Mission of the Role
This role exists to ensure Clear Align’s secure, compliant, and high-availability IT infrastructure can support mission-critical operations for the U.S. Department of Defense and other strategic customers. You will protect Controlled Unclassified Information (CUI), maintain systems that enable seamless internal operations, and directly support Clear Align’s commitment to delivering clarity, precision, and decisive action across defense and aerospace programs.
In Your First Year You Will (What Success Looks Like)
Within 90 Days – Foundations & Compliance Readiness
- Gain full proficiency in Clear Align’s IT environment, Active Directory structure, virtualization systems, and cybersecurity toolsets.
- Complete onboarding for NIST SP 800-171, CMMC Level 2, ITAR, DFARS 252.204-7012, and RMF documentation practices.
- Assume ownership of routine system monitoring, patching, and log review processes with zero overdue vulnerabilities.
Within 6 Months – Infrastructure Stability & Cybersecurity Execution
- Implement prioritized NIST 800-171 and CMMC Level 2 technical controls, ensuring measurable progress in SSP and POA&M remediation.
- Strengthen hardening of Windows Server, Linux, virtualization, and network appliances in collaboration with the cybersecurity team.
- Ensure secure configuration and policy enforcement across Active Directory, MFA, VPN, and endpoint protection platforms.
- Maintain ≥ 99% uptime of core infrastructure systems with documented maintenance windows and no unplanned outages.
Within 12 Months – Operational Excellence & Audit Preparedness
- Support technical preparation for government cybersecurity assessments (DIBCAC, C3PAO), including evidence gathering, control validation, and IT system documentation.
- Reduce vulnerability findings (e.g., Tenable/Qualys scanning) by ≥ 30% through systematic remediation and patch management.
- Deliver a fully updated suite of runbooks, network diagrams, configuration records, and change-control documentation aligned with DFARS and RMF expectations.
- Improve system performance and security logging visibility by optimizing SIEM alerting and security tool integrations.
How You Know You Are Winning
- Clear Align’s IT systems remain stable, secure, and audit-ready at all times.
- Vulnerability scores trend downward quarter over quarter.
- Security controls for CUI are consistently implemented and validated.
- Internal teams and assessors rely on you for accurate documentation and technical clarity.
- Infrastructure uptime and performance meet or exceed operational targets.
Who You Are (Core Strengths & Competencies)
- Deep ownership of cybersecurity, precision, and compliance
- Strong problem-solving instincts and proactive issue resolution
- High accountability and follow-through in a regulated environment
- Curiosity, adaptability, and continuous improvement mindset
- Commitment to protecting national security interests through secure systems
Essential Duties & Responsibilities
Compliance & Cybersecurity (Primary Focus)
- Implement and maintain technical controls aligned with NIST 800-171, CMMC Level 2, and DFARS requirements.
- Ensure security protections for Controlled Unclassified Information (CUI), in accordance with ITAR and DoD contract obligations.
- Support the creation and maintenance of System Security Plans (SSPs), POA&Ms, and other compliance documentation.
- Assist in internal assessments, gap analysis, incident response, and risk remediation.
- Work closely with ISSM/ISSO to support RMF documentation and policies.
Systems Administration
- Administer and maintain Microsoft Windows Server (2016/2019/2022), Linux systems, and hybrid AD environments.
- Manage user accounts, permissions, and Group Policy within Active Directory.
- Maintain and optimize VMware or Hyper-V virtualization infrastructure.
- Apply regular security patches and OS updates in line with vulnerability management processes.
Networking & Infrastructure
- Support configuration and hardening of network devices (e.g., firewalls, switches) in coordination with network engineers.
- Maintain secure remote access solutions, including VPNs and multifactor authentication (MFA).
- Monitor system performance, availability, and logs for anomalies or threats.
Security Tools & Monitoring
- Maintain and monitor endpoint protection, SIEMs, vulnerability scanners (e.g., Tenable, Qualys), and DLP solutions.
- Support log collection and correlation from key systems for audit and investigation purposes.
Documentation & Change Control
- Maintain up-to-date technical documentation, diagrams, change logs, and support runbooks.
- Follow formal change management and configuration control processes.
- Assist in preparing evidence and documentation for DoD audits, DIBCAC assessments, or C3PAO reviews.
Position Requirements
- 5+ years experience in System Administration or equivalent position
- Hands-on experience implementing or supporting NIST 800-171 or CMMC Level 2 technical requirements.
- Strong proficiency with Windows Server, Active Directory, Group Policy, DNS/DHCP, and Linux (RHEL, CentOS, Ubuntu).
- Familiarity with virtualization platforms (e.g., VMware vSphere, Hyper-V).
- Experience with security tools such as SIEMs, vulnerability scanners, and endpoint protection platforms.
- Familiarity with documentation and workflows for ITAR and DFARS 252.204-7012 compliance.
- Certifications such as Security+, CISSP, CySA+, MCSA