About The Position

VT-ARC is seeking a Senior Systems Infrastructure Engineer & Architect (Enterprise Mission Systems SME) to support enterprise systems engineering, secure infrastructure modernization, classified enclave implementation, and operational transition for mission-critical enterprise communications, network modernization, and cyber programs within TS/SCI environments. This role is focused on systems infrastructure engineering across the full implementation lifecycle, from requirements interpretation and architecture input through detailed design, build, integration, hardening, automation, validation, documentation, and transition to operations. The selected candidate will design, implement, and sustain secure enterprise systems capabilities across Windows, Linux, virtualization, directory services, DNS/DHCP/NTP, PKI/certificates, storage, backup and recovery, monitoring, patching, configuration management, and automation. The role will also coordinate closely with network and cyber teams to ensure systems are connected, secured, monitored, scanned, accredited, and operationally supportable. Active Top Secret/SCI clearance is required. VT-ARC offers a competitive signing bonus for qualified candidates.

Requirements

  • Senior-level experience as a systems engineer, infrastructure engineer, systems architect, mission infrastructure engineer, platform engineer, or equivalent role supporting classified, DoD, IC, federal, or high-assurance enterprise environments.
  • Strong hands-on experience designing, deploying, administering, and sustaining Windows Server and Linux infrastructure, including system build, configuration, hardening, patching, monitoring, troubleshooting, and lifecycle management.
  • Strong working knowledge of virtualization, compute, storage, backup and recovery, high availability, performance tuning, capacity planning, and enterprise infrastructure operations.
  • Experience with core infrastructure services such as Active Directory/LDAP, Group Policy, DNS, DHCP, NTP, PKI/certificates, authentication, administrative access, and enterprise management services.
  • High proficiency with scripting and automation using PowerShell, Bash, Python, Ansible, Terraform, or similar tools to automate provisioning, configuration, validation, patching, reporting, and operational support tasks.
  • Strong network-adjacent systems knowledge, including IP addressing, subnets, VLANs, routing dependencies, firewall rules, load balancers, proxies, ports and protocols, remote administration paths, and troubleshooting across system/network boundaries.
  • Experience implementing security hardening, DISA STIGs, patch management, vulnerability remediation, access controls, audit logging, endpoint protection, and continuous monitoring for enterprise systems.
  • Ability to coordinate technical dependencies across systems, network, cybersecurity, identity, cloud, infrastructure, operations, vendors, integrators, and mission stakeholders.
  • Experience supporting RMF, ATO, STIG, security control implementation, continuous monitoring, asset management, or equivalent cybersecurity compliance activities for systems infrastructure.
  • Ability to produce clear technical documentation, including architecture diagrams, build guides, configuration records, runbooks, implementation plans, ports and protocols matrices, test procedures, and operational handoff materials.
  • Candidates should bring senior systems engineering and infrastructure ownership experience; help desk-only, desktop support-only, or narrowly scoped administration experience is not sufficient for this role.

Nice To Haves

  • Experience with VMware vSphere/vCenter/ESXi, Hyper-V, Nutanix, KVM, SAN/NAS platforms, enterprise backup tools, or similar virtualization, compute, and storage technologies.
  • Experience with Red Hat Enterprise Linux, Windows Server, Microsoft MECM/SCCM, WSUS, Red Hat Satellite, Ansible Automation Platform, Group Policy, DISA STIG automation, or equivalent enterprise management tooling.
  • Experience with cloud or hybrid infrastructure in DoD or federal environments, including AWS GovCloud, Azure Government, IL5/IL6 environments, cloud identity, cloud networking dependencies, or cloud-native management services.
  • Experience with container or platform environments such as Kubernetes, OpenShift, Docker, GitLab, artifact repositories, secrets management, or DevSecOps infrastructure.
  • Experience with PKI, certificate lifecycle management, identity federation, MFA, privileged access management, service accounts, secrets handling, or secure administrative access patterns.
  • Experience integrating systems infrastructure with cyber tools such as Splunk, Elastic, Microsoft Sentinel, EDR/XDR platforms, Tenable/ACAS, Qualys, Rapid7, asset inventory, or configuration compliance tools.
  • Experience supporting classified enclaves, multi-enclave environments, air-gapped networks, lab/test environments, mission partner connectivity, or secure infrastructure modernization programs.
  • Experience with packet capture, log analysis, certificate troubleshooting, DNS troubleshooting, system performance analysis, storage troubleshooting, backup/restore testing, failover testing, or operational acceptance testing.
  • Professional certifications such as Security+, CASP+/SecurityX, CISSP, RHCSA, RHCE, VCP, Microsoft, AWS, Azure, CCNA, CCNP, Linux+, Server+, ITIL, or equivalent systems, security, cloud, or network credentials.

Responsibilities

  • Design, implement, integrate, maintain, and modernize secure enterprise systems infrastructure supporting classified, sensitive, multi-enclave, lab, test, and mission operating environments.
  • Engineer Windows and Linux server environments, virtualization platforms, storage services, backup and recovery capabilities, monitoring tools, management services, and infrastructure automation capabilities.
  • Implement and sustain core infrastructure services such as Active Directory/LDAP, Group Policy, DNS, DHCP, NTP, PKI/certificates, file services, authentication services, administrative access, and enterprise management services.
  • Build and maintain virtualization and compute environments, including host configuration, virtual machine templates, golden images, resource allocation, clustering, high availability, capacity planning, performance tuning, and lifecycle management.
  • Develop scripts and automation using PowerShell, Bash, Python, Ansible, Terraform, or similar tools to standardize provisioning, configuration, hardening, validation, reporting, remediation, and operational support workflows.
  • Apply security hardening, DISA STIGs, patch management, vulnerability remediation, configuration baselines, system health checks, access controls, audit logging, and continuous monitoring practices across server and infrastructure environments.
  • Coordinate network-dependent systems requirements, including IP addressing, VLANs and subnets, DNS records, firewall rules, ports and protocols, routing dependencies, load balancers, proxies, VPN or management access, and out-of-band or administrative paths.
  • Integrate systems infrastructure with cybersecurity platforms, including SIEM log forwarding, EDR/XDR agents, vulnerability scanning, asset inventory, configuration monitoring, identity services, and operational monitoring tools.
  • Support lab validation, proof-of-concept activities, infrastructure builds, migration events, integration testing, failover testing, cutovers, troubleshooting, operational acceptance testing, and transition to operations.
  • Troubleshoot complex issues across systems, virtualization, storage, identity, DNS, certificates, endpoint management, network connectivity, firewalls, performance, logging, and security tooling.
  • Develop system architecture diagrams, build guides, configuration records, interface control documentation, ports and protocols matrices, runbooks, test procedures, migration plans, cutover plans, and operational handoff materials.
  • Coordinate technical dependencies with systems engineering, network engineering, cybersecurity, identity, cloud, infrastructure, operations, vendors, integrators, and Government stakeholders.
  • Support RMF, ATO, STIG, security control implementation, continuous monitoring, asset management, vulnerability remediation, and compliance evidence activities as they relate to enterprise systems infrastructure.
  • Provide mentoring and technical guidance to engineers, administrators, and operations teams on secure systems design, infrastructure automation, operational supportability, and cross-domain troubleshooting.

Benefits

  • Competitive Salary
  • Competitive benefits package
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service