Inversion Space

Senior Network Administrator & Security Operations

Playa Vista, CA
USD 110k - 140k
Bash C# C++ Java JavaScript Python SQL Shell HTML Angular React Vue.js Node.js Express.js Django Flask Spring ASP.NET PHP Ruby on Rails Symfony Laravel Drupal Hadoop Spark Kafka Docker Kubernetes AWS Azure GCP Git Ansible Chef Puppet Terraform Jenkins GitLab CI CircleCI Travis CI Jira Confluence Slack Microsoft Entra ID Active Directory NIST SP 800-171 CMMC DFARS SIEM VLANs ACLs DNS DHCP IPAM MFA VPN NetBox Security+ CySA+ CISSP
Description

Senior Network / Domain Administrator & Security Operations (SOC)

Location: Playa Vista, California, United States

Department: Information Technology

Turning Space into a Transportation Layer for Earth

Who We Are:

Eras of humanity can often be defined by a dominant transportation mode - horse drawn chariots, ocean going boats, or aircraft. These were spurred by a small group of people rigorously focused on building technology to achieve faster access to more of the world.  We seek to usher in a new era of humanity defined by universal access to the whole globe free of borders and the presence of a routine way from space to Earth. To do this, we are building highly maneuverable re-entry vehicles that can loiter in orbit before precision landing back on Earth. 

What You’ll Do: 

The Network / Domain Administrator & Security Operations (SOC) role is responsible for secure administration of network infrastructure, identity systems, and continuous monitoring of security events across corporate and enclave environments. This role enforces access control, network security, logging, and incident detection/response in alignment with NIST SP 800-171, CMMC Level 2, and DFARS requirements. 

This position serves as a primary operator for security monitoring (SOC functions) and ensures visibility, detection, and response capabilities across all systems handling CUI. 

Access Control & Identity Management (AC / IA) 

  • Administer identity systems (Microsoft Entra ID, Active Directory, GCCH tenants)  
  • Enforce MFA, conditional access, and least privilege principles  
  • Manage privileged accounts and implement separation of duties  
  • Conduct periodic access reviews and account audits  

Network Security & Boundary Protection (SC / AC) 

  • Configure and manage network infrastructure:  
  • Firewalls, routers, VLANs, ACLs  
  • Enforce segmentation between:  
  • Corporate network  
  • CUI enclave (CTMD)  
  • External/public access  
  • Manage DNS, DHCP, and IP address management  
  • Monitor and control inbound/outbound network traffic   

Audit & Accountability / Logging (AU) 

  • Ensure centralized logging across systems:  
  • SEIM and 3rd Party SOC 
  • Maintain log retention in accordance with policy  
  • Validate log integrity and availability for audit purposes  
  • Generate audit reports and provide evidence for compliance reviews  

Continuous Monitoring & SOC Operations (SI / IR / CA) 

  • Monitor security alerts, events, and anomalies across all environments  
  • Perform triage, investigation, and escalation of security events  
  • Correlate logs across endpoints, network, and applications  
  • Maintain alert tuning and detection rules  
  • Support continuous monitoring strategy required by CMMC   

Incident Response (IR) 

  • Lead or support incident detection, containment, eradication, and recovery  
  • Document incidents and maintain incident response records  
  • Coordinate with IT, application, and management teams during incidents  
  • Ensure proper evidence handling and chain of custody  

Configuration & Change Management (CM) 

  • Maintain secure baseline configurations for:  
  • Network devices  
  • Identity systems  
  • Review and approve network and security-related changes  
  • Ensure all changes are documented and auditable  

Risk Management & Vulnerability Management (RA / SI) 

  • Perform vulnerability scanning and remediation coordination  
  • Identify risks related to network and identity systems  
  • Track and remediate findings (POA&M support)  

System & Communications Protection (SC) 

  • Enforce encryption and secure protocols across network communications  
  • Validate secure configurations for remote access and VPNs  
  • Ensure secure integration with enclave systems and cloud environments  

