{"schemaVersion":"jobsearcher.job.v1","id":"0f05e0eb4d20522d92dff64f","url":"https://jobsearcher.com/jobs/0f05e0eb4d20522d92dff64f","canonicalUrl":"https://jobsearcher.com/jobs/0f05e0eb4d20522d92dff64f","title":"Sr Systems Security Engineer / Sr. Core Applications Administrator","description":"The ISR (Intelligence, Surveillance & Reconnaissance), Aviation, and Security (IAS) business area is a leader in ISR and aviation, it is a leading prime manned and unmanned aircraft systems integrator for innovative, high-performance ISR and aviation systems. Its end-to-end Command, Control, Computers, Communications and Intelligence, Surveillance & Reconnaissance (C4ISR) capabilities encompass design, integration, test, certification, ground/flight training and complete logistics support. IAS tailors solutions to customer cost, performance, and schedule requirements and designs to consistently exceed expectations – with an unrivaled record of on time and on (or under) budget deliveries.\nSNC has led thoughtful and disruptive change in the aerospace and defense industry for the past 60 years and now, we’re applying this tenacity and expertise to the U.S. Air Force’s (USAF) Survivable Airborne Operations Center (SAOC) mission. Join the SNC-led SAOC team and be a part of exciting and meaningful work to modernize and deliver the next-generation SAOC aircraft trusted by the President, Secretary of Defense and Chairs of the Joint Chiefs of Staff to ensure continued critical command, control and communication during national emergencies. If you’re passionate about building the airborne command post of the future, consider SNC for your next mission. Learn more about NC3 and SAOC here .\nIf you like solving complex IT and security problems using your deep analytical skills, this is the opportunity for you! As a Senior Systems Security Engineer, you will lead the design and implementation of our security infrastructure. You will manage complex security projects, provide strategic direction for security practices, and mentor junior engineers.\nResponsibilities:\n\nApplication Administration — Backend & Fronten d\nManage the full application lifecycle for critical engineering and DevOps platform applications — installation, configuration, patching, version upgrades, and retirement across RHEL/Linux environments.\nAdminister backend application server infrastructure including Apache Tomcat, JBoss/WildFly, or equivalent Java EE application servers — including heap tuning, connection pool management, and log configuration.\nManage frontend application delivery including web server configuration (Apache HTTPD, Nginx), reverse proxy setup, SSL/TLS certificate management, and load balancer integration.\nDevelop and maintain application configuration baselines — version-controlled configuration files, environment-specific parameter management, and configuration drift detection.\nExecute application patching and update cycles in alignment with program change management processes — including pre-patch testing, rollback planning, and post-patch validation.\nMonitor application health, performance, and availability using platform-specific monitoring tools and enterprise monitoring solutions — proactively identify and resolve performance degradation before it impacts users.\nMaintain application licensing compliance — track license utilization, manage license server configurations, and coordinate renewals and procurement with program management.\nRHEL / Linux Systems Administration\nAdminister Red Hat Enterprise Linux (RHEL) and/or CentOS/Rocky Linux environments supporting engineering application workloads — including system installation, hardening, user management, and package management (RPM/YUM/DNF).\nManage Linux system services, startup configurations (systemd), file system management, and storage mount points for application data and log directories.\nImplement and maintain RHEL DISA STIG hardening — apply security controls, manage firewall rules (firewalld/iptables), configure SELinux policies, and provide STIG compliance evidence for ATO/RMF packages.\nPerform Linux performance tuning for application workloads — kernel parameter optimization, I/O scheduling, network stack tuning, and memory management.\nDevelop shell scripts (Bash) and automation for routine administration tasks — log rotation, health checks, backup execution, user provisioning, and configuration validation.\nManage LDAP/Active Directory integration for Linux-hosted applications — configure Kerberos authentication, PAM modules, and SSSD for centralized identity management.\nJFrog / Artifactory Administration\nInstall, configure, and administer JFrog Artifactory as the program's enterprise artifact repository — including repository configuration (local, remote, virtual), user and group management, permission targets, and access federation.\nManage artifact lifecycle policies — retention rules, cleanup policies, storage quota management, and artifact promotion workflows across development, staging, and production repositories.