Senior Azure Infrastructure Cloud Engineer – Minimum Top Secret Clearance

Jobtailor

Maryland

On-site

USD 150,000 - 190,000

Full time

11 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Jobtailor is seeking an experienced Azure Infrastructure Architect to design, deploy, and manage Terraform-based IaC for Azure environments in a highly secure government-facing context.

You will build CI/CD pipelines in Azure DevOps, enforce CAF-aligned landing zones, and govern resources with policies, RBAC, and Key Vault. Collaboration with security, network, and development teams is essential.

Qualifications

  • Active Top Secret Clearance with SCI eligibility or higher is required.
  • 5+ years supporting Tier II Azure environments or 3+ years Tier III enterprise Azure cloud infrastructure.
  • Experience designing, implementing, and sustaining Azure landing zones aligned with CAF.
  • Deep expertise in Azure governance and platform services: Management Groups, Subscriptions, Resource Groups, Azure Policy, RBAC, Key Vault, Storage, networking.
  • Hands-on Azure networking: Virtual WAN, VNets, NSGs, private connectivity, hybrid-cloud architectures.
  • Experience administering Azure Virtual Desktop (AVD): host pools, image management, FSLogix, session hosts.
  • Strong knowledge of Azure security, monitoring, diagnostics, and security controls.
  • Proficiency in PowerShell scripting and automation.
  • IaC methodologies with Terraform.
  • Knowledge of Zero Trust, NIST, TIC 3.0, government cloud security requirements.
  • Excellent communication and ability to produce technical docs and architecture artifacts.
  • Ability to work effectively in cross-functional teams.

Responsibilities

  • Design, develop, and maintain Terraform IaC solutions for Azure deployments.
  • Build, enhance, and support automated CI/CD pipelines in Azure DevOps.
  • Architect and sustain Azure infrastructure services per CAF and Well-Architected Framework.
  • Administer governance: Management Groups, Subscriptions, Resource Groups, Policies, and RBAC.
  • Configure and manage Azure Key Vault for secrets and keys.
  • Design and support Azure storage with data protection and lifecycle management.
  • Architect and maintain enterprise networking: VNets, NSGs, Private connectivity, Hybrid-cloud.
  • Implement Azure monitoring with Monitor, Log Analytics, App Insights, alerts, dashboards.
  • Support migration and modernization of apps/workloads to Azure.
  • Integrate Zero Trust, NIST, TIC 3.0, and security controls across lifecycle.
  • Troubleshoot infrastructure, networking, identity, performance, and security issues.
  • Collaborate with architects, developers, cybersecurity, and stakeholders.
  • Maintain reusable modules, standards, reference architectures, and procedures.
  • Participate in capacity planning, incident response, and continuous improvement.
  • Produce documentation, implementation guides, architecture diagrams, and audit artifacts.

Skills

Terraform IaC
Azure governance
Azure networking
PowerShell scripting
Azure DevOps
Security & compliance
Cross-functional collaboration
Documentation

Tools

Terraform
Azure Monitor
Azure DevOps
Key Vault
Network security groups

Job description


  • Design, develop, and maintain Terraform Infrastructure as Code solutions for Azure infrastructure deployments

  • Build, enhance, and support automated CI/CD pipelines in Azure DevOps

  • Architect, deploy, and sustain Azure infrastructure services aligned with the Microsoft Cloud Adoption Framework, Well-Architected Framework, and organizational standards

  • Administer Azure governance capabilities, including Management Groups, Subscriptions, Resource Groups, Policies, and RBAC

  • Configure and manage Azure Key Vault for secrets, certificates, encryption keys, and application credentials

  • Design and support Azure storage solutions with data protection, backup, recovery, retention, and lifecycle strategies

  • Architect and maintain enterprise networking solutions, including Virtual WAN, VNets, NSGs, private connectivity, DNS, and hybrid-cloud integrations

  • Implement Azure monitoring and observability using Azure Monitor, Log Analytics, Application Insights, alerts, dashboards, and automated responses

  • Support application and workload migration, modernization, and optimization into Azure

  • Integrate Zero Trust, TIC 3.0, NIST, and federal security controls throughout the infrastructure lifecycle

  • Troubleshoot infrastructure, networking, identity, performance, and security issues

  • Collaborate with architects, developers, cybersecurity teams, and stakeholders

  • Maintain reusable infrastructure modules, engineering standards, reference architectures, and operational procedures

  • Participate in capacity planning, incident response, problem management, platform sustainment, and continuous improvement

