Systems Administrator
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+7 more
Job description
The System Administrator supports the ISSM/ISSO in the management, operation, and compliance of classified information systems (IS) operating under the National Industrial Security Program (NISP). This role is governed by the requirements of 32 CFR Part 117 (NISPOM Rule) and the DCSA Assessment and Authorization Guide (DAAG), which implements the Risk Management Framework (RMF) for cleared contractor facilities. The SA serves as a hands-on security practitioner responsible for the day-to-day security posture of assigned systems, ensuring continuous compliance with DCSA authorization requirements and maintaining a valid Authority to Operate (ATO)., * Possessing sufficient experience and technical competence commensurate with the complexity of the systems to include patch management, account management, STIGs/SCAPs, application updates and installs, hardware configuration and troubleshooting
- Ensure all hardware and software additions, removals, and modifications follow approved change management processes
- Responsible for managing Windows and Linux environments user accounts, permissions, system services, storage resources, backups, and recovery operations.
- Monitor the health of the classified systems by applying patches and security updates
- Maintain accurate technical and configuration documentation.
- Maintain configuration management documentation for all hardware and software changes to classified systems
- Implement and validate security controls on classified systems per NIST SP 800-53, CNSSI 1253, and applicable STIGs.
- Report all security-related incidents to the ISSM in accordance with 32 CFR Part 117 requirements
- Assess changes to assigned systems that could affect authorization status and notify the ISSM
- Assist and support the ISSM/ISSO in all the following tasks:
- Executing all phases of the RMF lifecycle: Prepare, Categorize, Select, Implement, Assess, Authorize, and Monitor to include decommission
- Development, maintenance, and continuous updating of Information Systems
- Conducting periodic assessments and continuous monitoring of authorized systems and providing the corrective actions for all identified findings and vulnerabilities
Requirements
- Minimum 2-4 years of experience in information technology,
- Demonstrated working knowledge of 32 CFR Part 117 §18, the DCSA Assessment and Authorization Guide (DAAG), and NIST 800-series publications
- Active (or ability to obtain) Top Secret clearance with SCI eligibility or clearance commensurate with the highest classification level processed on facility systems
- Strong technical knowledge of Windows and/or Linux security hardening, STIG application, network security fundamentals, and audit log management
- Experience with classified system configuration management, media control, and sanitization/destruction procedures
- Ability to work independently and as part of a team
- Excellent troubleshooting and problem-solving skills
- Strong communication and interpersonal skills
Preferred Qualifications:
- Security+ Prior cleared industry experience (DCSA, NSA, or IC)
- Experience with eMASS or equivalent RMF workflow tools, vulnerability scanners, SIEM/Auditing and STIG Viewer / SCAP compliance tool
Core Competencies:
- Technical understanding of classified system security controls, network architecture, and risk management
- Knowledge of NISPOM and related CFRs, DAAG, NIST SPs, CNSSI directive
- Effective collaboration with the ISSM, ISSO, FSO, ITPSO, IT staff, and program managers
- Discretion and integrity in handling classified information and sensitive cybersecurity data
- Commitment to continuous professional development and staying current with evolving cybersecurity threats and DCSA guidance, * Thought Provoking: Capable of making others think deeply on a subject
- Team Player: Works well as a member of a group
- Detail Oriented: Capable of carrying out a given task with all details necessary to get the task done well
- Dedicated: Devoted to a task or purpose with loyalty or integrity, * Self-Starter: Inspired to perform without outside help
- Goal Completion: Inspired to perform well by the completion of tasks
- Ability to Make an Impact: Inspired to perform well by the ability to contribute to the success of a project or the organization
Education
Required
- Bachelors or better in Cybersecurity
Experience
Required
- 2-4 years: Relevant work experience.
About the company
Who is ARA? (https://www.linkedin.com/company/ara) Learn more about ARA and Our Core Values at WHO WE ARE - ARA (https://www.ara.com/who-we-are/)
Applied Research Associates, Inc. (ARA) is an employee-owned international research and engineering company recognized for providing technically superior solutions to complex and challenging problems in the physical sciences. The company, founded in Albuquerque, NM in 1979, employs over 2200 professionals and continues to grow. ARA offices throughout the United States and Canada provide a broad range of technical expertise in defense technologies, civil technologies, computer software and simulation, systems analysis, environmental technologies, and testing and measurement.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
9 Ways to Make Money Hacking
What Are The Top Skills Required For Azure Developers?
Dev Digest 134 - Where pixels sing?
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again