Senior Cloud Engineer

Jobtailor

Alabama

On-site

USD 110,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor in the United States (Alabama) seeks an experienced IT Infrastructure Engineer to manage Microsoft Entra ID (Azure AD) and on-premises AD in a hybrid enterprise. You will design and enforce Conditional Access, oversee device enrollment across Workspace ONE, and lead SSO integrations and Windows Hello for Business deployment.

You will also govern M365 apps, licensing, and tenant health, while driving security through MFA, Zero Trust, and enterprise identity governance.

Qualifications

  • Bachelor's degree or equivalent work experience in IT/related field.
  • 7–10 years of progressive experience in cloud infrastructure, identity management, or enterprise IT engineering.
  • Demonstrated experience managing enterprise Microsoft cloud environments at scale.
  • Microsoft 365 administration — Exchange Online, SharePoint, OneDrive, Teams, licensing, and tenant management.
  • Microsoft Entra ID (Azure AD) and on-premises Active Directory configuration and administration in hybrid environments.
  • Azure cloud platform management including compute, networking, storage, and identity services.
  • Windows Server administration and Group Policy management.
  • Multi-factor authentication technologies including Microsoft Authenticator, DUO, and FIDO2/Windows Hello.
  • Collaboration platform administration — Microsoft Teams and Slack governance at enterprise scale.
  • Proficiency in scripting and automation using PowerShell and/or Python.
  • Strong understanding of enterprise security principles, identity governance, and Zero Trust architecture.

Responsibilities

  • Serve as a primary administrator for Microsoft Entra ID (Azure AD) and on-premises Active Directory in a hybrid enterprise environment.
  • Design, implement, and maintain Conditional Access policies to enforce M365 app access controls for Entra-registered and compliant devices.
  • Manage device registration and enrollment policies across Workspace ONE-managed and hybrid-joined endpoints.
  • Support and administer SSO integrations via ADFS, SAML, LDAP, and Entra-based federation.
  • Lead enterprise deployment and ongoing management of Windows Hello for Business.
  • Enforce biometric enrollment policies via GPO and Intune, scoped to eligible security groups and hardware.
  • Develop and deploy compliance monitoring and remediation scripts to inventory and validate authentication methods across endpoints.
  • Administer the enterprise M365 environment including Exchange Online, SharePoint, OneDrive, and Teams.
  • Manage M365 licensing, tenant configuration, and service health across commercial and GCC-High environments.
  • Provide M365 technical leadership during acquisition and divestiture activities including tenant migrations and data transitions.
  • Implement and administer CyberArk Venafi as the enterprise certificate lifecycle management platform.
  • Manage certificate template creation, issuance, and decommissioning of legacy ADCS templates.
  • Integrate certificate lifecycle workflows with ServiceNow for automated request, approval, and tracking.
  • Design and enforce browser extension governance frameworks including inventory, GPO controls, and ServiceNow-based approval workflows.
  • Manage Microsoft Store application control policies and enterprise software distribution security.
  • Administer CyberArk Workforce Password Management (WPM) at enterprise scale.
  • Support CMMC, NIST 800-171, and ITAR compliance requirements as they relate to identity and cloud infrastructure.
  • Respond to cybersecurity audits, questionnaires, and compliance inquiries related to identity and cloud platforms.
  • Administer Microsoft Teams and Slack at enterprise scale, including governance, lifecycle management, channel migration, and workspace consolidation.
  • Enforce naming conventions and manage workspace hygiene across collaboration platforms.
  • Develop and maintain PowerShell and Python scripts to automate tasks across identity, cloud, and security domains.
  • Leverage web APIs, reporting tools, and SQL-based queries for monitoring, reporting, and platform integration.
  • Deploy automation and remediation scripts via Intune and endpoint management tooling.
  • Provide technical leadership for IT integration and separation projects including directory consolidation, tenant migrations, network transitions, and application cutovers.
  • Coordinate with internal teams, business leadership, and external partners throughout M&A activities.

Skills

PowerShell
Python
Azure AD
M365 administration
Identity management
Security principles
Zero Trust
Scripting

Education

Bachelor's degree in Computer Science / Information Technology

Tools

Intune
CyberArk
Venafi
ServiceNow
Active Directory

Job description

Job Overview
  • Serve as a primary administrator for Microsoft Entra ID (Azure AD) and on-premises Active Directory in a hybrid enterprise environment
  • Design, implement, and maintain Conditional Access policies to enforce M365 app access controls for Entra-registered and compliant devices
  • Manage device registration and enrollment policies across Workspace ONE-managed and hybrid-joined endpoints
  • Support and administer SSO integrations via ADFS, SAML, LDAP, and Entra-based federation
  • Lead enterprise deployment and ongoing management of Windows Hello for Business
  • Enforce biometric enrollment policies via GPO and Intune, scoped to eligible security groups and hardware
  • Develop and deploy compliance monitoring and remediation scripts to inventory and validate authentication methods across endpoints
  • Administer the enterprise M365 environment including Exchange Online, SharePoint, OneDrive, and Teams
  • Manage M365 licensing, tenant configuration, and service health across commercial and GCC-High environments
  • Provide M365 technical leadership during acquisition and divestiture activities including tenant migrations and data transitions
  • Implement and administer CyberArk Venafi as the enterprise certificate lifecycle management platform
  • Manage certificate template creation, issuance, and decommissioning of legacy ADCS templates
  • Integrate certificate lifecycle workflows with ServiceNow for automated request, approval, and tracking
  • Design and enforce browser extension governance frameworks including inventory, GPO controls, and ServiceNow-based approval workflows
  • Manage Microsoft Store application control policies and enterprise software distribution security
  • Administer CyberArk Workforce Password Management (WPM) at enterprise scale
  • Support CMMC, NIST 800-171, and ITAR compliance requirements as they relate to identity and cloud infrastructure
  • Respond to cybersecurity audits, questionnaires, and compliance inquiries related to identity and cloud platforms
  • Administer Microsoft Teams and Slack at enterprise scale, including governance, lifecycle management, channel migration, and workspace consolidation
  • Enforce naming conventions and manage workspace hygiene across collaboration platforms
  • Develop and maintain PowerShell and Python scripts to automate tasks across identity, cloud, and security domains
  • Leverage web APIs, reporting tools, and SQL-based queries for monitoring, reporting, and platform integration
  • Deploy automation and remediation scripts via Intune and endpoint management tooling
  • Provide technical leadership for IT integration and separation projects including directory consolidation, tenant migrations, network transitions, and application cutovers
  • Coordinate with internal teams, business leadership, and external partners throughout M&A activities
Requirements
  • Bachelor's degree in Computer Science, Information Technology, or a related field; equivalent work experience considered
  • 7–10 years of progressive experience in cloud infrastructure, identity management, or enterprise IT engineering
  • Demonstrated experience managing enterprise Microsoft cloud environments at scale
  • Microsoft 365 administration — Exchange Online, SharePoint, OneDrive, Teams, licensing, and tenant management
  • Microsoft Entra ID (Azure AD) and on-premises Active Directory configuration and administration in hybrid environments
  • Azure cloud platform management including compute, networking, storage, and identity services
  • Windows Server administration and Group Policy management
  • Multi-factor authentication technologies including Microsoft Authenticator, DUO, and FIDO2/Windows Hello
  • Collaboration platform administration — Microsoft Teams and Slack governance at enterprise scale
  • Proficiency in scripting and automation using PowerShell and/or Python
  • Strong understanding of enterprise security principles, identity governance, and Zero Trust architecture.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cloud Engineer with Security Clearance
Senior Cloud Engineer with Security Clearance

Teledyne Brown Engineering • Huntsville (AL)

On-site
USD 110,000 - 170,000
Senior Microsoft Cloud Engineer
Senior Microsoft Cloud Engineer

Sprymethods • Washington

On-site
USD 120,000 - 150,000
Senior Information Technology System Engineer
Senior Information Technology System Engineer

SeaHill Consulting Group • New York (NY)

On-site
USD 110,000 - 150,000
Senior M365 & Exchange Engineer
Senior M365 & Exchange Engineer

Arenatechnologies • Alexandria (VA)

Hybrid
USD 100,000 - 130,000
Opportunity for unique challenges
Hands-on experience with cloud security
Collaboration with top-tier professionals
Senior Microsoft 365 Specialist
Senior Microsoft 365 Specialist

GCS Technologies, Inc. • Austin (TX)

On-site
USD 100,000 - 130,000
Competitive compensation
Professional growth support
Collaborative culture
Senior Microsoft Cloud Engineer
Senior Microsoft Cloud Engineer

Jobtailor • Washington

On-site
USD 170,000 - 210,000
Microsoft 365 (M365) Engineer / Consultant
Microsoft 365 (M365) Engineer / Consultant

Veriipro • New York (NY)

On-site
USD 100,000 - 140,000
Senior Infrastructure Engineer – Azure, M365
Senior Infrastructure Engineer – Azure, M365

Jobtailor • New York (NY)

On-site
USD 140,000 - 190,000
Senior Microsoft 365 Specialist
Senior Microsoft 365 Specialist

GCS Technologies • Austin (TX)

On-site
USD 90,000 - 130,000
Competitive compensation and benefits
Professional growth and certification support
Collaborative, customer-focused culture
Microsoft 365 Platform Administrator (Long term Contract) Hybrid
Microsoft 365 Platform Administrator (Long term Contract) Hybrid

Liberty Personnel Services, Inc. • Philadelphia

Hybrid
USD 105,000 - 135,000