What are the responsibilities and job description for the System administrator position at TIAG?
TIAG is now hiring a Security System Administrator to join our team in Port Hueneme, CA. This position is onsite, and requires an active Secret clearance to be processed in order to start work.
TIAG supports NAVFAC Engineering and Expeditionary Warfare Center (EXWC) by providing cyber engineering and technology support services including Cybersecurity support, Lab Management and Technology Development support, Control System Engineering support, Cyber Programmatic Support and Training Services in support of all NAVFAC personnel, stakeholders and users throughout the world.
This position requires a proven Systems Administrator with a strong technical foundation and the demonstrated ability to design and support sophisticated network infrastructure and manage systems.
They will install and maintain the cybersecurity test bed infrastructure including Active Directory, data backup, production servers and an extensive virtualization infrastructure.
They will build, configure, administer, and maintain the DISA Assured Compliance Assessment Solution (ACAS) in accordance with STIG / SRG guidance, and best security practices.
They will work closely with System Owners / and Cybersecurity / RMF Teams and provide issue and vulnerability recommendations.
They will support these teams by ensuring secure architecture, design, and implementation is in accordance with DoD Regulations and other governing documents.
They will also perform vulnerability and risk analysis of computer systems and applications during all phases of the system development life cycle.Responsibilities Include :
- Installs and maintains the cybersecurity test bed infrastructure including Active Directory, data backup, production servers and an extensive virtualization infrastructure.
- Performs software installations and upgrades to operating systems and layered software packages.
- Independently ensures data / media recoverability by following a schedule of system backups and database archive operations.
- Conducts hardware and software audits of workstations and servers to ensure compliance with established standards, policies, and configuration guidelines.
- Manage and maintain network accessibility options including virtual private networks, remote desktop access gateway, and secure wireless networking.
- Assesses and mitigates system security threats / risks throughout the program life cycle
- Contributes to the security planning, assessment, risk analysis, risk management, certification and awareness activities for system and networking operations
- Applies system security engineering expertise in one or more of the following : system security design process; engineering life cycle;
- information domain; cross domain solutions; commercial off-the-shelf and government off-the-shelf cryptography; identification;
- authentication; and authorization; system integration; risk management; intrusion detection; contingency planning; incident handling;
configuration control; change management; auditing; certification and accreditation process; principles of IA (confidentiality, integrity, non-repudiation, availability, and access control); and security testing
- Support authorization activities in compliance with DoD Risk Management Process (RMF) process and other DoD and DoN policies and procedures
- Participates as a security engineering representative on engineering teams for the design, development, implementation and / or integration of secure networking, computing, and enclave environments
- Applies knowledge of cyber security policy, procedures, and workforce structure to design, develop, and implement secure networking, computing, and enclave environments
- Supports security planning, assessment, risk analysis, and risk management
- Travel : Up to 20%
Required Experience :
- Bachelor of Science (B.S.) in Information Technology, Cybersecurity, Engineering or similar preferred
- Active DoD Secret Clearance
- An Information Assurance certification in compliance with DoD 8570 (e.g. Security , CISSP) (IAT Level II) is required
- Microsoft System Administration certification
- 5 years of experience with managing and maintaining Assured Compliance Assessment Solution (ACAS)
- 5 years of experience with running credentialed scans, generating and organizing scan results.
- Experience with ICS / SCADA systems (nice to have not required)
- Experience with HBSS (nice to have not required)
- 5 Experience with Windows Servers (2012, 2016 or higher) administration
- Experience with VMWare Virtual environments
- Experience with Linux (RHEL 7)
- 2 years recent experience with DoD Risk Management Process (RMF) process and other DoD and DoN policies and procedures
- Experience with DoD Enterprise Mission Assurance Support Services (eMASS)
- Experience with the Defense Information Systems Agency published Security Technical Information Guidance (STIG) requirements and compliance process, SCAP Content Checker, Security Readiness Review (SRRs), and other DoD approved tools like eMASSter
- Ability to manage time well to meet assigned milestones
- Strong communication skills; motivated to investigate, analyze, and document system issues and resolutions; provides consistent status updates to ensure IT security projects stay focused
- Strong work ethic and a proven professional - respectful, dependable, takes initiative and follows through
TIAG is an equal opportunity and affirmative action employer that does not discriminate on the basis of race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.
TIAG's policy applies to all terms and conditions of employment. To achieve our goal of equal opportunity, TIAG maintains an affirmative action plan through which it makes good faith efforts to recruit, hire, and advance in employment qualified minorities, women, individuals with disabilities, and protected veterans.
PDN-9a8d53a7-fc7d-433a-8093-85de0f7b7c2b
Last updated : 2024-02-26