Requires US Citizenship
Employment Term and Type: Regular, Full Time Required Security Clearance: (Minimum for hire) Secret
Required Education: (Minimum for hire) High school diploma or equivalent Salary Band:
Job Description:
Responsible for designing, implementing, and maintaining secure, scalable endpoint management solutions across enterprise environments supporting Department of the Navy initiatives, including Flank Speed. This role focuses on leveraging Microsoft cloud technologies to enhance device security, ensure compliance, and streamline operational efficiency for both physical and virtual Windows endpoints. Collaborates with system owners, security teams, and mission stakeholders to deliver resilient, scalable, and compliant cloud solutions aligned with DoD and Navy reference architectures, Flank Speed requirements, and Zero Trust principles.
Primary Duties and Responsibilities:
Design, implement, and maintain modern endpoint management solutions to support secure and scalable administration of enterprise Windows devices.
Establish standardized configuration baselines to ensure consistency, reliability, and alignment with organizational security policies.
Develop and implement automated solutions to detect and remediate configuration drift, improving compliance while reducing manual effort.
Define and enforce application control measures to limit unauthorized software execution and strengthen overall endpoint security.
Monitor endpoint activity and investigate potential threats using advanced analytics and query tools, collaborating with security teams to address risks and vulnerabilities.
Manage the full lifecycle of enterprise applications, including packaging, deployment, updates, and retirement, to maintain a secure and consistent software environment.
Support and enhance conditional access strategies by incorporating device compliance and health signals to control access to corporate resources.
Integrate and manage virtual desktop environments within the endpoint management framework, ensuring consistent policy enforcement across physical and cloud-based devices.
Required Qualifications:
Possesses a minimum of three (3) years of hands-on experience supporting enterprise Windows endpoint management, including configuration, security enforcement, automation, and application lifecycle management in a cloud-based environment
Experience managing enterprise endpoints using Microsoft Intune or similar platforms
PowerShell scripting and automation capabilities
Solid understanding of Windows Endpoint security principles
Experience working with endpoint detection and response tools
Active DoD 8570/8140 compliant baseline certification (e.g., CompTIA Security+ CE, CISSP, SSCP, or equivalent) required prior to start.
Desired Qualification:
Experience in DoD or Federal environments: Demonstrated experience designing, deploying, or supporting cloud solutions within U.S. DoD, Federal Civilian, or Intelligence Community environments (e.g., IL4/IL5/IL6).
Azure Government expertise: Hands-on experience with Microsoft Azure Government and familiarity with DoD-approved cloud environments (e.g., Azure Government Secret, GCC High).
Demonstrated knowledge of DoD cybersecurity policies, and NIST SP 800-53 security controls.
DevSecOps in regulated environments: Experience integrating security scanning, compliance checks, and policy enforcement (e.g., Azure Policy, Defender for Cloud, container/image scanning) into CI/CD pipelines.
Logging & monitoring: Familiarity with centralized logging and SIEM integration (e.g., Azure Monitor, Log Analytics, Microsoft Sentinel) to meet DoD audit and incident response requirements.
Industry certifications, such as:
Microsoft 365 Certified : Fundamentals (MS-900)
Microsoft Certified : Azure Administrator Associate (AZ-104)
Microsoft Certified : Security, Compliance, and Identity Fundamentals (SC-900)
Microsoft Cybersecurity Architect Expert (SC-100)
Microsoft Identity and Access Administrator (SC-300)
Education Requirements:
High school diploma or equivalent
Security Clearance Requirements: Secret
Physical, Work Environment & Conditions: (please update)
Typical office environment:
Must be able to sit or stand at a workstation for extended periods.
Occasional standing while working in server rooms or at patch panels.
Must be able to lift and move moderately heavy equipment (e.g., routers, switches, servers) typically up to 30–50 pounds.
Manual Dexterity required for connecting cables, configuring devices, and handling small tools or components.
Must be able to view computer screens for long periods.
Ability to distinguish color-coded cabling and indicator lights.
Must be able to climb ladders or crawl in tight spaces for cable runs or equipment installation.
May require walking between different buildings or workstations.
Must be able to communicate clearly with technical teams and end-users.
May need to hear alarms, server beeps, or equipment noises indicating issues
This position description is not intended as, nor should it be construed as, exhaustive of all responsibilities, skills, efforts or working conditions associated with this job. This and all positions are eligible for organization-wide transfer. Management reserves the right to assign or reassign duties and responsibilities at any time.
Company Overview: FGS LLC is an international, leading-edge provider of technical services to include Secure Information Systems, Security and Engineering and Intelligence Analysis. Our turn-key solutions include the design, engineering, deployment operations, and sustainment of secure technology and critical infrastructure for the protection and safety of our customers' mission-critical information, processes, and personnel. Demonstrating an unyielding commitment to our customers, superior trust and dedication with our partners, and leading-edge technical expertise over the past seven years, FGS has experienced explosive growth providing superior services throughout the world, from North America and the Pacific Rim to the Middle East and Europe.
FGS provides secure, leading edge technology and process management services to military, government, and commercial clients worldwide.
FGS offers a generous compensation package including health, dental, vision, 401(k), group life insurance, educational reimbursement, among other benefits.
We value our employees and strive to offer many opportunities for professional growth.
#cjpost – Information Technology FGS, LLC is an Equal Opportunity Employer as to all protected groups, including protected veterans and individuals with disabilities