We are looking for a Senior Systems Administrator to oversee the management and security of all end user endpoints within a CMMC 2.0-compliant environment. The ideal candidate will have deep expertise in Microsoft SCCM, Intune, and Entra ID (Azure Active Directory), with a strong understanding of endpoint compliance, access controls, and secure configuration management in support of CMMC Level 2 or Level 3 practices.
This is a mission-critical role that ensures our endpoint infrastructure supports operational efficiency while meeting strict DoD cybersecurity standards.
Key Responsibilities:
- Lead the administration and lifecycle management of end user endpoints (desktops, laptops, mobile devices, virtual machines) across the enterprise.
- Design and implement secure baseline configurations and compliance policies in alignment with CMMC 2.0 requirements.
- Manage endpoint deployment, patching, and application delivery using SCCM (System Center Configuration Manager) and Microsoft Intune.
- Administer and secure Microsoft Entra ID including device join processes, Conditional Access, identity governance, and role-based access controls (RBAC).
- Ensure compliance with CMMC 2.0 by maintaining system documentation, audit logs, and configuration management records.
- Develop and enforce Group Policy Objects (GPOs) to meet both operational and compliance needs.
- Collaborate with cybersecurity, compliance, and DevSecOps teams to align endpoint configurations with overall security posture.
- Conduct vulnerability mitigation efforts and system hardening in line with DoD STIGs and NIST 800-171 guidelines.
- Assist with assessments, audits, and evidence collection related to CMMC certification and sustainment.
- Monitor system health and proactively resolve performance or compliance issues across the endpoint fleet.
- Maintain documentation and standard operating procedures for endpoint management and incident response.
Required Qualifications:
- 7+ years of experience in systems administration with a strong focus on endpoint management.
- Expertise with Microsoft SCCM, Microsoft Intune, and Entra ID (Azure Active Directory).
- Hands-on experience managing systems in a CMMC 2.0, NIST 800-171, or other federal compliance framework.
- Proficient in PowerShell scripting and automation for systems administration and configuration management.
- Strong understanding of Windows 10/11 client OS, endpoint security, and vulnerability management practices.
- Familiarity with GPOs, Conditional Access, Zero Trust principles, and MFA enforcement.
- Ability to analyze compliance requirements and translate them into technical configurations and controls.
- Experience with patching, application packaging, and hardware lifecycle management.
Preferred Qualifications:
- Experience supporting a CMMC Level 2+ environment.
- Knowledge of DoD STIGs, DFARS, and FedRAMP practices.
- Microsoft or cybersecurity certifications such as:
- Microsoft Certified: Endpoint Administrator Associate
- Microsoft Certified: Security, Compliance, and Identity Fundamentals
- CompTIA Security+
- Certified Information Systems Security Professional (CISSP)
Key Traits:
- Strong attention to detail and security-minded.
- Excellent documentation and communication skills.
- Ability to work independently and collaborate across departments.
- Comfortable in fast-paced, regulated environments.
Read Full Description