Cloud Engineer

SteelGate LLC
Quantico, VA, United States
2 days ago
Apply on www.steelgatellc.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Windows Active Directory Systems Engineering User Authentication Microsoft Azure Remote Backup Services Microsoft Online Services Cloud Computing Cloud Computing Security Cloud Engineering Configuration Management Cyber Security
+30 more
System Configuration Disaster Recovery Domain Name System (DNS) Identity and Access Management Virtual Private Networks (VPN) Key Management Network Security Log Analysis Microsoft Security Essentials Windows Servers Network Connections Routing Windows PowerShell Role-Based Access Control Azure Active Directory Cloud Services Zero Trust Network Access Systems Integration Virtual Machines Software Vulnerability Management Cloud Platform System Azure Powershell HybridCloud Information Technology Bicep Hardware Infrastructure Terraform Azure Resource Manager Servicenow Vmware

Job description

SteelGate is seeking an experienced Cloud Engineer to provide cloud engineering, administration, security, monitoring, optimization, and sustainment support for the U.S. Government IT environment. The Cloud Engineer will support the customer’s Microsoft Azure IL2 cloud environment, Microsoft 365 services, and integration between cloud and on-premises enterprise infrastructure. The position will be responsible for maintaining reliable, secure, and highly available cloud services while supporting identity, networking, virtual machines, storage, monitoring, backup, disaster recovery, policy compliance, and cybersecurity requirements. Key Responsibilities

  • Engineer, configure, administer, maintain, monitor, and troubleshoot a Microsoft Azure cloud environment.
  • Design and maintain secure, reliable, scalable, and highly available cloud services.
  • Administer and support Microsoft Entra ID and associated cloud identity and access-management capabilities.
  • Support integration between Entra ID, Microsoft 365, Azure resources, and on-premises infrastructure.
  • Configure, administer, monitor, and troubleshoot Azure Virtual Networks (VNets) and associated cloud networking services.
  • Configure and manage Network Security Groups (NSGs) and other cloud security controls.
  • Support ExpressRoute, VPN, and hybrid network connectivity between Azure and on-premises resources.
  • Deploy, configure, administer, monitor, and troubleshoot Azure virtual machines and associated computing resources.
  • Configure and manage Azure storage resources.
  • Monitor cloud infrastructure using Azure Monitor, Log Analytics, and related Azure monitoring capabilities.
  • Develop alerts, dashboards, queries, and monitoring solutions to identify availability, capacity, security, and performance issues.
  • Implement and maintain Azure Policy and other governance controls to help ensure cloud resources comply with approved technical and security configurations.
  • Apply applicable DISA Security Technical Implementation Guides (STIGs) and DoD security requirements to supported cloud resources.
  • Coordinate with Cybersecurity personnel to identify, track, and remediate vulnerabilities and configuration deficiencies.
  • Implement and maintain cloud backup and recovery capabilities.
  • Support Azure Backup and Azure Site Recovery or equivalent approved technologies for continuity and disaster recovery.
  • Develop, test, document, and maintain cloud disaster-recovery and service-restoration procedures.
  • Use Azure Advisor and other approved tools to identify opportunities to improve reliability, security, performance, operational efficiency, and resource utilization.
  • Monitor cloud capacity and performance and recommend changes required to maintain mission availability.
  • Support cloud resource provisioning, configuration, migration, upgrade, and decommissioning.
  • Assist with migration of appropriate workloads and services between on-premises and cloud environments.
  • Support Microsoft 365 integration and cloud-dependent enterprise services.
  • Troubleshoot complex issues involving cloud resources, identity, networking, storage, virtual machines, applications, and hybrid connectivity.
  • Participate in root-cause analysis for cloud service outages and degraded performance.
  • Maintain cloud configuration baselines and support formal change- and configuration-management processes.
  • Develop and maintain architecture diagrams, Standard Operating Procedures (SOPs), technical procedures, configuration documentation, and troubleshooting guides.
  • Prepare After Action Reports (AARs) for significant outages, upgrades, migrations, security events, and other major cloud activities.
  • Identify End-of-Life/End-of-Support technologies and recommend modernization or replacement strategies.
  • Provide Tier III cloud escalation support to Systems Engineers, Systems Administrators, Network Engineers, Cybersecurity personnel, and Technical Support staff.
  • Provide technical guidance and mentorship regarding Azure and hybrid-cloud technologies.

