Senior IT Operations Engineer (R6117)

Shield

Dallas (TX)

On-site

USD 99,000 - 140,000

Full time

4 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Shield AI is seeking a Senior IT Systems Engineer to build and sustain classified infrastructure supporting engineering work across Windows, Linux, virtualization, and storage in air-gapped environments. The role balances hands-on engineering with documentation and accreditation activities, ensuring secure, auditable, and resilient systems for ISSMs and government assessors.

You will automate provisioning and hardening, implement DISA STIGs, manage patching and backups, and coordinate with

Qualifications

  • Strong hands-on experience with Windows Server, Active Directory, Group Policy, DNS, DHCP, PKI, and enterprise endpoint management.
  • Experience administering Red Hat Enterprise Linux or similar enterprise Linux systems.
  • Experience with VMware, Nutanix, Hyper-V, or similar enterprise virtualization platforms. Nutanix AHV/Prism experience is preferred.
  • Experience with enterprise storage, backup/recovery, and capacity planning.
  • Experience with managed switching, VLANs, firewall administration, network segmentation, and troubleshooting network connectivity.
  • Experience with PowerShell and infrastructure automation. Experience with Ansible, Python, Terraform, or similar tools is a plus.
  • Experience applying DISA STIGs, using SCAP/STIG Viewer, supporting ACAS/Nessus findings, and working in RMF, NIST SP 800-53, JSIG, or similarly regulated environments.
  • Experience operating in disconnected, air-gapped, classified, or highly controlled environments.
  • Ability to document work clearly, follow change control, validate results, and build systems that are easy for others to support.
  • Ability to work independently in a fast-moving environment, shift between infrastructure disciplines when needed, and make sound technical decisions without requiring detailed direction.

Responsibilities

  • Build, deploy, configure, and sustain Windows Server, Red Hat Enterprise Linux, virtualization clusters, storage, and core services in standalone and air-gapped enclaves.
  • Build and support VMware, Nutanix AHV/Prism, or similar virtualization environments; Nutanix experience preferred.
  • Provide high-density compute for AI/ML, simulation, and engineering workloads; coordinate with facilities on rack space, power, and cooling.
  • Administer Active Directory, DNS, DHCP, PKI, certificate services, privileged access, and RBAC for isolated forests.
  • Create golden images and hardened baselines for servers, desktops, and VDI.
  • Manage patching, updates, and security content in disconnected environments.
  • Administer backup, recovery, and continuity; perform scheduled restore testing.
  • Configure and troubleshoot switches, VLANs, firewall rules, network segmentation, and secure connections between facilities.

Skills

Windows Server
Active Directory
DNS
DHCP
PKI
Group Policy
Endpoint management
VMware
Nutanix AHV/Prism
Hyper-V
Red Hat Enterprise Linux
Storage
Backup/Recovery
Network segmentation
PowerShell
Ansible
Python
Terraform
SCAP/STIG
RMF/NIST SP 800-53/JSIG

Education

Security+
CISSP
RHCSA/RHCE
VMware VCP
Nutanix NCA/NCP
Microsoft certifications
CCNA/CCNP

Tools

Elastic
Splunk
ACAS/Nessus

Job description

Shield AI is a venture-backed defense-tech company with the mission of protecting service members and civilians with intelligent systems. Its products include Hivemind autonomy software, V-BAT and X-BAT aircraft, and Aechelon simulation and synthetic reality technologies. With offices and facilities across the U.S., Europe, the Middle East, and Asia-Pacific, Shield AI’s technology actively supports operations worldwide. For more information, visit www.shield.ai . Follow Shield AI on LinkedIn , X , Instagram , and YouTube .

Job Description

The Senior IT Systems Engineer builds, improves, and sustains classified infrastructure supporting engineering work. The role covers compute, virtualization, storage, networking, identity, endpoints, and security tooling in standalone and air-gapped environments.

