787,996open jobs
49,912companies
122,545added this week
Browse all
Salary
≈ $102k – $226k per year (Estimated)
Location
In office (London)
Seniority
Staff · 12+ years exp

Confirmed on the employer's own hiring board on Sep 26, 2026. First seen by Alion on Sep 24, 2026. Shield AI scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Shield AI is an American defence technology company founded in 2015 that builds autonomy software and uncrewed aircraft for military missions. Its Hivemind autonomy stack lets aircraft fly, navigate and complete objectives without GPS, a remote pilot or a communications link, which matters in contested environments where those links are jammed. Headquartered in San Diego, California, the company fields the V-BAT vertical take-off aircraft with United States and allied forces, licenses Hivemind to other manufacturers and is developing the X-BAT jet for high-end missions.

Job Description:

Shield AI is seeking a highly autonomous Staff Systems Administrator to serve as the accountable technical owner for enterprise IT infrastructure and end-user computing within a dedicated, security-sensitive entity environment. This senior individual contributor will design, implement, operate, secure, and continuously improve on-premises systems, cloud platforms, identity services, networks, and endpoints while preserving required legal, operational, information-security, and access boundaries.

The role combines deep infrastructure ownership with hands-on service delivery. The successful candidate will translate security and compliance requirements into durable technical controls, maintain audit-ready evidence, drive equipment and endpoint hardening, and deliver resilient support to engineering and business teams with minimal oversight.

What you'll do:

    Infrastructure Ownership (On-Prem & Cloud)

  • Own and operate on-premises and cloud infrastructure, including physical and virtual servers, storage, backup platforms, identity services, core network services, and enterprise applications.
  • Administer Azure and/or AWS environments with responsibility for availability, capacity, performance, monitoring, secure configuration, backup, and disaster-recovery readiness.
  • Define technical roadmaps, identify operational risks, and independently drive modernization, standardization, scalability, and resilience improvements.
  • Maintain accurate architecture diagrams, inventories, operating procedures, recovery documentation, configuration records, and service ownership information.
  • Plan and execute infrastructure changes using disciplined change, testing, rollback, and post-implementation review practices.
  • Firewalled Entity and Segmented-Environment Support

  • Operate technology services for a dedicated legal or operating entity with explicit separation of systems, identities, data, administration, suppliers, and access from other corporate environments where required.
  • Implement and maintain approved trust boundaries, network segmentation, firewall policies, secure remote access, administrative tiers, and controlled cross-entity connectivity.
  • Ensure data, devices, accounts, cloud resources, and third-party access remain within authorized entity, contractual, regulatory, and data-residency boundaries.
  • Partner with Security, Legal, Compliance, Privacy, and corporate IT teams to translate entity-specific obligations into practical controls, operating procedures, and evidence.
  • Document and periodically validate boundary controls, data flows, privileged access paths, exceptions, and intercompany dependencies; escalate gaps and drive remediation to closure.
  • Support local business continuity and operational autonomy while aligning with approved global architecture, security standards, and governance.
  • Security, Compliance, and Systems

  • Establish, implement, and maintain secure configuration baselines for Windows, macOS, Linux, servers, network devices, cloud services, and endpoint-management platforms using recognized frameworks and vendor guidance.
  • Own patching and vulnerability-remediation workflows, including asset coverage, risk-based prioritization, remediation timelines, exception documentation, validation, and status reporting.
  • Administer and validate endpoint protections such as full-disk encryption, EDR/XDR, host firewall, secure boot, application controls, device compliance, removable-media controls, and least-privilege configurations.
  • Harden identity and administrative access through role-based access control, multifactor authentication, privileged-access separation, conditional access, service-account governance, and periodic access reviews.
  • Maintain logging, alerting, time synchronization, configuration monitoring, backup protection, and security telemetry needed for detection, investigation, and auditability.
  • Collect and maintain audit-ready evidence; support internal and external audits, control assessments, security reviews, customer requirements, and remediation plans.
  • Participate in incident response, containment, recovery, root-cause analysis, and corrective actions for infrastructure and endpoint security events.
  • Manage technical risks and policy exceptions transparently, including compensating controls, accountable owners, expiration dates, and closure plans.
  • Identity, Endpoint, and Service Delivery

