Cybersecurity Tools & Infrastructure Administrator

Na Ali'i Consulting & Sales, LLC.•Charleston, SC

About The Position

The Cybersecurity Tools & Infrastructure Administrator supports Navy ERP’s core cybersecurity tools across Test and Production environments. This role maintains system health, applies patches, and manages configurations across Red Hat Enterprise Linux, Ubuntu Linux, and Windows Server infrastructure. The administrator works with Security Operations Center (SOC) analysts and system owners to onboard data sources, maintain agent health, and support effective alerting.

Requirements

  • 4+ years administering enterprise cybersecurity applications within DoD or federal IT environments.
  • Strong Linux system administration skills (RHEL and Ubuntu CLI, services, systemd, package management).
  • Working knowledge of Windows Server administration and Active Directory/RBAC concepts.
  • Direct hands-on administration experience with at least one of the following: Splunk Enterprise (distributed indexers, search heads, heavy/universal forwarders) or Tripwire Enterprise (console management, agent deployments, FIM policies).
  • DoD 8570/8140 IAT Level II baseline (Security+ CE, CCNA Security, CySA+, or equivalent).

Nice To Haves

  • Splunk Enterprise Certified Admin or Power User certification.
  • Relevant OS certifications (Red Hat RHCSA / RHCE, Linux+, or Microsoft Windows Server).
  • Scripting capability for automation and maintenance (Bash, PowerShell, or Python).

Responsibilities

  • Maintain operational readiness, performance, and uptime across test and production environments for Splunk (Linux RHEL 8/9) and Tripwire Enterprise (Windows 2022).
  • Monitor host-level services, disk storage, and resource utilization.
  • Execute application-level patching, hotfixes, and software upgrades.
  • Support OS-level patching, kernel updates, and hardening alongside host system administrators.
  • Maintain system compliance with DoD Security Technical Implementation Guides (STIGs) for the cyber team servers.
  • Onboard new data sources into Splunk; troubleshoot log ingestion, forwarder issues, and parsing rules.
  • Configure Tripwire Enterprise console, user RBAC, baseline integrity policies, and automated alerts.
  • Assist analysts with Splunk data models, dashboards, and automated report generation.
  • Diagnose and resolve application crashes, synchronization failures, and connectivity issues.
  • Coordinate with commercial vendor support teams (Splunk, Tripwire) for advanced bug resolution.
  • Author, update, and maintain Standard Operating Procedures (SOPs) and system administration runbooks.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service