\nConfigure Artifactory integration with CI/CD pipelines — GitLab CI, Jenkins, or equivalent — ensuring artifact publish, resolve, and promotion workflows function reliably across the DevSecOps pipeline.\nImplement and maintain software supply chain security controls in Artifactory — Xray integration for vulnerability scanning, license compliance enforcement, and malicious package detection on inbound dependencies.\nManage Artifactory high availability configurations, backup and restore procedures, and database backend maintenance (PostgreSQL or equivalent).\nAdminister JFrog Distribution or JFrog Pipelines if in scope — coordinate artifact distribution to downstream environments including air-gapped or classified network segments.\nGitLab / GitHub Administration\nAdminister GitLab self-managed or GitLab.com instances — including installation and upgrades, runner configuration and management, group and project structure governance, and user access control (RBAC).\nConfigure and maintain GitLab CI/CD pipeline infrastructure — shared runners, specific runners, runner scaling, and pipeline security controls including protected branches and approval rules.\nAdminister GitHub Enterprise or GitHub.com organization settings — repository management, team and permission structures, branch protection rules, Actions workflow governance, and security policy enforcement.\nImplement GitLab/GitHub security hardening — audit log management, secret scanning, dependency scanning, SAST integration, and compliance framework configuration.\nManage GitLab/GitHub high availability, backup, and disaster recovery procedures — including Gitaly cluster management, object storage configuration, and restore testing.\nSupport migration and consolidation of repositories between platforms or instances — including history preservation, permission mapping, and CI/CD pipeline migration.\n3DEXPERIENCE (3DX) Platform Administration\nMaintain and administer the Dassault Systemes 3DEXPERIENCE (3DX) platform — including server configuration, service management, database backend administration, and user provisioning.\nEnsure 3DX data continuity and model integrity — manage collaborative spaces, platform backups, data restoration procedures, and version control for engineering models and assemblies.\nPerform 3DX platform upgrades, hotfix application, and patch management in alignment with program change management processes and Dassault Systemes maintenance windows.\nConfigure 3DX roles, masks, and access control — manage user licenses, application roles (CATIA, ENOVIA, SIMULIA, DELMIA), and collaborative space permissions aligned with program authorization requirements.\nAdminister 3DX integration touchpoints — manage connections between 3DX and adjacent engineering tools (Cameo, Jama, Teamcenter) including API configurations, data exchange pipelines, and synchronization workflows.\nMonitor 3DX platform performance, session management, and database health — identify and resolve bottlenecks that impact engineering team productivity.\nSupport ATO/RMF activities for 3DX — apply applicable DISA STIGs or STIG-adjacent security controls for application and database layers and provide compliance documentation.\nCameo Systems Modeler Administration\nConfigure and optimize Cameo Systems Modeler (No Magic / Dassault Systemes) for complex systems engineering modeling environments — including server-side Teamwork Cloud (TWC) administration and client deployment management.\nAdminister Cameo Teamwork Cloud — manage projects, user access, branching and merging workflows, and model backup and restoration procedures.\nManage Cameo license server configuration — Flexera/FlexLM or equivalent — including license allocation, concurrent usage monitoring, and license file updates.\nConfigure Cameo integration with 3DX, Jama, and other engineering tools — establish and maintain data bridges, synchronization adapters, and API connections that enable cross-tool traceability.\nSupport Cameo version upgrades and migration of model repositories — including compatibility testing, migration procedure development, and rollback planning.\nProvide Tier 2/3 technical support for Cameo modeling environment issues — profile configuration problems, plugin conflicts, TWC connectivity issues, and model integrity failures.\nJama Connect / TWC Requirements Management Administration\nAdminister Jama Connect requirements management platform — including server administration, database backend management, user and group provisioning, and project configuration.\nManage Jama Connect upgrades, patches, and backup/restore procedures — ensure availability and data integrity of requirements traceability data across program projects.\nConfigure Jama Connect integrations — establish and maintain synchronization connections with Cameo Systems Modeler, Teamcenter, GitLab/Jira, and other downstream tools to ensure end-to-end requirements traceability.