Remote job
IT Systems & Security Engineer (CedD225)
Job details
About this role
Role overview This position is part of a Commercial Cyber Operations team focused on hands-on technical implementation of security controls across diverse customer environments. The engineer partners with compliance leads who interpret NIST SP 800-171 requirements, while this role implements, tests, and documents the underlying technical controls with senior engineer support. The work centers on practical IT systems administration with a strong security and compliance emphasis.
Responsibilities - Configure, secure, and administer Microsoft 365, Entra ID, Active Directory, Google Workspace, Google Cloud Identity, and related business systems - Deploy and operate endpoint management controls across multiple mobile device management and unified endpoint management platforms, including Jamf and Microsoft Intune - Implement identity, multifactor authentication, permissions, endpoint security, logging, vulnerability management, patching, backup, and recovery controls - Support Windows, macOS, iOS, and Android devices alongside networks, firewalls, VPNs, DNS, and secure remote access - Test completed changes and produce accurate configuration records, diagrams, evidence, and runbooks - Help convert repeatable work into checklists, scripts, and automation
Requirements - Hands-on experience administering, securing, and troubleshooting business IT environments - Practical experience with Microsoft 365, Entra ID, Active Directory, and Google Workspace - Mobile device management or unified endpoint management experience across more than one platform, including hands-on Jamf and Microsoft Intune - Experience supporting Windows and macOS endpoints, with iOS and Android experience strongly preferred - Familiarity with networking, firewalls, identity, logging, endpoint protection, vulnerability management, patching, and backups - Methodical troubleshooting skills, accurate documentation habits, and clear communication with customers and internal teams - Proven ability to deliver results in a remote, asynchronous environment - US citizenship with eligibility for Controlled Unclassified Information access
Nice to have - Experience with GCC High, Azure, Google Cloud Identity, Apple Business Manager, Android Enterprise, Microsoft Defender, or Microsoft Purview - Defense contractor or government background, particularly with NIST SP 800-171 or NIST SP 800-53 controls - Cybersecurity Maturity Model Certification (CMMC) 2.0 experience - PowerShell, shell scripting, security monitoring, or workflow automation skills - Relevant Microsoft, Google, Apple, cloud, networking, or security certifications
Benefits and work setup - Remote role based in the USA with 10 to 25 percent travel expected - Compensation range of $123,250 to $166,750 USD, benchmarked nationally across US locations - Medical, dental, and vision coverage with premiums fully paid by the employer - Health savings account, life insurance, and disability insurance - 401(k) retirement plan, company stock options, and a home office budget - Flexible time off plus federal holidays, with extended breaks around Thanksgiving and the December holiday period - Paid parental leave and reimbursement for approved trainings, subscriptions, and conference travel