The posting, in Shield AI's own words
archived Sep 26, 2026Shield AI is a venture-backed defense-tech company with the mission of protecting service members and civilians with intelligent systems. Its products include Hivemind autonomy software, V-BAT and X-BAT aircraft, and Aechelon simulation and synthetic reality technologies. With offices and facilities across the U.S., Europe, the Middle East, and Asia-Pacific, Shield AI’s technology actively supports operations worldwide. For more information, visit www.shield.ai. Follow Shield AI on LinkedIn, X, Instagram, and YouTube.
What you'll do:
Build and operate classified infrastructure Deploy, configure, and sustain Windows Server and Red Hat Enterprise Linux systems, virtualization clusters, enterprise storage, and core infrastructure services in standalone and air-gapped enclaves. Build and support VMware, Nutanix AHV/Prism, or similar virtualization environments. Nutanix experience is preferred. Support high-density compute for AI/ML, simulation, and engineering workloads, including GPU node provisioning, performance troubleshooting, capacity planning, and coordination with facilities on rack space, power, and cooling. Administer and support Active Directory, DNS, DHCP, Group Policy, PKI, certificate services, privileged access, and role-based access for isolated forests with no connection to corporate IT. Build and maintain golden images and hardened baselines for servers, workstations, virtual desktops, and supporting infrastructure. Manage patching, updates, software packages, and security content in disconnected environments through approved transfer and validation processes. Administer backup, recovery, and continuity capabilities. Perform scheduled restore testing and document results and corrective actions. Design, configure, and troubleshoot managed switching, VLANs, firewall rules, network segmentation, and approved network connections between facilities. Coordinate with network and security teams to maintain secure, supportable network standards. Automate and standardize Automate provisioning, configuration, patching, reporting, and compliance tasks using PowerShell, Ansible, Python, Terraform, or similar tools. Create repeatable build processes, system baselines, checklists, and runbooks so systems can be deployed consistently rather than built by hand each time. Improve existing processes by reducing manual steps, preventing common errors, and documenting effective methods for building and supporting systems. Apply and validate DISA STIGs and SRGs using SCAP, STIG Viewer, ACAS/Nessus, scripted remediation, and other approved tools. Maintain configuration-management records, as-built documentation, change records, and scan evidence so system configurations can be understood and defended later. Review technical changes before production implementation, with attention to security, availability, rollback planning, and operational impact. Support accreditation and security operations Work with ISSMs, ISSOs, security teams, and program stakeholders to implement NIST SP 800-53, JSIG, RMF, and program-specific technical controls. Provide technical documentation and evidence for authorization packages, continuous monitoring, assessments, and audits. Implement and maintain audit logging and forwarding, including Elastic or similar centralized logging and SIEM tools. Support vulnerability management through ACAS/Nessus scanning, findings triage, remediation planning, patching, and validation during approved maintenance windows. Help resolve technical POA&M items and document remediation steps, validation results, and remaining risks. Support approved media handling, file transfer, cross-domain processes, and contamination or spillage response alongside the security team. Support users and sites Act as a senior escalation point for classified IT issues that block engineering work or require deeper troubleshooting across multiple systems. Identify and correct root causes rather than relying on repeated fixes or workarounds. Support user-account, privileged-access, and workstation-access requests consistent with least privilege and separation-of-duties requirements. Support new facility and enclave stand-ups from rack layout and cabling through infrastructure deployment, user onboarding, and operational handoff. Mentor junior system administrators and site IT staff, review implementation work before production release, and help improve team standards. Work independently, manage competing priorities, communicate risks early, and bring practical solutions to the team.