user avatar

Identity and Access Management System Administrator (25-441)

SecureStrux, LLC

Today
Top Secret
Unspecified
Unspecified
IT - Hardware
Colorado Springs, CO (On-Site/Office)

About the Job

The Identity and Access Management System Administratorwill support the C2BMC program and will primarily be responsible for deployment and maintenance of all directory service type activities, such as active directory domain services/controllers, certificate authorities services, policy tracking/creation, and account management functions in the enterprise.

Location

Colorado Springs, CO (Schriever SFB)

The Work You'll Do

This individual is responsible for deployment and maintenance of all directory service type activities, such as active directory domain services/controllers, certificate authorities services, policy tracking/creation, and account management functions in the enterprise. Must be a detail-oriented individual that is able to track the impact of events/actions on the underlying infrastructure being managed, such as replication schedules and group policies. Also responsible for scrum master duties in Agile framework for small team.

What You'll Bring
  • Bachelor's Degree with a minimum of 9 years of experience, or Master's Degree with a minimum of 7 years of experience
  • Active Top Secret Clearance with eligibility for SCI and SAP required to start
  • IAT Level II Cert (Security+ or equivalent) required to start
  • Must have 5-6 years' experience administering Active Directory technologies in an enterprise level system
  • Deployment and maintenance of all active directory domain services/controllers. This includes monitoring health and status of all sites and services in the enterprise
  • Deployment and maintenance of all certificate authority (CA) services, including issuing all SSL certificates and building out new CA servers in the enterprise. Including tracking all CA server expiration dates, working with applicable teams to perform a renewal process for existing CA certs when needed.
  • Creating and maintenance of system policies, such as Windows group policies, Linux authentication PAM rules/files (in concert with Linux/unix team), and tracking any potential issues as they arise on the system.
  • Maintenance of all account matrices, including all applicable permissions cross overs between enclaves when/if needed.
  • Continuously working with cyber team to ensure all RBAC controls are compliant with current policies for restriction access between enclaves and systems in enterprise for each applicable user/team.
  • Assist cyber team with monitoring all directory services for out of the ordinary logins or accounts behavior metrics to ensure safety of data integrity of C2BMC-G system enterprise.
  • Work with other teams to deployment and maintain technologies that include collaborative aspects, such as instant message platforms in enterprise.
  • Work with all team to ensure proper distributed authentication services are configured property to ensure non-repudiation to all available sources. This can includes assisting with configuration of LDAP services to network/software solution, to ensure RBAC access to user base. Examples of LDAP/LDAPS connected endpoints configuration could be things like, HPE iLO interfaces, Gitlab, Cisco ISE, FortiManager, Raritan KVM, etc.
  • Thorough understanding of Active Directory and its replication structure when used in a distributed forest, separated through the use of WAN links
  • Experience with a on premise multi domain environment using Role based administrative controls (RBAC) for least privilege
  • Experience with DISA STIG compliance remediation using distributed group policy and SCAP compliance scanners

Preferred
  • Ability to integrate automation technologies into daily Active Directory use is a plus


Salary Range: $120,000 - $163,000

Our Approach

At SecureStrux, we are committed to core values that guide the way we work with one another and our clients. As a team member, you will Create Team Synergy, Drive Continuous Innovation, Deliver with Integrity, and have the Freedom to Own it. Our thriving company culture supports our employees as they seek to grow with us!

What We Offer

Between our virtual environment where you can evaluate recent technologies and enhance your skills, and a generous annual professional development stipend, you will join a team that enjoys working on leading-edge technologies for world-class clients. We offer a robust total compensation package that includes comprehensive health benefits to support you and your family, flexible time off, continuing education allowance, a donation allowance for charitable causes, and a matched 401k.

Employment Types: Full-time

Work Arrangements: On-site

Locations: Colorado
group id: 91082047

Match Score

Powered by IntelliSearchâ„¢
image match score
Create an account or Login to see how closely you match to this job!