Compliance Systems Administrator (Linux / RHEL)

General Dynamics View all jobs
Tampa, FL, United States
23 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$89,250.0 - $120,750.0
Working hours
Regular working hours

Tech stack

User Authentication Bash Shell Unix Command-Line Interface Cyber Security Linux Linux System Administration Linux Servers Package Management Systems Public Key Infrastructure Red Hat Enterprise Linux Ansible
+7 more
Software Vulnerability Management Data Logging Selinux Iptables Cyber Warfare Scap Compliance Checker User Administration

Job description

The Compliance Systems Administrator (Linux / RHEL) plays a critical, hands-on role in securing and maintaining enterprise Red Hat Enterprise Linux (RHEL) and Unix-based operating systems. This position is responsible for the direct technical execution of system hardening, patching, identity integration, and vulnerability remediation to ensure Linux servers and appliances adhere to Department of War (DoW) cybersecurity standards in preparation for CORA cyber inspections. HOW A Compliance Systems Administrator (Linux) WILL MAKE AN IMPACT, Remediate security findings identified through ACAS/Tenable reports and OpenSCAP scans by performing hands-on system patching, configuration updates, and service hardening on RHEL 8/9 systems. Technically implement and maintain compliance with Red Hat Enterprise Linux DISA STIGs, Cyber Tasking Orders (CTOs), and IAVM notices. Configure, troubleshoot, and enforce mandatory access controls using SELinux (Security-Enhanced Linux) in enforcing mode. Manage and maintain central identity, PAM (Pluggable Authentication Modules), SSSD, and DoW PKI/CAC authentication mechanisms for user and administrative access. Configure and maintain host-based firewalls (firewalled/iptables) and audit daemon logging (audited) in strict compliance with DoW auditing requirements. Utilize package management tools (YUM/DNF), Red Hat Satellite, or local repositories to deploy security errata and software updates across air-gapped or restricted networks. Develop and execute Bash and Ansible playbooks to automate STIG hardening, configuration audits, and compliance validation. Develop, implement, and document technical mitigation strategies and POA&Ms for system-specific Linux vulnerabilities that cannot be immediately fixed. Compile technical evidence, OpenSCAP evaluation reports, and configuration artifacts for CORA inspection teams.

Requirements

Skills: Assured Compliance Assessment Solution (ACAS), Linux Management, Red Hat Enterprise Linux (RHEL) Certifications: None Experience: 3 + years of related experience, Applicable Intermediate DoW 8140 or DoW 8570 Certification (e.g., Security+ CE, CySA+, Linux+, or SSCP). Bachelor’s Degree in a related discipline OR three (3) years of hands-on experience administering and hardening Red Hat Enterprise Linux (RHEL) environments. Direct experience in Linux system administration, command-line operations (CLI), user management, and package patching. Hands-on experience applying DISA STIGs to RHEL systems using SCAP Compliance Checker (SCC) or OpenSCAP. Familiarity with reviewing ACAS/Tenable vulnerability reports and executing Linux-specific remediation steps. Understanding of PKI certificate installation and PAM/SSSD authentication integration. Location: Tampa, Florida (USCENTCOM) Clearance: Active TS/SCI Travel: up to 10% (CONUS/OCONUS) Desired Skills and Experience: Red Hat Certified System Administrator (RHCSA) or Red Hat Certified Engineer (RHCE). Experience supporting USCENTCOM Linux server infrastructure. Hands-on experience writing Ansible playbooks and Bash scripts for STIG compliance automation. Experience with Red Hat Satellite Server for centralized lifecycle and errata management. Experience preparing Linux systems for DoD Cyber Defense Command (DCDC) Cyber Operational Risk Assessments (CORA).

Benefits & conditions

GDIT IS YOUR PLACE At GDIT, the mission is our purpose, and our people are at the center of everything we do. Growth: AI-powered career tool that identifies career steps and learning opportunities Support: An internal mobility team focused on helping you achieve your career goals Rewards: Comprehensive benefits and wellness packages, 401K with company match, competitive pay and paid time off Community: Award-winning culture of innovation and a military-friendly workplace #gditpriority #cencomcits #armajobs The likely salary range for this position is $89,250 - $120,750. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range. Scheduled Weekly Hours: 40 Travel Required: Less than 10% Telecommuting Options: Onsite Work Location: USA FL MacDill AFB Additional Work Locations: Total Rewards at GDIT: Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most. Our Identity Verification Process: As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes. About Our Work: We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development. Join our Talent Community to stay up to date on our career opportunities and events at . Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans, + $90,000-120,000 per year For over 20 years iGov’s products and services reflect a commitment to our mission to deliver innovative, mission-centric IT solutions to our government customers. We are a highly …

  • 19 days ago

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:51 min

Transitioning to continuous security operations and automated system hardening

Thomas Fuchs +3 · LIVE

5:44 min

Tightening the security perimeter using SELinux

Dimitrij Klesev +1 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

2:03 min

Microsoft integrating native Unix coreutils into Windows environments

Chris Heilmann Chris Heilmann +2 · LIVE

2:39 min

Experiencing core Linux capabilities for DevOps administration

Michael Cade · LIVE

9:38 min

Troubleshooting SELinux container permission denials live

Dimitrij Klesev +1 · LIVE

Videos

See all

Related articles

See all