\nAdminister Teamcenter Workflow and Configuration (TWC) components — manage workflow templates, access controls, and configuration management processes that support program baseline management.\nMaintain Jama and Teamcenter API configurations and integration middleware — troubleshoot synchronization failures, data mapping issues, and connectivity problems between requirements management and engineering execution tools.\nSupport program requirements traceability audits — provide administrative evidence of data integrity, change history, and access control compliance for review and audit activities.\nIntegration Troubleshooting & Interoperability\nServe as the primary technical escalation point for interoperability issues between engineering applications — diagnose and resolve integration failures between 3DX, Cameo, Jama, Teamcenter, GitLab/GitHub, and Artifactory.\nDevelop and maintain integration architecture documentation — data flow diagrams, API dependency maps, authentication chain documentation, and integration runbooks for all cross-application connections.\nImplement integration monitoring and alerting — configure health checks, API availability monitoring, and data synchronization validation to detect integration failures before they impact engineering workflows.\nManage middleware and integration platform components — message queues, REST/SOAP API gateways, authentication proxies, and data transformation services that support cross-application data exchange.\nCoordinate integration testing following application upgrades or configuration changes — develop regression test procedures that validate all cross-application workflows before production deployment.\nMaintain integration runbooks and escalation procedures — ensure all integration failure scenarios have documented resolution paths and escalation contacts.\nSecurity, Compliance & Change Management\nApply and maintain DISA STIG hardening for all administered platforms — OS-level (RHEL STIG), application-level (GitLab, Artifactory, application server STIGs), and support ATO/RMF package development with technical evidence and control documentation.\nManage SSL/TLS certificate lifecycle for all administered applications — certificate issuance, renewal, deployment, and expiration monitoring across all platform endpoints.\nImplement role-based access control (RBAC) across all administered platforms — enforce least-privilege principles, conduct periodic access reviews, and remediate access control findings.\nExecute application changes through formal change management processes — change request submission, technical review participation, implementation planning, and post-change validation.\nMaintain technical documentation for all administered platforms — architecture diagrams, configuration baselines, runbooks, standard operating procedures, and change logs.\nProvide technical support for security audits, compliance assessments, and vulnerability management — coordinate remediation of findings across the administered application stack.\n\nQualifications You Must Have:\nBachelor's degree in Systems Security, Network Engineering, Information Technology, or related Engineering discipline.\n8+ years of experience in IT security or a related field.\nRelevant experience can be considered as a substitute for the required educational qualifications. In the absence of a degree, a minimum of 12 years of related experience is required.\nHigher level relevant degree may substitute for experience.\nExpert understanding of cybersecurity principles and practices.\nExperience with security frameworks and standards such as National Institute of Standards and Technology (NIST), ISO 27001.\n5+ years of hands-on application administration experience in Linux/RHEL environments — including application installation, configuration, patching, and performance tuning in a production or program-of-record context.\nDemonstrated production experience administering GitLab and/or GitHub at an organizational or enterprise scale — including user/group management, CI/CD runner administration, access control governance, and platform upgrades.\nDemonstrated production experience administering JFrog Artifactory — including repository configuration, permission management, artifact lifecycle policies, and CI/CD pipeline integration.\nHands-on experience administering at least two of the following engineering applications in a production or program environment: 3DEXPERIENCE (3DX), Cameo Systems Modeler / Teamwork Cloud, Jama Connect, or Siemens Teamcenter.\nProficient Linux/RHEL system administration skills — RPM/YUM/DNF package management, systemd service management, user and group administration, shell scripting (Bash), and file system management.\nExperience troubleshooting complex multi-application integration failures — API connectivity, authentication chain issues, data synchronization failures, and middleware configuration problems.\nWorking knowledge of SSL/TLS certificate management, network firewall rules, and application-layer security configuration in a Linux environment.