Job Title: Senior Windows Systems Engineer
Location: Washington, DC
Type: 6+ months contract – good chance to extend
Work Model: Washington, DC (Hybrid) Onsite approximately 2x per week - Work primarily REMOTE with the need to support on site as needed to meet the needs of the program
Security Clearance: Must be able to obtain a Public Trust clearance
As the Senior Windows Systems Engineer supporting a federal client, you will provide senior technical support for the agency’s Windows platform. You will design, engineer, configure, deploy, maintain, monitor, and modernize Windows components and environment within the FTC IT infrastructure. Support program operations and maintenance activities. Will set the standards the rest of the team builds to and serve as an escalation point when an issue exceeds Tier 1 and Tier 2 support. This is a hands-on engineering role with design ownership: you will contribute to how the platform is built, hardened, automated, recovered, and maintained. You will mentor the administrators who operate it day to day.
Duties and Responsibilities
Required Qualifications
- Bachelor’s degree in computer science, information systems, engineering, or a related technical field, and eight (8) or more years of progressive Windows Administration and engineering experience OR Master’s degree in a related field and at least 6 years of relevant experience in above areas. Equivalent additional experience may substitute for the degree.
- A minimum of six (6) years of experience in cloud operations, engineering, or related field.
- A minimum of three (3) years performing at a senior and lead level with design and architecture ownership for an enterprise Windows environment.
- Familiarity with federal compliance (NIST, FISMA, FedRAMP) and CIS 4.0 controls.
- Experience designing, operating and maintaining Microsoft Azure environments to include Zero Trust, hybrid cloud, and cross-domain architectures in mission environments.
- Expertise in Microsoft Azure architecture, Microsoft Entra ID and on-prem interoperability.
- Experience with Azure Monitor and cost optimization strategies.
- Experience with the configuration, deployment, and management of Microsoft Entra ID / Azure AD for centralized identity, single sign-on (SSO), and role-based access control (RBAC) across Azure tenants and subscriptions.
- Demonstrated experience with the integration of federated identity solutions with AWS Identity Center, Entra, or on-premises Active Directory.
- Develop and enforce Azure governance frameworks, including Azure Policy, Management Groups, and Blueprints, ensuring alignment with DoD Zero Trust and least-privilege principles.
- Familiarity with orchestration tools like Ansible, Chef, or Puppet for configuration management and ability to implement Continuous Integration/Continuous Deployment (CI/CD) pipelines for cloud infrastructure provisioning and deployment automation.?
- Ability to script in one more of the following computer languages Python, Bash, Visual Basic or PowerShell.?
- Understanding of federated identity, modern authentication protocols (SAML, OIDC, OAuth 2.0), and cross-cloud authentication mechanisms.
- Hands on experience with and knowledge of networking concepts (DNS, VPNs, load balancers, etc.) and cloud-based networking configurations.
- Configure, maintain and upgrade 2019, 2022, & 2025 servers operating systems by performing system administration tasks related to:
- Microsoft Application installation and maintenance
- 3rd Party software installation and maintenance
- Configure, maintain and upgrade physical and virtual server installations in FTC datacenters, to include:
- OS installation and configuration
- Out of Band management configuration (iLO, etc.)
- Hardware installation/maintenance (network adapter, memory, hard drives, etc.)
- RAID Configuration
- Network adapter configuration
- SCSI and Fiber Channel configuration
- Experience and ability to immediately contribute to Automation Tasks and Infrastructure-as-Code tools and templates.
- Provide experience designing, deploying, and maintaining Active Directory Certificate Services (AD CS) ?/ PKI environments.
- Applied knowledge of system security engineering, including CIS and STIG hardening, vulnerability management, and federal compliance frameworks (FISMA, NIST SP 800-53).
- Extensive experience with Visio or other networking diagram tools and solid understanding of Networking principles.
- Excellent troubleshooting skills with the ability to resolve complex technical issues in a timely manner.
- Strong problem-solving skills and ability to conduct root cause analysis.
- Actively participate in the process of reviewing and improving operational processes, procedures, technology, and documentation. Support the program team in efforts to improve service delivery to the FTC. Adopt program directed procedural changes, process changes, and tool changes as required for the role.
- Perform work activities in accordance with program processes, procedures, and service level agreements.
- Support other anticipated requirements that will emerge and are reasonably aligned to the role supporting server elements of the infrastructure.
- Demonstrated ability to complete technical projects independently, with strong organizational skills and attention to detail.
- Create, monitor and drive to resolution change requests and trouble tickets for service level changes that affect Windows Servers and applications installed on Windows servers.
- Excellent written and verbal communication skills. This includes drafting SOPs and technical documentation as well as communication with senior program and customer leadership.
- ITIL4 experience.
- ServiceNow experience and review incoming ServiceNow tickets and work to resolve any incident tickets and service requests as assigned for:
- Maintain status of assigned tickets in accordance with program standards and program SLAs, including quality of status and timeliness of updates.
- Be comfortable in preparation of data and presentations then active participation and presenting in Leidos and customer meetings as required.
- Microsoft Certified Azure Administrator Associate certification (AZ-104).
- Current DoD 8570/8140 baseline certification appropriate for Intermediate System Administrator roles (e.g., Security+, GSEC, SSCP, or equivalent).
- Any other certifications in support of the stated work scope requirements.
- Server builds
- Server configuration changes
- Windows Permissions changes
- File Server ACL changes
- Application maintenance for: Symantec Endpoint Protection (Servers), Carbon Black Protection (Servers)
- DNS/DHCP Updates
- Active Directory (including Group Policy Objects)
System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.
System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.
#M-2
#LI-CB5
Ref: #851-Rockville-S1