Our client is seeking a Senior Systems Administrator with deep expertise in Linux security, compliance hardening, and automation to support a critical initiative focused on CIS and CMMC compliance within a secure, AWS-based infrastructure. The ideal candidate will lead the design, development, and deployment of hardened AMIs across RHEL8, RHEL9, and Rocky Linux 9 systems, ensuring alignment with federal security frameworks such as CIS Benchmarks, NIST 800-171, and CMMC Level 2.
This hands-on role will focus on implementing system-level controls, automating compliance enforcement, and integrating hardened configurations into Infrastructure-as-Code (IaC) pipelines. You'll collaborate with security, compliance, and DevOps teams to strengthen the organization's cloud security posture and meet strict government and defense-related regulatory requirements.
Location: Westminster, CO (Onsite)
Contract Duration: 6 Months
Key Responsibilities:
Security Hardening & Compliance Implementation
- Apply CIS Benchmarks across RHEL8, RHEL9, and Rocky9 operating systems
- Build and deploy hardened Amazon Machine Images (AMIs) via EC2 Image Builder or Packer pipelines
- Configure and validate systems against CMMC Level 2 requirements
- Automate enforcement of security controls including secure boot, kernel parameters, filesystem integrity, and access policies
- Perform regular security assessments using tools like Trivy and CIS-CAT, and remediate non-compliant findings
CMMC Compliance Integration
- Map system configurations to CMMC and NIST 800-171 control requirements
- Maintain audit-ready documentation and artifacts to support formal CMMC assessments
- Integrate compliance automation into CI/CD pipelines for consistent enforcement
- Collaborate with ISSOs and compliance teams to address system-level gaps and risks
AWS Security & Cloud Compliance
- Utilize AWS services including IAM, CloudTrail, Config, and Systems Manager to monitor and enforce security posture
- Tag and maintain compliance-scoped AMIs for use across secure cloud environments
- Ensure data encryption, identity management, and audit logging meet federal standards
Automation & Infrastructure-as-Code
- Automate control implementation using Ansible, cloud-init, and shell scripts
- Develop playbooks for secure provisioning, patching, and baseline enforcement
- Leverage AWS Systems Manager and Run Command for remote remediation and orchestration
- Support and enhance IaC pipelines to ensure consistent and auditable builds
Auditing, Monitoring & Reporting
- Conduct routine security scans and generate compliance reports
- Integrate logs and telemetry with SIEM tools such as Exabeam
- Create dashboards and reports for audit evidence and POA&M documentation
Collaboration & Documentation
- Partner with Cybersecurity, IT Ops, and Compliance teams to align on policies and standards
- Maintain clear documentation for hardened images, configuration baselines, and procedures
- Contribute to training and hand-off for operational support teams
Required Skills / Qualifications:
- 5+ years of experience in Linux system administration and automation
- 3+ years of experience working with security compliance frameworks such as NIST 800-171 and CIS Benchmarks
- 3+ years of experience using Git for version control in automation projects
- 3+ years of hands-on experience with Ansible for security automation, system provisioning, and configuration management
- 2+ years of experience implementing CIS Hardening for both Linux and Windows systems
- 5+ years of experience with technical documentation, reporting, and cross-functional collaboration
- 5+ years of demonstrated ability to lead system upgrades and resolve complex technical issues independently
Preferred Skills / Qualifications:
- Experience supporting CMMC audits and POA&M documentation
- Hands-on knowledge of SIEM tools (e.g., Exabeam, Splunk)
- Background in DoD or federal compliance environments
- Certifications: RHCSA, Security+, AWS Security Specialty, CISSP (a plus)
Aleron companies (Acara Solutions, Aleron Shared Resources, Broadleaf Results, Lume Strategies, TalentRise, Viaduct) are Equal Employment Opportunity and Affirmative Action Employers. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender identity, sexual orientation, national origin, genetic information, sex, age, disability, veteran status, or any other legally protected basis. The Aleron companies welcome and encourage applications from diverse candidates, including people with disabilities. Accommodations are available upon request for applicants taking part in all aspects of the selection process.
Applicants for this position must be legally authorized to work in the United States. This position does not meet the employment requirements for individuals with F-1 OPT STEM work authorization status.
Apply
|