A Host or Hostess greets customers when they arrive at a restaurant. Manages reservations, seats customers, and helps wait staff as needed with attending to customer requests and service.
1 screening with client, then interviews with end customer
JOB DESCRIPTION
RDL Jump Host Administrator Secure access | Linux hardening | Identity and access | Compliance auditing |
Virtualization Position Summary:
Client is seeking an experienced, compliance-driven RDL Jump Host Administrator to own the administration, security, and access control of Linux-based jump hosts supporting isolated, air-gapped research and development lab environments. The successful candidate will manage secure access pathways from Zscaler ZTNA and CyberArk vPAM environments, administer decentralized local authentication and session boundaries, and maintain mandatory export-control acceptance gates with tamper-resistant audit logging.
Priority Technical Requirements:
The following capabilities are essential for this role: Core skill level: Advanced DevOps, Advanced Networking, and Advanced Linux.
Secure Linux administration:
Expert administration and hardening across Rocky Linux, RHEL, CentOS, and Ubuntu, including Bash and Python scripting.
Secure access and authentication:
Hands-on SSH daemon configuration, PAM stack configuration, local authentication, role-based access control, and SSH key lifecycle management.
Compliance logging:
Experience creating secure audit trails with Rsyslog, Journald, structured logging, write-only forwarding, or local hashing controls.
Access platforms:
Familiarity with Zscaler ZTNA App Connectors, CyberArk vPAM, and VPN architectures. Core Responsibilities 1. Jump Host System Administration & Hardening Server provisioning and lifecycle: Deploy, configure, patch, monitor, and maintain Linux jump host virtual machines on VMware vSphere or Microsoft Hyper-V clusters.
Operating system hardening:
Apply CIS benchmarks and ensure unauthorized software, corporate agents, and domain utilities are not installed or active on protected lab endpoints.
Service availability:
Maintain the availability, performance, patch status, and storage capacity of jump servers that act as gateways to core RDL networks. 2. Export-Control Compliance & Interactive Gates Mandatory acceptance gates: Configure interactive terms-of-use and user agreement screens using shell login scripts, PAM, or SSH ForceCommand for access to export-controlled VLANs.
Acceptance enforcement:
Prevent users from acquiring a shell, running commands, or bypassing the landing screen until required export-control and NDA terms are accepted.
Tamper-resistant logging:
Capture authenticated identifiers, source IP addresses, connection timestamps, and timestamped compliance acceptance confirmations.
Log integrity:
Implement secure write-only forwarding or local hashing so acceptance records cannot be altered or deleted by general users. 3. Identity, Access & Session Management Decentralized authentication: Provision and manage local Unix accounts, localized RBAC, and SSH keys across jump hosts without Active Directory or domain joins.
Remote access integration:
Coordinate secure hand-offs from Zscaler ZTNA App Connectors and CyberArk vPAM sessions terminating on jump hosts.
Session controls:
Configure SSH timeouts, idle-session termination, and multi-factor authentication loops to reduce abandoned active connections. 4. Operations, Support & Collaboration Network coordination: Collaborate with the RDL Network Administrator on VLAN mappings, firewall rule adjustments, and routing requirements for jump host access.
Engineering support:
Resolve credentialing, shell, and connection issues for engineering users entering secure environments.
Audit readiness:
Produce access reports and audit trails for compliance reviews, security audits, and customer security evaluations.
Documentation:
Create and maintain clear low-level designs, standard operating procedures, access-control records, and troubleshooting guidance. Technical Qualifications Required Experience Bachelor's degree in Network or System Administration, Computer Science, Cybersecurity, or equivalent technical experience. Four or more years of dedicated Linux system administration experience focused on hardening, user management, and compliance auditing. Expert Linux administration across Rocky Linux, RHEL, CentOS, or Ubuntu, including Bash or Python scripting, security policies, and package management. Strong knowledge of sshd_config, PAM, secure local authentication, SSH keys, RBAC, and account lifecycle management. Practical VMware ESXi or vCenter, or Microsoft Hyper-V administration experience, including virtual machines, virtual switches, and storage. Advanced networking knowledge for secure access troubleshooting across VPN, routing, firewall, VLAN, and connectivity layers. Preferred Certifications Red Hat Certified System Administrator (RHCSA) or Red Hat Certified Engineer (RHCE). CompTIA Linux+ or Linux Foundation Certified System Administrator (LFCS). CompTIA Security+ or GIAC Infor