Pitisci & Associates
Back to List

Linux/Desktop Systems Engineer

W2 Contract

Location: Hybrid onsite at one of these sites St. Pete, Memphis, Denver or Southfield, MI or Park Ave in NY

 

Our Client is looking for a Linux/Desktop Systems Engineer to join the Platform Engineering team.  They are rolling out an Enterprise browser which will have to be supported after onboarding.

 
Desktop engineer – Linux Administrator/Desktop Engineer
 
  • Linux server images used to support enterprise browser (Open flavor of Linux running on Ubuntu)
  • Proficient shell scripting (Bash or general shell scripting preferred; Python/PowerShell secondary), package management, security and service control
  • Network configuration – IP tables, VPN, troubleshoot network stack of Linux – understand traffic flow
  • Understanding zero trust model at high level – familiar with identity service providers, access controls
  • Enterprise browser – familiar with secure web gateways, Chrome, Firefox policies, etc.
  • Basic troubleshooting of SSL
  • Team: around 16 engineers; global team; Doesn’t expect after-hours work but may happen (5-10% max)
  • 70% troubleshooting browser and 30% troubleshooting Linux piece
 
Detailed Experience per Client:

 

Linux Experience 

Engineering and support for Linux based network appliance, OS upgrades, potential for Kubernetes container  

 

Linux Administration 

  • Proficient in shell scripting, package management, and service configuration 
  • Familiarity with SELinux, and systemd for security and service control 

 

Network Experience 

  • Experience managing Zero Trust platform (secure access service edge, browser proxy, etc) 
  • Network Configuration 

  - Experience with iptables/nftables, WireGuard/OpenVPN, and DNS 

  - Ability to configure and audit SSH, TLS, and firewall rules for least privilege access 

  • Zero Trust Model 

  - Understand “never trust, always verify” and continuous authentication models 

  - Implement device posture checks 

  • Identity and Access skills 

  - Integrate with IdPs (e.g., Azure AD, Ping, Okta) for MFA and SSO 

  - Enforce role-based access control (RBAC) and just-in-time access provisioning 

  • Browser Isolation & Policy Enforcement 

  - Familiarity with remote browser isolation (RBI) and secure web gateways 

  - Ability to enforce browser policies via enterprise tools (e.g., Chrome ADMX, Firefox policies, Cloud Management) 

  • Certificate and Proxy Diagnostics 

  - Troubleshoot SSL/TLS handshake failures, certificate pinning 

  - Analyze HAR files, browser dev tools, and inspect headers for access anomalies 

  • Platform Familiarity 

  - Hands-on with platforms like Zscaler Private Access, Cloudflare Zero Trust, or Tailscale a plus 

  - Configure identity-aware routing, tunnel policies, and posture-based access controls 

Traditional Desktop Engineering skills 

  • Basic Windows Desktop engineering troubleshooting skills (e.g event view log review, packet capture logging and analysis, etc
 
 
Apply to this Job
First Name *
Last Name *
Email

Phone

Yes
No