Job Title: System Administrator 3 - Identity and Access ManagementJob Number: 12030Location: Portland, ORHybrid: onsite 2 days per week On Call: Yes, regular rotation one-to-three. Provide on-call and backup support for existing systems and functions.Location for on-call and backup support may be at CLIENT facilities or off-siteOvertime: 5%Length: 5 years
MUST be US Citizen to be eligible to apply for Federal Background Check Requires Real ID and or Valid Passport to interview SUMMARY
This full-time, contract Systems Administrator 3 assignment will provide high-level support to Converged Infrastructure organization within the IT department. This assignment will serve on the Identity and Access Management (IAM) team supporting Access Control and Remote Access administration in a Windows server environment. Access Administration support is performed using a combination of Active Directory Users and Computers (ADUC), PowerShell scripts, and Windows Workflow management tools, following the Role Based Access Control (RBAC) model where accounts are placed into defined security groups, i.e., best practices for least privilege access. This System Administrator will also perform routine systems administration tasks (i.e., testing, configuring, migrating, upgrading, patching, enhancing, documenting, validating security compliance).
POSITION RESPONSIBILITIES
- As directed by the corporate manager, act as the division's point of contact (POC) for access administration in support of the Help Desk ticketing and/or incident management requests for permissions to applications, files, and servers, via membership in security groups.
- Support the creation, deletion, and maintenance of security groups and their related memberships in the corporate domains.
- Support Microsoft Active Directory by verifying security groups with IO, ISO, and Delegates, converting security groups to new Role Based Access Control (RBAC) methods, and migrating security groups as requested.
- Provide Microsoft Windows Active Directory support in the administration of directory maintenance and tasks.
- Provide automations for Identity and Access Management workflows:
- Collaborate and work with internal organizations to assist with assessing, identifying, documenting, and recommending automated Identity and Access Management (IAM) workflows.
- Present or support presentation of possible automation for IAM workflows to appropriate corporate management.
- Develop /draft documentation to support the corporate management-approved workflows and automation, capturing necessary workflow adjustments for all changes and enhancements.
- Maintain and administer IT systems software, applications software, and all configurations, as they pertain to the IAM program.
- This work includes tasks for system upgrades, patches, and enhancements and other changes.
- Provide remote administration services which includes:
- Remote Access (RSA) account creation, deletion, workflow processes and management, and connectivity issues.
- RSA Authentication software testing, configuration, installation, implementation, and troubleshooting
- Supporting load balanced RSA servers
- Facilitating RSA security activities, reporting, and maintenance of RSA Authentication Tokens.
- Support for YubiKey
- Provide technical expertise to Help Desk regarding calls related to Identity Management, Remote Access, and Account Administration.
- Resolve client service problems and disruptions related to access control problems.
- As directed, collaborate with vendor technical resources to resolve issues not resolved by the (IAM) Support team.
- Provide required documentation for all corrective actions and/or system changes.
- Facilitate and participate in IT planning, analytical support, and coordination of technical resources.
- Perform analysis of system capabilities:
- Develop functional and system requirements.
- Complete business process design and workflow.
- Verify integration with other modules, system components, and other corporate applications.
- Apply and maintain system security documentation and act as point of contact for the corporate Cyber and Physical Security organizations for issues related to Identity Management and Access Control security issues.
- Validate IAM security requirements and implementation timelines.
- Create requirements documentation; review with user representatives, recommend priorities and obtain user signoff.
- Collaborate with internal users and stakeholders, coordinating interviews and joint requirements planning sessions.
- Collaborate with Information System Owners (ISOs) to develop, create, edit, and define system alerts and monitoring requirements.
- Provide system administration expertise for special projects, working with internal and external clients and vendors.
- Confer with corporate workplace manager or Federal team lead on a routine basis for project status updates and/or any project issues.
- Collaborate with corporate IT Security Office to update, revise, and validate assigned systems compliance with all corporate security requirements.
- Provide technical input and recommendations, as a non-voting participant, for potential acquisitions in area of expertise.
- Provide systems administration support for any new systems added to corporate IT infrastructure, assisting with testing, configuration, integration, and implementation efforts,
- This work includes developing test plans, implementation schedule, scope, dependencies, documentation, and user training.
- Collaborate with corporate Legal Office to enact ‘Litigation Hold’ administrative actions.
- Confer with corporate workplace manager on a routine basis for status updates and/or any issues or concerns.
- Create, develop / draft, and recommend cross-training and functional documentation of subject matter for corporate audiences.
- Conduct User training on an individual or group basis as requested.
- Training is expected to be infrequent and limited to activities as defined in this API.
- Participate in corporate process workshops, including project lessons learned, group improvement, and documentation efforts for procedures, processes, standards, guidelines, practices, and other technical and instructional material.
- Mark documents and maintain filing system(s), files, emails, and records in accordance with compliance requirements. Share and disperse documents only to appropriate personnel (those with a Lawful Government Purpose (LGP) to know). Mark and maintain all official records in accordance with the Information Security (INFOSEC) and Information Governance & Lifecycle Management (IGLM) standards and procedures. Validate official records are accurately maintained for auditing purposes.
Education & Corresponding Experience
- Bachelor’s Degree in Computer Science, Information Technology, Engineering, or a related technical field is preferred.
- With an Associate’s or Bachelor’s Degree in applicable fields, 8 years of experience is required.
- With an Associate’s or Bachelor’s Degree not in applicable fields or without a degree, 10 years of experience is required.
- Applicable Certifications may count for 1 year of experience.
- Experience must include direct work experience in Information Technology performing System Administration
Required Skills & Experience
- Minimum 2 years of experience with:
- Windows Server Tools (such as Active Directory Users and Computers).
- Microsoft Entra ID
- System administration support for Remote Access Administration.
- Assistance in analysis of system capabilities.
- Facilitating and delivering system training.
- Participating in enterprise information technology planning
Preferred Skills & Experience
- Working in a large production environment
- RSA Security Administration.
- YubiKey
Additional Requirements:- Valid U.S. Driver’s License is required
Pre-Employment RequirementAll employment offers are contingent upon successful completion of our pre-employment screening that may include drug testing, background/criminal check, and if applicable, must meet eligibility requirements for access to classified information.
APR Staffing is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other characteristic protected by law.
About APR Staffing
APR Staffing was born from the merger of two well-respected technical staffing firms in Portland. ieSolutions and Data Resource Group. Both companies have recently been award winners for the Portland Business Journal's Fastest-Growing Private Companies. The two firms, now as APR Staffing, make for one of the fastest-growing and most-respected professional and technical staffing companies in Oregon and Southwest Washington.
Collaborating with our customers, we augment their workforce with technical and administrative professionals. We provide only high-caliber, professional-grade resources throughout the Pacific Northwest.