IT Infrastructure & Systems Administrator

One Way Ventures

Chantilly (VA)

Hybrid

USD 100,000 - 140,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Elveo is seeking an IT Infrastructure & Systems Administrator to support and maintain core IT infrastructure, with emphasis on Microsoft Entra ID, Intune, Defender, and MDM tooling across Chevy Chase, MD and Chantilly, VA. You will monitor endpoint compliance, assist with security and CMMC requirements, and help ensure systems meet ITAR/export-control obligations.

The role also covers general systems and network administration, including firewalls, VPNs, DNS/DHCP, wireless infrastructure, and

Qualifications

  • 4+ years of experience in network engineering, systems administration, or infrastructure management.
  • Hands-on experience designing and maintaining LAN/WAN, VPN, firewall, and wireless network infrastructure.
  • Strong Windows Server and macOS environment administration experience.
  • Experience managing Microsoft Entra ID (Azure AD), Conditional Access, and Office 365 at an administrative/architectural level.
  • Hands-on experience with Microsoft Intune for device/endpoint management and compliance policy.
  • Experience with MDM platforms such as NinjaOne, ManageEngine, or similar.
  • Experience deploying and managing Microsoft Defender (Endpoint/365) or comparable endpoint security/EDR tooling.
  • Understanding of network security fundamentals: firewalls, segmentation, and endpoint protection.
  • Familiarity with CMMC Level 2 / NIST SP 800-171 control requirements and experience maintaining endpoint compliance in a regulated environment.
  • Comfortable providing basic end-user technical support alongside infrastructure duties.
  • Strong documentation, troubleshooting, and incident-response skills.
  • Relevant certification preferred (e.g., CompTIA Network+/Security+, CCNA, Microsoft Certified: Intune/Endpoint Manager, or equivalent experience)

Responsibilities

  • Administer and harden core infrastructure: Microsoft Entra ID (Azure AD), Conditional Access, DNS/DHCP, Office 365, and endpoint security (ESET, Microsoft Defender) at the systems-administration level
  • Manage endpoint and device compliance through Microsoft Intune and MDM platforms (e.g., NinjaOne), including policy design, patch management, and fleet-wide enforcement
  • Implement and maintain infrastructure security controls (firewalls, MFA, network segmentation, endpoint protection) in line with ITAR and export-control obligations
  • Support Lynk's CMMC Level 2 compliance program - maintain endpoint compliance (patching, configuration baselines, encryption, access control) across the device fleet and evidence controls for audits
  • Monitor and remediate endpoint compliance drift via Intune/NinjaOne and Microsoft Defender to keep the environment aligned with NIST SP 800-171 control requirements
  • Design, deploy, and maintain LAN/WAN, wireless, VPN, and firewall infrastructure across Lynk office and lab locations
  • Own network architecture decisions - segmentation, routing, VLANs, redundancy, and capacity planning as the company scales
  • Deploy, monitor, and maintain security posture via Microsoft Defender (Endpoint/365) - threat detection, alerting, and remediation
  • Manage server infrastructure (physical and virtual), including provisioning, patching, backup, and lifecycle management
  • Monitor network and infrastructure health; lead incident response and root-cause analysis for outages and performance issues
  • Partner with security/compliance stakeholders on System Security Plans (SSPs), POA&M; and audit readiness for CMMC assessments
  • Document network topology, infrastructure architecture, and disaster recovery/business continuity procedures

Skills

LAN/WAN design
VPN & Firewall
Windows Server admin
Azure Entra / Entra ID
Intune / MDM
Defender / EDR
CMMC / NIST controls
Documentation & IR

Tools

NinjaOne
ManageEngine
PowerShell
Office 365

Job description

About Elveo

Elveo is what happens when two pioneers in direct-to-device (D2D) communications join forces. Elveo brings together a combined 20 years of expertise to close the coverage gap for more than 50 mobile network operators (MNOs) and major distribution partners operating in 60+ countries worldwide.

