Systems Engineer
Core
Design, implement, administer, and secure enterprise IT systems and Microsoft 365 Government Cloud environments for a regulated aerospace and defense manufacturing environment.
Role type
Senior Systems Engineer (Infrastructure & Security)
Builds
Secure hybrid IT infrastructure, identity management systems, and compliance-aligned security controls.
Domain
Aerospace and Defense / Cybersecurity & Compliance (via careerplan.io/jobs/TA-Aerospace-Systems-Engineer-systems-engineer-at-ta-aerospace)
Required skills
Microsoft 365 Government Cloud administration, Active Directory (on-prem/hybrid), PKI infrastructure, network security (firewalls/VPNs), vulnerability management, CMMC Level 2 compliance, NIST 800-171 compliance, ITAR data handling, identity lifecycle management, VMware/Hyper-V management, backup and recovery solutions.
Preferred skills
Microsoft Azure certifications, Microsoft 365 certifications, Security+ certification, data loss prevention (DLP) experience, zero-trust architecture experience.
Technologies
Microsoft 365, Active Directory, Azure, Hyper-V, VMware, Fortinet, Rubrik, Exchange Online, SharePoint Online, OneDrive, Microsoft Teams, PKI, NIST 800-171, CMMC Level 2, ITAR, SOX ITGC.
Responsibilities
Administer and secure Microsoft 365 Government Cloud environments and manage Exchange Online, SharePoint Online, OneDrive, and Microsoft Teams. Oversee on-premises and hybrid Active Directory, including identity lifecycle management, GPOs, and access controls. Design and maintain hybrid infrastructure, including VMware or Hyper-V platforms, and monitor performance, availability, and capacity. Implement and maintain security controls aligned with CMMC Level 2, NIST 800-171, and ITAR requirements, and support SOX ITGC requirements on related systems. Design, manage, and secure PKI infrastructure, including certificate authorities and certificate servers. Apply encryption standards to controlled data at rest and in transit, and support secure data transfers in regulated environments. Lead vulnerability management, security hardening, and audit-readiness work. Configure, manage, and monitor Fortinet firewalls, VPNs, and network security appliances; administer remote-user and third-party VPN access. Apply network segmentation and zero-trust principles where appropriate, and troubleshoot complex network and security incidents. Manage enterprise backup and recovery solutions, conduct and document disaster recovery testing, and protect data integrity and retention in line with regulatory requirements. Maintain system documentation, policies, procedures, and security artifacts. Work with our operations, sales, engineering, finance, and compliance teams, and support internal and external cybersecurity and regulatory audits.
Seniority
Senior, hands-on IC