Senior Systems Architect – Windows Infrastructure and Security

Saab

USonsite$116k-$151k/yrPosted Jul 9, 2026

About the role

Job Description:

We are seeking an experienced Systems Engineer with strong Microsoft Windows infrastructure expertise to support the delivery of air traffic control systems to our customers. This role will focus on the implementation of Windows-based platforms to provide a secure environment for other Saab software to run in.

The ideal candidate will have hands-on experience with Windows Deployment Service, Active Directory, Group Policy management, network design, and hardware/software integration.

About the Role

This position plays a key role in implementing and deploying air traffic control systems for customers, ensuring Windows environments are configured to support our software while meeting safety and security regulations. This role requires both an independent drive to troubleshoot implementation and the ability to work collaboratively with teammates to integrate various system components.

Key Responsibilities

Architecture Design: Develop, document, and maintain comprehensive security architectures, network designs, and cloud infrastructures

Risk & Vulnerability Management: Evaluate deliverable systems to identify weaknesses, perform security reviews, and execute ethical hacks or penetration tests.

Leadership & Guidance: Lead information technology analysts, security engineers, and deployment teams to coordinate effective security protocols and align projects with security guidelines

Design, implement, and manage Group Policy Objects (GPOs) to enforce security configurations and organizational standards within customer environments.

Configure, administer, and harden Windows Server and Windows workstation systems as part of security solution deployments.

Implement and maintain Active Directory security configurations, including user/group management, OU structures, and policy enforcement.

Design and implement role-based access control (RBAC) and least-privilege access models.

Deploy, configure, and manage endpoint protection and antivirus solutions.

Apply system hardening practices aligned with industry security frameworks and best practices.

Perform security assessments of Windows environments and implement remediation actions.

Assist in creating secure configurations, patch processes, and compliance with security policies.

Document system configurations, security controls, and deployment procedures for customer environments.

Provide technical guidance and knowledge transfer to customer stakeholders when appropriate.

Compensation:

$115,700 - $150,500

The compensation range provided is a general guideline. When extending an offer, Saab, Inc. considers factors including (but not limited to) the role and associated responsibilities, location, and market and business considerations, as well as the candidate's work experience, key skills, and education/training.

Skills and Experience:

Required Qualifications

Bachelor’s degree in Systems Engineering, Computer Science, Information Technology, Information Security, or a related field (or equivalent experience).

6 - 8+ years of experience administering and securing Microsoft Windows environments.

Strong hands-on experience with PowerShell scripting and automation.

Proven experience creating and managing Windows domains, including development of Group Policy Objects and Active Directory structures.

Experience integrating third-party software into Windows environments.

Hands-on experience with Windows Deployment Services.

Solid understanding of Windows security architecture and system hardening techniques.

Preferred Qualifications

Experience with PXE boot and BIOS configuration.

Experience implementing role-based access control and identity management practices.

Experience performing security assessments and remediation.

Familiarity with security monitoring tools and SIEM platforms.

Knowledge of security frameworks such as NIST, CIS Benchmarks, or ISO 27001.

Relevant certifications such as:

CompTIA Security+

CISSP

Microsoft security or identity certifications

GIAC certifications

Key Skills

Hardware/operating system/software integration

Customer-facing technical delivery and documentation

Windows security architecture

Active Directory administration

Group Policy design and implementation

Endpoint security and antivirus management

Identity and access management (IAM)

System hardening and vulnerability remediation

Security assessments and remediation

Desired Tool Experience

Experience with the following tools and applications is highly desirable.

Microsoft Hyper-V Virtualization

Splunk

PDQ

RSA Authentication Manager

Citizenship Requirements:

Must be a U.S. citizen. Applicants selected may be subject to a government security investigation and must meet eligibility requirements for access to classified information.

Drug-Free Workplaces:

Saab is a federal government contractor and adheres to policies and programs necessary for sustaining drug-free workplaces. As a condition of employment, candidates will be required to pass a pre-employment drug screen.

Benefits:

Saab provides an excellent working environment offering professional growth opportunities, competitive wages, work-life balance, a business casual atmosphere and comprehensive benefits.

Highlights include:

Medical, vision, and dental insurance for employees and dependents

Generous paid time off, including 8 designated holidays

401(k) with employer contributions

Tuition assistance and student loan assistance

Wellness and employee assistance resources

Employee stock purchase opportunities

Short-term and long-term disability coverage

About Us:

Saab is a leading defense and security company with an enduring purpose, to help nations keep their people and society safe. Empowered by its 28,000 talented people, Saab constantly pushes the boundaries of technology to create a safer and more sustainable world. In the U.S., Saab delivers advanced technology and systems, supporting the U.S. Armed Forces and the Federal Aviation Administration, as well as international and commercial partners. Headquartered in Syracuse, New York, the company has business units and local employees in ten U.S. locations.

Compensation

This Security Engineer role pays $116k-$151k/yr. Within typical range for security engineer roles in United States.

Questions about this role

Click "Apply with AI Applyd" above. We auto-fill the application from your resume and answer screening questions in seconds. No copy and paste, no juggling tabs.

Compensation for Security Engineer roles in United States varies widely by seniority, employer size, and remote vs onsite arrangement. Check the salary range on this listing when published, or browse our Security Engineer hub for United States medians across recent openings.

Most applications complete in under 90 seconds. You can track the status in your dashboard and watch the screenshot proof land the moment the application submits.

AI Applyd supports Greenhouse, Lever, Ashby, Workday, iCIMS, SmartRecruiters, LinkedIn Easy Apply, and most other ATS platforms. If we can submit through the platform, we do.

Want AI Applyd to auto-apply to roles like this?

We tailor your resume per posting, fill the forms, and track replies for you.