Full Job Description
BAE Systems is seeking a highly trained and motivated Principal Closed Area Systems Administrator to lead and manage classified IT infrastructure operations in support of national security missions. This role is pivotal in ensuring the integrity, security, and availability of systems operating within Sensitive Compartmented Information Facilities (SCIFs) or other closed environments. You will serve as the technical lead for IT services, security compliance, and infrastructure readiness across high-impact, mission-critical programs. This position is 100% onsite within a closed, classified area. Some after-hours or weekend support may be required for maintenance windows or incident response. You must be able to lift equipment (up to 40lbs) and work within controlled environments.
In this Principal System Administrator position you will make impats in the following ways;
3 Administer patch management for RHEL-based Linux systems, including vulnerability scanning, patch deployment, and compliance validation.
3 Install and configure Trellix (McAfee) Linux Agents for endpoint protection and ePO integration.
3 Deploy and configure Splunk Universal Forwarders on Linux systems; manage log ingestion and index routing.
3 Reset LDAP BIND credentials within Splunk, ensuring connectivity and access control integration.
3 Perform VCSA (vCenter Server Appliance) patching and lifecycle operations.
3 Apply updates to VMware ESXi hosts, ensuring host profile compliance and uptime.
3 Access and navigate the ESXi Direct Console User Interface (DCUI) for low-level host management.
3 Perform Exchange operations in a classified environment including user mailbox creation, troubleshooting, and routine maintenance.
3 Manage and maintain NetApp storage systems, including volumes, snapshots, and secure protocols.
3 Operate in VMware vSphere environments, including provisioning, performance monitoring, and resource management.
3 Install, configure, and maintain WSUS (Windows Server Update Services) for enterprise Windows patching.
3 Maintain comprehensive documentation and contribute to RMF packages and audit readiness.
3 Collaborate with ISSOs, security staff, and other IT stakeholders to ensure secure, compliant, and high-performing system operations
This position will be posted for at least 5 calendar days. The posting will remain active until the position is filled, or a qualified pool of candidates is identified.
Required Skills and Education
3 US Citizenship
3 Active U.S. Secret Security Clearance and CompTIA Security+ or equivalent DoD 8570 IAT Level II certification.
3 10+ years of experience (7+ years of experience with a degree) as a system administrator.
3 Strong command of Linux RHEL patching workflows and package management tools (e.g., YUM/DNF).
3 Experience with Trellix/McAfee agent installation on Linux systems and ePO integration.
3 Hands-on expertise with Splunk Universal Forwarders, indexers, and LDAP integration.
3 Experience with VMware infrastructure, including vCenter, VCSA, ESXi, and DCUI access.
3 Working knowledge of Microsoft Exchange administration.
3 Familiarity with NetApp management tools and SAN/NAS storage concepts.
3 Solid experience operating within vSphere environments in mission-critical settings.
3 Proven ability to configure and manage WSUS for Windows update distribution
Preferred Skills and Education
3 Active U.S. TS/SCI Security Clearance.
3 Experience supporting system accreditation efforts (SSP, POA&M, RMF).
3 Scripting skills (e.g., Bash, PowerShell) for automation and task efficiency.
3 Familiarity with DISA STIGs, Nessus vulnerability scanning, and cyber compliance frameworks.
3 Prior experience in secure lab or test bed environments (Lab-in-a-Box, SAP/SAR support)