GovCIO

Sr. Systems Engineer- Hybrid Remote

GovCIO$120K — $125K *
US-AnywhereRemote in Tampa, FL
Aerospace & Defense
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 9+ years experience or equivalent; High School diploma acceptable
  • Secret security clearance required
  • Current DoD 8570 IAT Level II Certification
  • Deep technical understanding of federated identity concepts (SAML, OAuth, OIDC)
  • Experience with Smart Card/CAC authentication and PKI validation
  • Proficiency with virtualization (e.g., VMware, AHV)
  • Fundamental understanding of Microsoft Active Directory and networks

Responsibilities

  • Serve as a primary technical authority for PKI and credential management solutions
  • Design and implement access control frameworks for legacy and modern architectures
  • Gather user requirements and ensure compliance through verification
  • Coordinate development of standards and practices for network and system development
  • Conduct performance assessment using technical measures
  • Install and configure new hardware, systems, and software
  • Monitor system performance and implement performance tuning

Benefits

  • Flexible remote work based on project requirements
  • Opportunities for international travel (up to 40%) to various locations
  • Work in a dynamic, fast-paced team environment
  • Engagement with U.S. Government and international partners
Full Job Description
Overview

GovCIO is currently hiring a highly experienced PKI Systems Engineer specializing in Credential Management (CM) with a primary focus on the Public Key Infrastructure (PKI) product area. This technical role supports critical Identity, Credential, and Access Management (ICAM) modernization activities supporting U.S. Government and Foreign Military Sales (FMS) missions. This position will be located in Tampa, FL. This is an on-site requirement with flexible remote work based on project requirements

Responsibilities

Responsibilities:

The PKI Systems Engineer will serve as a primary technical authority for establishing enterprise public key Infrastructure and certificate management solutions. This position focuses on designing, engineering, and executing secure, identity-centric access control frameworks across legacy and modern enterprise architectures as well as designing, engineering, and installing data center systems, cybersecurity stacks, and Virtual Training Environment (VTE) platforms deployed across CONUS and OCONUS environments.

 

Responsibilities include:

Gathers information concerning the capabilities of Company products; investigates the technical capabilities of Company products and competing equipment and solutions; stays abreast of developments in hardware and software. Generates quantifiable requirements based on customer description, system planning, and design and ensures requirements are complied with through formal verification methods. Translates high-level product development strategies into network and system requirement specifications and works with other engineering disciplines to develop lower-level detailed implementation requirements. Establishes and coordinates the development of standards, practices, and procedures related to the overall network and system development. Designs interfaces and integrates network and system elements to work together. Assesses performance using evaluation criteria and technical performance measures. Customer liaison and support for business development activities and understanding and shaping requirements.

  • Provide advanced engineering and architecture ownership across the following specialization:
    • Establishing Public Key Infrastructure to include, but not limited to, Certificate Authority, Registration Authority, Validation Authority, Online Certificate Status Protocol repeaters and responders.
    • Incorporating Multi-Factor Authentication tokens, OTP, and hardware security modules into the PKI
    • Configuring Credential Management Systems to provide centralized management of credentials
  • Work in a fast-paced environment alongside a team of highly specialized Engineers providing engineering and implementation action for integration, modernization, and new installations for US partner nations and allies Overseas.
  • Demonstrate technical competency, delivering mission-critical infrastructure and ensuring the highest availability, performance, and security levels. The qualified mid-level systems engineers will have a background in IT, computer systems engineering, or systems engineering and analysis.
  • Coordinates the planning, design, and installation of equipment, using knowledge of engineering and programming as well as sophisticated instruments and computers.
  • Participates in system conceptual design and documentation of the design concepts.
  • Installs all new hardware, systems, and software for networks.
  • Designs, creates, and builds network services, equipment, and devices.
  • Generates system-level requirements verification procedures and customer acceptance test procedures.
  • Monitors system performance and implements performance tuning.
  • Reviews test plans/procedures and ensures they meet the objectives of the contractual requirements. Participate in the testing process to validate requirements.
  • Solid networking knowledge (OSI network layers, TCP/IP)
  • Experience installing, configuring, and troubleshooting Windows/UNIX/Linux server-based environments.
  • Fundamental understanding of Microsoft Active Directory, security policies, and organizational units
  • Ability to collaborate with cross-functional teams at multiple organizational levels in a dynamic, fast-paced environment.
  • Critical thinking skills: ability to work in agile, flexible team environments.
  • Knowledge of Microsoft Office Tools: Word, Excel, PowerPoint, etc.
  • Great communication and writing skills.
Qualifications

