Navy Certificate Validation Infrastructure System Administrator
Responsibilities
- NCVI Systems & Cryptographic Administration
- Oversee the installation, configuration, and engineering maintenance of Validation Authorities (VA), validation servers, and Online Certificate Status Protocol (OCSP) / Certificate Revocation List (CRL) responders.
- Lead system administration (hardware, OS, and network virtualization) of hosting systems within Consolidated Afloat Networks and Enterprise Services (CANES) or tactical server environments, managing secure baselines for Red Hat Enterprise Linux (RHEL) and Windows Server instances.
- Manage Trust Anchor and Root/Intermediate Certificate Authority (CA) chains (including DISA, NSS, and DoD-approved External CAs) within Navy environments.
- Audit, Compliance & Security Support
- Coordinate and track Joint Force Headquarters Department of Defense Information Network (JFHQ-DODIN) PKI Audit compliance.
- Conduct and analyze ACAS (Nessus) vulnerability scans, apply operating system patches, and enforce DISA Security Technical Implementation Guides (STIGs) across the NCVI infrastructure.
- Maintain system backups, review workstation security logs, and secure PKI archives in accordance with DoD standards.
- Fleet Reporting & Knowledge Management
- Host and drive weekly SIPR PKI conference and data calls with DoD stakeholders to address systemic validation issues.
- Produce daily operational reports, fleet security bulletins, Standard Operating Procedures (SOPs), and technical knowledge base articles to ensure continuous service improvement.
- Support the fleet as the ultimate technical escalation point for high-priority cryptographic failures and token login outages.
Qualifications
- Clearance: Active DoD Secret security clearance at the time of hire, with the ability to obtain and maintain a Top Secret/SCI clearance.
- Educational Background: Bachelor’s degree in Cybersecurity, Systems Engineering, Computer Science, Information Technology, or a related STEM field. An equivalent combination of technical military training, Associate's degree, and progressive IT experience may be considered in lieu of a degree.
- Experience: Minimum of 8–10 years of experience in systems administration, network engineering, or cybersecurity, with at least 3 years executing technical leadership, team management, or lead engineering tasks. Minimum of 2 years of hands-on experience in DoD/Navy PKI operations, directory services (Active Directory/LDAP), or Common Access Card (CAC) / smart card enabling technologies.
- Technical Certifications: DoD 8570/8140 Baseline: Active IAT Level II baseline certification (e.g., CompTIA Security+ CE, GSEC, SSCP) or higher. Computing Environment (CE): A professional computing environment certification (e.g., RHCSA, Microsoft Certified Windows Server Hybrid Administrator, Linux+, or VMware Certified Professional) or the ability to obtain one within 180 days of hire.
Pay
There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.