Operational Responsibilities 

  • Manage:  
  • Network infrastructure (switches, routers, firewalls, VLANs)  
  • Identity platforms (Entra ID, AD, GCCH identity)  
  • Monitoring and SIEM platforms and working with 3rd party SOC  
  • Maintain network diagrams and documentation (e.g., NetBox)  
  • Support secure connectivity between corporate, enclave, and cloud environments  
  • Assist with compliance audits and security assessments  
  • Participate in on-call rotation for incident response  

Required Qualifications 

  • 5–9+ years of experience in network administration and/or security operations  
  • Strong knowledge of:  
  • Networking (TCP/IP, VLANs, routing, firewalls)  
  • Identity and access management (AD, Entra ID)  
  • Experience with SIEM and monitoring tools  
  • Understanding of security principles and incident response  

Preferred Qualifications 

  • Experience in regulated environments (CMMC, NIST 800-171, GovCloud, GCCH)  
  • Certifications such as:  
  • Security+, CySA+, CISSP (or equivalent)  

Audit-Relevant Expectations 

  • Continuous monitoring must be active, documented, and reviewable  
  • Logs must be centralized, retained, and protected from tampering  
  • Network segmentation and access controls must be enforced and verifiable  
  • All privileged activity must be controlled, logged, and auditable  
  • Incident response must be documented and repeatable  
  • Full alignment with SSP-defined controls and CUI boundary enforcement
      

Our office headquarters is located in Playa Vista, CA. This position requires in office presence.

 

The California annual base salary for this role is currently $110,000 - $140,000.  Pay Grades are determined by role, level, location, and alignment with market data.  Individual pay will be determined on a case-by-case basis and may vary based on the following considerations: interviews and an assessment of several factors that are unique to each candidate, job-related skills, relevant education and experience, certifications, abilities of the candidate and internal equity. 

ITAR Compliance:
To conform to U.S. Government space technology export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen, lawful permanent resident of the U.S., protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here.  
 
Equal Employment Opportunity:
Inversion provides equal employment opportunities to all employees and applicants without regard to race, color, religion, age, sex, gender identity, sexual orientation, national origin, veteran status, or disability.  
 
Inversion collects and processes personal data in accordance with applicable data protection laws.  If you are a US Job Applicant see the CCPA Privacy Policy Notice for further details.
Inversion Space
Inversion Space

0 applies

0 views

There are more than 50,000 engineering jobs:

Subscribe to membership and unlock all jobs

Engineering Jobs

60,000+ jobs from 4,500+ well-funded companies

Updated Daily

New jobs are added every day as companies post them

Refined Search

Use filters like skill, location, etc to narrow results

Become a member

🥳🥳🥳 452 happy customers and counting...

Overall, over 80% of customers chose to renew their subscriptions after the initial sign-up.

To try it out

For active job seekers

For those who are passive looking

Cancel anytime

Frequently Asked Questions

  • We prioritize job seekers as our customers, unlike bigger job sites, by charging a small fee to provide them with curated access to the best companies and up-to-date jobs. This focus allows us to deliver a more personalized and effective job search experience.
  • We've got over 200,000 jobs from 15,000+ vetted companies. No fake or sleazy jobs here!
  • We aggregate jobs from 15,000+ companies' career pages, so you can be sure that you're getting the most up-to-date and relevant jobs.
  • We're the only job board *for* software engineers, *by* software engineers… in case you needed a reminder! We add thousands of new jobs daily and offer powerful search filters just for you. 🛠️
  • Every single hour! We add 2,000-3,000 new jobs daily, so you'll always have fresh opportunities. 🚀
  • Typically, job searches take 3-6 months. EchoJobs helps you spend more time applying and less time hunting. 🎯
  • Check daily! We're always updating with new jobs. Set up job alerts for even quicker access. 📅

What Fellow Engineers Say