Senior Azure Infrastructure Cloud Engineer – Cleared (Polygraph)
TrueTandem · Bethesda, MD · Yesterday
On-siteEngineeringFull-time
TrueTandem is seeking a highly skilled and motivated Senior Azure Infrastructure Cloud Engineer to support the delivery of enterprise-scale cloud infrastructure and platform services for a member of the Intelligence Community (IC). This role is ideal for a seasoned cloud professional with expertise in Azure infrastructure, automation, security, governance, and Infrastructure as Code (IaC) who thrives in mission-driven environments. The successful candidate will join a team responsible for designing, deploying, securing, and sustaining cloud platforms that support critical mission and business applications. Solutions are engineered in accordance with approved reference architectures, federal security requirements, organizational policies, and cloud engineering best practices. The environment leverages Azure-native services, Microsoft 365, Power Platform, Terraform, Bicep, and Azure DevOps to deliver secure, scalable, and repeatable cloud capabilities. The team emphasizes automation, policy-driven governance, continuous compliance validation, operational excellence, and efficient platform management to accelerate cloud adoption while maintaining security and regulatory requirements. As a Senior Azure Infrastructure Cloud Engineer, you will help build and maintain the core Azure infrastructure foundation that enables mission and business workloads across the enterprise. Working within a cross-functional team of architects, engineers, developers, and cybersecurity professionals, you will design, implement, and support Azure governance frameworks, subscriptions, management groups, virtual networking, storage services, Key Vault, monitoring solutions, security controls, identity integration, workload migrations, and operational sustainment activities. The ideal candidate possesses hands-on experience supporting complex federal cloud environments and demonstrates the ability to troubleshoot and resolve challenging infrastructure issues while balancing security, performance, reliability, and scalability requirements. Success in this role requires a strong commitment to automation, continuous improvement, and delivering secure, resilient cloud solutions that support evolving mission needs. This position offers the opportunity to contribute to some of the most critical cloud modernization initiatives within the federal government while working with leading technologies and a highly collaborative engineering team. This role is a hybrid role with 1 day on site (in bethesda or tysons) and 4 days remote* Role and Responsibilities: Design, develop, and maintain Infrastructure as Code (IaC) solutions using Terraform to deliver secure, scalable, and repeatable Azure infrastructure deploymentsBuild, enhance, and support automated CI/CD pipelines within Azure DevOps to streamline infrastructure provisioning, application delivery, and operational deploymentsArchitect, deploy, and sustain Azure infrastructure services in alignment with the Microsoft Cloud Adoption Framework (CAF), Well-Architected Framework, and organizational standardsImplement and administer Azure governance capabilities, including Management Groups, Subscriptions, Resource Groups, Policies, and Role-Based Access Control (RBAC), to enforce security, compliance, and operational consistencyConfigure and manage Azure Key Vault to safeguard secrets, certificates, encryption keys, and application credentialsDesign, deploy, and support Azure storage solutions while implementing data protection, backup, recovery, retention, and lifecycle management strategiesArchitect and maintain enterprise networking solutions, including Virtual WAN, Virtual Networks (VNets), Network Security Groups (NSGs), private connectivity, DNS, and hybrid cloud integrationsImplement enterprise monitoring and observability solutions using Azure Monitor, Log Analytics, Application Insights, alerts, dashboards, and automated response capabilitiesSupport the migration, modernization, and optimization of applications and workloads into Azure cloud environmentsIntegrate security controls and compliance requirements throughout the infrastructure lifecycle in accordance with Zero Trust principles, TIC 3.0 guidance, NIST frameworks, and federal security baselinesTroubleshoot complex infrastructure, networking, identity, performance, and security issues across cloud environments to ensure platform reliability and operational excellenceCollaborate with architects, developers, cybersecurity teams, and stakeholders to design, implement, and continuously improve secure, resilient, and mission-focused cloud solutionsContribute to the development and maintenance of reusable infrastructure modules, engineering standards, reference architectures, and operational proceduresParticipate in platform sustainment activities, capacity planning, incident response, problem management, and continuous service improvement initiativesProduce and maintain technical documentation, implementation guides, architecture diagrams, and audit artifacts to support operational, security, and compliance requirements Required Skills Active TS/SCI clearance with Polygraph5+ years of experience supporting Tier II Azure environments or 3+ years supporting Tier III enterprise Azure cloud infrastructureDemonstrated experience designing, implementing, and sustaining Azure enterprise landing zones and core infrastructure services aligned with the Microsoft Cloud Adoption Framework (CAF) and cloud engineering best practicesDeep expertise in Azure governance and platform services, including Management Groups, Subscriptions, Resource Groups, Azure Policy, RBAC, Key Vault, Storage, and networking servicesHands-on experience designing and supporting Azure networking solutions, including Virtual WAN, Virtual Networks (VNets), Network Security Groups (NSGs), private connectivity, routing, and hybrid-cloud architecturesExperience administering and supporting Azure Virtual Desktop (AVD) environments, including host pools, image management, FSLogix profiles, session hosts, and enterprise user supportStrong understanding of Azure security, monitoring, and operational practices, including Azure Monitor, Log Analytics, Application Insights, alerts, diagnostics, and security controlsProficiency in PowerShell scripting and automation to streamline cloud operations, configuration management, and administrative tasksExperience with Infrastructure as Code (IaC) methodologies and tools such as Terraform to deploy and manage Azure resources in a repeatable and auditable mannerKnowledge of federal cybersecurity and compliance frameworks, including Zero Trust Architecture, NIST standards, TIC 3.0, and government cloud security requirementsProven ability to diagnose and resolve complex infrastructure, networking, identity, performance, and security issues across enterprise Azure environmentsStrong verbal and written communication skills with the ability to create technical documentation, operational procedures, and architecture artifacts for both technical and non-technical stakeholdersDemonstrated ability to work effectively within cross-functional teams consisting of cloud engineers, architects, cybersecurity personnel, developers, and mission stakeholders Preferred Skills Microsoft Azure certifications such as Azure Administrator Associate (AZ-104), Azure Security Engineer Associate (AZ-500), Azure Network Engineer Associate (AZ-700), or Azure Solutions Architect Expert (AZ-305)Experience supporting IC, DoD, or other classified federal cloud environmentsKnowledge of Bicep, ARM templates, or additional IaC frameworksExperience supporting cloud migration, modernization, and application transformation initiativesExperience with Power Platform integration in Azure environmentsFamiliarity with AOAI embedded features and Copilot capabilitiesKnowledge of workload/application migrations and hybrid cloud strategiesUnderstanding of Microsoft licensing models and subscription management We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us. The above salary range represents a general guideline; however, TrueTandem considers several factors when determining base salary offers such as the scope and responsibilities of the position and the candidate's experience, education, skills and current market conditions. In addition, TrueTandem provides a variety of benefits including health insurance coverage, dental and vision plans, life and disability insurance, company paid holidays and paid time off (PTO). Our retirement plan offers a variety of investment options to build toward your retirement. TrueTandem is an Equal Opportunity Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. U.S. Citizenship is required for all positions with a government clearance and certain other restricted positions.