired Qualifications
ยท Compliance Framework Exposure: Direct familiarity with NIST SP 800-171, NIST SP 800-53, or CMMC Level 2 controls.
ยท Active U.S. Secret security clearance
ยท Professional Certifications: CompTIA Security+, CySA+, Network+, Microsoft Certified: Systems Administrator, or equivalent technical credentials.
ยท Federal Toolsets: Exposure to the Risk Management Framework (RMF) lifecycle and eMASS portal operations.
ยท Scripting & Automation: Proficiency with PowerShell for automating repetitive Active Directory tasks, bulk user management, or querying Entra ID/Intune telemetry.
ยท Log Management & SIEM: Hands-on experience querying logs using KQL (Kusto Query Language) inside a Microsoft Sentinel repository.
ยท Vulnerability Assessment Tools: Direct operational experience configuring and executing credentialed scans using toolsets like SCAP or Microsoft Defender Vulnerability Management.
ยท Identity Management: Experience managing secure administrative practices such as Local Administrator Password Solution (LAPS) and enforcing baseline Just-In-Time (JIT) access.
ยท Secure Provisioning: Experience using NIST SP 800-88 R1 guidelines for media sanitization, data wiping, and hardware decommissioning.
Benefits & conditions
Pulled from the full job description
- Tuition reimbursement
- Employee stock purchase plan
- 401(k)
- Health insurance
- 401(k) matching
- Paid time off
-
Vision insurance, Practical Energetics Research (PER), Inc. provides engineering expertise focused on the design and integration of weapon systems for military use. Our team designs, analyzes, tests, and evaluates missiles and munitions using state-of-the-art computational tools, fabrication technology, and experimental techniques. A small business entity headquartered in Huntsville, Alabama, PER proudly serves Redstone Arsenal and assorted government agencies, as well as partnering with other companies in the defense industry. PERโs team members enjoy competitive salaries and benefits while being part of a collaborative team. Our benefits include insurance, 401(k) matching, a stock purchase plan, performance based pay increases, and an annual bonus. Each team member is empowered to shape PERโs culture and contributes to a working environment that is inclusive, transparent, and flexible. We are honored to have our work and culture recognized by the Huntsville Chamber of Commerce as a recipient of the 2017 Small Business award and 2017 Best Places to Work award., * 401(k)
- 401(k) matching
- Dental insurance
- Employee assistance program
- Health insurance
- Life insurance
- Paid time off
- Tuition reimbursement
- Vision insurance
Compensation Package:
- Bonus opportunities
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.indeed.comGood distractions
Talks and stories from around this role โ technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
The Most Popular IT Jobs on the Market
9 Ways to Make Money Hacking
Best Coding Boot Camps in Germany