Windows Infrastructure Engineer/Architect

Randstad
Washington, DC, United States
4 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$106,080.0 - $126,880.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Active Directory Amazon Web Services Automation of Tests Microsoft Azure Bash Shell Cloud Computing Configuration Management CompTIA Security+ Continuous Integration Data Centers Disaster Recovery
+33 more
RAID Integrated Windows Authentication Domain Name System (DNS) Federated Identity Management Identity and Access Management Virtual Private Networks (VPN) Python (Programming Language) Microsoft Visio Windows Servers OAuth OpenID Public Key Infrastructure Windows PowerShell Azure Active Directory Ansible Zero Trust Network Access Security Assertion Markup Language (SAML) Small Computer System Interface (SCSI) Server Virtualization Systems Architecture Systems Integration Symantec Scripting Enterprise Software Applications Load Balancing System Availability Infrastructure Automation Frameworks Information Technology Hardware Infrastructure CIS Benchmarks Puppet Visual Basic Language Servicenow

Job description

We are seeking a high-caliber Windows Infrastructure Engineer/Architect to serve as the subject matter expert and primary technical lead supporting an essential federal agency program. In this role, you will hold architectural design ownership over core identity systems, PKI infrastructure, and Azure cloud integrations while setting technical standards across hybrid enterprise environments., * Architect, secure, and maintain enterprise Active Directory, Microsoft Entra ID / Azure AD, and Enterprise PKI (AD CS) infrastructure.

  • Design and implement Azure governance frameworks, Zero Trust security models, and cross-domain federated identity solutions.
  • Automate infrastructure provisioning and configuration management using PowerShell, Python, Bash, and IaC tools.
  • Deliver top-tier (Tier-3) troubleshooting, system maintenance, OS upgrades (Windows Server 2019/2022/2025), and incident resolution.
  • Draft technical documentation, SOPs, and system architecture diagrams, presenting solutions to technical boards and client leadership.

Requirements

U.S. Citizenship with an active or obtainable Public Trust clearance prior to start.

Bachelor’s degree in CS/IT/Engineering with 8+ years (or Master’s with 6+ years) of progressive Windows Infrastructure engineering experience.

6+ years of experience in cloud operations and Microsoft Azure engineering.

3+ years in a lead role with design and architecture ownership in an enterprise Windows environment.

Active Microsoft Certified Azure Administrator Associate (AZ-104) certification.

Active DoD 8570/8140 baseline certification (e.g., Security+, SSCP, GSEC).

Expertise in Active Directory, PKI / AD CS, federated identity (SAML, OIDC, OAuth), and federal compliance (NIST, FISMA, STIGs).

Proficiency in scripting languages (PowerShell, Python, or Bash) for automation tasks.

Local to the Greater Washington, DC area.

PREFERRED QUALIFICATIONS

Experience with configuration management and orchestration tools (Ansible, Chef, Puppet) and CI/CD pipelines.

Familiarity with ITIL4 processes and ServiceNow ticket handling.

Knowledge of server endpoint protection tools (Carbon Black, Symantec).

skills:

Active Directory,AWS,Ansible,automation scripts,Microsoft Entra ID,Azure AD,Bash,CIS benchmarks,cloud infrastructure,Cloud Operations,cloud networking,CI/CD,Datacenter,disaster recovery,DNS,Enterprise Systems,federated identity,Hardware Infrastructure,identity and access management,IT infrastructure,Infrastructure-as-Code (IaC),domain authentication,load balancers,Microsoft Azure cloud,Azure,Microsoft Azure,Azure cloud,Visio,Windows,Windows environment,OAuth,OIDC,Public Key Infrastructure (PKI),PKI,Puppet,Python,RAID,SAML,virtual server,ServiceNow,SCSI,Symantec,system availability,integrations,VPNs,Visual Basic,PowerShell,Windows Server operating systems,Zero Trust,Zero Trust architecture,Zero Trust security,leadership,proactive,Architectural Design,Architecture,Scripting & Automation,automation,Blueprints,CIS,cost optimization strategies,presentation capabilities,diagrams,FISMA,FedRAMP,governance frameworks,Group Policy,NIST SP 800-53,Infrastructure Engineering,Infrastructure,lifecycle management,Microsoft Certified Azure Administrator Associate (AZ-104),NIST,operational support,federal compliance,security,security engineering,Stakeholder Communication,SSCP,technical architecture,technical review,lead technical

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:24 min

Evaluating formal AWS certifications versus raw practical engineering experience

Jan Giacomelli · LIVE

2:26 min

Understanding Puppeteer and its underlying architectural design

Miki Lombardi · JS Congress

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

4:01 min

Comparing Terraform to popular configuration management tools

Devlin Duldulao · LIVE

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all