Senior Linux Security Architect

Optomi • United State
Remote
Apply
AI Summary

Design and implement secure Linux infrastructure, lead key management systems, and conduct security reviews. 8+ years of Linux Systems Engineering experience required. CISSP, CISM, or Linux-specific security certifications preferred.

Key Highlights
Design and implement secure Linux infrastructure
Lead key management systems
Conduct security reviews
Key Responsibilities
Architectural Strategy: Design and implement secure-by-default Linux builds (RHEL, Ubuntu, Alpine) utilizing Mandatory Access Control (MAC) like SELinux or AppArmor.
Key Management & Cryptography: Lead the architecture of enterprise Key Management Systems (KMS).
Hardening & Compliance: Develop automated hardening scripts (Ansible/Terraform) based on CIS Benchmarks and STIGs.
Identity & Access: Integrate Linux ecosystems with centralized identity providers (LDAP, FreeIPA, Active Directory) using SSSD and PAM configurations.
Threat Modeling: Conduct deep-dive security reviews of system architectures to identify vulnerabilities in data-at-rest and data-in-transit encryption.
Technical Skills Required
Linux Mandatory Access Control (MAC) SELinux AppArmor HashiCorp Vault AWS KMS SSH Universal Key Manager Hardware Security Modules (HSMs) Ansible Terraform CIS Benchmarks STIGs LDAP FreeIPA Active Directory SSSD PAM
Benefits & Perks
100% remote work
8+ years of experience in Linux Systems Engineering required
Nice to Have
CISSP, CISM, or Linux-specific security certifications (e.g., Red Hat Certified Specialist in Security)

Job Description


Sr. Linux Security Architect (100% Remote)

Optomi, in partnership with a large Fortune 500 Organization, is seeking a Sr. Linux Security Architect.


As a Senior Linux Security Architect, you will be the primary designer and guardian of our hardened Linux infrastructure. We aren't just looking for someone to "patch servers"—we need a visionary who understands the intersection of kernel-level security, automated orchestration, and the complex lifecycle of cryptographic secrets.


Your mission is to ensure that our Linux environments are not only resilient against modern threats but that our Key Management Infrastructure is secure, scalable, and compliant.


Core Responsibilities:

  • Architectural Strategy: Design and implement secure-by-default Linux builds (RHEL, Ubuntu, Alpine) utilizing Mandatory Access Control (MAC) like SELinux or AppArmor.
  • Key Management & Cryptography: Lead the architecture of enterprise Key Management Systems (KMS). You will manage the lifecycle of SSH keys, TLS certificates, and API secrets using tools like HashiCorp Vault, AWS KMS, SSH Universal Key Manager, or Hardware Security Modules (HSMs).
  • Hardening & Compliance: Develop automated hardening scripts (Ansible/Terraform) based on CIS Benchmarks and STIGs.
  • Identity & Access: Integrate Linux ecosystems with centralized identity providers (LDAP, FreeIPA, Active Directory) using SSSD and PAM configurations.
  • Threat Modeling: Conduct deep-dive security reviews of system architectures to identify vulnerabilities in data-at-rest and data-in-transit encryption.


Preferred Qualifications:

  • Experience: 8+ years in Linux Systems Engineering with at least 4 years focused purely on Security Architecture.
  • Certifications: CISSP, CISM, or Linux-specific security certs (e.g., Red Hat Certified Specialist in Security).
  • Pas Project Experience: You’ve successfully migrated a legacy environment from manual "secret-spreading" to a centralized, rotated, and audited Key Management System.


Similar Jobs

Explore other opportunities that match your interests

Security Analyst

Cyber Security
•
15h ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Entry level

decryption digest

United State

Senior Azure Security Engineer

Cyber Security
•
1d ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Mid-Senior level

Jobs via Dice

United State

Senior Security Engineer

Cyber Security
•
1d ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

TEKsystems

United State

Subscribe our newsletter

New Things Will Always Update Regularly