Systems Administrator

Kirkhill Inc.

Downtown Brea (CA)

On-site

USD 120,000 - 160,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

On-site role

Job summary

Kirkhill, Inc. seeks a Systems Administrator with Azure/cloud and networking expertise to own and mature our cloud and network infrastructure. You will lead migration efforts, implement security tooling, and manage identity, access, and endpoints.

Responsibilities include designing secure network architecture, maintaining compliance, and coordinating with the compliance team for the classified environment. On-site role in CA with after-hours support as needed.

Qualifications

  • Hands-on hybrid cloud migration experience and strong Azure networking knowledge.
  • Experience with Entra ID, security posture, and cloud governance.
  • Strong writing, thinking, and communication skills; ability to learn GenAI tools.
  • Active Secret clearance and U.S. citizenship are required.
  • CompTIA Security+ (CE) or equivalent is preferred.

Responsibilities

  • Own and mature the Azure cloud environment including identity, governance and security posture.
  • Lead cloud migration and hybrid-cloud integration for on-prem workloads.
  • Implement cloud security configurations, Defender tooling, and monitoring.
  • Manage Intune configurations and endpoint management.
  • Maintain backup/DR, patching, and automation via PowerShell.
  • Design and improve network architecture, firewalls, VLANs and ACLs.
  • Serve as POC for classified environment with FSO/compliance teams.

Skills

Azure networking
Hybrid cloud migration
PowerShell
GenAI tools
Communication

Tools

Azure Foundry
Copilot
Intune
Defender
Purview

Job description

Systems Administrator - Cloud & Network Infrastructure

We are seeking a Systems Administrator with strong Azure and networking expertise.

Position Summary
Key Responsibilities
Cloud Infrastructure
  • Own and mature our Azure cloud environment: architecture, storage, identity (Entra ID), governance, cost management, and security posture
  • Lead cloud migration and hybrid-cloud integration efforts for on-prem workloads where appropriate
  • Implement and enforce cloud security configuration, CA policy, Defender security tooling, monitoring and logging
  • Intune configurations, package deployment, and endpoint management
  • Maintain monitoring, backup/DR, and patch/configuration management practices for cloud-hosted systems
  • Use AI, copilot, and PowerShell to automate repetitive administration and security tasks
Network Architecture
  • Design, document, and continuously improve network architecture, including segmentation between CUI-scoped enclaves and general business networks
  • Manage firewall, VLAN, and ACL configurations (including CUI subnet access control lists) and maintain accurate network documentation/diagrams
  • Lead network hardening initiatives and access control requirements (e.g., AC, SC control families)
  • Evaluate and implement zero-trust and micro-segmentation strategies
Classified Environment (training provided)
  • Maintain secure configurations, audits, and documentation for the classified workstations;
  • Maintain active Security+ certification
  • Maintain System Security Plans (SSPs), POA&Ms, and supporting documentation
  • Support periodic government inspections, self-inspections, vulnerability scans, and audit log reviews for the classified system
  • Serve as day-to-day POC for the classified environment, coordinating with the Facility Security Officer (FSO) and compliance team as needed
General Systems Administration
  • Administer Windows Server, Active Directory/Entra ID, endpoint management, and core virtual infrastructure services
  • Participate in security assessments, incident response testing, risk assessments, and 3rd party audits
  • Execute vulnerability scans, system patching, configuration deployments
  • Support configuration and software management controls (e.g., application allow-listing, nonessential functionality restrictions) in coordination with compliance staff
  • Participate in change management processes for IT systems affecting CUI/classified scope
  • Prioritize and resolve escalated technical issues and mentor junior IT staff, manage ticketing systems, and address chronic or persistent issues
  • Own and support all critical security incidents, interruptions/outages, and end-user issues with flexible evening/weekend work when required
  • Maintain system documentation, diagrams, project plans, asset inventory
Required Qualifications
  • Hands-on expertise in hybrid cloud migration, Microsoft Azure networking, cloud technologies, protocols, and authentication, and WAN network architecture
  • Experience administering Azure: identity (Entra ID), virtual machines, vnet, CA policy, Azure Foundry, Purview, Defender, Intune, etc.
  • Design and manage basic network architecture: routing, switching, segmentation, firewall/ACL configuration, VLANs, RADIUS, etc.
  • Excellent writing skills, conceptual thinking skills, and communication skills needed to learn/implement GenAI tools
  • Active Secret security clearance
  • U.S. citizenship required.
  • CompTIA Security+ (CE)
Preferred Qualifications
  • Cloud or Microsoft Azure Certifications
  • Experience with cybersecurity compliance frameworks similar to CMMC/NIST 800-171
  • Implementing simple AI solutions in Azure Foundry and/or Copilot
  • Strong PowerShell skills
Work Environment
  • On-site role
  • Some after-hours/on-call availability required to support maintenance windows and incident response

Kirkhill, Inc. is proud to be an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity, national origin, disability status, protected veteran status, or any other characteristic protected by law. All successful candidates must submit to post offer pre-employment physical examination, drug/alcohol screen and background check as a condition of employment.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Systems Administrator
Systems Administrator

Kirkhill Inc. • Brea (CA)

On-site
USD 95,000 - 120,000
Azure System Administrator -61920
Azure System Administrator -61920

Syneren Technologies Corporation • Alexandria (VA)

On-site
USD 100,000 - 130,000
Systems Administrator / Microsoft Cloud Engineer
Systems Administrator / Microsoft Cloud Engineer

Hirebridge • Mesa (AZ)

On-site
USD 130,000 - 170,000
Competitive Salary
4x10 work week Mon-Thu
Fridays off
+3
Sr. Azure Security Engineer
Sr. Azure Security Engineer

Arena Technical Resources, LLC (ATR) • United States

Hybrid
USD 120,000 - 150,000
Senior Cloud Systems Administrator (Azure)
Senior Cloud Systems Administrator (Azure)

Information Consulting Services • Herndon (VA)

Hybrid
USD 95,000 - 145,000
Systems Administrator / Microsoft Cloud Engineer
Systems Administrator / Microsoft Cloud Engineer

Nammo Defense Systems Inc. • Mesa (AZ)

On-site
USD 120,000 - 160,000
Competitive salary
Four 10-hour days (Mon-Thu)
Friday off
+3
Systems Security Administrator
Systems Security Administrator

Confidential Company • Dallas (TX)

On-site
USD 80,000 - 100,000
System and Network Administrator
System and Network Administrator

Dunhill Professional Search & Government Solutions • Germantown (MD)

On-site
USD 130,000 - 175,000
Systems Engineer - Azure
Systems Engineer - Azure

Dunhill Professional Search & Government Solutions • Germantown (MD)

On-site
USD 100,000 - 130,000
Azure Cloud & Network Engineer — On‑Site, Secret Clearance
Azure Cloud & Network Engineer — On‑Site, Secret Clearance

Kirkhill Inc. • Downtown Brea (CA)

On-site
USD 120,000 - 160,000
On-site role