This is a hands‑on senior individual contributor position. Responsibilities include racking and imaging hardware, building and hardening systems, automating repeatable work, troubleshooting difficult issues, and helping establish technical standards across sites. The engineer must be comfortable working independently, shifting across infrastructure disciplines when needed, and owning work from design through testing, documentation, and support.

The role sits between IT operations and accreditation. Systems must be secure, reliable, and ready for review by ISSMs and government assessors. Correct implementation the first time, backed by complete documentation and technical evidence, is an expected part of every build.

What you'll do
Build and operate classified infrastructure
  • Deploy, configure, and sustain Windows Server and Red Hat Enterprise Linux systems, virtualization clusters, enterprise storage, and core infrastructure services in standalone and air-gapped enclaves.
  • Build and support VMware, Nutanix AHV/Prism, or similar virtualization environments. Nutanix experience is preferred.
  • Support high-density compute for AI/ML, simulation, and engineering workloads, including GPU node provisioning, performance troubleshooting, capacity planning, and coordination with facilities on rack space, power, and cooling.
  • Administer and support Active Directory, DNS, DHCP, Group Policy, PKI, certificate services, privileged access, and role‑based access for isolated forests with no connection to corporate IT.
  • Build and maintain golden images and hardened baselines for servers, workstations, virtual desktops, and supporting infrastructure.
  • Manage patching, updates, software packages, and security content in disconnected environments through approved transfer and validation processes.
  • Administer backup, recovery, and continuity capabilities. Perform scheduled restore testing and document results and corrective actions.
  • Design, configure, and troubleshoot managed switching, VLANs, firewall rules, network segmentation, and approved network connections between facilities. Coordinate with network and security teams to maintain secure, supportable network standards.
Automate and standardize
  • Automate provisioning, configuration, patching, reporting, and compliance tasks using PowerShell, Ansible, Python, Terraform, or similar tools.
  • Create repeatable build processes, system baselines, checklists, and runbooks so systems can be deployed consistently rather than built by hand each time.
  • Improve existing processes by reducing manual steps, preventing common errors, and documenting effective methods for building and supporting systems.
  • Apply and validate DISA STIGs and SRGs using SCAP, STIG Viewer, ACAS/Nessus, scripted remediation, and other approved tools.
  • Maintain configuration‑management records, as‑built documentation, change records, and scan evidence so system configurations can be understood and defended later.
  • Review technical changes before production implementation, with attention to security, availability, rollback planning, and operational impact.
Support accreditation and security operations
  • Work with ISSMs, ISSOs, security teams, and program stakeholders to implement NIST SP 800-53, JSIG, RMF, and program‑specific technical controls.
  • Provide technical documentation and evidence for authorization packages, continuous monitoring, assessments, and audits.
  • Implement and maintain audit logging and forwarding, including Elastic or similar centralized logging and SIEM tools.
  • Support vulnerability management through ACAS/Nessus scanning, findings triage, remediation planning, patching, and validation during approved maintenance windows.
  • Help resolve technical POA&M items and document remediation steps, validation results, and remaining risks.
  • Support approved media handling, file transfer, cross‑domain processes, and contamination or spillage response alongside the security team.
Support users and sites
  • Act as a senior escalation point for classified IT issues that block engineering work or require deeper troubleshooting across multiple systems.
  • Identify and correct root causes rather than relying on repeated fixes or workarounds.
  • Support user‑account, privileged‑access, and workstation‑access requests consistent with least privilege and separation‑of‑duties requirements.
  • Support new facility and enclave stand‑ups from rack layout and cabling through infrastructure deployment, user onboarding, and operational handoff.
  • Mentor junior system administrators and site IT staff, review implementation work before production release, and help improve team standards.
  • Work independently, manage competing priorities, communicate risks early, and bring practical solutions to the team.
Required qualifications
  • Strong hands‑on experience with Windows Server, Active Directory, Group Policy, DNS, DHCP, PKI, and enterprise endpoint management.
  • Experience administering Red Hat Enterprise Linux or similar enterprise Linux systems.
  • Experience with VMware, Nutanix, Hyper‑V, or similar enterprise virtualization platforms. Nutanix AHV/Prism experience is preferred.
  • Experience with enterprise storage, backup/recovery, and capacity planning.
  • Experience with managed switching, VLANs, firewall administration, network segmentation, and troubleshooting network connectivity.
  • Experience with PowerShell and infrastructure automation. Experience with Ansible, Python, Terraform, or similar tools is a plus.
  • Experience applying DISA STIGs, using SCAP/STIG Viewer, supporting ACAS/Nessus findings, and working in RMF, NIST SP 800-53, JSIG, or similarly regulated environments.
  • Experience operating in disconnected, air‑gapped, classified, or highly controlled environments.
  • Ability to document work clearly, follow change control, validate results, and build systems that are easy for others to support.
  • Ability to work independently in a fast‑moving environment, shift between infrastructure disciplines when needed, and make sound technical decisions without requiring detailed direction.
Preferred qualifications
  • Nutanix AHV, Prism Central, Files, Flow, or cluster lifecycle management.
  • GPU server, AI/ML, simulation, VDI, or high‑performance compute infrastructure.
  • Elastic, Splunk, or other centralized logging and SIEM platforms.
  • Disconnected WSUS, offline patching, software‑repository management, or approved media‑transfer workflows.
  • Data‑center buildouts, rack‑and‑stack, structured cabling, power/cooling coordination, and new‑facility stand‑ups.
  • Relevant technical or security certifications, such as Security+, CISSP, RHCSA/RHCE, VMware VCP, Nutanix NCA/NCP, Microsoft certifications, or CCNA/CCNP.

