Senior System Engineer
About the job
Job Description:
Sapient Logic is seeking a Senior Systems Engineer to support a joint mission system program in San Diego, CA. This position requires an expert-level engineer with strong expertise of Windows Server, Active Directory, RBAC, along with experience in Linux, and automation frameworks used to deploy and sustain enterprise domains across multiple environments (on-premises and cloud). The ideal candidate will lead complex system integrations, design domain architectures, and ensure secure, policy-compliant operations in line with DoD Zero Trust principles.
Responsibilities:
- Architect, deploy, and maintain Windows Server (2019/2022) across multi-site, multi-domain architectures.
- Lead configuration and management of Active Directory, DNS, DHCP, and Group Policy (GPOs).
- Implement Role-Based Access Control (RBAC) and least-privilege models.
- Design and administer Active Directory Certificate Services (AD CS), PKI, and Kerberos authentication.
- Manage RADIUS authentication for network devices and infrastructure systems.
- Administer SCCM/MECM and WSUS for patch management, software deployment, and configuration compliance.
- Develop and maintain PowerShell, Python, and Ansible automation for system provisioning, configuration, application installation, deployment, monitoring, and infrastructure management.
- Build automation utilities using JavaScript (Node.js) for cross-system orchestration and integration.
- Collaborate with Linux and Network Engineering teams to ensure secure interoperability (Kerberos, LDAP, RADIUS).
- Perform system hardening and validation in compliance with DoD STIGs, CIS Benchmarks, and Zero Trust frameworks.
- Design and oversee SQL Server deployments for integrated Windows services.
- Create and maintain detailed technical documentation, including configuration guides, design diagrams, and test procedures.
- Provide technical mentorship and oversight across enterprise Windows projects.
- Support systems integration, infrastructure engineering, automation, and deployment activities across classified multi-domain environments.
- Engineer and maintain virtualized Operating Environment infrastructure using KVM and EC2 on on-premise infrastructure and cloud environments.
- Develop Infrastructure-as-Code and configuration automation using Ansible, PowerShell, and Python across Windows Server and Linux/RHEL environments.
- Automate system configuration, software installation, task sequencing, provisioning, and deployment workflows.
- Support infrastructure architecture, system design, interface planning, and requirements-driven implementation using architecture and engineering artifacts.
- Partner with software, infrastructure, cybersecurity, Linux, and network engineering teams to troubleshoot complex system integration and deployment issues.
Required Qualifications:
- Bachelor’s degree in Computer Science, Information Technology, or related field (Master’s preferred) with 12+ years of progressive experience designing and maintaining enterprise Windows environments; OR an Associates degree and 14 years of IT Networking experience; OR a High School Diploma/GED and 16 years of IT Networking experience is required.
- Expert knowledge of Active Directory, DNS, DHCP, and GPOs.
- Expertise in RBAC, AD CS, PKI, Kerberos, and RADIUS authentication integration.
- Experience with Windows Server 2019/2022 configuration and hardening.
- Proficiency managing SCCM/MECM and WSUS for enterprise patching and software deployment.
- Automation with PowerShell and Ansible; experience with Git/CI-CD for Infrastructure-as-Code.
- Familiarity with Linux interoperability and cross-domain authentication.
- Knowledge of DoD cybersecurity frameworks (STIGs, CIS, Zero Trust).
- IAT Level II (e.g., Security+ CE) and OS/Computing Environment certification.
- Active DoD Top Secret clearance required.
- U.S. Citizenship required.
Preferred Qualifications:
- Experience with Azure, AWS, or GCP cloud environments.
- Understanding of Docker, Kubernetes, and microservices architectures.
- Strong analytical, leadership, and documentation skills.
- Proficiency using Jira, Confluence, and GitLab for Agile collaboration.
- Experience with virtualization technologies, including KVM.
- Proficiency with Python for infrastructure and systems automation.
- Experience supporting Windows and Linux/RHEL systems in classified or mission-critical environments.
- Experience with systems architecture/modeling tools such as Cameo and Visio.
- Experience developing Infrastructure-as-Code and automated deployment solutions.
- Experience presenting system status, technical risks, architecture, and engineering solutions to technical and program leadership.
- Microsoft Certified: Windows Server: Administrator Associate – strongly preferred.
- Microsoft Certified: Azure Administrator Associate (AZ-104) – preferred.
- Microsoft Certified: Identity and Access Administrator Associate (SC-300) – preferred.
Job Type: Full-time
Benefits:
- 401(k) with company match
- Health, dental, and vision insurance
- Health savings and flexible spending accounts
- Paid time off and parental leave
- Life insurance
- Professional development assistance
- Employee referral and assistance programs
Schedule:
- 8-hour shift
- Monday to Friday
Work Location:
In Person: San Diego, CA
Salary Range:
$150,000 – $170,000
Job Type: Full-time
Benefits:
- 401(k) with company match
- Health, dental, and vision insurance
- Health savings and flexible spending accounts
- Paid time off and parental leave
- Life insurance
- Professional development assistance
- Employee referral and assistance programs
Schedule:
- 8-hour shift
- Monday to Friday
Work Location:
In Person: San Diego, CA
Salary Range:
$150,000 – $170,000