IT/Network System Administrator

Jobtailor

Chevy Chase (MD)

On-site

USD 110,000 - 165,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Lynk is seeking a Network Engineer to design, deploy, and secure our LAN/WAN, VPN, and firewall infrastructure across multiple locations in the United States. You will lead architecture decisions and ensure systems are hardened per ITAR and NIST SP 800-171 standards.

Responsibilities include managing Entra ID/Azure AD, Intune, Defender, and endpoint policy, while enabling compliance and incident response. Hybrid coordination with security teams is required.

Qualifications

  • 4+ years of experience in network engineering, systems administration, or infrastructure management.
  • Hands-on experience designing and maintaining LAN/WAN, VPN, firewall, and wireless network infrastructure.
  • Strong Windows Server and macOS environment administration experience.
  • Experience managing Microsoft Entra ID (Azure AD), Conditional Access, and Office 365 at an administrative/architectural level.
  • Hands-on experience with Microsoft Intune for device/endpoint management and compliance policy.
  • Experience with MDM platforms such as NinjaOne, ManageEngine, or similar
  • Experience deploying and managing Microsoft Defender (Endpoint/365) or comparable endpoint security/EDR tooling
  • Understanding of network security fundamentals: firewalls, segmentation, and endpoint protection
  • Familiarity with CMMC Level 2 / NIST SP 800-171 control requirements and experience maintaining endpoint compliance in a regulated environment
  • Comfortable providing basic end-user technical support alongside infrastructure duties
  • Strong documentation, troubleshooting, and incident-response skills
  • Relevant certification preferred (e.g., CompTIA Network+/Security+, CCNA, Microsoft Certified: Intune/Endpoint Manager, or equivalent experience).

Responsibilities

  • Design, deploy, and maintain LAN/WAN, wireless, VPN, and firewall infrastructure across Lynk office and lab locations.
  • Own network architecture decisions — segmentation, routing, VLANs, redundancy, and capacity planning as the company scales.
  • Administer and harden core infrastructure: Microsoft Entra ID (Azure AD), Conditional Access, DNS/DHCP, Office 365, and endpoint security (ESET, Microsoft Defender) at the systems-administration level.
  • Manage endpoint and device compliance through Microsoft Intune and MDM platforms (e.g., NinjaOne), including policy design, patch management, and fleet-wide enforcement.
  • Deploy, monitor, and maintain security posture via Microsoft Defender (Endpoint/365) — threat detection, alerting, and remediation.
  • Monitor network and infrastructure health; lead incident response and root-cause analysis for outages and performance issues.
  • Implement and maintain infrastructure security controls (firewalls, MFA, network segmentation, endpoint protection) in line with ITAR and export-control obligations.
  • Support Lynk's CMMC Level 2 compliance program — maintain endpoint compliance (patching, configuration baselines, encryption, access control) across the device fleet and evidence controls for audits.
  • Monitor and remediate endpoint compliance drift via Intune/NinjaOne and Microsoft Defender to keep the environment aligned with NIST SP 800-171 control requirements.
  • Partner with security/compliance stakeholders on System Security Plans (SSPs), POA&Ms, and audit readiness for CMMC assessments.
  • Document network topology, infrastructure architecture, and disaster recovery/business continuity procedures.
  • Serve as a secondary/escalation point of contact for basic end-user technical issues (hardware, software, connectivity, account access).
  • Provision and configure end-user hardware (laptops, peripherals) in line with security and compliance baselines.
  • Troubleshoot common Windows/macOS and Office 365 issues for staff as needed.
  • Support onboarding/offboarding from an infrastructure and access-management perspective (accounts, device enrollment, permissions).

Skills

LAN/WAN Design
VPN Configuration
Firewall Management
Windows Server Administration
MacOS Administration
Endpoint Compliance Management
Network Segmentation
Patch Management
Incident Response
Documentation

Tools

Microsoft Defender
ESET
NinjaOne
ManageEngine
Office 365
DNS/DHCP
MFA
Endpoint Protection
Disaster Recovery
Business Continuity

