Insight Global logo

Remote Linux / SSH Infrastructure Engineer

Insight Global

Remote · USJobSeen 1 day agoSeen in employer's feed 1 day ago

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
No compensation found
Location
Remote · US
Work Authorization
Not specified

Olive lists jobs from US employers, including remote roles you can work from the United States.

Job overview

Insight Global seeks a Linux/SSH Infrastructure Engineer to design, secure, and implement a remote‑access platform for a large fleet of Linux‑based IoT devices, leading migration to certificate‑based authentication and providing knowledge transfer in a fully remote consulting environment.

Skills & qualifications

RequiredNice to have

Skills

Linux Systems AdministrationUbuntu Server AdministrationLinux NetworkingOpenSSHSSH CertificatesSSH Certificate AuthoritiesReverse SSH TunnelsReverse Port ForwardingJump HostsBastion HostsProxyJump ConfigurationsAuthorized Keys RestrictionsForced CommandsMatch BlocksSession ManagementAutosshIdentity and Access ManagementLeast Privilege Security PrinciplesCertificate Based AuthenticationInfrastructure HardeningSecure Fleet ManagementLinux Based IoTARM Based DeviceSystemdSysvinitLarge Scale Infrastructure MigrationStaged DeploymentsVerification TestingRollback PlanningPilot ProgramsProduction Change ControlEnglish CommunicationHashiCorp VaultStep CAPKI InfrastructureOIDC IntegrationGoogle Workspace AuthenticationDigitalOcean AdministrationDevSecOpsSite Reliability Engineering

Qualifications

5+ Years Linux Systems Administration Experience

Full job description

Job Description

Insight Global is seeking a Linux / SSH Infrastructure Engineer for a cutting-edge IoT technology client. This consultant will take ownership of designing, securing, and implementing a modern remote-access platform for a large fleet of Linux-based devices. The ideal candidate will bring deep expertise in OpenSSH, SSH Certificate Authorities, reverse tunneling, Linux infrastructure, and security architecture. This individual will serve as both a technical lead and hands-on engineer, driving the migration from an existing reverse SSH environment to a scalable, certificate-based access model. The engagement offers the opportunity to influence long-term infrastructure strategy, lead complex migration efforts, strengthen security posture, and deliver knowledge transfer to internal teams in a fully remote, high-impact consulting environment.

Responsibilities include:

•Review and finalize remote-access architecture design •Harden and secure Ubuntu-based relay infrastructure hosted in DigitalOcean •Design and implement SSH certificate-based authentication architecture •Configure secure SSO-backed engineer access •Implement and maintain reverse SSH tunneling infrastructure •Create scalable migration strategies for existing Linux-based IoT devices •Develop rollout, validation, and rollback procedures •Test deployment processes across multiple device generations •Work closely with internal engineering teams on device registration and backend integrations •Produce operational runbooks and technical documentation •Train support engineers and contractors on the new infrastructure •Lead architecture discussions and provide hands-on implementation support •Ensure scalability, security, and operational efficiency across the device fleet

Skills and Requirements

•5+ years of Linux systems administration experience •Extensive Ubuntu server administration experience •Strong Linux networking and remote administration expertise •Experience making production SSHD changes in remote environments •Deep OpenSSH expertise including: -SSH Certificates -SSH Certificate Authorities (CA) -Reverse SSH Tunnels -Reverse Port Forwarding -Jump Hosts/Bastion Hosts -ProxyJump configurations -authorized_keys restrictions -Forced commands -Match blocks -Session management and keepalives •Experience with persistent reverse tunnels using autossh or similar tools •Secure remote-access architecture design experience •Identity and access management (IAM) and least-privilege security principles •Certificate-based authentication implementation experience •Infrastructure hardening and secure fleet management experience •Linux-based IoT or embedded systems experience •ARM-based device experience •Experience supporting both systemd and sysvinit environments •Large-scale infrastructure migration experience •Proven experience with: -Staged deployments -Verification testing -Rollback planning -Pilot programs -Production change control •Strong verbal and written English communication skills •HashiCorp Vault experience •Step-CA experience •PKI infrastructure expertise •OIDC integration experience •Google Workspace authentication experience •DigitalOcean administration experience •DevSecOps background •Site Reliability Engineering (SRE) experience •Infrastructure Security Engineering experience •Knowledge of IoT cybersecurity regulations/frameworks: -UK PSTI -EU Cyber Resilience Act (CRA) -California SB-327

We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal employment opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment without regard to race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or the recruiting process, please send a request to [email protected].

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.