> Markdown version of [/jobs/ext/2005302-microsoft-azure-cloud-engineer](https://www.wearedevelopers.com/jobs/ext/2005302-microsoft-azure-cloud-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Microsoft Azure Cloud Engineer - **Company:** HYERTEK INC. - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $160,000.0 - $180,000.0 - **Contract:** Permanent contract - **Skills:** Audit Trail, Microsoft Azure, Backup Devices, Command-Line Interface, Cloud Computing, Cloud Computing Security, Cyber Security, Databases, Disaster Recovery, Domain Name System (DNS), Identity and Access Management, Subnetting, Python (Programming Language), Key Management, Network Security, Linux System Administration, Log Analysis, Routing, Network Segmentation, Windows PowerShell, Role-Based Access Control, Azure Active Directory, Cloud Services, SAP (Applications), Virtual Machines, Software Vulnerability Management, Data Logging, Scripting, Load Balancing, Software Troubleshooting, Azure Powershell, Firewalls (Computer Science), Infrastructure Automation Frameworks, Bicep, Microsoft Sentinel, Azure AKS, CIS Benchmarks, Terraform, Devsecops, Azure Resource Manager - **Published:** August 9, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9083947/microsoft-azure-cloud-engineer ## About the Role 5+ years of hands-on cloud or infrastructure engineering experience, including responsibility for production environments. Strong experience designing, deploying, and operating solutions in Microsoft Azure. Hands-on experience with Azure Government or another regulated government-cloud environment. Strong knowledge of Azure networking, identity and access management, compute, storage, security, monitoring, and governance. Proficiency with Infrastructure as Code using Terraform, Bicep, ARM templates, or a comparable technology. Experience implementing secure cloud landing zones, subscription structures, network segmentation, access controls, and centralized logging. Experience with Microsoft Entra ID, Azure RBAC, managed identities, Azure Key Vault, Azure Policy, Azure Monitor, and Log Analytics. Working knowledge of Windows and Linux administration, including command-line troubleshooting and system hardening. Experience using PowerShell, Azure CLI, Python, or another scripting language to automate cloud operations. Understanding of cloud security principles, least-privilege access, encryption, vulnerability management, backup, and disaster recovery. Familiarity with the DoD Cloud Computing SRG, RMF, NIST SP 800-53, and applicable DISA STIGs. Strong troubleshooting, documentation, and stakeholder communication skills. Ability to work independently and manage priorities across multiple concurrent engagements. DoD 8570/8140 IAT Level II certification, with Security+ CE or an accepted equivalent. Active Department of Defense Top Secret clearance. Candidates must maintain their clearance and be SCI-eligible and willing to be read in. *** Preferred Qualifications*** Active TS/SCI clearance. Direct experience with Azure Government Secret, Azure Government Top Secret, or another classified cloud environment. Experience implementing Azure environments supporting DoD IL5, IL6, ICD 503, JSIG, SAP, or Top Secret workloads. Experience with disconnected operations, air-gapped deployments, classified networks, or cross-domain solutions. Experience with Azure Landing Zones, Secure Azure Computing Architecture, or DoD Secure Cloud Computing Architecture requirements. Experience with hybrid connectivity, ExpressRoute, network virtual appliances, boundary protection, or enterprise DNS. Experience with Azure Kubernetes Service, container registries, virtual machines, or platform services in restricted environments. Experience automating security baselines, STIG validation, configuration compliance, or continuous-monitoring evidence. Experience supporting RMF authorization, assessment, remediation, or continuous ATO activities. Microsoft certifications such as Azure Administrator Associate, Azure Solutions Architect Expert, Azure Security Engineer Associate, or Azure Network Engineer Associate. CISSP, CASP+, or another advanced security certification. ## Description We are seeking a Microsoft Azure Cloud Engineer to design, implement, secure, and operate Azure environments supporting DoD Impact Level 5 through classified and Top Secret mission workloads. This position will support Azure Government, Azure Government Secret, Azure Government Top Secret, and other accredited environments as required by the customer. The successful candidate will work with cloud architects, DevSecOps engineers, cybersecurity professionals, application teams, and Government stakeholders to translate approved designs and security requirements into reliable cloud infrastructure. This is a hands-on engineering role focused on implementation, automation, troubleshooting, and operational readiness. Candidates must be located in the Washington, DC, metropolitan area. Some work will be performed in accredited or SCIF facilities., Build, configure, and maintain secure Microsoft Azure environments supporting IL5, IL6, and Top Secret or IL7-equivalent workloads. Implement cloud landing zones, subscriptions, resource organization, network boundaries, identity controls, logging, and governance policies. Deploy and manage Azure infrastructure using Terraform, Bicep, ARM templates, or comparable Infrastructure as Code tools. Configure Azure networking, including virtual networks, subnets, routing, private endpoints, DNS, firewalls, load balancers, network security groups, and hybrid connectivity. Implement identity and access controls using Microsoft Entra ID, role-based access control, managed identities, privileged-access controls, and Azure Key Vault. Deploy and operate Azure compute, storage, database, and container services in accordance with approved architectures and security requirements. Apply Azure Policy, security baselines, DISA STIGs, encryption requirements, and configuration standards in partnership with cybersecurity teams. Implement monitoring, alerting, audit logging, and operational dashboards using Azure Monitor, Log Analytics, Defender for Cloud, and Microsoft Sentinel. Support deployment and operations in disconnected, air-gapped, or classified environments where public-cloud services and external dependencies may be limited. Troubleshoot cloud infrastructure, networking, identity, performance, and configuration issues across development, test, and production environments. Support backup, recovery, continuity-of-operations, and disaster-recovery planning and testing. Produce infrastructure diagrams, configuration documentation, operating procedures, and customer-handoff materials. Provide technical evidence and configuration details in support of RMF authorization, assessment, and continuous-monitoring activities. ## Related Videos - [Azure-Well Architected Framework - designing mission critical workloads in practice](https://www.wearedevelopers.com/videos/1529-azure-well-architected-framework-designing-mission-critical-workloads-in-practice) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Back(end) to the Future: Embracing the continuous Evolution of Infrastructure and Code](https://www.wearedevelopers.com/videos/440-back-end-to-the-future-embracing-the-continuous-evolution-of-infrastructure-and-code) - [Creating a routing app with Google Maps API from scratch](https://www.wearedevelopers.com/videos/831-creating-a-routing-app-with-google-maps-api-from-scratch) - [A Technical Introduction to Bitcoin's 2nd Layer- The Lightning Network](https://www.wearedevelopers.com/videos/15-a-technical-introduction-to-bitcoin-s-2nd-layer-the-lightning-network) - [Hacking MSSQL on Cloud. All of them. How I became sysadmin on Azure, AWS, GCP and Alibaba.](https://www.wearedevelopers.com/videos/100339-hacking-mssql-on-cloud-all-of-them-how-i-became-sysadmin-on-azure-aws-gcp-and-alibaba) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)