Location: Ellsworth, AFB, South Dakota 100% onsite
Schedule: Monday - Friday 0600 - 1800 MST, 8-hour shifts
Clearance: Secret/US Citizen
Security/Suitability: SAP requirement for the Systems Administrator role preferred. Access/clearance requirements are governed by the DD254 and assigned duties. Personnel with root access must meet the trustworthiness/background-investigation requirement.
Education/Experience: Bachelor’s degree in IT, computer science, cybersecurity, engineering, or related field preferred. 8-10 years of systems administration experience is an employer preference.
Certification/Cybersecurity Workforce Requirement: System Administrator: DoD 8570 IAT Level II and/or DoD 8140 System Administrator 451-Intermediate, as applicable to the contract and current Government direction. Certification documentation must be maintained and provided upon Government request.
Position Overview
The Senior Systems Administrator provides senior technical leadership for full-lifecycle engineering and sustainment of the FMWorkFlow (FMWF) infrastructure. The position leads complex Windows/Linux administration, Active Directory and service-account engineering, Nutanix virtualization, configuration-baseline and patch engineering, performance/capacity analysis, advanced diagnostics, backup/recovery and resilience, development/test environment integrity, deployment validation, and cross-domain integration with database and cybersecurity teams.
Primary Responsibilities
- Lead administration, engineering, maintenance, patching, upgrades, lifecycle sustainment, monitoring, and troubleshooting of Windows and Linux systems supporting FMWF.
- Lead Active Directory engineering and service-account configuration and ensure access/account administration aligns with approved controls and least-privilege requirements.
- Lead enterprise virtualization engineering using Nutanix, including architecture support, capacity planning, performance optimization, infrastructure health, lifecycle management, and complex troubleshooting.
- Perform infrastructure performance analysis and root-cause engineering; design and implement sustainable corrective actions to resolve performance degradation.
- Manage technical configuration baselines and lead enterprise patch engineering/validation for IAVAs, TCNOs, NOTAMs, updates, enhancements, and related directives within prescribed timelines.
- Provide Level III technical escalation support, including advanced diagnostics, log analysis, debugging, and resolution of complex infrastructure and interoperability issues.
- Execute routine lifecycle sustainment and emergency corrective engineering to preserve operational continuity and prevent loss of mission-essential capability, security/safety compromise, or degradation without viable workaround.
- Analyze and implement approved system modifications required to maintain usability in evolving technical environments and validate performance following corrective actions or changes.
- Lead support for the controlled FMWF development/test environment, including configuration controls, patch validation, test-data management, secure backup/off-site storage support, and production-readiness verification.
- Lead data-protection, backup/recovery engineering, resilience planning, restoration validation, and COOP infrastructure sustainment/testing as requested.
- Coordinate engineering across infrastructure, DB2 database, IBM WebSphere middleware, and cybersecurity domains to maintain cross-stack integration and system performance.
- Validate post-deployment performance following configuration changes and support implementation and short-term sustainment of newly deployed capabilities.
- Implement and sustain applicable RMF controls, DISA STIGs, Air Force cybersecurity directives, vulnerability-remediation requirements, and secure system baselines.
- Mentor less-experienced administrators, provide technical recommendations, support engineering/readiness/configuration reviews, and communicate technical status to Government stakeholders and leadership.
- Develop and maintain system architecture/configuration documentation, SOPs, technical records, and Section 508-compliant deliverables.
Required Technical Competencies
- Advanced Windows Server and Linux enterprise administration.
- Active Directory engineering, service accounts, identity/access administration, and secure configuration baselines.
- Nutanix enterprise virtualization engineering and capacity/performance optimization.
- Advanced performance analysis, root-cause engineering, log analysis, troubleshooting, patch engineering, vulnerability remediation, and deployment validation.
- Backup/recovery engineering, resilience planning, COOP support, and controlled development/test environment operations.
- Cross-stack understanding of DB2, IBM WebSphere, and underlying infrastructure dependencies.
- Automation/scripting with PowerShell, Bash, Python, Ansible, or comparable technologies is beneficial.
- RMF, DISA STIG, Air Force cybersecurity, IAVA/TCNO, and configuration/change-control compliance.
Preferred Experience
- FMWF or comparable highly available mission-critical financial-system infrastructure.
- Air Force, AFFSO, SAF/FM, AFIMSC, or comparable DoD enterprise environment.
- Technical leadership of complex sustainment, modernization, patching, production-readiness, and post-deployment validation activities.
- Experience mentoring administrators and coordinating infrastructure, database, middleware, and cybersecurity teams.
Security, Access & Contract Compliance Requirements
- Obtain and maintain the Government-required suitability, access, and security determinations applicable to assigned duties and comply with the DD254 and local installation requirements.
- Maintain the minimum NACI/Entrance NACI required for personnel using unclassified Government Automated Information Systems (AIS), including email. Personnel with root access to operate, modify, or maintain a Government system must meet the trustworthiness/background-investigation requirement specified by the PWS/DD254.
- Complete Air Force-mandated Information Assurance Awareness Training before access to Government computing resources and maintain required DD Form 2875 System Authorization Access Request documentation.
- Obtain and properly display required CAC, Restricted Area Badge, contractor identification, and other installation credentials as applicable.
- Immediately report known or suspected security violations or incidents and assist Government security-related inquiries or investigations as directed.
- Protect Personally Identifiable Information (PII) in accordance with NIST SP 800-122 and comply with the Privacy Act, applicable Air Force security directives, Government-resource restrictions, and consent-to-monitoring requirements.
- Complete the required Contractor Employee Non-Disclosure Agreement and use Government-furnished systems and resources for authorized official business only.
Equal Employment Opportunity
We are an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, veteran status, or any other status protected by applicable law. We are committed to fostering a diverse, inclusive, and welcoming workplace.
Pay: $98,359.30 - $123,000.00 per year
Benefits:
- 401(k)
- 401(k) matching
- Dental insurance
- Employee assistance program
- Health insurance
- Life insurance
- Paid time off
- Referral program
- Vision insurance
Application Question(s):
- Are you able to work 100% onsite at Ellsworth AFB, SD 57706
Education:
Experience:
- System administration: 8 years (Required)
- Advanced Windows Server and Linux enterprise administration.: 8 years (Preferred)
- Lead Active Directory engineering, service accounts: 8 years (Preferred)
- RMF, DISA STIG, Air Force cybersecurity,: 8 years (Preferred)
- Lead enterprise virtualization engineering using Nutanix: 8 years (Preferred)
- • Lead administration, engineering, maintenance, patching: 8 years (Preferred)
License/Certification:
- DoD 8570 IAT II or DoD 8140 System Admin. 451-Intermediate (Preferred)
Security clearance:
Work Location: In person