HBSS/MDE Administrator jobs in United States
cer-icon
Apply on Employer Site
company-logo

Global Enterprise Services, LLC (GES) · 1 week ago

HBSS/MDE Administrator

Global Enterprise Services, LLC (GES) is seeking a skilled Senior HBSS/MDE Administrator to join the I3TS team supporting DTRA. The role involves ensuring the security and integrity of IT systems, managing endpoint security tools, and maintaining compliance with federal cybersecurity standards.

Cyber SecurityInformation Technology
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Continuous upkeep, monitoring, analysis, and response to Information System, network and security events using Endpoint Security tools such as Trellix and Microsoft Defender
STIG Application and Compliance:
Implement and maintain Security Technical Implementation Guides (STIGs) on Endpoint Security Tools
Conduct regular STIG compliance checks using tools like SCAP Compliance Checker and STIG Viewer
Document STIG configurations and remediation actions to ensure audit readiness
Patching and System Updates:
Manage and deploy operating systems and application patches in accordance with federal patch management policies
Coordinate patch schedules to minimize operational impact while meeting compliance deadlines
Verify patch deployment success and troubleshoot any issues arising from updates
System Hardening:
Harden systems by applying best practices and federal security guidelines to reduce attack surfaces
Maintain configuration baselines and ensure systems adhere to DoD and NIST standards
Incident Response Support:
Participates in internal/external security audits/inspections; performs risk assessments and Continuous Monitoring
Assist in identifying and responding to security incidents related to vulnerabilities or misconfigurations
Document incidents and contribute to after-action reports for continuous improvement
Collaboration and Reporting:
Work closely with system administrators, engineering staff, and compliance teams to ensure cohesive security operations
Prepare detailed reports and briefings for federal clients on STIG compliance, patching status, and vulnerability management efforts
Develop, implement and enforce Information Security Policies and Procedures
Tool Utilization:
Trellix and Microsoft Defender

Qualification

TrellixMicrosoft DefenderSTIG complianceRisk Management FrameworkMicrosoft WindowsLinuxSystem virtualizationSecurity+CISSPAnsibleMECMWriting skillsVerbal presentation skills

Required

BS bachelor's degree with 8-12 years' experience or 6-10 years of IA experience without a degree. Specific experience, education and training may be considered in lieu of degree
A Current DoD 8570 baseline certification
Understanding of the Risk Management Framework (RMF), NIST, ICD, and CNSS standards
Familiarity with network technologies (LAN & WAN) and best practices within a classified environment to include crypto and key management
STIG compliance, SCC and STIG Viewer experience, and ACAS expertise
Expert with Microsoft Windows, Linux, and system virtualization in a secure network environment
Must be able to work in a constantly changing regulatory environment with short-, mid-, and long-term timelines for remediating any non-compliance
Must be able to work well within a team environment and able to adapt quickly to change
Good writing and verbal presentation skills
Must possess an active DoD TS/SCI Clearance at time of consideration

Preferred

Security+ or CISSP or equivalent
DoD IS knowledge and experience
Security hardening scripting/automation experience
Ansible and or MECM experience
Microsoft OS Certification (MCSE Win 7 or other)
Linux certification (RHCSA, CompTIA Linux, LCFS/LCFE, etc.)

Company

Global Enterprise Services, LLC (GES)

twittertwitter
company-logo
Global Enterprise Services (GES) is a SBA certified 8(a) and Service Disabled Veteran Owned Small Business (SDVOSB) that provides Information Technology (IT) and Telecommunications consulting and services.

Funding

Current Stage
Early Stage
Company data provided by crunchbase