\nCurrent/Active Top Secret U.S. Security Cearance is required.\n\nQualifications We Prefer:\nRelevant certifications: Red Hat Certified System Administrator (RHCSA), Red Hat Certified Engineer (RHCE), GitLab Certified Associate, JFrog Certified Professional, or equivalent.\nExperience administering all four engineering applications — 3DEXPERIENCE (3DX), Cameo Systems Modeler/Teamwork Cloud, Jama Connect, and Siemens Teamcenter — simultaneously within a single program environment.\nExperience administering engineering applications in a classified or air-gapped environment — including managing software distribution, license servers, and integration connectivity across network boundaries.\nDISA STIG application experience for Linux (RHEL STIG) and application platforms — including finding categorization (CAT I/II/III), remediation, false positive documentation, and ATO package contribution.\nExperience with containerization and orchestration platforms (Docker, Kubernetes, OpenShift) for engineering application deployment and management.\nExperience with JFrog Xray for software composition analysis (SCA), vulnerability scanning, and license compliance enforcement integrated into CI/CD pipelines.\nFamiliarity with Dassault Systemes 3DX platform architecture — ENOVIA, CATIA V6, VPM, 3DSpace, 3DDashboard — and multi-tenant or multi-server 3DX deployment configurations.\nExperience administering Cameo Teamwork Cloud at scale — multi-server deployments, cluster configuration, model branching governance, and large-scale TWC migration projects.\nExperience with Identity and Access Management (IAM) integration — LDAP, Active Directory, Kerberos, SAML/SSO configuration for engineering application authentication.\nScripting proficiency in Python or Ansible for application administration automation — configuration management, health check automation, and deployment scripting.\n\nEssential Functions:\nAbility to work primarily at a computer for extended periods.\nCapability to participate in on-call rotation for incident response.\nMust be able to lift up to 25 lbs occasionally.\nAbility to work in an office or hybrid environment.\nOccasional travel may be required.\nThis posting will be open for application for a minimum of 5 days and may be extended based on business needs.\nEstimated Starting Salary Range: $143,487.14 - $197,294.82. Compensation varies depending on a wide array of factors, such as candidates' key skills, relevant work experience, and education/training/certifications. The disclosed range estimate may be adjusted for any applicable geographic differential associated with the location at which the position may be filled.\nSNC offers annual incentive pay based upon performance that is commensurate with the level of the position.\nSNC offers a generous benefit package, including medical, dental, and vision plans, 401(k) with 150% match up to 6%, life insurance, 3 weeks paid time off, tuition reimbursement, and more .\nIMPORTANT NOTICE:\nThis position requires current/active Top Secret with SCI eligibility U.S. Security Clearance. U.S. Citizenship status is required as this position needs an active U.S. Security Clearance for employment. Non-U.S. Citizens may not be eligible to obtain a security clearance. The Department of Defense Consolidated Adjudications Facility (DoD CAF), a federal government agency, handles the adjudicative aspects of the security clearance eligibility process for industry applicants. Adjudicative factors which affect the outcome of the eligibility determination include, but are not limited to, allegiance to the U.S., foreign influence, foreign preference, criminal conduct, security violations and illegal drug use.\n\nSNC is a global leader in aerospace and national security committed to moving the American Dream forward. We’re known and respected for our mission and execution focus, agility, and disruptive and rapid innovation. We provide leading edge technologies and transformative solutions that support our nation’s most critical security needs. If you are mission-focused, thrive in collaborative environments, and want to make our country stronger with state-of-the-art technologies that safeguard freedom, join our team!