ARM (Advanced RISC Machine), Ansible, Automation, Benchmarking, Best Practices, Cloud Architecture, Cloud Computing, Cryptography, Defense Information Systems Agency (DISA), Documentation, Government, Information Systems/Technology IS/IT Administration, Microsoft Product Family, Microsoft Windows Azure, Network Connectivity, Platform as a Service (PaaS), Process Improvement, Programming Tools, Secret Clearance, Software Engineering, System Operations, Systems Administration/Management, U.S. National Institute of Standards and Technology (NIST), Windows PowerShell
Role: Cloud Architect
Location:Washington, DC
Job Qualifications:
Skills: Azure DevOps, Cloud Native, Microsoft Cloud
Experience: 9 + years of related experience
Clearance: Active Secret
Job Description:
Client is seeking a Cloud Architect / Developer SME to design, build, and secure large-scale Azure Government environments supporting mission critical federal systems.
Key Responsibilities
- Architect secure, scalable Azure GovCloud infrastructures and network connectivity
- Design cloud-native data platforms, pipelines, and analytics architectures.
- Automate cloud provisioning with Terraform/ARM/Bicep; ensure consistent, FedRAMP compliant environments
- Implement Azure AD, RBAC, least privilege, encryption, and NIST aligned security controls
- Apply DISA STIGs/CIS benchmarks and lead architecture reviews/documentation
- Drive FinOps optimization and guide engineering teams on cloud best practices
- Migrate NTIA's Unclassified Spectrum Management Systems to Azure Government
- Migrate the NTIA Secret environment to the Azure Secret Cloud
- Enhance the security and administration of Spectrum IT systems operations.
- Migrate and modernize with config-level changes
- Push toward Platform as a Service (PaaS) and cloud-native where possible
- Replatform if the application can leverage Azure PaaS
- Rehost using Azure Infrastructure-as-a-Service (IaaS) if the application can't leverage Azure PaaS
- Use Microsoft Cloud Adoption Framework (CAF) and the Azure Well-Architected Framework
- Leverage the NTIA FSDS IL5 tenant based on the single tenant architect
Requirements:
Education: Technical Training, Certification(s) or Degree, or equivalent experience
Experience: 10+ years cloud engineering/architecture experience
- Experience with Microsoft Cloud Adoption Framework (CAF) and the Azure Well-Architected Framework
- Strong Azure, Terraform/Bicep, networking, automation, and security expertise
- Familiarity with Ansible, PowerShell DSC, and modern development tools/languages
Certification(s): One or more required certifications (Azure Architect, Azure Engineer, CISSP, etc.)
Clearance: Must possess and maintain an Active Secret or higher clearance
Location: Hybrid in Washington, D.C. (3 days a week on site)