Qualifications:

High School with 9+ years (or commensurate experience)

Required Skills and Experience

Clearance: Secret

  • Must have a valid US Passport and be prepared for international travel up to 40% at customer locations in Eastern Europe, Africa, and South America.
  • Current DoD 8570 IAT Level II Certification (Security+CE, CCNA Security, CySA+, CASP, etc.).
  • Deep technical understanding of federated identity concepts, including SAML, OAuth, OIDC, and Active Directory / LDAP architecture.
  • Solid understanding of PKI concepts and experience working with certificate inventory management systems, Registration Authorities, ADCS, and HSMs
  • Hands-on engineering experience managing Smart Card / Common Access Card (CAC) authentication and PKI certificate validation.
  • Experience integrating MFA with hardware tokens such as YubiKey or FortiToken as well as Software OTP such as Okta or MS Authenticator.
  • Experience with virtualization and converged infrastructures (e.g., VMware, AHV, or Hyper-V)
  • Experience installing, configuring, and troubleshooting Windows/UNIX/Linux server-based environments.
  • Fundamental understanding of Microsoft Active Directory, security policies, and organizational units
  • Ability to collaborate with cross-functional teams at multiple organizational levels in a dynamic, fast-paced environment.
  • Experience installing, configuring, and troubleshooting Windows/UNIX/Linux server-based environments.
  • Fundamental understanding of Microsoft Active Directory, security policies, and organizational units
  • Ability to collaborate with cross-functional teams at multiple organizational levels in a dynamic, fast-paced environment.
  • Proficiency with network drawing and productivity tools (Visio, Lucid, AutoCAD, etc.) is necessary.

Preferred Skills & Experience

  • Familiarity with integrating data governance frameworks with ICAM solutions to enforce data-level access controls.
  • Direct experience with enterprise identity tools such as SailPoint, Okta, Microsoft Entra ID, Ping Identity, DigiCert, or Power BI.
  • Advanced knowledge of RESTful API authorization protocols, secure gateways, and data schema security standards.
  • Relevant MS Degree and +3 Years; BS Degree and +5 years of relevant experience or HS Diploma + 9 years of relevant experience. Specific expertise, education, and training may be considered in place of a degree.
  • A military background within the Signal, Communications, Cyber, or Information Technology MOS is highly desired.
  • Microsoft Certified Systems Associate/Engineer (MCSA or MCSE).
  • CompTIA Linux+/Server+ -
  • VMware Certified Professional or Nutanix NCP-MCI
  • Certified Systems Engineering Professional; or Certified Cloud Practitioner
  • Professional working proficiency in Spanish is highly preferred to support technical coordination, training, and engagement with partner-nation stakeholders.

#AR

#NSS

#OCONUS

Posted Salary RangeUSD $120,000.00 - USD $125,000.00 /Yr.

About GovCIO

GovCIO is a technology and consulting firm that provides IT solutions to government agencies. The company specializes in cloud computing, cybersecurity, and digital transformation. GovCIO's mission is to help government agencies improve their IT infrastructure and enhance their services to the public. The company was founded in 2015 and is headquartered in Washington, DC.
Learn more about GovCIO
Size
50 employees
Industry
Founded
2015

Similar Jobs

More Jobs at GovCIO

More Aerospace & Defense Jobs

Find similar Sr. Systems Engineer- Hybrid Remote jobs: