> Markdown version of [/jobs/ext/3070246-windows-infrastructure-engineer-architect](https://www.wearedevelopers.com/jobs/ext/3070246-windows-infrastructure-engineer-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Windows Infrastructure Engineer/Architect - **Company:** The Joule - **Location:** United States (Remote available) - **Experience:** Experienced - **Contract:** Temporary contract - **Skills:** Microsoft Windows, Active Directory, Amazon Web Services, Authentication Protocols, Microsoft Azure, Bash Shell, Cloud Computing, Cloud Engineering, Configuration Management, Information Systems, Computer Networks, Continuous Delivery, Continuous Integration, Dynamic Host Configuration Protocol, Disaster Recovery, RAID, Domain Name System (DNS), Network Interface Controllers, Hard Disk Drives, Federated Identity Management, File Server, Identity and Access Management, Interoperability, Virtual Private Networks (VPN), Python (Programming Language), Microsoft Visio, Microsoft Software, Windows Servers, Networking Basics, OAuth, OpenID, Public Key Infrastructure, Windows PowerShell, Software Maintenance, Role-Based Access Control, Azure Active Directory, Ansible, Zero Trust Network Access, Security Assertion Markup Language (SAML), Small Computer System Interface (SCSI), Server Administration, Server Virtualization, Single Sign-On, Symantec Endpoint Protection, Software Vulnerability Management, Workflow Management Systems, Load Balancing, System Availability, HybridCloud, Infrastructure Automation Frameworks, Information Technology, Deployment Automation, 3-tier Architectures, Cloud Integration, Puppet, Network Server, Visual Basic Language, Servicenow, Programming Languages - **Published:** September 25, 2026 - **Apply:** https://www.dice.com/job-detail/0c8222bb-cd63-40b2-8fa4-843cfbb78c9b ## About the Role Identify Architecture Security & PKI Management Cloud Design Azure Engineering, Administration, and Optimization Tier 3 Engineering Support Access Governance Automation and Optimization Disaster Recovery Continuous Improvement Documentation Compliance, * Bachelor's degree in computer science, information systems, engineering, or a related technical field, and eight (8) or more years of progressive Windows Infrastructure Engineer/Architect experience OR Master's degree in a related field and at least 6 years of relevant experience in above areas. Equivalent additional experience may substitute for the degree. * A minimum of six (6) years of experience in cloud operations, engineering, or related field. * A minimum of three (3) years performing at a senior and lead level with design and architecture ownership for an enterprise Windows environment. * Familiarity with federal compliance (NIST, FISMA, FedRAMP) and CIS 4.0 controls. * Significant experience designing, operating and maintaining Microsoft Azure environments to include Zero Trust, hybrid cloud, and cross-domain architectures in mission environments. * Experience with the configuration, deployment, and management of Microsoft Entra ID / Azure AD for centralized identity, single sign-on (SSO), and role-based access control (RBAC) across Azure tenants and subscriptions. * Demonstrated experience with the integration of federated identity solutions with AWS Identity Center, Entra, or on-premises Active Directory. * Develop and enforce Azure governance frameworks, including Azure Policy, Management Groups, and Blueprints, ensuring alignment with DoD Zero Trust and least-privilege principles. * Experience with Azure Monitor and cost optimization strategies. * Deep expertise in Microsoft Azure architecture, Microsoft Entra ID and on-prem interoperability. * Familiarity with orchestration tools like Ansible, Chef, or Puppet for configuration management and ability to implement Continuous Integration/Continuous Deployment (CI/CD) pipelines for cloud infrastructure provisioning and deployment automation.? * Ability to script in one more of the following computer languages Python, Bash, Visual Basic or PowerShell.? * Strong understanding of federated identity, modern authentication protocols (SAML, OIDC, OAuth 2.0), and cross-cloud authentication mechanisms. * Deep expertise in Microsoft Azure architecture, Microsoft Entra ID and on-prem interoperability. * Hands on experience with and knowledge of networking concepts (DNS, VPNs, load balancers, etc.) and cloud-based networking configurations. * Configure, maintain and upgrade 2019, 2022, & 2025 servers operating systems by performing system administration tasks related to: * Microsoft Application installation and maintenance * 3rd Party software installation and maintenance * Configure, maintain and upgrade physical and virtual server installations in FTC datacenters, to include: * OS installation and configuration * Out of Band management configuration (iLO, etc.) * Hardware installation/maintenance (network adapter, memory, hard drives, etc.) * RAID Configuration * Network adapter configuration * SCSI and Fiber Channel configuration * Experience and ability to immediately contribute to Automation Tasks and Infrastructure-as-Code tools and templates. * Provide experience designing, deploying, and maintaining Active Directory Certificate Services (AD CS) ?/ PKI environments. * Applied knowledge of system security engineering, including CIS and STIG hardening, vulnerability management, and federal compliance frameworks (FISMA, NIST SP 800-53). * Extensive experience with Visio or other networking diagram tools and solid understanding of Networking principles. * Excellent troubleshooting skills with the ability to resolve complex technical issues in a timely manner. * Strong problem-solving skills and ability to conduct root cause analysis. * Actively participate in the process of reviewing and improving operational processes, procedures, technology, and documentation. Support the program team in efforts to improve service delivery to the FTC. Adopt program directed procedural changes, process changes, and tool changes as required for the role. * Perform work activities in accordance with program processes, procedures, and service level agreements. * Support other anticipated requirements that will emerge and are reasonably aligned to the role supporting server elements of the infrastructure. * Demonstrated ability to complete technical projects independently, with strong organizational skills and attention to detail. * Create, monitor and drive to resolution change requests and trouble tickets for service level changes that affect Windows Servers and applications installed on Windows servers. * Excellent written and verbal communication skills. This includes drafting SOPs and technical documentation as well as communication with senior program and customer leadership. * Must be able to present designs, plans, courses of action, and analyses of alternatives to technical leadership personnel and boards for approvals. * ITIL4 experience. * ServiceNow experience and review incoming ServiceNow tickets and work to resolve any incident tickets and service requests as assigned for ## Description System One has a Windows Infrastructure Engineer/Architect position will have experience in securing, scaling, and supporting core enterprise identity and access management platforms. In this role, the candidate will serve as the subject matter expert and highest-tier escalation point for our Active Directory (AD) environment and Azure Active Directory /Microsoft Entra ID cloud integrations. They will be responsible for architecting robust identity solutions, managing our Enterprise Public Key Infrastructure (PKI), and providing high-level tier -3 architectural support to ensure optimal security, compliance, and system availability across our hybrid environment. This technical resource will support and engage with the infrastructure team on the various tasks being supported by the team at a higher technical level. The position will set standards the rest of the team builds to and serve as an escalation point when an issue exceeds Tier 1 and Tier 2 support. They may also provide hands-on support in program operations, configuration, deployment, maintenance, monitoring, maintenance and trouble-shooting activities., * Server builds * Server configuration changes * Windows Permissions changes * File Server ACL changes * Application maintenance for: * Symantec Endpoint Protection (Servers) * Carbon Black Protection (Servers) * DNS/DHCP Updates * Active Directory (including Group Policy Objects) * Maintain status of assigned tickets in accordance with program standards and program SLAs, including quality of status and timeliness of updates. * Be comfortable in preparation of data and presentations then active participation and presenting in Leidos and customer meetings as required. * Required Certifications Microsoft Certified Azure Administrator Associate certification (AZ-104). Current DoD 8570/8140 baseline certification appropriate for Intermediate System Administrator roles (e.g., Security+, GSEC, SSCP, or equivalent). Preferred Certifications Any other certifications in support of the stated work scope requirements. System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan. ## Related Videos - [Azure-Well Architected Framework - designing mission critical workloads in practice](https://www.wearedevelopers.com/videos/1529-azure-well-architected-framework-designing-mission-critical-workloads-in-practice) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Automate everything via NodeJS and Puppeteer](https://www.wearedevelopers.com/videos/322-automate-everything-via-nodejs-and-puppeteer) - [Advanced Cypress: custom assertions and tasks](https://www.wearedevelopers.com/videos/790-advanced-cypress-custom-assertions-and-tasks) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [The Memory Leak That Ate Our Cluster: A Postmortem](https://www.wearedevelopers.com/videos/2057-the-memory-leak-that-ate-our-cluster-a-postmortem) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers)