Azure Virtual Desktop (AVD) Engineer - Cleared (Polygraph)
Role details
Job location
Tech stack
Job description
As an Azure Virtual Desktop (AVD) Engineer supporting TrueTandem's Intelligence customers, you will help design, secure, and optimize virtualized environments within Microsoft Azure Government and GCC High. This position supports the modernization of sensitive customer environments, enabling secure remote access and scalable cloud-first infrastructure. You will join a high-impact team of cloud engineers and architects delivering solutions across federal security domains. The role emphasizes mission agility, zero-trust posture, and deep integration with Microsoft technologies. Role and Responsibilities: · Architects and configures secure Azure Virtual Desktop environments across isolated enclaves (IL4, IL5, IL6, IL7). · Implements conditional access, FSLogix profile containers, and network segmentation policies for Zero Trust. · Manages and automates deployments using Infrastructure as Code (IaC) tools such as Bicep and Terraform. · Monitors AVD session performance, user experience, and incident response through Azure Monitor and Log Analytics. · Collaborates with Identity and Endpoint Management teams to integrate with Microsoft Intune and Entra ID. · Supports Authority to Operate (ATO) processes by maintaining compliance with FedRAMP High / NIST 80053 controls.
Requirements
· 7+ years of experience supporting enterprise Microsoft environments, including at least 3 years with Azure Virtual Desktop (AVD). · 3+ years experience deploying and managing workloads in Azure Government or GCC High. · 2+ years hands on experience with Bicep, ARM templates, or Terraform to automate AVD resource provisioning. · Experience implementing FSLogix, Azure Files / NetApp, and multisession Windows 10/11. · Active TS/SCI clearance with Polygraph (must hold at time of submission). Preferred Skills · Microsoft Certified: Azure Administrator Associate or Azure Solutions Architect Expert. · Experience integrating AVD with Microsoft Intune, Microsoft Defender for Endpoint, and Conditional Access policies. · Familiarity with integrating third party monitoring tools (e.g., Citrix Analytics, ControlUp) for AVD environments. · Knowledge of DoD Cloud Computing SRG, CISA Zero Trust Maturity Model, and impact levels IL4-IL7.