Systems Administrator
Kirkhill Inc.
Brea, CA, United States
3 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on staffsource.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Shift work
Job source
Tech stack
Access Control List
Active Directory
Artificial Intelligence
Audit Trail
User Authentication
Microsoft Azure
Cloud Computing
Cloud Computing Security
Configuration Management
Software Documentation
CompTIA Security+
Issue Tracking Systems
+19 more
Subnetting
Windows Servers
Network Architecture
Networking Basics
Routing
Network Segmentation
Windows PowerShell
Software Project Management
VMware Infrastructure
Virtual Local Area Networks
Virtual Machines
Wide Area Networks
Data Logging
Generative AI
HybridCloud
Firewalls (Computer Science)
Microsoft InTune
Information Technology
Vulnerability Analysis
Job description
We are seeking a Systems Administrator with strong Azure and networking expertise., Cloud Infrastructure
- Own and mature our Azure cloud environment: architecture, storage, identity (Entra ID), governance, cost management, and security posture
- Lead cloud migration and hybrid-cloud integration efforts for on-prem workloads where appropriate
- Implement and enforce cloud security configuration, CA policy, Defender security tooling, monitoring and logging
- Intune configurations, package deployment, and endpoint management
- Maintain monitoring, backup/DR, and patch/configuration management practices for cloud-hosted systems
- Use AI, copilot, and PowerShell to automate repetitive administration and security tasks
Network Architecture
- Design, document, and continuously improve network architecture, including segmentation between CUI-scoped enclaves and general business networks
- Manage firewall, VLAN, and ACL configurations (including CUI subnet access control lists) and maintain accurate network documentation/diagrams
- Lead network hardening initiatives and access control requirements (e.g., AC, SC control families)
- Evaluate and implement zero-trust and micro-segmentation strategies
Classified Environment (training provided)
- Maintain secure configurations, audits, and documentation for the classified workstations;
- Maintain active Security+ certification
- Maintain System Security Plans (SSPs), POA&Ms, and supporting documentation
- Support periodic government inspections, self-inspections, vulnerability scans, and audit log reviews for the classified system
- Serve as day-to-day POC for the classified environment, coordinating with the Facility Security Officer (FSO) and compliance team as needed
General Systems Administration
- Administer Windows Server, Active Directory/Entra ID, endpoint management, and core virtual infrastructure services
- Participate in security assessments, incident response testing, risk assessments, and 3rd party audits
- Execute vulnerability scans, system patching, configuration deployments
- Support configuration and software management controls (e.g., application allow-listing, nonessential functionality restrictions) in coordination with compliance staff
- Participate in change management processes for IT systems affecting CUI/classified scope
- Prioritize and resolve escalated technical issues and mentor junior IT staff, manage ticketing systems, and address chronic or persistent issues
- Own and support all critical security incidents, interruptions/outages, and end-user issues with flexible evening/weekend work when required
- Maintain system documentation, diagrams, project plans, asset inventory
Requirements
- Hands-on expertise in hybrid cloud migration, Microsoft Azure networking, cloud technologies, protocols, and authentication, and WAN network architecture
- Experience administering Azure: identity (Entra ID), virtual machines, vnet, CA policy, Azure Foundry, Purview, Defender, Intune, etc.
- Design and manage basic network architecture: routing, switching, segmentation, firewall/ACL configuration, VLANs, RADIUS, etc.
- Excellent writing skills, conceptual thinking skills, and communication skills needed to learn/implement GenAI tools
- Active Secret security clearance
- U.S. citizenship required.
- CompTIA Security+ (CE)
Preferred Qualifications
- Cloud or Microsoft Azure Certifications
- Experience with cybersecurity compliance frameworks similar to CMMC/NIST 800-171
- Implementing simple AI solutions in Azure Foundry and/or Copilot
- Strong PowerShell skills, * Some after-hours/on-call availability required to support maintenance windows and incident response
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on staffsource.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
AJ
Austin Joy
over 4 years ago
IK
Igor Khokhriakov
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
23 days ago
MH
Michael Hunger
Everything a Developer Needs to Know About MCP with Neo4j
about 1 year ago
CH
Chris Heilmann
Dev Digest 134 - Where pixels sing?
almost 2 years ago
EM
Eli McGarvie
Highest Paying Tech Companies for Developers
over 3 years ago
CH
Chris Heilmann
Dev Digest 120 - Apple and peers
about 2 years ago