\nSNC is an Equal Opportunity Employer committed to an environment free of discrimination. Employment decisions are made based on merit without regard to race, color, age, religion, sex, national origin, disability, status as a protected veteran or other characteristics protected by law.","company":"Snc","rawCompany":"snc","city":"Lone Tree","state":"CO","isRemote":false,"isActive":false,"createdAt":"2026-08-05T12:59:09.733Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1244.00","title":"Network and Computer Systems Administrators","slug":"network-and-computer-systems-administrators"},{"code":"15-1211.00","title":"Computer Systems Analysts","slug":"computer-systems-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"928110","title":"National Security","slug":"national-security"},{"code":"488190","title":"Other Support Activities for Air Transportation","slug":"other-support-activities-for-air-transportation"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Sr Systems Security Engineer / Sr. Core Applications Administrator","description":"The ISR (Intelligence, Surveillance & Reconnaissance), Aviation, and Security (IAS) business area is a leader in ISR and aviation, it is a leading prime manned and unmanned aircraft systems integrator for innovative, high-performance ISR and aviation systems. Its end-to-end Command, Control, Computers, Communications and Intelligence, Surveillance & Reconnaissance (C4ISR) capabilities encompass design, integration, test, certification, ground/flight training and complete logistics support. IAS tailors solutions to customer cost, performance, and schedule requirements and designs to consistently exceed expectations – with an unrivaled record of on time and on (or under) budget deliveries.\nSNC has led thoughtful and disruptive change in the aerospace and defense industry for the past 60 years and now, we’re applying this tenacity and expertise to the U.S. Air Force’s (USAF) Survivable Airborne Operations Center (SAOC) mission. Join the SNC-led SAOC team and be a part of exciting and meaningful work to modernize and deliver the next-generation SAOC aircraft trusted by the President, Secretary of Defense and Chairs of the Joint Chiefs of Staff to ensure continued critical command, control and communication during national emergencies. If you’re passionate about building the airborne command post of the future, consider SNC for your next mission. Learn more about NC3 and SAOC here .\nIf you like solving complex IT and security problems using your deep analytical skills, this is the opportunity for you! As a Senior Systems Security Engineer, you will lead the design and implementation of our security infrastructure. You will manage complex security projects, provide strategic direction for security practices, and mentor junior engineers.\nResponsibilities:\n\nApplication Administration — Backend & Fronten d\nManage the full application lifecycle for critical engineering and DevOps platform applications — installation, configuration, patching, version upgrades, and retirement across RHEL/Linux environments.\nAdminister backend application server infrastructure including Apache Tomcat, JBoss/WildFly, or equivalent Java EE application servers — including heap tuning, connection pool management, and log configuration.\nManage frontend application delivery including web server configuration (Apache HTTPD, Nginx), reverse proxy setup, SSL/TLS certificate management, and load balancer integration.\nDevelop and maintain application configuration baselines — version-controlled configuration files, environment-specific parameter management, and configuration drift detection.\nExecute application patching and update cycles in alignment with program change management processes — including pre-patch testing, rollback planning, and post-patch validation.\nMonitor application health, performance, and availability using platform-specific monitoring tools and enterprise monitoring solutions — proactively identify and resolve performance degradation before it impacts users.\nMaintain application licensing compliance — track license utilization, manage license server configurations, and coordinate renewals and procurement with program management.\nRHEL / Linux Systems Administration\nAdminister Red Hat Enterprise Linux (RHEL) and/or CentOS/Rocky Linux environments supporting engineering application workloads — including system installation, hardening, user management, and package management (RPM/YUM/DNF).\nManage Linux system services, startup configurations (systemd), file system management, and storage mount points for application data and log directories.\nImplement and maintain RHEL DISA STIG hardening — apply security controls, manage firewall rules (firewalld/iptables), configure SELinux policies, and provide STIG compliance evidence for ATO/RMF packages.\nPerform Linux performance tuning for application workloads — kernel parameter optimization, I/O scheduling, network stack tuning, and memory management.\nDevelop shell scripts (Bash) and automation for routine administration tasks — log rotation, health checks, backup execution, user provisioning, and configuration validation.\nManage LDAP/Active Directory integration for Linux-hosted applications — configure Kerberos authentication, PAM modules, and SSSD for centralized identity management.\nJFrog / Artifactory Administration\nInstall, configure, and administer JFrog Artifactory as the program's enterprise artifact repository — including repository configuration (local, remote, virtual), user and group management, permission targets, and access federation.