The candidate will need tocome on-site on the first day to collect equipment.
All candidates must be local to the Triangle region of North Carolina.
This position may require on-site attendance when business needs warrantin-person participation, such as scheduled meetings or other task-specificactivities.
Supplemental Staffing is needed to support the NCDOT Microsoft Azure cloud tenant build and configuration, specifically focusing on security compliance design, implementation, operations, and assessment.
The role is for a Cloud Security Architect - Expert that will support the ongoing NCDOT DMV Modernization Microsoft Azure cloud infrastructure build, security compliance design, security compliance configuration, and security compliance assessment and reporting.
The primary focus is to lead NCDIT-T in security architecture, configuration, operations, and compliance assessment of the environment and be a bridge between NCDIT, NCDOT DMV, and vendors in delivery of a Microsoft Azure cloud environment that meets security regulatory, organizational, industry security compliance requirements and compliance reporting, balanced with functional requirements.
The complexity of these responsibilities are essential to NCDIT-T to support the build of the Azure tenant so that NCDOT DMV systems can be placed in the cloud securely and meet compliance requirements. NCDIT-T and NCDOT DMV have an aggressive schedule to complete NCDOT DMV modernization efforts.
| Skill | Required /Desired | Amount | of Experience |
|---|---|---|---|
| Design and maintain secure Azure architectures across identity, networking, data protection, logging/monitoring, and governance. | Required | 5 | Years |
| Develop and enforce Azure security standards, policies, and reference architectures aligned to organizational and regulatory requirements. | Required | 5 | Years |
| Lead threat modeling, risk assessments, and security reviews for the Azure cloud environment and NCDMV Modernization efforts. | Required | 5 | Years |
| Provide expert guidance on Azure-native security tooling (e.g., Defender for Cloud, Sentinel, Azure Policy, Key Vault, Monitor, Log Analytics) | Required | 5 | Years |
| Deep expertise with Azure security services | Required | 5 | Years |
| Strong understanding of cloud networking security: Zero Trust, routing, segmentation, firewalls, DNS, PKI, IAM, and secure landing zone architectures. | Required | 5 | Years |
| Knowledge of compliance frameworks and mapping security controls (NIST 800 53, NIST 800 171, PCI DSS, FIPS, state security standards). | Required | 5 | Years |
| Experience designing and evaluating secure multi tenant architectures and enterprise governance models in Microsoft Azure. | Required | 5 | Years |
| Expertise integrating third party solutions (Cloudflare, Palo Alto, etc.) with Azure security and monitoring. | Required | 5 | Years |
| Proficiency with automation and IaC: ARM/Bicep, Terraform, GitHub/Azure DevOps pipelines, and policy as code. | Required | 5 | Years |
| Ability to translate security requirements into actionable architectural and technical guidance and configurations. | Required | 5 | Years |
| Strong documentation skills for security standards, baselines, and system security plans. | Required | 5 | Years |
| Experience and strong skills in identifying options for security assessments of the Azure environment and producing detailed and executive summary sec | Required | 5 | Years |
| No. | Question |
|---|---|
| Question1 | Absences greater than two weeks MUST be approved by CAI management in advance, and contact information must be provided to CAI so that the resource can be reached during his or her absence. The Client has the right to dismiss the resource if he or she does not return to work by the agreed upon date. Do you agree to this requirement? |
| Question2 | All candidates must currently reside in North Carolina. Please confirm that your candidate is currently living in NC. |
| Question3 | What is your candidate's email address? |
| Question4 | How soon can your candidate start if selected for this opportunity? |
| Question5 | Vendors are encouraged to submit candidates that are available for the duration of the assignment. Do you anticipate your candidate being able to work until the proposed end date listed on this VectorVMS req? |
| Question6 | Vendors must disclose to the agency if the candidate will be subcontracted at the time of submission. Is your candidate an employee of your company or a subcontractor? Please be sure to notify a CAI Account Manager if your candidate's employee status changes. |
| Question7 | Vendors must notify the agency if any portion of the requirements listed in this task order will be outsourced to other countries. Do you anticipate outsourcing any work being done for this assignment to another country? |
| Question8 | Candidates submitted above the hourly Vendor Rate of $$$ may not be considered for this assignment. Do you agree to this requirement? |
| Question9 | Payment for all approved hours will be paid at the straight hourly rate regardless of the total hours worked by the engaged resource. It is the responsibility of the Vendor to adhere to any applicable compensation laws including payment for overtime hours. Do you agree to this requirement? |
| Question10 | Have you thoroughly validated, and attest to the accuracy of, the credentials listed throughout your candidate s VectorVMS profile and resume pursuant to Section 5.2.5 of ITS-009440? |
| Location | NC, NC |
Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.
Free resume templatesImprove your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.
Free resume builder