Responsible for the design, implementation, and hardened maintenance of a Windows-based server infrastructure. This includes managing virtualization, automating tasks via scripting, and ensuring strict security compliance through STIGs.
Title: Wintel Engineer
Location: Remote
US Citizenship: Required
Clearance: Public Trust
Responsibilities:
- Responsible for the design, implementation, and hardened maintenance of a Windows-based server infrastructure
- Ensure stability, integrity, security compliance, and efficient operation of information systems that support core organizational functions
- Install, configure, and maintain Windows servers and related services including Active Directory, DNS, DHCP, and Group Policy
- Utilize tools like True Sight Server Automation (TSSA) for automated patching, configuration management, and compliance enforcement
- Develop, maintain, and enhance scripts using PowerShell, Python, or other scripting languages to automate routine tasks and improve operational efficiency
- Manage and maintain our virtualization environment (VMware/Hyper-V), including the creation, management, and security of virtual machines
- Implement and maintain security best practices, including server hardening by applying and remediating STIGs
- Ensure all systems meet rigorous security compliance standards and pass regular security audits
- Monitor system performance, troubleshoot complex issues, and optimize system configurations for maximum performance and reliability
- Implement and manage robust backup and disaster recovery solutions to ensure business continuity
- Create and maintain detailed documentation of system configurations, security controls, processes, and procedures
Requirements:
- Bachelor's degree and 3-5 years of experience in a Wintel/Windows Server administration role with a strong focus on security
- Proven experience with Windows Server operating systems (2016, 2019, 2022)
- Demonstrable experience with implementing and maintaining DISA STIGs or similar security frameworks
- Hands-on experience with TSSA or similar enterprise server automation and management tools
- Advanced proficiency in NSH (Network Shell), python, bash, java, and PowerShell scripting for automation and customization
- Strong understanding of networking concepts (TCP/IP, LAN/WAN)
- CompTIA Security+ required; CySA+, CASP+ or equivalent preferred
- US citizenship required, with the ability to obtain and maintain a Public Trust
Equal Opportunity Employer/Veterans/Disabled