Stand out for this role — generate a tailored resume and cover letter in about a minute.
Creative Information Technology, Inc. (CITI) seeks a Senior Systems Engineer to design, deploy, and sustain mission‑critical systems across Microsoft Azure and on‑premises data centers, delivering secure, scalable, and highly available solutions for regulated environments.
You will implement Azure security controls, hybrid connectivity, identity management, and system integration, while creating architecture diagrams, runbooks, and documentation.
If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process.
Contract Falls Church, VA, US
About us
Creative Information Technology Inc (CITI) is an esteemed IT enterprise renowned for its exceptional customer service and innovation. We serve both government and commercial sectors, offering a range of solutions such as Healthcare IT, Human Services, Identity Credentialing, Cloud Computing, and Big Data Analytics. With clients in the US and abroad, we hold key contract vehicles including GSA IT Schedule 70, NIH CIO-SP3, GSA Alliant, and DHS-Eagle II.
Join us in driving growth and seizing new business opportunities.
Role and Responsibilities
We are seeking an experienced Senior Systems Engineer to support the deployment, integration, and sustainment of mission‑critical systems. The selected candidate will provide hands‑on engineering expertise across both Microsoft Azure cloud environments and on‑premises infrastructure, ensuring secure, scalable, and highly available solutions that meet stringent security and operational requirements.
The ideal candidate possesses deep technical knowledge of Azure security, hybrid infrastructure, enterprise identity management, system integration, and secure implementation practices within highly regulated government or defense environments.
Design, deploy, configure, and maintain hybrid infrastructure environments spanning Microsoft Azure and on‑premises data centers.
Support implementation of systems across development, test, staging, and production environments.
Develop and maintain infrastructure architecture, deployment diagrams, and engineering documentation.
Configure and manage Windows Server environments, Active Directory, DNS, DHCP, PKI, and virtualization platforms.
Design and implement secure Azure landing zones and cloud architectures.
Deploy and manage Azure services including:
Implement security controls aligned with government security requirements.
Support cloud migration and hybrid connectivity initiatives.
Security Engineering
Implement and manage Zero Trust and defense‑in‑depth security principles.
Configure Azure security services, identity protection, privileged access controls, and role‑based access controls (RBAC).
Support integration with PKI, HSM, smart card, token‑based authentication, and certificate management solutions.
Conduct security assessments, vulnerability remediation, and compliance validation activities.
Support incident response, forensic investigations, and system hardening efforts.
Systems Integration,
Active Directory, LDAP, PKI Infrastructure, Microsoft Configuration Manager (SCCM), Splunk, SQL Server, Identity repositories and third‑party APIs
Operational Support
Troubleshoot complex infrastructure and security issues.
Participate in system testing, performance tuning, and disaster recovery exercises.
Provide Tier III engineering support during implementation and operational phases.
Create standard operating procedures, technical runbooks, and deployment guides.
Required Skill
8+ years of experience as a Systems Engineer, Infrastructure Engineer, or Cloud Engineer.
5+ years of hands‑on experience designing and supporting Microsoft Azure environments.
Strong experience managing hybrid cloud and on‑premises infrastructure.
Microsoft Azure, Windows Server, Active Directory, Azure Entra ID, PowerShell scripting, Networking and security technologies
Experience implementing secure architectures in government, defense, or regulated environments.
Active Secret Clearance required.
Willingness and ability to travel internationally.
Preferred Qualifications
Experience with Identity and Access Management (IAM) platforms.
Familiarity with:
PKI and certificate lifecycle management, Hardware Security Modules (HSM), Azure Landing Zones, Microsoft Defender Suite, Splunk, DevSecOps practices
Experience working in classified or mission‑critical operational environments.