Job description

Responsibilities
  • Design, deploy, and maintain LAN/WAN, wireless, VPN, and firewall infrastructure across Lynk office and lab locations
  • Own network architecture decisions — segmentation, routing, VLANs, redundancy, and capacity planning as the company scales
  • Administer and harden core infrastructure: Microsoft Entra ID (Azure AD), Conditional Access, DNS/DHCP, Office 365, and endpoint security (ESET, Microsoft Defender) at the systems-administration level
  • Manage endpoint and device compliance through Microsoft Intune and MDM platforms (e.g., NinjaOne), including policy design, patch management, and fleet-wide enforcement
  • Deploy, monitor, and maintain security posture via Microsoft Defender (Endpoint/365) — threat detection, alerting, and remediation
  • Manage server infrastructure (physical and virtual), including provisioning, patching, backup, and lifecycle management
  • Monitor network and infrastructure health; lead incident response and root-cause analysis for outages and performance issues
  • Implement and maintain infrastructure security controls (firewalls, MFA, network segmentation, endpoint protection) in line with ITAR and export-control obligations
  • Support Lynk's CMMC Level 2 compliance program — maintain endpoint compliance (patching, configuration baselines, encryption, access control) across the device fleet and evidence controls for audits
  • Monitor and remediate endpoint compliance drift via Intune/NinjaOne and Microsoft Defender to keep the environment aligned with NIST SP 800-171 control requirements
  • Partner with security/compliance stakeholders on System Security Plans (SSPs), POA&Ms, and audit readiness for CMMC assessments
  • Document network topology, infrastructure architecture, and disaster recovery/business continuity procedures
  • Serve as a secondary/escalation point of contact for basic end-user technical issues (hardware, software, connectivity, account access)
  • Provision and configure end-user hardware (laptops, peripherals) in line with security and compliance baselines
  • Troubleshoot common Windows/macOS and Office 365 issues for staff as needed
  • Support onboarding/offboarding from an infrastructure and access-management perspective (accounts, device enrollment, permissions)
Requirements
  • 4+ years of experience in network engineering, systems administration, or infrastructure management
  • Hands-on experience designing and maintaining LAN/WAN, VPN, firewall, and wireless network infrastructure
  • Strong Windows Server and macOS environment administration experience
  • Experience managing Microsoft Entra ID (Azure AD), Conditional Access, and Office 365 at an administrative/architectural level
  • Hands-on experience with Microsoft Intune for device/endpoint management and compliance policy
  • Experience with MDM platforms such as NinjaOne, ManageEngine, or similar
  • Experience deploying and managing Microsoft Defender (Endpoint/365) or comparable endpoint security/EDR tooling
  • Understanding of network security fundamentals: firewalls, segmentation, and endpoint protection
  • Familiarity with CMMC Level 2 / NIST SP 800-171 control requirements and experience maintaining endpoint compliance in a regulated environment
  • Comfortable providing basic end-user technical support alongside infrastructure duties
  • Strong documentation, troubleshooting, and incident-response skills
  • Relevant certification preferred (e.g., CompTIA Network+/Security+, CCNA, Microsoft Certified: Intune/Endpoint Manager, or equivalent experience).
Core Competencies

Demonstrates expertise in network engineering and systems administration, with a strong focus on managing and securing LAN/WAN, VPN, and firewall infrastructures. Proficient in compliance with CMMC Level 2 and NIST SP 800-171 requirements, ensuring endpoint security and device management through Microsoft Intune and related tools.

Highest-signal resume keywords
  • Network Engineering
  • Microsoft Entra ID (Azure AD)
  • Microsoft Intune
  • CMMC Level 2 Compliance
  • Endpoint Security Management
Hard Skills
  • LAN/WAN Design
  • VPN Configuration
  • Firewall Management
  • Windows Server Administration
  • MacOS Administration
  • Endpoint Compliance Management
  • Network Segmentation
  • Patch Management
  • Incident Response
  • Documentation
Soft Skills
  • Troubleshooting
  • Technical Support
  • Communication
  • Collaboration
  • Problem-Solving
Certifications & Qualifications
  • CompTIA Network+
  • CompTIA Security+
  • CCNA
  • Microsoft Certified: Intune/Endpoint Manager
Industry Keywords
  • CMMC Level 2
  • NIST SP 800-171
  • ITAR Compliance
  • Network Security Fundamentals
  • Infrastructure Management
Tools & Technologies
  • Microsoft Defender
  • ESET
  • NinjaOne
  • ManageEngine
  • Office 365
  • DNS/DHCP
  • MFA
  • Endpoint Protection
  • Disaster Recovery
  • Business Continuity
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT Manager
IT Manager

Jobtailor • Winfield (KS)

On-site
USD 90,000 - 120,000
Systems Engineer
Systems Engineer

Jobtailor • Tuscaloosa (AL)

On-site
USD 85,000 - 105,000
Manager, Network Infrastructure
Manager, Network Infrastructure

Jobtailor • California (MO)

On-site
USD 150,000 - 210,000
Network Engineer 3 - Tysons, VA
Network Engineer 3 - Tysons, VA

M.C. Dean, Inc • Tysons (VA)

On-site
USD 90,000 - 120,000
Collaborative work environment
Professional development opportunities
Network Engineer
Network Engineer

Jobtailor • Houston (TX)

On-site
USD 85,000 - 120,000
Senior IT Systems Administrator
Senior IT Systems Administrator

Jobtailor • Reston (VA)

On-site
USD 110,000 - 140,000
Network Engineer 2 - Tysons, VA
Network Engineer 2 - Tysons, VA

M.C. Dean, Inc • Tysons (VA)

On-site
USD 75,000 - 95,000
Senior Network Administrator
Senior Network Administrator

Jobtailor • Tustin (CA)

On-site
USD 90,000 - 120,000
Lead Network Engineer
Lead Network Engineer

Jobtailor • Madison (WI)

On-site
USD 120,000 - 160,000
Network Administrator
Network Administrator

Jobtailor • Coon Rapids (MN)

On-site
USD 55,000 - 75,000