That heritage and our technology powers what we call 'elevated intelligence' - a new approach that processes and adapts on orbit, delivering voice and data services straight to mobile users, IoT devices and machines across enterprise, government and humanitarian sectors worldwide.

As a team, we're on a mission to deliver powerful compute and connectivity directly to individuals and objects everywhere on Earth.

Join us, and become part of a globally inclusive company that is transforming satellite communications from a niche service to an essential global infrastructure, and democratizing connectivity for billions worldwide.

Ready to take the next step? Join us.

Job Summary

The IT Infrastructure & Systems Administrator will support and maintain Elveo's core IT infrastructure, with a particular focus on Microsoft identity, endpoint management, device security, and compliance across our Chevy Chase, MD and Chantilly, VA locations. This role will administer Microsoft Entra ID, Intune, Defender, Microsoft 365, and MDM tooling; monitor endpoint compliance and configuration drift; and help ensure systems remain aligned with Elveo's security and CMMC requirements.

The role will also support general systems and network administration, including firewalls, VPNs, DNS/DHCP, wireless infrastructure, and other corporate IT systems. While this is not primarily an end-user support position, the administrator will serve as an escalation point for technical issues and assist with device provisioning, onboarding/offboarding, and other hands-on IT needs when required.

Duties & Responsibilities
  • Administer and harden core infrastructure: Microsoft Entra ID (Azure AD), Conditional Access, DNS/DHCP, Office 365, and endpoint security (ESET, Microsoft Defender) at the systems-administration level
  • Manage endpoint and device compliance through Microsoft Intune and MDM platforms (e.g., NinjaOne), including policy design, patch management, and fleet-wide enforcement
  • Implement and maintain infrastructure security controls (firewalls, MFA, network segmentation, endpoint protection) in line with ITAR and export-control obligations
  • Support Lynk's CMMC Level 2 compliance program - maintain endpoint compliance (patching, configuration baselines, encryption, access control) across the device fleet and evidence controls for audits
  • Monitor and remediate endpoint compliance drift via Intune/NinjaOne and Microsoft Defender to keep the environment aligned with NIST SP 800-171 control requirements
  • Design, deploy, and maintain LAN/WAN, wireless, VPN, and firewall infrastructure across Lynk office and lab locations
  • Own network architecture decisions - segmentation, routing, VLANs, redundancy, and capacity planning as the company scales
  • Deploy, monitor, and maintain security posture via Microsoft Defender (Endpoint/365) - threat detection, alerting, and remediation
  • Manage server infrastructure (physical and virtual), including provisioning, patching, backup, and lifecycle management
  • Monitor network and infrastructure health; lead incident response and root-cause analysis for outages and performance issues
  • Partner with security/compliance stakeholders on System Security Plans (SSPs), POA&Ms, and audit readiness for CMMC assessments
  • Document network topology, infrastructure architecture, and disaster recovery/business continuity procedures
Basic End-User IT Support
  • Serve as a secondary/escalation point of contact for basic end-user technical issues (hardware, software, connectivity, account access)
  • Provision and configure end-user hardware (laptops, peripherals) in line with security and compliance baselines
  • Troubleshoot common Windows/macOS and Office 365 issues for staff as needed
  • Support onboarding/offboarding from an infrastructure and access-management perspective (accounts, device enrollment, permissions)
Qualifications
  • 4+ years of experience in network engineering, systems administration, or infrastructure management
  • Hands-on experience designing and maintaining LAN/WAN, VPN, firewall, and wireless network infrastructure
  • Strong Windows Server and macOS environment administration experience
  • Experience managing Microsoft Entra ID (Azure AD), Conditional Access, and Office 365 at an administrative/architectural level
  • Hands-on experience with Microsoft Intune for device/endpoint management and compliance policy
  • Experience with MDM platforms such as NinjaOne, ManageEngine, or similar
  • Experience deploying and managing Microsoft Defender (Endpoint/365) or comparable endpoint security/EDR tooling
  • Understanding of network security fundamentals: firewalls, segmentation, and endpoint protection
  • Familiarity with CMMC Level 2 / NIST SP 800-171 control requirements and experience maintaining endpoint compliance in a regulated environment
  • Comfortable providing basic end-user technical support alongside infrastructure duties
  • Strong documentation, troubleshooting, and incident-response skills
  • Relevant certification preferred (e.g., CompTIA Network+/Security+, CCNA, Microsoft Certified: Intune/Endpoint Manager, or equivalent experience)
Bonus
  • Experience with PowerShell or other scripting/automation tools
  • Direct experience preparing for or supporting a CMMC Level 2 assessment (SSP/POA&M development, C3PAO audit support)
  • Experience supporting infrastructure in a regulated or export-controlled (ITAR) environment
  • Previous startup experience is a strong plus
ITAR Requirements

