FEDITC LLC-posted 3 months ago
Full-time • Mid Level
San Antonio, TX
51-100 employees

FEDITC, LLC is a fast-growing business supporting DoD and other intelligence agencies worldwide. FEDITC develops mission critical national security systems throughout the world directly supporting the Warfighter, DoD Leadership, & the country. We are proud & honored to provide these services. FEDITC is seeking a Windows Domain Controller/Active Directory and Trellix/McAfee ePolicy Orchestrator Administrator to work at San Antonio Tx. This position is for a Senior Network Engineer/System Administrator with extensive Active Directory, Windows Domain Controller, and Trellix/McAfee ePolicy Orchestrator (ePO) experience. The role requires deep expertise in implementing, managing, and optimizing ePO, Policy Auditor, and other components of the DISA Endpoint Security Solutions suite of tools in DoD environments. A United States Citizenship and an active Secret DoD Security Clearance is required to be considered for this position. This is an upcoming opportunity contingent on contract award.

  • Design, engineer, update, and maintain ePolicy Orchestrator implementations across the enterprise.
  • Ensure compliance with DISA STIGs, DoD ICAM Reference Design, and DoDI 8520.03.
  • Design, build, and test configuration items such as task sequences, group policy objects, and system upgrades.
  • Research, analyze, and implement operational solutions across various technologies and operating systems using on-premises Group Policy, cloud-enabled policies, and Kiosk configurations for Windows, Linux, iOS, MacOS, ChromeOS, and Android endpoints.
  • Design, research, engineer, and deploy strategies for policy distribution in high-security cloud environments.
  • Provide Site Administrator support and Enterprise monitoring for Group Policy Objects, including initial troubleshooting and the addition of Security Groups to Group Policy Objects.
  • Expertise in DoD security directives, DISA STIGs, and DHA cybersecurity requirements.
  • 5+ years managing Windows Server environments with Active Directory in large/complex networks.
  • Deep understanding of AD replication, Kerberos, LDAP, Group Policy, and FSMO roles.
  • Familiarity with performance tuning and troubleshooting on DCs.
  • Expertise in Windows Server 2016/2019/2022 internals, registry, event logs, and system services.
  • Knowledge of Windows security baselines (CIS, DISA STIG).
  • Prior experience deploying enterprise tools on DCs (AV, endpoint protection, vulnerability scanning).
  • Experience configuring, deploying, and managing agents/policies through ePO.
  • Understanding of Policy Auditor content packs, custom checks, and compliance reporting.
  • Ability to map technical checks to compliance frameworks (e.g., NIST 800-53, PCI-DSS, SOX).
  • Familiarity with vulnerability and patch management processes.
  • Skilled with Windows PerfMon, Resource Monitor, and event tracing to baseline DC performance.
  • Ability to correlate PA scan impact with AD health (replication monitoring, dcdiag, repadmin).
  • Proficiency in PowerShell to automate pre-deployment health checks, reporting, and rollbacks.
  • Experience integrating scan results into SIEM dashboards or compliance workflows.
  • CompTIA Security+ CE
  • CISSP
  • CISA
  • GIAC Certified Windows Security Administrator (GCWN) or GIAC Security Essentials (GSEC)
  • Trellix Certified Product Specialist (ePO)
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service