Staffing and Recruiting👥 51 employees📍 Alpharetta, GA, USEst. 2003
Agile, a GEE Group Company (NYSE: JOB), is an innovative IT staffing and consulting firm that speeds time to talent by matching great people to great opportunities, enabling our clients to drive busi…
📋 Job Overview
Seeking a versatile and mission-driven Systems Administrator (Linux & Windows) with dedicated experience as a Microsoft Endpoint Configuration Manager (MECM / SCCM) administrator. In this role, you will maintain, configure, and secure a heterogeneous enterprise hosting and laboratory testing environment comprising Red Hat Enterprise Linux (RHEL), modern Microsoft Windows Server (2019/2022), and Windows 10/11 endpoints.
🏢 About Agile Defense
At Agile Defense we know that action defines the outcome and new challenges require new solutions. That’s why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next. Our vision is to bring adaptive innovation to support our nation's most important missions through the seamless integration of advanced technologies, elite minds, and unparalleled agility—leveraging a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation’s vital interests.
🎯 The Role
You will be responsible for end-to-end endpoint life cycle management, centralized patch orchestration, operating system deployments, system hardening, and continuous cyber-compliance. Working closely with cybersecurity leads and infrastructure engineers, you will ensure high system availability, rapid vulnerability remediation, and rigorous adherence to defense cybersecurity frameworks.
✅ Key Responsibilities
Serve as the primary administrator for Microsoft Endpoint Configuration Manager (MECM / SCCM), managing infrastructure health, site systems, distribution points, and client agent health across all connected enclaves.
Engineer, test, deploy, and maintain standardized Windows Operating System Deployment (OSD) task sequences and baseline golden images.
Package, test, distribute, and automate application installations, scripts, and software updates across heterogeneous lab and hosting workstations and servers.
Manage and orchestrate enterprise-wide software update distribution using Software Update Points (SUP) integrated with Windows Server Update Services (WSUS).
Create and deploy custom compliance baselines and configuration items (CIs) to enforce security settings, STIG configurations, registry keys, and audit controls.
Develop custom MECM queries, device collections, and reports (SSRS) to provide real-time hardware/software inventory, asset discovery, and compliance auditing.
Administer, build, configure, and maintain physical and virtual Red Hat Enterprise Linux (RHEL) servers, modern Windows Servers (2019/2022), and Windows 10/11 workstations.
Manage core directory and identity infrastructure, including Active Directory Domain Services (AD DS), Group Policy Objects (GPOs), DNS, DHCP, and role-based access control.
Troubleshoot and maintain enterprise Linux services, including SE Linux policies/security contexts, daemon services (systemd, chronyd), file systems (/opt, logical volumes), and local package managers.
Maintain hypervisor and storage infrastructure, including Nutanix, VMware ESXi/vCenter, and enterprise backup/restore solutions (e.g., Cohesity, snapshots).
Support basic multi-tier database hosting and connectivity for Oracle and Microsoft SQL server backends.
Process, approve, and maintain user access documentation and account provisioning via DD Form 2875 and identity management systems.
Issue, configure, and troubleshoot Public Key Infrastructure (PKI) certificates, CAC authentication, and secure remote protocols across all client and server endpoints.
Maintain strict system security posture in compliance with Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs).
Execute, review, and analyze weekly Assured Compliance Assessment Solution (ACAS / Tenable Nessus) vulnerability scans and monthly STIG evaluations.
Rapidly remediate identified CVEs, IAVM alerts, CTO/DTO directives, and vendor patches across both Windows and Linux fleets.
Draft, track, and update Plans of Action and Milestones (POA&Ms) for items requiring architectural mitigations or extended test schedules.
Maintain endpoint security agents across all hosts, including Trellix/ePO agents, endpoint detection and response (EDR), and application whitelisting tools (e.g., fapolicyd).
Monitor and analyze system, security, and application logs using SIEM and centralized log management tools (e.g., LogRhythm, Elastic Fleet).
📌 Required Qualifications
Active DoD 8570/8140 IAT Level II Baseline Certification (e.g., CompTIA Security+ CE, CCNA Security, CySA+, GICSP, GSEC, or SSCP).
Relevant computing environment (CE) / vendor training or certification in Microsoft Windows Server/MECM or Red Hat Enterprise Linux (or ability to complete within 6 months of hire).
🎁 Benefits
Competitive
🛂 Visa & Eligibility
Clearance Level: Secret, Must Have Clearance to Start
Please let Agile Resources, Inc. know that you found this role at devopsprojectshq.com as a way to support us, so we can keep providing you with awesome DevOps jobs.
Never miss a job
Join 2,000+ DevOps developers getting weekly alerts for remote and US/EU roles, Kubernetes, AWS, Terraform, filtered for your stack.
🔒 Need an IP to whitelist?
Get a dedicated static EU outbound IP for Banks, payments, EHRs, APIs, AI.