ECA Staffing Solutions, Inc. · 2 months ago
Systems Engineer – Compliance & Infrastructure
ECA Staffing Solutions, Inc. is seeking a Systems Engineer to join their Compliance & Infrastructure team. The role focuses on hands-on system administration and security hardening to ensure compliance with FedRAMP, SOC 2, HIPAA, and GDPR regulations.
Human ResourcesRecruitingService IndustryStaffing Agency
Responsibilities
Patch, update, and maintain Linux virtual machines (Ubuntu, AlmaLinux, RHEL, Amazon Linux 2/2023) in adherence with FedRAMP and SOC 2 requirements
Manage and harden AWS EC2, networking, IAM, S3, security groups, and related infrastructure components
Maintain Windows VDI environments used for secure workloads, including patching, configuration, and baseline enforcement
Implement system hardening baselines (CIS, NIST 800-53-derived controls, etc.)
Use Vanta, AWS Inspector, and other scanning and monitoring tools to track vulnerabilities and ensure timely remediation
Maintain visibility into system health, configuration drift, and compliance posture across cloud and on-prem environments
Support evidence generation for compliance audits (without being the auditor)—logs, dashboards, patch records, configuration reports, etc
Configure and support customer-facing SSO integrations (SAML, OIDC) across IdPs such as Okta, Azure AD, Google Workspace, etc
Maintain internal IAM roles, policies, MFA enforcement, group structure, and access control hygiene
Partner with compliance and engineering teams to enforce least-privilege and secure access workflows
Maintain AWS environments with a strong focus on reliability, repeatability, and security
Improve automation for provisioning, configuration, patching, and monitoring (Terraform, Ansible, or similar)
Support secure logging, monitoring, and incident response pipelines
Assist in environment preparation and configuration for 3PAO testing and continuous monitoring activities
Ensure secure configurations for VPCs, subnets, routing, firewalls, VPNs, load balancers, and zero-trust access patterns
Validate and optimize logging, encryption, key management, and intrusion detection practices
Help design and enforce secure deployment pipelines and endpoint controls
Qualification
Required
3–7+ years of experience as a Systems Engineer, DevOps Engineer, Infrastructure Engineer, or similar role
Strong hands-on experience with Linux systems administration (patching, logs, networking, performance, security)
Solid background managing and securing AWS environments (EC2, IAM, VPC, SSM, CloudWatch, S3, etc.)
Familiarity with compliance-driven environments (FedRAMP, SOC 2, HIPAA, NIST frameworks, ISO 27001, etc.)
Experience managing vulnerability scanners or compliance automation platforms (Vanta, CrowdStrike, AWS Inspector, etc.)
Comfort with identity systems and SSO technologies (SAML, OIDC)
Practical understanding of network security best practices
Ability to document configurations, baselines, and system workflows clearly
Preferred
Experience supporting environments preparing for FedRAMP Moderate authorization
Terraform, Ansible, or similar IaC / automation experience
Experience with Windows Server or Windows VDI management in regulated environments
Familiarity with SIEM tools, log pipelines, and incident response workflows
Security certifications (e.g., Security+, SSCP, AWS Security Specialty, Linux+)