  • Administer Active Directory and Entra ID or equivalent identity platforms, including user and group lifecycle, authentication, authorization, federation, and policy enforcement.
  • Manage Windows, macOS, and Linux endpoints through Intune, Jamf, or equivalent tooling, ensuring secure provisioning, configuration compliance, software deployment, inventory accuracy, and timely retirement.
  • Lead onboarding and offboarding activities, including device provisioning, access configuration, license assignment, asset recovery, and compliance validation.
  • Provide advanced troubleshooting and escalation support for employees, engineering systems, lab environments, collaboration services, and secure connectivity.
  • Own IT asset lifecycle, software licensing, vendor coordination, procurement support, warranty management, and secure equipment disposal.
  • Use scripting and automation to improve consistency, reduce manual effort, strengthen controls, and provide meaningful operational and compliance reporting.
  • Contribute reusable infrastructure patterns, standards, and documentation that can scale across comparable international entity environments.

Required qualifications:

  • 12+ years of experience in systems administration, infrastructure engineering, enterprise IT operations, or a closely related discipline.
  • Demonstrated success independently owning production IT infrastructure and end-user environments in a complex, regulated, segmented, or security-sensitive organization.
  • Strong hands-on expertise with Windows, macOS, and Linux; server administration and virtualization; Azure and/or AWS; and Active Directory and Entra ID or equivalent identity platforms.
  • Practical experience implementing system and endpoint hardening, configuration baselines, patch management, vulnerability remediation, encryption, endpoint detection and response, and least-privilege controls.
  • Experience supporting security or compliance programs and producing evidence for audits, assessments, or customer and regulatory requirements.
  • Strong networking knowledge, including TCP/IP, DNS, DHCP, VLANs, routing, VPNs, network segmentation, firewall policy, and secure remote access.
  • Experience with endpoint management platforms such as Intune, Jamf, or equivalent, including compliance policy and device lifecycle management.
  • Experience implementing and testing monitoring, backup, disaster recovery, and business-continuity capabilities.
  • Excellent documentation, prioritization, risk communication, and stakeholder-management skills, with the ability to drive outcomes under limited supervision.
  • Ability to support time-sensitive operational needs and participate in planned after-hours maintenance or incident response when required.

Preferred qualifications:

  • Experience supporting a firewalled, ring-fenced, subsidiary, joint-venture, sovereign, or otherwise separately governed entity environment.
  • Experience supporting engineering, R&D, aerospace, defense, manufacturing, or other mission-critical technical teams.
  • Working knowledge of recognized security and compliance frameworks such as CIS Controls and Benchmarks, NIST, ISO 27001, SOC 2, Cyber Essentials, or equivalent local and contractual standards.
  • Experience with security tooling such as SIEM, vulnerability-management platforms, privileged-access management, data-loss prevention, certificate management, or network-access control.
  • Experience supporting isolated, air-gapped, export-controlled, or data-residency-restricted systems.
  • Scripting and automation experience using PowerShell, Bash, Python, APIs, infrastructure as code, or configuration-management tooling.
  • Familiarity with GitHub, Azure DevOps, CI/CD environments, and secure engineering workflows.
  • Relevant certifications such as Microsoft, AWS, VMware, Cisco, CompTIA Security+, CISSP, CISM, GIAC, ITIL, or equivalent.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
787,996 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

