Windows OS Security & STIG Administrator

Mount Indie
San Diego, CA, United States
5 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Windows Active Directory Automation of Tests Cloud Computing Configuration Management Code Reuse CompTIA Security+ Cyber Security Continuous Integration Monitoring of Systems Identity and Access Management Issue Tracking Systems
+21 more
Python (Programming Language) Network Security Windows Servers Windows PowerShell Role-Based Access Control Ansible Software Engineering Systems Integration Software Vulnerability Management Data Logging Scripting Cloud Platform System Change Tracking Git Infrastructure Automation Frameworks Windows Security CIS Benchmarks Oracle Cloud Infrastructure Scap Compliance Checker Devsecops Plan of Action and Milestones

Job description

  • Administer and secure Windows Server environments across on-premises and OCI infrastructure.
  • Implement, assess, and remediate DISA STIG requirements for Windows operating systems.
  • Analyze and remediate CAT I, CAT II, and CAT III findings.
  • Support consistent Windows security baselines across on-premises and OCI environments.
  • Provide Windows-specific requirements, testing, and troubleshooting support for Ansible playbooks and roles.
  • Execute and troubleshoot Ansible-based hardening, compliance validation, and remediation activities. Use Git for branching, pull requests, peer review, issue tracking, and controlled change management.
  • Develop and maintain PowerShell scripts, configuration checks, and validation utilities. Support Group Policy, Active Directory, auditing, least privilege, patching, and vulnerability management. Support OCI services and security controls, including Compute, VCNs, IAM, compartments, security lists, network security groups, logging, and monitoring.
  • Evaluate the impact of STIG controls on OCI agents, monitoring tools, management services, and system connectivity. Maintain compliance evidence, remediation records, exception documentation, POA&M inputs, and technical procedures. Collaborate with Windows, cloud, cybersecurity, automation, and infrastructure teams.

Requirements

  • 5 or more years of Windows Server administration experience.
  • 3 or more years of hands-on Windows STIG implementation, assessment, or remediation experience. Strong knowledge of Windows security baselines, Group Policy, Active Directory, auditing, least privilege, patching, and vulnerability remediation.
  • Experience with Ansible for Windows configuration management, security hardening, or compliance activities.
  • Experience with Git, including branching, pull requests, peer review, and change tracking. Strong PowerShell skills and a software engineering mindset, including testing, documentation, reusable code, and controlled releases. Experience securing Windows environments across on-premises and cloud infrastructure.
  • Experience with OCI or a comparable cloud platform.
  • Minimum Secret security clearance required.
  • DoD 8570 IAT Level II certification, such as CompTIA Security+, or another customer-approved equivalent aligned with applicable DoD 8140 requirements.
  • Strong technical documentation, troubleshooting, and communication skills., * Experience with Windows Server 2016, 2019, 2022, or later.
  • Experience with WinRM over HTTPS and Windows Ansible modules.
  • Experience with STIG Viewer, SCAP Compliance Checker, Evaluate-STIG, or comparable tools.
  • Experience supporting Windows workload migration to OCI. Familiarity with CI/CD, infrastructure as code, DevSecOps, or automated testing. Python or another scripting language.
  • OCI certification or equivalent hands-on experience.
  • Experience in federal, defense, regulated, or compliance-driven environments.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

6:21 min

Investigating push inefficiencies with upstream Git experts

Jonathan Creamer · Coffee With Developers

1:42 min

Automating Skupper deployments using Ansible

Alex Soto Alex Soto · World Congress 2024

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

5:25 min

Shifting left and creating internal security champion programs

Vandana Verma Sehgal · LIVE

56 sec

Favorite git commands and the importance of patch commits

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

Videos

See all

Related articles

See all