To comply with U.S. Government export control regulations (ITAR), applicants must be one of the following: (i) a U.S. citizen or national, (ii) a lawful permanent resident (green card holder), (iii) a refugee under 8 U.S.C. § 1157, or (iv) an asylee under 8 U.S.C. § 1158. Individuals who do not meet these criteria must be eligible to obtain the necessary authorizations from the U.S. Department of State.

Learn about ITAR here: https://www.pmddtc.state.gov

Job Location

Chevy Chase, MD - Hybrid (2-3 days onsite/week), with periodic travel to Chantilly, VA

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Hybrid IT Infrastructure & Security Administrator
Hybrid IT Infrastructure & Security Administrator

One Way Ventures • Chantilly (VA)

Hybrid
USD 100,000 - 140,000
System Administrator/FSR – Onsite Customer Support
System Administrator/FSR – Onsite Customer Support

Ridgeline International, LLC • Tysons (VA)

On-site
USD 89,000 - 140,000
Flexible PTO + holidays
401k match up to 10%
Health/dental/vision/disability/life
+5
M365 Client Engineer
M365 Client Engineer

Elma Electronic • Fremont (CA)

On-site
USD 100,000 - 115,000
Competitive pay
Comprehensive benefits
Cutting-edge Microsoft cloud tech
+2
Systems Engineer- MECM
Systems Engineer- MECM

Indigo IT LLC • Ashburn (VA)

Hybrid
USD 90,000 - 130,000
Medical, Dental, and Vision coverage
401(k) with company match
Paid time off and holidays
+2
Desktop Device & Engineering Technical Staff (VA ESOM)
Desktop Device & Engineering Technical Staff (VA ESOM)

Kentro • City of Albany (NY)

On-site
USD 114,000 - 129,000
Paid time off
Healthcare benefits
401k match
+1
M365 Client Engineer (Lawrenceville, GA)
M365 Client Engineer (Lawrenceville, GA)

Elma Electronic AG • Lawrenceville (GA)

On-site
USD 100,000 - 115,000
Competitive pay and comprehensive&nbsp
Meaningful work supporting technology
Collaborative and innovative work环境
IT Systems Support Technician
IT Systems Support Technician

Eastern • Alpharetta (GA)

On-site
USD 65,000 - 75,000
Health insurance
401(k) plan with company match
Paid time off
Cloud Endpoint Engineer
Cloud Endpoint Engineer

Park National Corporation • Florida

Hybrid
USD 90,000 - 120,000
Infrastructure Systems Engineer (Teradyne, North Reading, MA)
Infrastructure Systems Engineer (Teradyne, North Reading, MA)

Teradyne • Reading (MA)

On-site
USD 70,000 - 114,000
Robust health benefits
Flexible Spending Accounts
Tuition assistance programs
IT System Administrator & Security Specialist
IT System Administrator & Security Specialist

Clever Devices Ltd. • North Carolina

Hybrid
USD 90,000 - 125,000
Health insurance
Retirement savings plans
Paid leave programs