\nManage artifact lifecycle policies — retention rules, cleanup policies, storage quota management, and artifact promotion workflows across development, staging, and production repositories.\nConfigure Artifactory integration with CI/CD pipelines — GitLab CI, Jenkins, or equivalent — ensuring artifact publish, resolve, and promotion workflows function reliably across the DevSecOps pipeline.\nImplement and maintain software supply chain security controls in Artifactory — Xray integration for vulnerability scanning, license compliance enforcement, and malicious package detection on inbound dependencies.\nManage Artifactory high availability configurations, backup and restore procedures, and database backend maintenance (PostgreSQL or equivalent).\nAdminister JFrog Distribution or JFrog Pipelines if in scope — coordinate artifact distribution to downstream environments including air-gapped or classified network segments.\nGitLab / GitHub Administration\nAdminister GitLab self-managed or GitLab.com instances — including installation and upgrades, runner configuration and management, group and project structure governance, and user access control (RBAC).\nConfigure and maintain GitLab CI/CD pipeline infrastructure — shared runners, specific runners, runner scaling, and pipeline security controls including protected branches and approval rules.\nAdminister GitHub Enterprise or GitHub.com organization settings — repository management, team and permission structures, branch protection rules, Actions workflow governance, and security policy enforcement.\nImplement GitLab/GitHub security hardening — audit log management, secret scanning, dependency scanning, SAST integration, and compliance framework configuration.\nManage GitLab/GitHub high availability, backup, and disaster recovery procedures — including Gitaly cluster management, object storage configuration, and restore testing.\nSupport migration and consolidation of repositories between platforms or instances — including history preservation, permission mapping, and CI/CD pipeline migration.\n3DEXPERIENCE (3DX) Platform Administration\nMaintain and administer the Dassault Systemes 3DEXPERIENCE (3DX) platform — including server configuration, service management, database backend administration, and user provisioning.\nEnsure 3DX data continuity and model integrity — manage collaborative spaces, platform backups, data restoration procedures, and version control for engineering models and assemblies.\nPerform 3DX platform upgrades, hotfix application, and patch management in alignment with program change management processes and Dassault Systemes maintenance windows.\nConfigure 3DX roles, masks, and access control — manage user licenses, application roles (CATIA, ENOVIA, SIMULIA, DELMIA), and collaborative space permissions aligned with program authorization requirements.\nAdminister 3DX integration touchpoints — manage connections between 3DX and adjacent engineering tools (Cameo, Jama, Teamcenter) including API configurations, data exchange pipelines, and synchronization workflows.\nMonitor 3DX platform performance, session management, and database health — identify and resolve bottlenecks that impact engineering team productivity.\nSupport ATO/RMF activities for 3DX — apply applicable DISA STIGs or STIG-adjacent security controls for application and database layers and provide compliance documentation.\nCameo Systems Modeler Administration\nConfigure and optimize Cameo Systems Modeler (No Magic / Dassault Systemes) for complex systems engineering modeling environments — including server-side Teamwork Cloud (TWC) administration and client deployment management.\nAdminister Cameo Teamwork Cloud — manage projects, user access, branching and merging workflows, and model backup and restoration procedures.\nManage Cameo license server configuration — Flexera/FlexLM or equivalent — including license allocation, concurrent usage monitoring, and license file updates.\nConfigure Cameo integration with 3DX, Jama, and other engineering tools — establish and maintain data bridges, synchronization adapters, and API connections that enable cross-tool traceability.\nSupport Cameo version upgrades and migration of model repositories — including compatibility testing, migration procedure development, and rollback planning.\nProvide Tier 2/3 technical support for Cameo modeling environment issues — profile configuration problems, plugin conflicts, TWC connectivity issues, and model integrity failures.\nJama Connect / TWC Requirements Management Administration\nAdminister Jama Connect requirements management platform — including server administration, database backend management, user and group provisioning, and project configuration.\nManage Jama Connect upgrades, patches, and backup/restore procedures — ensure availability and data integrity of requirements traceability data across program projects.\nConfigure Jama Connect integrations — establish and maintain synchronization connections with Cameo Systems Modeler, Teamcenter, GitLab/Jira, and other downstream tools to ensure end-to-end requirements traceability.