Linux Security Engineer
IBM · Essex Junction, VT · 2 wk ago
HybridFull-time
About the role
A career in IBM Consulting is built on long-term client relationships and close collaboration worldwide. You’ll work with leading companies across industries, helping them shape their hybrid cloud and AI journeys. With support from our strategic partners, robust IBM technology, and Red Hat, you’ll have the tools to drive meaningful change and accelerate client impact. At IBM Consulting, curiosity fuels success. You’ll be encouraged to challenge the norm, explore new ideas, and create innovative solutions that deliver real results. Our culture of growth and empathy focuses on your long-term career development while valuing your unique skills and experiences.
Responsibilities
- Perform security hardening and rule creation for Linux environments, including reviewing new and re-evaluating existing configuration settings and rules to verify security posture and eliminate unnecessary risk.
- Review existing configuration settings to identify potential security vulnerabilities and propose settings or architectural changes to address these vulnerabilities.
- Audit firmware versions and configuration settings for all Linux endpoints to eliminate vulnerabilities and ensure network devices are deployed in accordance with vendor recommendations, industry best practices, DoD Security Technical and Implementation Guides (STIG), and DHS configuration guidance.
- Analyze security incidents and provide recommendations for improvement.
- Deliver consulting services to help clients achieve a superior security posture and effectively manage security incidents.
- Create remediation recommendations and roadmaps to address identified security vulnerabilities and incidents.
- Support federal agencies and demonstrate technical concepts to both technical and non-technical audiences.
- Communicate clearly with customers and teammates, providing recommendations for improvements to existing software applications.
Requirements
- Expertise in installing, configuring, operating, and patching Linux servers and managing Linux-based applications.
- Advanced knowledge of configuration management tools (e.g., Ansible, Chef, Puppet, SaltStack) and Linux/Windows administration in medium–large enterprises.
- Strong shell scripting experience (ssh, scp, rsync, sudo) with hands-on work in containerization and orchestration tools (Docker, Podman, Kubernetes, ECS/EKS, Fargate, Singularity).
- Advanced understanding of clustering, load balancing, replication services, and automation using Python with frameworks such as Flask, Django, or FastAPI.
- Familiarity with container security tools (Twistlock, Falco, Clair).
- Active RHCE or equivalent certification/experience.
- Ability to obtain and maintain Public Trust clearance.
- Understanding of monitoring tools such as New Relic or Nagios.
Qualifications
Preferred Education: Bachelor's Degree