Senior Systems Engineer (On-Site - Arlington, VA)

Chinook Systems

• $130K — $170K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of hands-on systems administration and engineering experience, with Tier 3 troubleshooting expertise.
  • Bachelor's degree in IT, Computer Science, Cybersecurity, or a related field (or equivalent experience).
  • IAT-II certification (e.g., Security+ or GICSP) required.
  • Proficient in Microsoft 365, Azure, Entra ID, and Intune administration.
  • Experience with Fortinet FortiGate firewalls and DLP/IRM management.
  • Strong document and technical writing skills, including SOPs and workflows.
  • Experience directing MSP/MSSP technical operations.

Responsibilities

  • Resolve complex Tier 3 IT issues across various systems and services.
  • Administer and maintain secure on-premises and virtualized infrastructure.
  • Coordinate patches and validate remediation results with service providers.
  • Direct technical work and prioritize escalations with MSP/MSSP.
  • Implement DLP and IRM protocols, ensuring data protection and compliance.
  • Design workflows for IT service management and document policies and processes.
  • Produce technical documentation and maintain change management records.

Benefits

  • In-office work opportunity at Arlington, VA corporate headquarters.
  • Clearance support and potential for Secret security clearance.
  • Professional development opportunities in advanced IT and security practices.
Full Job Description
The Work:

As the Senior IT Systems Engineer, you will provide hands-on Tier 3 troubleshooting, systems administration, infrastructure improvements, enterprise data protection, and workflow automation. You will implement approved changes and provide technical direction to Chinook's managed IT and security services provider, which delivers Tier 1 and Tier 2 support and security operations center (SOC) services. This senior individual-contributor role will own technical execution, documentation, and remediation. You will also provide technical support for AI enablement and other project-based innovation initiatives.

This position is IN-Office at our Corporate Headquarters in Arlington, VA.

Citizenship / Clearance Requirements:
  • Must be a U.S. Citizen.
  • Must be able to obtain and maintain a Secret security clearance based on customer and project requirements.

Key Responsibilities:
  • Resolve complex Tier 3 issues across identity, endpoints, servers, networks, cloud services, and business applications; perform root-cause analysis and provide on-site equipment support.
  • Administer on-premises and virtualized infrastructure, FortiGate firewalls, Microsoft 365 GCC, Azure, Entra ID, Intune, SharePoint, and Teams; maintain secure identity, access, and device configurations.
  • Coordinate patching, vulnerability remediation, upgrades, and backup and recovery testing with the provider; resolve failures and validate results.
  • Direct MSP / MSSP technical work, prioritize escalations, and verify remediation.
  • Coordinate SOC incident response, containment, and recovery, escalating risk and service-scope decisions.
  • Implement, administer, and test data loss prevention (DLP) and information rights management / digital rights management (IRM / DRM), including classification, encryption, document permissions, and sharing / transfer restrictions.
  • Investigate alerts, tune rules, and document gaps.
  • Design and maintain IT service management, approval, and electronic-signature workflows using Adobe Sign, or equivalent platforms.
  • Translate manager-approved processes into documented workflows.
  • Validate requirements and acceptance criteria with process owners, support adoption, and maintain integrations through platform changes.
  • Author and maintain detailed technical white papers, SOPs, architecture and workflow diagrams, configuration baselines, runbooks, implementation guides, and test evidence in version-controlled repositories; transfer routine support procedures to the provider.
  • Execute formal change management, documenting requirements, technical design, risk and impact, approvals, testing, communications, implementation, rollback, and post-change validation.
  • Configure and validate Microsoft Sentinel and provider security-platform integrations, including event delivery, secure data handling, alert ownership, and escalation.
  • Support audits, security assessments, SSP / POA&M updates, and approved NIST SP 800-171 / 172 and CMMC safeguards under GRC direction.
  • Support AI enablement through assigned configuration, integration testing, documentation, and user assistance within approved policies.

Minimum Qualifications:
  • At least 7 years of progressive, hands-on systems administration, infrastructure, or engineering experience, including independent Tier 3 troubleshooting and production change implementation.
  • A Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field.
  • A High School Diploma and 12 years of experience may be considered in lieu of a formal degree.
  • An IAT-II satisfying certification such as Security+ or GICSP.
  • Strong Microsoft 365, Azure, Entra ID, and Intune administration skills.
  • Experience troubleshooting across Windows, identity, networking, DNS, DHCP, and backups.
  • Hands-on Fortinet FortiGate experience.
  • Applied experience in the implementation, administration and testing of both DLP and IRM / DRM, including classification, encryption, document permissions, sharing restrictions, and policy enforcement.
  • Hands-on workflow automation experience with an IT service management platform, and Adobe Sign or an equivalent electronic-signature/document-approval platform. Experience must include workflow configuration, integration, testing, and maintenance.
  • Demonstrated ability to automate administration and integrate services using PowerShell or comparable scripting, APIs, and supported workflow tools.
  • Demonstrated ability to produce detailed technical white papers, SOPs, system and workflow documentation, and implementation records, and to execute formal change management with approvals, testing, rollback, and post-change validation.
  • Experience directing MSP / MSSP technical work, resolving escalations, validating remediation, and supporting security investigations, recovery, and control evidence collection.
  • Proficiency with the Microsoft Office Suite (Excel, Word, Outlook, MS Teams, MS Project, PowerPoint).

Preferred Qualifications:
  • An Active Secret or higher Security Clearance.
  • Relevant advanced infrastructure / security certifications and experience supporting NIST SP 800-171 / 172, CMMC, DFARS, or NISPOM requirements.
  • HaloITSM and Adobe Sign experience.
  • Microsoft 365 GCC experience.
  • Experience with Microsoft Sentinel, Qualys, Microsoft Purview or Fortra information-protection products.
  • Experience with CrowdStrike-based SOC integrations.

Physical Considerations:
  • Must be able to work in an office environment.
  • Must be able to walk construction sites with uneven surfaces, carry up to 50 lbs., climb stairs and ladders, and work both indoors and outdoors in severe weather conditions, in confined spaces, and in dust-generating environments.
  • Must be able to maintain spatial awareness and comply with safety standards while working near mechanical and electrical building equipment and systems.
  • Must be able to wear Personal Protective Equipment (PPE) where required.

Annual Salary, Dependent Upon Qualifications and Experience: $130,000 - 170,000

Similar Jobs

More Jobs at Chinook Systems

More Information Technology Jobs

Find similar Senior Systems Engineer (On-Site - Arlington, VA) jobs: