Full-Time

Senior Platform Engineer

SixGen

SixGen

51-200 employees

Adversarial emulation and cyber operations

No salary listed

Reston, VA, USA + 1 more

More locations: Dulles, VA, USA

Hybrid

Three days in office per week.

US Top Secret Clearance Required

Category
DevOps & Infrastructure (1)
Required Skills
TCP/IP
Packer
Bash
QEMU
Python
Git
Computer Networking
Docker
Terraform
Observability
VMWare
Ansible
DevOps

Get referred to SixGen

See people who can refer or advise you

Requirements
  • 5+ years in platform, infrastructure, systems, or DevOps engineering — building and administering production virtualization, networking, and Linux environments
  • Active TS/SCI clearance
  • Deep hands-on expertise with a Type-1 hypervisor (Proxmox VE, KVM/QEMU, VMware ESXi, or equivalent), including clustering, shared storage, templating, and GPU passthrough
  • Strong network engineering and security skills: segmentation, stateful firewalls, zero-trust / least-privilege design, VPNs, DNS, PKI/mTLS, and TCP/IP fundamentals
  • Demonstrated endpoint and OS hardening across Linux and Windows to CIS/STIG baselines: full-disk encryption, measured boot, host firewalls, and attack-surface reduction
  • Fluency in infrastructure-as-code and automation (e.g., Terraform, Ansible, Packer) plus Python and Bash, with a track record of shipping and maintaining working tooling and pipelines
  • Working knowledge of secrets management, containerization, Git and CI/CD, and an observability/SIEM stack
  • Proven ability to stand up infrastructure from bare metal to operational, document it in runbooks, and operate it under security- and audit-sensitive conditions
Responsibilities
  • Design, build, and administer a highly available Type-1 hypervisor cluster as the backbone for internal services and workloads — including shared/software-defined storage, redundant networking, and GPU passthrough for local compute and AI inference
  • Build hardened, versioned golden images with an automated, scheduled rebuild cadence so workloads always launch from a current, patched baseline
  • Automate provisioning of isolated workload VMs with controlled, auditable access to shared storage
  • Tune and troubleshoot the virtualization layer for concurrent workloads and capacity; manage cluster health against a documented sizing model
  • Architect and enforce a segmented, least-privilege network with layered firewall enforcement (defense in depth) and a default-deny posture
  • Implement strong isolation between user access, shared services, workloads, and management, so each tier reaches only what it must
  • Build and operate self-hosted remote access (modern VPN with strong MFA) and internal connectivity, keeping control planes private and not internet-exposed
  • Own internal DNS, PKI/mTLS, and time synchronization; enforce encrypted, controlled name resolution
  • Build and maintain hardened endpoints and hosts to recognized baselines (CIS Benchmarks / DISA STIG): full-disk encryption, measured boot, host firewalls, and least privilege
  • Reduce platform attack surface across firmware and OS; disable unnecessary services and management interfaces
  • Maintain a consistent, reproducible hardened baseline across the fleet, validated before deployment
  • Author and enforce the hardening standards, runbooks, and image definitions that keep endpoints and hosts clean, patched, and reproducible
  • Provision the environment as code (infrastructure-as-code plus configuration management) with encrypted state and runtime secret injection — no secrets at rest in code
  • Build self-service provisioning that stands up and decommissions workloads cleanly, with each action recorded
  • Run a controlled software supply chain: internal package and code mirrors so systems build from vetted, internal sources
  • Maintain a staging path to validate changes before production, plus staged patch management and tested backup/restore
  • Build the observability stack (metrics, health, alerting), isolated from workloads so it cannot be reached or tampered with from them
  • Stand up centralized logging and a SIEM with tamper-evident, long-retention audit storage, so every action is attributable and traceable
  • Deploy network and flow monitoring at key boundaries, with alerting on anomalies and integrity issues
  • Implement isolation and response controls, and generate the audit evidence that supports common security frameworks (SOC 2, ISO 27001, NIST CSF, NIST SP 800-115)
Desired Qualifications
  • TS/SCI with CI polygraph; background supporting national security, intelligence community, or federal missions
  • Experience building or operating secure, isolated, or highly segmented infrastructure for sensitive or security-critical environments
  • Multi-cloud experience (AWS, GCP, Azure) with self-hosted networking
  • Experience building SIEM/audit pipelines with tamper-evident logging and detection engineering
  • Relevant certifications (e.g., Red Hat Certified Engineer, Certified Kubernetes Administrator, Security+/CISSP) and familiarity with SOC 2, ISO/IEC 27001, NIST CSF, or NIST SP 800-115
  • Experience standing up a new capability, unit, or program from zero — including standards authorship, staging environments, and identity-lifecycle (onboarding/offboarding) design
  • A builder's instinct that sees a manual process and immediately asks how to provision, automate, and reproduce it as code
  • Disciplined security mindset with unwavering attention to isolation, least privilege, and operational detail
  • Self-directed, high-ownership, and composed while owning critical infrastructure in fast-paced, high-consequence environments
  • Motivated to build, scale, administer, and audit — and to close the gap between design and a live, resilient capability

SIXGEN provides cybersecurity services to government, defense, critical infrastructure, and commercial sectors, including adversarial emulation, incident response, penetration testing, reverse engineering, cyber training, and applied research. Its flagship product, RAVEN, is a DoD-certified, high-performance cyber operations platform that ships as a pre-configured computing node with AI-enabled threat detection and response. The company acts as a prime contractor for the Department of the Navy and as a subcontractor for major defense contractors, expanding through acquisitions to strengthen software infrastructure, electronic warfare, and reverse engineering capabilities. Its goal is to deliver mission-ready cyber solutions with speed and operational advantage as a non-traditional defense contractor owned by private equity, protecting critical assets and national security.

Company Size

51-200

Company Stage

Seed

Total Funding

$500K

Headquarters

Baltimore, Maryland

Founded

2014

Get referred to SixGen

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • OASIS+ small-business award in December 2024 expands federal ordering pathways through 2029.
  • MDA SHIELD selection in December 2025 signals relevance for large defense programs.
  • Secure-EE and Boldend broaden software, data, and electronic warfare offerings for cross-selling.

What critics are saying

  • SIXGEN’s 2024 acquisition spree creates integration drag across Secure-EE, Boldend, and Kyrus Tech.
  • Heavy federal dependence exposes revenue to DoD procurement delays and budget reprogramming cycles.
  • If Washington Harbour’s roll-up fails, SIXGEN loses acquisition fuel and strategic differentiation.

What makes SixGen unique

  • SIXGEN combines cyber products, operations, and electronic warfare under Washington Harbour’s acquisition platform.
  • Jack Wilmer, former DoD cybersecurity leader, joined in April 2024 and sharpened federal credibility.
  • Board additions Andrew Boyd and Charles Moore strengthen intelligence and combat-networking relationships.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

Disability Insurance

Health Savings Account/Flexible Spending Account

401(k) Retirement Plan

Flexible and remote work policies for most positions

Flexible PTO and holiday schedule

Professional development reimbursement options available (training, certification, education, etc)

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

-1%

2 year growth

0%
Business Wire
Dec 3rd, 2024
Kyrus Tech and SIXGEN Join Forces to Create Preeminent Mid-Tier Across the Digital Battlespace

SIXGEN, a full-spectrum solutions provider across the digital battlespace to U.S. national security and critical infrastructure sectors, announced tod

Business Wire
Aug 7th, 2024
SIXGEN Acquires Boldend to Advance Innovation in US Defense and National Security

SIXGEN, a full-spectrum provider of cyber products, operations, and solutions to the U.S. national security and critical infrastructure sectors, annou

Technical.ly
Jul 9th, 2024
Baltimore Daily Roundup: Teaching Tech Leaders About Art; $1B For Free Med School At Johns Hopkins; Hospital Cyberattacks

What humanities can do for tech leaders. Rishi Jaitly, a Virginia Tech professor and advisor for OpenAI whose resume includes stints at some of the world’s biggest tech companies, sees the arts and related fields as crucial to the tech sector — and not opposed or tangential to it. “A world in which the humanities are more accessible and available,” Jaitly said, “is a world that’s more curious [and] more compassionate.”

Business Wire
Jul 3rd, 2024
SIXGEN Acquires Secure-EE

SIXGEN, a full-spectrum solutions provider of cybersecurity products and expertise to U.S. national intelligence, defense and critical infrastructure

Business Wire
May 13th, 2024
Sixgen Attracts Renowned Leaders To Board, Reinforcing Its Role At The Forefront Of Cyber And National Security

ANNAPOLIS, Md.--(BUSINESS WIRE)--In a significant endorsement of its leadership in cybersecurity across the digital battlespace, SIXGEN is proud to announce the appointment of two distinguished figures – Andrew Boyd and Lt. Gen. Charles Moore – to its board of directors. Mr. Boyd most recently served as the Director of the CIA’s Center for Cyber Intelligence, and Lt. Gen