Requirements

  • Must have 7-10+ years of progressively responsible IT infrastructure, systems engineering, or cloud engineering experience, including significant hands-on Microsoft Azure experience.
  • Must have an active DoD Secret security clearance.
  • Bachelor’s degree in Computer Science, Information Technology, Cloud Computing, Engineering, Cybersecurity, or a related technical discipline.
  • Microsoft Certified: Azure Administrator Associate.
  • Must meet applicable DoD 8140/DCWF requirements for Work Role 628 at the Advanced proficiency level (Security+ or higher).
  • Demonstrated experience designing, administering, and supporting Microsoft Azure enterprise environments.
  • Experience with Microsoft Entra ID and cloud identity/access-management technologies.
  • Experience administering Azure Virtual Machines, storage, networking, security, monitoring, backup, and recovery services.
  • Experience configuring and troubleshooting VNets, NSGs, VPNs, routing, and hybrid cloud connectivity.
  • Experience with Azure Monitor and Log Analytics.
  • Experience implementing Azure Policy or comparable cloud governance capabilities.
  • Experience with Azure Backup and disaster-recovery technologies.
  • Experience supporting hybrid on-premises/Azure environments.
  • Experience integrating Microsoft Azure with Microsoft 365 and enterprise identity services.
  • Strong knowledge of Windows Server, Active Directory, DNS, authentication, and enterprise infrastructure concepts.
  • Knowledge of cloud security architecture, identity and access management, least privilege, and security hardening.
  • Experience troubleshooting complex issues spanning cloud, network, identity, server, application, and cybersecurity domains.
  • Experience developing technical documentation, architecture diagrams, SOPs, engineering procedures, and cloud configuration records.
  • Experience working within formal configuration- and change-management processes.
  • Strong analytical, problem-solving, written, and verbal communication skills.
  • Ability to work independently while supporting a geographically dispersed enterprise environment.

Preferred Qualifications:

  • Microsoft Certified: Azure Solutions Architect Expert or comparable advanced Azure certification.
  • Microsoft certification applicable to identity, Microsoft 365, or cybersecurity.
  • CompTIA CySA+, SecurityX/CASP+, CISSP, or comparable cybersecurity certification.
  • Experience with PowerShell, Azure CLI, ARM templates, Bicep, Terraform, or other Infrastructure-as-Code/automation technologies.
  • Experience implementing automated Azure provisioning and configuration-management processes.
  • Experience with Azure Key Vault, managed identities, RBAC, and privileged-access management.
  • Experience with Microsoft Defender for Cloud or related Microsoft security technologies.
  • Experience with cloud cost-management and resource-optimization practices.
  • Experience with VMware and migration of virtualized workloads to cloud environments.
  • Familiarity with DISA STIGs, DoD vulnerability management, Zero Trust, RMF, and DoD cloud-security requirements.
  • ITIL Foundation certification or experience operating in an ITIL-based service environment.
  • Experience with ServiceNow or comparable enterprise ITSM platforms.
  • Previous USMC, Navy, DISA, or other DoD enterprise networking experience.

Job Types: Full-Time

Benefits & conditions

Salary: Based on experience Schedule: Monday-Friday, * 401(k) matching

  • Dental insurance
  • Health insurance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.steelgatellc.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

1:40 min

Managing containerized infrastructure with Podman Desktop

Cedric Clyburn Cedric Clyburn +1 · World Congress 2025

2:56 min

Provisioning a secure container infrastructure with Bicep

Matthias Falkenberg +1 · World Congress 2022

2:04 min

Enhancing network privacy with routing fees and onion routing

Andreas M Antonopoulos · LIVE

3:46 min

Navigating a career in cloud transformation consulting

Piet Van Dongen · LIVE

1:41 min

Parallels between cloud and legacy infrastructure lock-ins

Björn Stahl Björn Stahl · World Congress 2024

Videos

See all

Related articles

See all