The Microsoft Cloud Architect / Administrator provides senior-level technical leadership for Baim’s Microsoft cloud, identity, security, collaboration, and infrastructure environments. This role designs, implements, secures, monitors, and optimizes Microsoft Azure, Microsoft 365, Entra ID, Active Directory, Exchange Hybrid, Intune, Defender, Global Secure Access, Windows Server, and related technologies. The position serves as a senior technical authority for cloud architecture, identity and access management, endpoint security, data protection, compliance, and Microsoft 365 operations. Working closely with IT, Quality Assurance, Information Security, Clinical Operations, and business stakeholders, the role ensures systems are secure, resilient, compliant, and aligned with organizational needs.
Responsibilities:
- Lead Microsoft Azure architecture, administration, governance, security, monitoring, and cost optimization.
- Design and maintain hybrid cloud and infrastructure environments, including Windows Server, Active Directory, networking, storage, backup, and disaster recovery.
- Administer Microsoft Entra ID, Active Directory, identity governance, MFA, Conditional Access, privileged access, and access reviews.
- Manage Microsoft 365 services, including Exchange Online/Hybrid, Teams, SharePoint, OneDrive, Purview, and related governance controls.
- Administer Microsoft Intune, endpoint security, device compliance, configuration, application deployment, and patch management.
- Lead Microsoft Defender, Purview, DLP, information protection, vulnerability management, security monitoring, and incident response.
- Design and manage Zero Trust and Global Secure Access solutions.
- Establish and maintain audit logging, monitoring, data protection, retention, and inspection-readiness processes.
- Support computer system validation, change control, SOPs, risk assessments, regulatory compliance, and data integrity initiatives in a clinical research environment.
- Develop architecture standards, technical documentation, roadmaps, and modernization strategies.
- Lead technical projects, mentor IT staff, and serve as a senior escalation point for Microsoft platforms and infrastructure.
- Collaborate with vendors, consultants, auditors, Quality Assurance, and business stakeholders.
Qualifications:
- Bachelor’s degree in information technology, Computer Science, Cybersecurity, Engineering, or related field, or equivalent experience.
- 8+ years of progressive experience in Microsoft infrastructure, cloud, identity, and security administration.
- 5+ years of hands‑on experience administering Microsoft Azure and Microsoft 365 enterprise environments.
- Strong experience with hybrid cloud, hybrid identity, Windows Server, enterprise security, and Microsoft 365.
- Strong PowerShell and technical documentation skills.
- Experience working in regulated, validated, or compliance‑focused environments preferred.
Required Skills:
- Active Directory
- Microsoft 365
- Exchange Online/Hybrid
- Teams
- SharePoint
- OneDrive
- Microsoft Purview
- DLP
- Global Secure Access
- Conditional Access
- Windows Server
- Hyper‑V
- PowerShell
- Audit Logging
- SIEM
- Identity Governance
Preferred Skills:
- Experience working in regulated, validated, or compliance‑focused environments.
Preferred Certifications:
- Microsoft Azure, Security, Identity, or Endpoint certifications; CISSP, CISM, or equivalent security certification preferred.