> Markdown version of [/jobs/ext/2643985-system-engineer-sr-principal](https://www.wearedevelopers.com/jobs/ext/2643985-system-engineer-sr-principal). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # System Engineer Sr Principal - **Company:** General Dynamics IT - **Location:** Fort Meade, MD, United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Active Directory, Systems Engineering, Microsoft Azure, Bash Shell, Ubuntu (Operating System), Configuration Management, Cyber Security, Information Systems, Dynamic Host Configuration Protocol, Linux, Domain Name System (DNS), Networking Hardware, Virtual Private Networks (VPN), Python (Programming Language), Windows Servers, Network Architecture, Networking Basics, Routing, OpenShift, Public Key Infrastructure, Windows PowerShell, Red Hat Enterprise Linux, Ansible, Zero Trust Network Access, TCP/IP, Virtual Local Area Networks, Virtual Machines, Virtualization Technology, Software Vulnerability Management, Network Routers, Firewalls (Computer Science), Juniper, Containerization, Kubernetes, Information Technology, Patch Management, Nessus, CIS Benchmarks, Multiplatform, Devsecops, Cisco, Qualys, Docker, Vulnerability Analysis - **Published:** August 31, 2026 - **Apply:** http://hbcu.com/cgi-bin/jobs/searchJobs.cgi?job_id=35208996 ## About the Role operations.Participate in incident response and root cause analysis related to vulnerabilities, misconfigurations, and system security issues, driving corrective and preventive actions.Ensure solutions meet applicable contractual, regulatory, and compliance requirements (e.g., DoD directives, RMF/ATO, NIST SP 800-53).Required QualificationsActive DoD Security Clearance of SECRET, or higher8+ years of relevant systems engineering experience, including work in secure or mission-critical environments.Compliance with DoD 8570/8140 requirements (e.g., CCSP, Security+ CE, CISSP, Security X/CASP+, or equivalent baseline certification).Demonstrated experience leading vulnerability management and patching activities across complex, multi-platform environments.Experience with Microsoft Azure Cloud services such as virtual machines, storage, resource manager, etc.Experience with implementing PKI and PIV standards, Active Directory or LDAPExperience with Group Policy Objects and managementHands-on experience implementing STIGs and security baselines for:Operating systems (e.g., Windows Server, RHEL Linux, Ubuntu)Network devices (e.g., Cisco, Juniper, firewalls)Virtualization platforms and/or container platformsExperience maintaining and securing virtual machine infrastructures (e.g. cloud-based VMs).Experience supporting network infrastructure including configuration, hardening, and troubleshooting of routers, switches, and firewalls.Experience deploying and maintaining container-based environments (e.g., Docker, Kubernetes) with an emphasis on secure configuration and image management.Expertise with vulnerability scanning and compliance tools (e.g., Tenable.sc/Nessus ACAS or similar), including interpreting results and driving remediation.Proficiency with automation and scripting (e.g., Ansible, PowerShell, Python, Bash) for patching, configuration management, and reporting.Strong understanding of networking fundamentals (TCP/IP, routing, witching, DNS, DHCP, VLANs, VPNs) and how they intersect with security best practices.Solid understanding of cybersecurity principles, controls, and frameworks, such as NIST, RMF, and defense-in-depth strategiesStrong written and verbal communication skills, including the ability to translate technical risk and remediation plans into language stakeholders understand.Demonstrated ability to work collaboratively across engineering, cybersecurity, operations, and customer teams.Desired QualificationsBachelors degree in Computer Science, Information Systems, Engineering, Cybersecurity, or related field;Experience in Microsoft Azure Cloud securityimplementationsFamiliaritywithNIST 800-207 Zero Trust ArchitectureFamiliaritywithNIST 800-144 Guidelines on Security and Privacy in Public Cloud Computing ## Description security baselines across operating systems, applications, networks, and container platforms.Own the lifecycle of patch management (assessment, planning, testing, deployment, and verification) to ensure timely and compliant remediation of vulnerabilities.Maintain and harden virtual machine environments (e.g., cloud-native VMs), ensuring availability, performance, and security.Configure and maintain network devices (e.g., routers, switches, firewalls) in accordance with security policies, STIGs, and best practices.Deploy and maintain container platforms (e.g., Docker, Kubernetes/OpenShift) with a focus on secure configuration, image scanning, and vulnerability remediation.Integrate and leverage vulnerability scanning tools (e.g., Tenable, Qualys, Rapid7, ACAS) and configuration/compliance tools to identify, track, and remediate findings.Collaborate with cross-functional teams (cybersecurity, network engineering, systems administration, DevSecOps) to ensure cohesive and secure designs and ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Docker build without Docker](https://www.wearedevelopers.com/videos/100114-docker-build-without-docker) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)