Senior Linux Systems Administrator
Summary
The Senior Linux Systems Administrator is responsible for designing, deploying, securing, automating, and maintaining enterprise Linux server infrastructure and developer workstation fleets across on-premises and multi-cloud environments. This role serves as the subject matter expert for enterprise Linux distributions (Oracle Linux, Red Hat Enterprise Linux, Ubuntu), configuration management, and centralized orchestration. A primary focus includes managing and scaling Canonical Landscape to administer hundreds of Ubuntu developer desktops within a strict CMMC 2.0 Level 2 / NIST SP 800-171 compliant environment. The ideal candidate brings deep expertise in Linux PAM architecture, enterprise MFA integrations, infrastructure-as-code automation, and defense-in-depth security hardening.
Responsibilities
- Design, build, configure, and maintain mission-critical Linux servers across on-prem (VMware vSphere) and cloud environments (OCI, AWS, Azure), supporting engineering workloads, database platforms, and custom development pipelines.
- Architect, deploy, and administer Canonical Landscape to manage configuration profiles, package repositories, compliance policies, and automated patch management for hundreds of Ubuntu developer endpoints.
- Implement and enforce robust authentication and authorization frameworks, including smart card/FIPS-compliant MFA at desktop and SSH login, PAM module engineering, SSSD/FreeIPA integration, Active Directory/LDAP bridging, and centralized sudoers delegation.
- Harden Linux servers and workstations to NIST SP 800-171, DISA STIG, and CIS Level 2 benchmarks. Implement SELinux/AppArmor enforcement, auditd daemon logging, file integrity monitoring (FIM), and SIEM log forwarding.
- Develop and maintain Infrastructure-as-Code (IaC) and configuration baselines using Ansible, Terraform, Puppet/Chef, and advanced Bash/Python scripting.
- Configure and troubleshoot enterprise SAN/NAS storage, iSCSI/NFS mounts, multipathing, LVM volumes, and VMware ESXi/vCenter virtualization for Linux guests.
- Serve as Tier 3 escalation support for engineering applications, toolchains, build environments, license managers (FlexLM), and core network/directory services (DNS, DHCP, LDAP, Kerberos, NTP).
- Design robust backup and recovery workflows, test system failover procedures, monitor system health/telemetry (Prometheus, Grafana, Zabbix), and resolve complex performance bottlenecks.
Qualifications
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or equivalent combination of education, technical training, and experience.
- Minimum of 8–12 years of total IT infrastructure experience, with at least 6+ years focused on enterprise Linux systems administration.
- Deep, hands-on administration of Oracle Linux (UEK), Red Hat Enterprise Linux (RHEL), and Ubuntu Server/Desktop.
- Proven experience managing Linux endpoints at scale using Canonical Landscape, Red Hat Satellite, or Foreman.
- Demonstrated experience implementing Linux desktop and SSH Multi-Factor Authentication (YubiKey, PKI/Smartcard, Duo, or Okta PAM integration).
- Direct experience hardening Linux environments to NIST SP 800-171, CMMC Level 2, or DISA STIG requirements.
- Strong proficiency in Ansible and scripting with Bash or Python.
- Solid experience with VMware vSphere/ESXi and enterprise storage management (LVM, NFS, iSCSI, SAN).
- Must be a U.S. Person (U.S. Citizen or Lawful Permanent Resident) due to compliance with ITAR/EAR regulations; ability to obtain and maintain a DoD Security Clearance if required.
Desired Competencies
- Active industry certifications: RHCE / RHCA, LPIC-3, CompTIA Security+, or CISSP.
- Experience with containerization and orchestration platforms (Docker, Podman, Kubernetes).
- Hands-on experience integrating Linux infrastructure with Oracle Cloud Infrastructure (OCI), AWS GovCloud, or Azure Government.
- Familiarity with Linux kernel tuning, custom repository mirroring, and local software distribution pipelines.
- Exceptional analytical and troubleshooting skills under time-critical operational conditions.
- Strong written and verbal communication skills; ability to document standard operating procedures (SOPs) and compliance artifacts clearly.
- High ownership mindset with a focus on cross-functional collaboration across Infrastructure, Security, and Engineering teams.
- Ability to work in standard office/data center environment; prolonged periods sitting or standing at computer workstations; periodic physical handling of server hardware, cabling, or rack-mount equipment (up to 35 lbs).
Pay
The salary range for this role is $91,000 – $138,750. AeroVironment considers several factors when extending an offer, including but not limited to the location, the role and associated responsibilities, a candidate’s work experience, education/training, and key skills.
Benefits
- Medical, dental, and vision insurance
- 401K with company matching
- 9/80 work schedule
- Paid holiday shutdown