Systems Engineer (Azure & On-Premises Infrastructure)

Infosec Compliance (ISC) · Falls Church, VA, US

Spotted 1h agocontract
Job description

About this role

Employer-provided description, formatted for easier reading.

Location

Hybrid (U. S.) with International Travel

Clearance Required: Active Secret Clearance (Required)

Preferred Clearance: Top Secret (TS)

Employment Type: Full-Time

Travel Requirement: Some travel required

Position Overview

We are seeking an experienced Senior Systems Engineer to support the deployment, integration, and sustainment of mission-critical systems. The selected candidate will provide hands-on engineering expertise across both Microsoft Azure cloud environments and on-premises infrastructure, ensuring secure, scalable, and highly available solutions that meet stringent security and operational requirements.

The ideal candidate possesses deep technical knowledge of Azure security, hybrid infrastructure, enterprise identity management, system integration, and secure implementation practices within highly regulated government or defense environments.

Key Responsibilities

Infrastructure Engineering

  • Design, deploy, configure, and maintain hybrid infrastructure environments spanning Microsoft Azure and on-premises data centers.
  • Support implementation of systems across development, test, staging, and production environments.
  • Develop and maintain infrastructure architecture, deployment diagrams, and engineering documentation.
  • Configure and manage Windows Server environments, Active Directory, DNS, DHCP, PKI, and virtualization platforms.

Azure Cloud Engineering

  • Design and implement secure Azure landing zones and cloud architectures.
  • Deploy and manage Azure services including: Azure Virtual Machines, Azure Key Vault, Azure Entra ID (Azure AD), Azure Monitor, Azure Firewall, Microsoft Defender for Cloud, Azure Front Door, Azure Storage, Azure Application Gateway.
  • Implement security controls aligned with government security requirements.
  • Support cloud migration and hybrid connectivity initiatives.

Security Engineering

  • Implement and manage Zero Trust and defense-in-depth security principles.
  • Configure Azure security services, identity protection, privileged access controls, and role-based access controls (RBAC).
  • Support integration with PKI, HSM, smart card, token-based authentication, and certificate management solutions.
  • Conduct security assessments, vulnerability remediation, and compliance validation activities.
  • Support incident response, forensic investigations, and system hardening efforts.

Systems Integration

  • Integrate enterprise systems including: Active Directory, LDAP, PKI Infrastructure, Microsoft Configuration Manager (SCCM), Splunk, SQL Server, Identity repositories and third-party APIs

Operational Support

  • Troubleshoot complex infrastructure and security issues.
  • Participate in system testing, performance tuning, and disaster recovery exercises.
  • Provide Tier III engineering support during implementation and operational phases.
  • Create standard operating procedures, technical runbooks, and deployment guides.

Required Qualifications

  • 8+ years of experience as a Systems Engineer, Infrastructure Engineer, or Cloud Engineer.
  • 5+ years of hands-on experience designing and supporting Microsoft Azure environments.
  • Strong experience managing hybrid cloud and on-premises infrastructure.
  • Expertise in: Microsoft Azure, Windows Server, Active Directory, Azure Entra ID, PowerShell scripting, Networking and security technologies.
  • Experience implementing secure architectures in government, defense, or regulated environments.
  • Active Secret Clearance required.
  • Willingness and ability to travel internationally.

Preferred Qualifications

  • Active Top Secret (TS) Clearance.
  • Experience with Identity and Access Management (IAM) platforms.
  • Familiarity with:
  • PKI and certificate lifecycle management
  • Hardware Security Modules (HSM)
  • Azure Landing Zones
  • Microsoft Defender Suite
  • Splunk
  • DevSecOps practices
  • Experience working in classified or mission-critical operational environments.

Desired Personal Attributes

  • Strong analytical and troubleshooting skills.
  • Excellent communication and customer engagement abilities.
  • Ability to work independently in fast-paced and mission-critical environments.
  • Strong documentation and technical writing skills.

Pay: From $100. 00 per hour

Expected hours: 40. 0 per week

Work Location: Hybrid remote in Falls Church, VA 22043

Interested in this role?Continue on Infosec Compliance (ISC)'s careers page.
Apply on Infosec Compliance (ISC)