  • Produce technical documentation, implementation guides, architecture diagrams, and audit artifacts


Requirements


  • Active Top Secret Clearance with SCI Eligibility; higher level clearance is an asset

  • 5+ years of experience supporting Tier II Azure environments or 3+ years supporting Tier III enterprise Azure cloud infrastructure

  • Experience designing, implementing, and sustaining Azure enterprise landing zones and core infrastructure services aligned with the Microsoft Cloud Adoption Framework (CAF)

  • Deep expertise in Azure governance and platform services, including Management Groups, Subscriptions, Resource Groups, Azure Policy, RBAC, Key Vault, Storage, and networking services

  • Hands-on experience with Azure networking solutions, including Virtual WAN, Virtual Networks (VNets), Network Security Groups (NSGs), private connectivity, routing, and hybrid-cloud architectures

  • Experience administering and supporting Azure Virtual Desktop (AVD), including host pools, image management, FSLogix profiles, session hosts, and enterprise user support

  • Strong understanding of Azure security, monitoring, and operational practices, including Azure Monitor, Log Analytics, Application Insights, alerts, diagnostics, and security controls

  • Proficiency in PowerShell scripting and automation

  • Experience with Infrastructure as Code (IaC) methodologies and Terraform

  • Knowledge of Zero Trust Architecture, NIST standards, TIC 3.0, and government cloud security requirements

  • Ability to diagnose and resolve complex infrastructure, networking, identity, performance, and security issues across enterprise Azure environments

  • Strong verbal and written communication skills and ability to create technical documentation, operational procedures, and architecture artifacts

  • Ability to work effectively within cross-functional teams

  • U.S. Citizenship is required for positions with a government clearance


Core Competencies

Demonstrates expertise in designing, developing, and maintaining Azure infrastructure solutions, with a strong focus on Terraform Infrastructure as Code and Azure governance. Proficient in implementing security controls and monitoring practices while collaborating effectively with cross-functional teams.


Highest-signal resume keywords


  • Terraform Infrastructure As Code

  • Azure Governance and Platform Services

  • Azure Networking Solutions

  • PowerShell Scripting and Automation

  • Active Top Secret Clearance


Hard Skills


  • Azure Infrastructure Services

  • CI/CD Pipelines in Azure DevOps

  • Azure Key Vault Management

  • Azure Storage Solutions

  • Azure Monitoring and Observability

  • Azure Virtual Desktop Administration

  • Infrastructure as Code Methodologies

  • Zero Trust Architecture

  • NIST Standards

  • TIC 3.0


Soft Skills


  • Strong Verbal and Written Communication

  • Collaboration with Cross-Functional Teams


Industry Keywords


  • Microsoft Cloud Adoption Framework

  • Management Groups

  • Subscriptions

  • Resource Groups

  • RBAC

  • Network Security Groups

  • Hybrid-Cloud Architectures

  • Incident Response

  • Problem Management

  • Operational Procedures


Tools & Technologies


  • Azure Monitor

  • Log Analytics

  • Application Insights

  • Azure DevOps

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cloud Engineer
Senior Cloud Engineer

Jobtailor • Atlanta (MO)

On-site
USD 90,000 - 120,000
Application Vulnerability Engineer
Application Vulnerability Engineer

Jobtailor • Washington

On-site
USD 140,000 - 190,000
Senior Azure DevOps, Cloud Platform Engineer
Senior Azure DevOps, Cloud Platform Engineer

Jobtailor • Plano (TX)

On-site
USD 140,000 - 190,000
AVP, Compute – Microsoft Azure Engineer
AVP, Compute – Microsoft Azure Engineer

Jobtailor • South Carolina

On-site
USD 110,000 - 170,000
Cloud Solution Architect
Cloud Solution Architect

Jobtailor • Lynchburg (VA)

On-site
USD 140,000 - 190,000
Cloud Engineer
Cloud Engineer

Core Specialty Insurance Holdings, Inc. • Cincinnati (OH)

On-site
USD 90,000 - 120,000
DevSecOps Engineer
DevSecOps Engineer

Jobtailor • Columbus (OH)

On-site
USD 120,000 - 170,000
Staff DevOps Engineer
Staff DevOps Engineer

Jobtailor • Mountain View (CA)

Hybrid
USD 180,000 - 240,000
Senior DevSecOps Engineer II
Senior DevSecOps Engineer II

Jobtailor • Reston (VA)

On-site
USD 150,000 - 210,000
Network Architect
Network Architect

Jobtailor • Suitland (MD)

On-site
USD 140,000 - 190,000