01 Aug
|
Strategic Partners Australia
|
Canberra
01 Aug
Strategic Partners Australia
Canberra
One of our Federal Government Clients is seeking to engage a Infrastructure Engineer/System Administrator – APS6
Please check below all the job details:
- Contract Duration: 02 Years (12 Years initially + 12 Months extension)
- Eligibility: Australian Citizen with NV1 clearance
- Tentative Start Date: ASAP
- Working Hours: 7.5 hours a day/ 38hours a week
- Budget: $127/ Hour (Inc Super) (Non-Negotiable)
Key duties and responsibilities:
The role requires services delivered in collaboration with and under supervision by nominated department personnel, include, but are not limited to, the following:
- Provide Infrastructure Engineer / Systems Administrator services to plan, deploy, configure, and support solutions in the discrete operational network and ensure reliable ingest into department Net systems.
- Provide technical direction/advice to vendors performing professional services on behalf of the department, ensuring alignment with security and operational constraints.
- Design and configure infrastructure across the full stack (physical, virtual, network, storage) to support business applications and data flows.
- Establish and maintain Infrastructure-as-Code using Ansible and Git/GitLab, including CI/CD where appropriate for safe, auditable change.
- Provide technical leadership where relevant; mentor team members in automation-first practices and secure operations.
- Work effectively in a small, multidisciplinary team operating within a high‑assurance environment.
- Provide knowledge/skills transfer to permanent staff through explicit documentation, diagrams, procedures, and Ansible/GitLab artefacts.
- Record and maintain files/information in accordance with department requirements and applicable security classifications.
The Specified personal should have excellent skills and significant experience in several of the following domains:
- Linux (Ubuntu) administration: hardening, patching,
optimisation, troubleshooting; familiarity with AppArmor, systemd; packaging; network services.
- Configuration & Administration of Microsoft Windows Server (used in select roles—e.g., AD/ADFS, certificate services).
- Automation & Infrastructure-as-Code: Ansible (playbooks, roles, inventories), Git/GitLab workflows (merge requests, CI/CD runners, branching strategies), and scripting (Bash, PowerShell).
- Virtualisation: VMware vSphere and ESXi—design, operations, performance optimisation, lifecycle (host patching, vCenter upgrades), VM templates, snapshots, resource controls.
- Database platforms: SQL Server (optimisation, version upgrades, consolidation, virtualisation) and/or Linux-hosted databases where applicable (backup/restore, performance tuning, HA/DR patterns).
- Storage & Backup: enterprise arrays, data tiering, NFS/iSCSI; Dell technologies (e.g., Networker, Isilon/PowerScale) including VEEAM or similar products for backup/recovery of virtual workloads.
- Networking & Security: Cisco firewalls/switches (policy management, NAT, VPNs, ACLs), segmentation, routing, basic QoS; Linux firewalling; vulnerability scanning and remediation.
- Containers (desirable): Docker/Podman, image management, basic orchestration (K8s/nomad) where relevant to packaging and deployment of services.
Mandatory:
- Proven experience in the design, configuration, and support of Linux-first (Ubuntu) ICT infrastructure.
- Experience with configuring and maintaining windows systems and services.
- Hands-on experience with Ansible and Git/GitLab (IaC, CI/CD pipelines, code reviews, artefact/version control, environments).
- Virtualisation expertise with VMware vSphere/ESXi, including lifecycle management and performance optimisation.
- Networking experience with Cisco firewalls and switches, including policy configuration, network segmentation, and secure connectivity.
- Demonstrable capability delivering complex solutions hosted on infrastructure and/or cloud services, including the ability to identify and resolve:
- Technical & security requirements (segmentation, access controls, encryption, patching).
- Operational concerns (monitoring, logging, backup/restore, runbooks).
- System constraints (resource limits, compatibility, lifecycle).
Highly Desirable:
- Expert-level Linux (Ubuntu/RHEL) management including experience with Landscape and developing Linux standard operating environments.
- Experience with containers and/or orchestration (Docker/Podman, Kubernetes), including image hygiene and registry management.
- Security tooling and controls: WSUS/SCCM (for Windows), Nessus/Nmap (vulnerability scanning), AppArmor, Linux firewalling, Cisco firewall policy hygiene, and SIEM/logging integration.
- Experience designing monitoring/alerting (e.g., Prometheus/Grafana, ELK/OSSEC equivalents, CheckMK) suitable for discrete/segmented environments.
- Experience with data ingest pipelines (network and system throughput tuning, buffering, reliable delivery, integrity validation) using tools such as Apache NiFi.
- Experience complying with security assessments, system configuration, and change management processes/documentation standards in the Federal Government sector (particularly national security contexts).
- Strong scripting skills (Bash and PowerShell) for automation, diagnostics, and configuration management.
#J-18808-Ljbffr
📌 Infrastructure System Engineer (Canberra)
🏢 Strategic Partners Australia
📍 Canberra