> Markdown version of [/jobs/ext/2878354-systems-engineer-senior-hybrid](https://www.wearedevelopers.com/jobs/ext/2878354-systems-engineer-senior-hybrid). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Systems Engineer Senior - Hybrid - **Company:** General Dynamics View all jobs - **Location:** Fort Meade, MD, United States (Remote available) - **Experience:** Expert - **Salary:** $136,000.0 - $184,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Systems Engineering, Microsoft Azure, Bash Shell, Ubuntu (Operating System), Cloud Computing, Configuration Management, Cyber Security, Dynamic Host Configuration Protocol, Linux, Domain Name System (DNS), Image Management, Networking Hardware, Virtual Private Networks (VPN), Python (Programming Language), Lightweight Directory Access Protocols (LDAP), Windows Servers, Network Architecture, Networking Basics, Routing, OpenShift, Public Key Infrastructure, Windows PowerShell, Red Hat Enterprise Linux, Ansible, Zero Trust Network Access, TCP/IP, Virtual Local Area Networks, Virtual Machines, Virtualization Technology, Software Vulnerability Management, Network Routers, Enterprise Software Applications, Firewalls (Computer Science), Juniper, Containerization, Kubernetes, Information Technology, Patch Management, Nessus, CIS Benchmarks, Multiplatform, Devsecops, Cisco, Qualys, Docker, Vulnerability Analysis - **Published:** September 13, 2026 - **Apply:** https://www.careerjet.com/job/us3715e7185df73fbb11f784974d27091a/eaa ## About the Role Skills: Cloud Computing, Enterprise Systems, Patch Management, Security Technical Implementation Guides (STIGs), Vulnerability Management Certifications: None Experience: 5 + years of related experience, * Active DoW Security Clearance of SECRET, or higher * BS and 5+ years of relevant systems engineering experience, including work in secure or mission-critical environments. (will consider other combinations of education, experience and certifications) * Compliance with DoW 8570/8140 requirements (e.g., CCSP, Security+ CE, CISSP, Security X/CASP+, or equivalent baseline certification). * Demonstrated experience leading vulnerability management and patching activities across complex, multi-platform environments. * Experience with Microsoft Azure Cloud services such as virtual machines, storage, resource manager, etc. * Experience with implementing PKI and PIV standards, Active Directory or LDAP * Experience with Group Policy Objects and management * Hands-on experience implementing STIGs and security baselines for: * Operating systems (e.g., Windows Server, RHEL Linux, Ubuntu) * Network devices (e.g., Cisco, Juniper, firewalls) * Virtualization platforms and/or container platforms * Experience maintaining and securing virtual machine infrastructures (e.g. cloud-based VMs). * Experience supporting network infrastructure including configuration, hardening, and troubleshooting of routers, switches, and firewalls. * Experience deploying and maintaining container-based environments (e.g., Docker, Kubernetes) with an emphasis on secure configuration and image management. * Expertise with vulnerability scanning and compliance tools (e.g., Tenable.sc/Nessus ACAS or similar), including interpreting results and driving remediation. * Proficiency with automation and scripting (e.g., Ansible, PowerShell, Python, Bash) for patching, configuration management, and reporting. * Strong understanding of networking fundamentals (TCP/IP, routing, witching, DNS, DHCP, VLANs, VPNs) and how they intersect with security best practices. * Solid understanding of cybersecurity principles, controls, and frameworks, such as NIST, RMF, and defense-in-depth strategies * Strong written and verbal communication skills, including the ability to translate technical risk and remediation plans into language stakeholders understand. * Demonstrated ability to work collaboratively across engineering, cybersecurity, operations, and customer teams. Desired Qualifications * Experience in Microsoft Azure Cloud security implementations * Familiarity with NIST 800-207 Zero Trust Architecture * Familiarity with NIST 800-144 Guidelines on Security and Privacy in Public Cloud Computing ## Description General Dynamics Information Technology (GDIT) is seeking a Systems Engineer Senior with a strong cyber and vulnerability management background to support a mission-critical environment. This role will focus on end-to-end vulnerability management, including patching, STIG implementation, and sustainment of virtual machines, network devices, and containers in highly secure environments. As a Systems Engineer Senior, you will apply deep expertise in security configuration baselines, vulnerability assessment tooling, and remediation strategies to reduce risk and improve the security posture of enterprise systems. This is hybrid position and requires regular on-site support and remote work. Responsibilities * Lead the design, implementation, and optimization of vulnerability management and patching strategies for virtualized infrastructures, network devices, and containerized workloads. * Interpret and implement DoW/DISA STIGs, CIS benchmarks, and other security baselines across operating systems, applications, networks, and container platforms. * Own the lifecycle of patch management (assessment, planning, testing, deployment, and verification) to ensure timely and compliant remediation of vulnerabilities. * Maintain and harden virtual machine environments (e.g., cloud-native VMs), ensuring availability, performance, and security. * Configure and maintain network devices (e.g., routers, switches, firewalls) in accordance with security policies, STIGs, and best practices. * Deploy and maintain container platforms (e.g., Docker, Kubernetes/OpenShift) with a focus on secure configuration, image scanning, and vulnerability remediation. * Integrate and leverage vulnerability scanning tools (e.g., Tenable, Qualys, Rapid7, ACAS) and configuration/compliance tools to identify, track, and remediate findings. * Collaborate with cross-functional teams (cybersecurity, network engineering, systems administration, DevSecOps) to ensure cohesive and secure designs and operations. * Participate in incident response and root cause analysis related to vulnerabilities, misconfigurations, and system security issues, driving corrective and preventive actions. * Ensure solutions meet applicable contractual, regulatory, and compliance requirements (e.g., DoW directives, RMF/ATO, NIST SP 800-53). ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [How Cisco embraced a DevOps culture within its network engineering team](https://www.wearedevelopers.com/videos/99-how-cisco-embraced-a-devops-culture-within-its-network-engineering-team) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Computer Vision from the Edge to the Cloud done easy](https://www.wearedevelopers.com/videos/263-computer-vision-from-the-edge-to-the-cloud-done-easy) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)