| Description: |
DESCRIPTION: The Senior Systems Administrator (SSA) serves as the expert in areas of networking, security, and systems administration for the Division of Extended Studies and Public Programs (ESPP). The SSA is responsible for the development, support, maintenance, and troubleshooting of ESPP's network and security infrastructure which supports 500+ nodes distributed over 5 geographical locations. The network consists of a combination of LANs and WANs that are provided and maintained by the campus networking group (ACT), ISPs, and ESPP itself. ESPP maintains a central operations facility on campus, which includes an environmentally controlled server room hosting 30+ servers (web, file, database, and application), backup equipment, and networking infrastructure. The SSA's top priority is to ensure the ESPP's computing environment is as secure as possible and that staff are regularly educated about their role in ensuring the integrity and security of data and systems. Network Administration (40%) Development of network topologies that support various user types, such as staff, students (labs), external visitors (web servers), and wireless. Work with campus as in the development of VLANs that support access and security policies. Provide network monitoring and troubleshooting; investigate problems to locate and/or identify the source of problem; research, determine, and implement appropriate corrective action. Configure switches, routers and other network devices. Regular communication with campus for changes to ESPP's infrastructure, DNS support, and access for network monitoring. Automated management and monitoring of the network. Work with ISPs and other commercial vendors for the provisioning of network access and other services (such as VPN and wireless access). Security Administration (30%) Install and support server and desktop security software (anti-virus, anti-spyware, Tripwire, host-based firewalls, etc). Configure and support firewalls for servers and critical systems. Development and promulgation of systems and use policies. Regular monitoring, review of log files, and the use of intrusion detection tools. Regular coordination with campus on security policy implementation, and security incident response, as appropriate. Provide ongoing vulnerability assessments of ESPP networks, and make recommendations to effect remediation and improve security. Provide regular training to staff on the appropriate use of computer systems, Personally Identifiable Information (PII), and remote access policies, among others. Systems Administration (20%) Monitor production systems and services. Systems administration of Unix systems. Provide tier 3 support to technical staff on Unix and Windows systems administration. Other (10%) Technical mentor to the Computing Services staff. Conduct training, write documentation, and provide regular reports to the Computing Services manager. Support ESPP's Applications Development Group on the configuration, design, and monitoring of the networking and security infrastructure of custom-developed and commercial applications. Requires varied hours with potential on-call scheduling and must be available to work evenings and weekends, if necessary. QUALIFICATIONS: * At least 5 years experience in a network and security administration role in an enterprise environment of at least 200 nodes (workstations, network devices, and printers). Most recent experience must be within the last year. * Hands-on knowledge of securing Microsoft environments in production environments is required including Active Directory and SQL Server Understanding of patch management processes for Windows, and Unix environments. * Security vulnerability scanning and hardening experience, including familiarity with multiple tools such as Internet Security Scanner, Retina, nmap, Nessus, Snort, and IP Packet Analysis. * Expert knowledge in the application, installation, and support of computer security applications for virus scanning, anit-spyware, intrusion detection, and others. * Demonstrated expertise in configuration and support of network devices (routers, switches, hubs), which must include hardware and software firewall experience. * Expert knowledge of the networking and management protocols, including TCP/IP, DNS, DHCP, NAT, R/ARP, FTP, SNMP, Ethernet, and others. * Experience administering Unix workstations as demonstrated by at least 2 years as a systems administrator in a Unix environment. * Demonstrated experience as a systems administrator of a Windows environment, including at least 2 years administering Windows Server. EEO/AAE. |