\nAdminister Teamcenter Workflow and Configuration (TWC) components — manage workflow templates, access controls, and configuration management processes that support program baseline management.\nMaintain Jama and Teamcenter API configurations and integration middleware — troubleshoot synchronization failures, data mapping issues, and connectivity problems between requirements management and engineering execution tools.\nSupport program requirements traceability audits — provide administrative evidence of data integrity, change history, and access control compliance for review and audit activities.\nIntegration Troubleshooting & Interoperability\nServe as the primary technical escalation point for interoperability issues between engineering applications — diagnose and resolve integration failures between 3DX, Cameo, Jama, Teamcenter, GitLab/GitHub, and Artifactory.\nDevelop and maintain integration architecture documentation — data flow diagrams, API dependency maps, authentication chain documentation, and integration runbooks for all cross-application connections.\nImplement integration monitoring and alerting — configure health checks, API availability monitoring, and data synchronization validation to detect integration failures before they impact engineering workflows.\nManage middleware and integration platform components — message queues, REST/SOAP API gateways, authentication proxies, and data transformation services that support cross-application data exchange.\nCoordinate integration testing following application upgrades or configuration changes — develop regression test procedures that validate all cross-application workflows before production deployment.\nMaintain integration runbooks and escalation procedures — ensure all integration failure scenarios have documented resolution paths and escalation contacts.\nSecurity, Compliance & Change Management\nApply and maintain DISA STIG hardening for all administered platforms — OS-level (RHEL STIG), application-level (GitLab, Artifactory, application server STIGs), and support ATO/RMF package development with technical evidence and control documentation.\nManage SSL/TLS certificate lifecycle for all administered applications — certificate issuance, renewal, deployment, and expiration monitoring across all platform endpoints.\nImplement role-based access control (RBAC) across all administered platforms — enforce least-privilege principles, conduct periodic access reviews, and remediate access control findings.\nExecute application changes through formal change management processes — change request submission, technical review participation, implementation planning, and post-change validation.\nMaintain technical documentation for all administered platforms — architecture diagrams, configuration baselines, runbooks, standard operating procedures, and change logs.\nProvide technical support for security audits, compliance assessments, and vulnerability management — coordinate remediation of findings across the administered application stack.\n\nQualifications You Must Have:\nBachelor's degree in Systems Security, Network Engineering, Information Technology, or related Engineering discipline.\n8+ years of experience in IT security or a related field.\nRelevant experience can be considered as a substitute for the required educational qualifications. In the absence of a degree, a minimum of 12 years of related experience is required.\nHigher level relevant degree may substitute for experience.\nExpert understanding of cybersecurity principles and practices.\nExperience with security frameworks and standards such as National Institute of Standards and Technology (NIST), ISO 27001.\n5+ years of hands-on application administration experience in Linux/RHEL environments — including application installation, configuration, patching, and performance tuning in a production or program-of-record context.\nDemonstrated production experience administering GitLab and/or GitHub at an organizational or enterprise scale — including user/group management, CI/CD runner administration, access control governance, and platform upgrades.\nDemonstrated production experience administering JFrog Artifactory — including repository configuration, permission management, artifact lifecycle policies, and CI/CD pipeline integration.\nHands-on experience administering at least two of the following engineering applications in a production or program environment: 3DEXPERIENCE (3DX), Cameo Systems Modeler / Teamwork Cloud, Jama Connect, or Siemens Teamcenter.\nProficient Linux/RHEL system administration skills — RPM/YUM/DNF package management, systemd service management, user and group administration, shell scripting (Bash), and file system management.\nExperience troubleshooting complex multi-application integration failures — API connectivity, authentication chain issues, data synchronization failures, and middleware configuration problems.