About this role
Our client is seeking an experienced Azure Cloud Engineer to support secure, mission-critical Microsoft Azure environments in Lorton, Virginia .
The Azure Cloud Engineer will be responsible for deploying, automating, maintaining, and troubleshooting Azure infrastructure within secure enclave environments. This position requires strong hands-on experience with Azure DevOps, Infrastructure as Code (IaC), Azure Virtual Desktop (AVD), PowerShell, Active Directory, and cloud automation .
The ideal candidate is an automation-focused Azure engineer who can build and maintain secure cloud environments while supporting infrastructure modernization, CI/CD pipelines, identity and access management, and Windows enterprise services.
Key Responsibilities
- Deploy Azure resources, including Azure Virtual Machines, Key Vaults, networking, storage, and other core Azure services , using Azure DevOps pipelines.
- Implement, manage, and troubleshoot Azure DevOps CI/CD pipelines .
- Develop and maintain cloud infrastructure using Infrastructure as Code (IaC) technologies such as Terraform, Bicep, and ARM templates.
- Review, refine, test, and troubleshoot new and existing IaC deployments.
- Automate the deployment, configuration, and management of Azure infrastructure.
- Monitor Azure infrastructure and proactively address performance, availability, capacity, and security issues.
- Design, implement, and maintain secure enclave environments within Microsoft Azure .
- Ensure the stability, performance, availability, and security of Azure enclave systems.
- Manage Identity and Access Management (IAM) policies and enforce least-privilege access across cloud environments.
- Build, maintain, and automate Azure Virtual Desktop (AVD) images and image rotation .
- Administer and maintain Windows infrastructure services, including:
Active Directory Domain Services (AD DS)
- Active Directory Certificate Services (AD CS)
- Group Policy
- Support secure account provisioning, certificate management, policy enforcement, and troubleshooting of domain-related issues.
- Assist customers with installing and deploying software to baseline desktop environments using an automation-first approach , including technologies such as DSC and Packer.
- Develop automation using PowerShell, YAML, JSON, Bicep , and related scripting/configuration technologies.
- Collaborate with engineering, cybersecurity, development, and operations teams to design and enhance cloud solutions.
- Troubleshoot complex Azure and Windows infrastructure issues and provide escalation support when required.
- Develop and maintain technical documentation covering configurations, procedures, automation, and troubleshooting processes.
Required Qualifications
- Active Top Secret/SCI (TS/SCI) clearance or higher .
- Bachelor's degree in Computer Science, Information Technology , or a related technical discipline, or equivalent professional experience.
- Minimum 5 years of experience in cloud administration, engineering, or development, with a focus on Microsoft Azure .
- Strong hands-on experience deploying and managing Azure resources.
- Experience supporting secure enclave environments and working with applicable security and compliance requirements.
- Strong knowledge of Azure services, including Azure Virtual Desktop (AVD) .
- Hands-on experience developing and maintaining Infrastructure as Code using technologies such as:
Terraform
- Bicep
- ARM Templates
- Azure DevOps
- Strong experience automating Azure infrastructure deployment through code and CI/CD pipelines.
- Strong proficiency with PowerShell and infrastructure automation.
- Working knowledge of YAML, JSON, and Bicep .
- Experience administering Windows infrastructure services, including Active Directory, Certificate Services, and Group Policy .
- Experience with Identity and Access Management and implementation of least-privilege principles.
- Ability to troubleshoot complex Azure infrastructure and automation issues.
Preferred Qualifications
- Microsoft Azure certifications such as:
AZ-104 – Microsoft Azure Administrator
- AZ-305 – Designing Microsoft Azure Infrastructure Solutions
- Other relevant Microsoft Azure certifications
- Experience with Azure DevOps in enterprise or government environments.
- Experience with Azure Virtual Desktop image creation, management, and automated image rotation .
- Experience with DSC and/or Packer .
- Experience supporting cloud environments subject to federal or DoD security requirements.
- Experience developing reusable IaC modules, templates, and deployment pipelines.
Technical Skills
- Microsoft Azure
- Azure DevOps
- Azure Virtual Desktop (AVD)
- Terraform
- Bicep
- ARM Templates
- Infrastructure as Code (IaC)
- CI/CD Pipelines
- PowerShell
- YAML / JSON
- Active Directory Domain Services (AD DS)
- Active Directory Certificate Services (AD CS)
- Group Policy
- Identity & Access Management (IAM)
- Azure Key Vault
- Azure Virtual Machines
- DSC
- Packer
- Windows Server
- Cloud Automation
- Secure Cloud Environments
Additional Requirements
- Must reside within driving distance of Lorton, VA or be willing to relocate.
- Must be willing to work onsite .
- Must be willing and able to travel up to 10% .
- Must possess an active TS/SCI clearance or higher .
- Pursuant to the requirements of the government contract, this position requires U.S. citizenship .