$99,000 - $140,000 a year

Full-time regular employee offer package

Pay within range listed + Bonus + Benefits + Equity

Temporary employee offer package

Pay within range listed above + temporary benefits package (applicable after 60 days of employment)

Salary compensation is influenced by a wide array of factors including but not limited to skill set, level of experience, licenses and certifications, and specific work location. All offers are contingent on a cleared background and possible reference check. Military fellows and part‑time employees are not eligible for benefits.

Shield AI is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, marital status, disability, gender identity or Veteran status. If you have a disability or special need that requires accommodation, please let us know.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior IT Operations Engineer (R6117)
Senior IT Operations Engineer (R6117)

Lever, Inc. • Dallas (TX), Northern (KY)

Hybrid
USD 99,000 - 140,000
Senior Network Engineer (R5667)
Senior Network Engineer (R5667)

Shield AI • San Mateo (CA)

On-site
USD 140,000 - 211,000
Equity
Bonus
Benefits
Staff Engineer, Mission Systems Software (R5888)
Staff Engineer, Mission Systems Software (R5888)

Shield AI • Dallas (TX)

On-site
USD 135,000 - 250,000
Senior IT Operations Engineer (R6117)
Senior IT Operations Engineer (R6117)

Shieldai • Dallas (TX)

On-site
USD 120,000 - 180,000
Equity
Benefits
Bonus
Associate Systems Administrator (R5873)
Associate Systems Administrator (R5873)

Shieldai • Orlando (FL)

On-site
USD 55,000 - 75,000
Staff Platform Engineer
Staff Platform Engineer

Shield AI • San Diego (TX)

On-site
USD 142,000 - 213,000
Equity
Bonus
Benefits
Senior Lead, Enterprise Strategy and Operations (R6097)
Senior Lead, Enterprise Strategy and Operations (R6097)

Shield • San Diego (TX)

On-site
USD 160,000 - 250,000
Staff Engineer, Integration (R6009)
Staff Engineer, Integration (R6009)

Shield • San Diego (CA)

On-site
USD 144,000 - 217,000
Associate Systems Administrator (R5436)
Associate Systems Administrator (R5436)

Shieldai • San Mateo (CA)

On-site
USD 95,000 - 125,000
Equity
Benefits
Bonus
Staff Data & Analytics Engineer, Domain Enablement (R6112)
Staff Data & Analytics Engineer, Domain Enablement (R6112)

Shield • Dallas (TX)

On-site
USD 160,000 - 240,000
Bonus
Equity
Benefits