System Administrator, VI (Virtual Infrastructure) SME
Role details
Job location
Tech stack
Job description
The VI SME will oversee the maintenance, security, and performance of USINDOPACOM's Virtual Machine Operating Environment (VOE), comprising over 300 VMs across various security levels. This role involves system patching, security compliance, log monitoring, and collaboration with developers to enhance workflows., * Perform day-to-day system administration services and is responsible for supporting information technology disciplines and practices to ensure the operations, confidentiality, integrity, and availability of information assets in accordance with established standards and procedures.
-
Work closely with information owners, HQ USINDOPACOM Directorates, Systems Staff, Network Staff and Cybersecurity staff to ensure system/application operations and security is achieved, maintained, and reported accurately for HQ USINDOPACOM networks.
-
Be responsible for 300+ VM's spread across 4 different VOE's and 3 different security classifications. They shall install, operate, enhance, secure, monitor, initiate corrective actions and report on systems under their assigned responsibilities.
-
VI System Administration: Maintain, install, update, to include patching and secure operating systems and applications for USINDOPACOM's Virtual Machine Operating Environment (VOE). The following is a non-inclusive list of USINDOPACOM systems and applications required to be supported. Systems and applications may be updated, removed, and/or added in which the contractor shall support:
-
VMware vCenter
-
VMware vCOPS
-
VMware vSAN
-
VMware Horizon View
-
VMware vRealize Operations
-
VMware Aria Suite
-
VMware ESXi
-
VMware NSX
-
Cisco UCS
-
Rubrick
-
Cohesity
-
Tintri Storage
-
Pure Storage
-
Application Virtualization
-
VDI Master Image Management
-
ACAS
-
ServiceNow
-
Responsible for patching of the VOE. Coordinate ASI's if downtime required to complete patching.
-
Maintain the security posture and Security Technical Implementation Guide (STIG) compliance, in accordance with DoD and USINDOPACOM requirements, of all assigned systems and applications. Analyze processes, assigned systems and applications and make recommendations for improvements and automation.
-
Ensure all VOE systems and applications are compliant with DoD Public Key Infrastructure (PKI) requirements, to include the maintenance of DoD PKI certificates for all assigned systems and applications.
-
Ensure that all VOE systems are included in the USINDOPACOM Endpoint Security Solutions (ESS) architecture and that all required ESS components are installed and configured correctly.
-
Review the security and performance logs daily.
-
Review and evaluate assigned tickets in ServiceNow on a daily and determine the best way to support.
-
Will work with USINDOPACOM developers to identify and develop workflows for VOE based assets, requests and tasks within ServiceNow.
-
Participate in technical exchange meetings, work groups, and workshops as required and make recommendations to the government.
-
Utilize ACAS to monitor the security posture of assigned assets, to include creating policies, running scan jobs, analyzing reports and validating repository information. This is a daily requirement. Ensure that all assigned systems are being scanned in accordance with DoD guidance.
-
Responsible for backup/restore VOE systems and applications in accordance with DoD and USINDOPACOM polices.
-
Ensure adequate support is available during command exercises and command inspections.
-
Responsible for the design, implementation, maintenance, testing (bi-annually) and executing the VOE Continuity of Operations (COOP), to include documenting and reporting the results accordingly.
-
Responsible for creating, maintaining, testing, and updating VOE Standard Operating Procedures (SOP) and documentation.
-
The contractor shall provide the COR-appointed Technical Assistant (TA) with a Monthly Status Report (MSR) no later than the 5th of the month following the reporting period. At a minimum, the MSR shall include the following information:
-
A list of accomplishments during the reporting period
-
A synopsis of the efforts completed, deliverables provided, and meetings attended/conducted during the reporting period.
-
Identify any task issues, problem areas, and items that require Government action
Requirements
-
High School Diploma.
-
Must have at least three (3) years of experience managing, supporting, patching, backing up and restoring VMWare vCenter & Horizon View environments within DoD.
-
IAW DoD 8140.03-M, must meet the Intermediate Proficiency Level qualifications.
-
Must have experience securing systems and applications in accordance with Federal, DoD and HQ USINDOPACOM regulations, directives, policies and Security Technical Implementation Guides (STIG).
-
Must have at least two (2) years of experience managing Cisco UCS in a DoD environment.
-
Must have experience managing VMware NSX.
-
Must have experience managing Rubrik and Cohesity.
-
Must have experience managing VMware vSan, vCOPS, vRO, Aria, and ESXi in a DoD environment.
-
Must have experience managing Tintri and Pure storage.
-
Must have experience supporting Endpoint Security Solutions (ESS) agents.
-
Must be "VMware Certified Professional - Data Center Virtualization (VCP - DCV) 6 (or later)" certified and certification must be in good standing.
Required Certifications (One or More):
- CISM
- CISSP (OR ASSOCIATE)
- GSLC
- CCISO
- CAP
- CASP+ CE
- HCISSP
- CND
- CLOUD+
- SECURITY+ CE
- CCNP SECURITY
- CISA
- GCED
- GCIH
- CCSP
- CCNA SECURITY
- CySA+
- GICSP
- GSEC
- SSCP
Physical Requirements/Work Environment
- Occasional after hours and weekend work is required to support both scheduled and unscheduled service outages.
Benefits & conditions
At Castalia Systems, we provide you with opportunities and choices and support your total well-being. Our benefits include: Medical, dental, vision coverage, 401k matching, generous PTO, paid holidays, professional training opportunities, and even pet insurance to ensure your furry friends are cared for too. All regularly scheduled employees working at least 30 hours per week are eligible to participate in Castalia Systems' benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits.
Salary at Castalia Systems is determined by various factors, including but not limited to location, position knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $140,000.00 to $150,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Castalia Systems' total compensation package for employees.