DevOps
Similar stack
Same company
London
$113k – $166k per year • Equity • Hybrid • Full-Time • London
Python
DevOps
Terraform
GCP
Azure
CI/CD
AWS
Management
Agile
Apply
≈ $94k – $209k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • London
AI/ML
CUDA Toolkit
CUDA
TPU
NCCL
DevOps
Linux
Apply
≈ $90k – $167k per year (Estimated) • In office • London
Go
TypeScript
C#
DevOps
Terraform
GCP
Istio
CI/CD
GitOps
ArgoCD
AWS
Kubernetes
Cloudflare
Service Mesh
IAM
Apply
Hybrid • 4+ years exp • Bachelor's Degree • Glasgow
Python
Python
Flask
FastAPI
AI/ML
LangChain
Claude
Llama
AWS Bedrock
Gemini
LLM
OpenAI
Amazon SageMaker
DevOps
Terraform
GCP
Azure
CI/CD
AWS
Apply
≈ $108k – $209k per year (Estimated) • In office • 7+ years exp • Bachelor's Degree • United States
Databases
Oracle
DevOps
Rest API
SOAP
Management
Microsoft Office
Apply
$127k – $237k per year • Equity • Hybrid • Full-Time • 8+ years exp • Bachelor's Degree • Toronto
Python
C#
AI/ML
Vertex AI
AI Agents
AWS Bedrock
LLM
OpenAI
DevOps
GCP
Azure DevOps
GitHub Actions
Azure
CI/CD
AWS
Docker
Platform Engineering
GitHub
Linux
Unix
Management
Agile
Scrum
Kanban
Apply
≈ $54k – $141k per year (Estimated) • Remote (Argentina) • Full-Time • Buenos Aires • Mar del Plata • Salta • Rosario • Mendoza
Java
SQL
Java
Hibernate
Spring MVC
Spring Security
Spring Cloud
Databases
RabbitMQ
ActiveMQ
DevOps
GCP
OpenShift
VMWare
Azure
AWS
QA
Swagger
Apply
≈ $35k – $85k per year (Estimated) • In office • Full-Time • 12+ years exp • Noida
Python
Python
pySpark
Databases
Snowflake
Databricks
AI/ML
Spark
DevOps
GCP
Azure
AWS
Analytics
Power BI
Informatica
Microsoft Excel
Apply
$77k – $88k per year • Remote (Poland) • Full-Time
Python
SQL
AI/ML
dbt
DevOps
GCP
Azure
CI/CD
AWS
Analytics
ETL/ELT
SAP BusinessObjects
Management
Agile
Apply
≈ $44k – $99k per year (Estimated) • Hybrid • Full-Time • 10+ years exp • High School Diploma • Bengaluru
PowerShell
AI/ML
AI Agents
LLM
Copilot Studio
DevOps
Azure
Cybersecurity
Microsoft Entra ID
DLP
Analytics
Power BI
Management
Power Automate
Power Apps
Microsoft Teams
SharePoint
Apply
$180k – $270k per year • Remote (United States) • Full-Time • 12+ years exp • PhD
SQL
Databases
Databricks
Delta Lake
DevOps
Platform Engineering
Analytics
Dimensional Modeling
Apply
$84k – $126k per year • In office • Full-Time • 3+ years exp • Bachelor's Degree • Dallas
Analytics
Tableau
Power BI
Cognos
Apply
$60k – $90k per year • In office • Secret • Full-Time • 5+ years exp • Associate's Degree • Washington
Python
PowerShell
Bash
DevOps
CI/CD
Linux
Windows
Apply
In office • 6+ years exp • Kyiv
PowerShell
Bash
DevOps
Azure
Linux
Windows
TCP/IP
DNS
DHCP
Cybersecurity
Active Directory
Management
Jira
ServiceNow
Apply
≈ $30k – $66k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Bengaluru
PowerShell
Bash
DevOps
VMWare
Azure
Hyper-V
Linux
Windows
TCP/IP
DNS
DHCP
VPN
Cybersecurity
Microsoft Entra ID
Active Directory
Management
Jira
SharePoint
ITIL
ITSM
Apply
≈ $66k – $156k per year (Estimated) • In office • Full-Time • Manchester • London • Cardiff • Edinburgh • Belfast
AI/ML
Recommender Systems
Apply
Senior Product Manager 11 hours ago
≈ $101k – $166k per year (Estimated) • Remote (United Kingdom, GMT hours) • Full-Time • London
AI/ML
Model Context Protocol
AI Agents
Ray
Cybersecurity
DLP
Management
Agile
Apply
≈ $13k – $32k per year (Estimated) • In office • 7+ years exp • London • Kuala Lumpur
Apply
Equity • In office • London
Apply
≈ $36k – $67k per year (Estimated) • Equity • In office • Full-Time • London
Apply
See all jobs
This is one of many
787,996 more open roles from verified company boards, updated every day.