\nWorking knowledge of SSL/TLS certificate management, network firewall rules, and application-layer security configuration in a Linux environment.\nCurrent/Active Top Secret U.S. Security Cearance is required.\n\nQualifications We Prefer:\nRelevant certifications: Red Hat Certified System Administrator (RHCSA), Red Hat Certified Engineer (RHCE), GitLab Certified Associate, JFrog Certified Professional, or equivalent.\nExperience administering all four engineering applications — 3DEXPERIENCE (3DX), Cameo Systems Modeler/Teamwork Cloud, Jama Connect, and Siemens Teamcenter — simultaneously within a single program environment.\nExperience administering engineering applications in a classified or air-gapped environment — including managing software distribution, license servers, and integration connectivity across network boundaries.\nDISA STIG application experience for Linux (RHEL STIG) and application platforms — including finding categorization (CAT I/II/III), remediation, false positive documentation, and ATO package contribution.\nExperience with containerization and orchestration platforms (Docker, Kubernetes, OpenShift) for engineering application deployment and management.\nExperience with JFrog Xray for software composition analysis (SCA), vulnerability scanning, and license compliance enforcement integrated into CI/CD pipelines.\nFamiliarity with Dassault Systemes 3DX platform architecture — ENOVIA, CATIA V6, VPM, 3DSpace, 3DDashboard — and multi-tenant or multi-server 3DX deployment configurations.\nExperience administering Cameo Teamwork Cloud at scale — multi-server deployments, cluster configuration, model branching governance, and large-scale TWC migration projects.\nExperience with Identity and Access Management (IAM) integration — LDAP, Active Directory, Kerberos, SAML/SSO configuration for engineering application authentication.\nScripting proficiency in Python or Ansible for application administration automation — configuration management, health check automation, and deployment scripting.\n\nEssential Functions:\nAbility to work primarily at a computer for extended periods.\nCapability to participate in on-call rotation for incident response.\nMust be able to lift up to 25 lbs occasionally.\nAbility to work in an office or hybrid environment.\nOccasional travel may be required.\nThis posting will be open for application for a minimum of 5 days and may be extended based on business needs.\nEstimated Starting Salary Range: $143,487.14 - $197,294.82. Compensation varies depending on a wide array of factors, such as candidates' key skills, relevant work experience, and education/training/certifications. The disclosed range estimate may be adjusted for any applicable geographic differential associated with the location at which the position may be filled.\nSNC offers annual incentive pay based upon performance that is commensurate with the level of the position.\nSNC offers a generous benefit package, including medical, dental, and vision plans, 401(k) with 150% match up to 6%, life insurance, 3 weeks paid time off, tuition reimbursement, and more .\nIMPORTANT NOTICE:\nThis position requires current/active Top Secret with SCI eligibility U.S. Security Clearance. U.S. Citizenship status is required as this position needs an active U.S. Security Clearance for employment. Non-U.S. Citizens may not be eligible to obtain a security clearance. The Department of Defense Consolidated Adjudications Facility (DoD CAF), a federal government agency, handles the adjudicative aspects of the security clearance eligibility process for industry applicants. Adjudicative factors which affect the outcome of the eligibility determination include, but are not limited to, allegiance to the U.S., foreign influence, foreign preference, criminal conduct, security violations and illegal drug use.\n\nSNC is a global leader in aerospace and national security committed to moving the American Dream forward. We’re known and respected for our mission and execution focus, agility, and disruptive and rapid innovation. We provide leading edge technologies and transformative solutions that support our nation’s most critical security needs. If you are mission-focused, thrive in collaborative environments, and want to make our country stronger with state-of-the-art technologies that safeguard freedom, join our team!\nSNC is an Equal Opportunity Employer committed to an environment free of discrimination. Employment decisions are made based on merit without regard to race, color, age, religion, sex, national origin, disability, status as a protected veteran or other characteristics protected by law.","datePosted":"2026-08-05T12:59:09.733Z","dateModified":"2026-08-05T12:59:09.733Z","hiringOrganization":{"@type":"Organization","name":"Snc","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Lone Tree","addressRegion":"CO","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"0f05e0eb4d20522d92dff64f"},"url":"https://jobsearcher.com/jobs/0f05e0eb4d20522d92dff64f"}}