Job Summary
This highly skilled position requires experience in securing, scaling, and supporting core enterprise identity and access management platforms. The candidate will serve as the subject matter expert and highest-tier escalation point for our Active Directory (AD) environment and Azure Active Directory/Microsoft Entra ID cloud integrations. Responsibilities include architecting robust identity solutions, managing our Enterprise Public Key Infrastructure (PKI), and providing high-level tier-3 architectural support to ensure optimal security, compliance, and system availability across our hybrid environment.
Responsibilities
- Identity Architecture
- Security & PKI Management
- Cloud Design
- Azure Engineering, Administration, and Optimization
- Tier 3 Engineering Support
- Access Governance
- Automation and Optimization
- Disaster Recovery
- Continuous Improvement
- Documentation Compliance
Required Qualifications
- Bachelor's degree in computer science, information systems, engineering, or a related technical field, with eight (8) or more years of progressive experience, or a Master's degree with at least six (6) years of relevant experience. Equivalent additional experience may substitute for the degree.
- A minimum of six (6) years of experience in cloud operations, engineering, or related fields.
- A minimum of three (3) years performing at a senior and lead level with design and architecture ownership for an enterprise Windows environment.
- Familiarity with federal compliance (NIST, FISMA, FedRAMP) and CIS 4.0 controls.
- Experience with Microsoft Azure environments, including Zero Trust, hybrid cloud, and cross-domain architectures.
- Experience with Microsoft Entra ID/Azure AD for centralized identity, single sign-on (SSO), and role-based access control (RBAC).
- Develop and enforce Azure governance frameworks, including Azure Policy, Management Groups, and Blueprints.
- Experience with Azure Monitor and cost optimization strategies.
- Deep expertise in Microsoft Azure architecture, Microsoft Entra ID, and on-prem interoperability.
- Familiarity with orchestration tools like Ansible, Chef, or Puppet and CI/CD pipelines.
- Ability to script in Python, Bash, Visual Basic, or PowerShell.
- Strong understanding of federated identity and modern authentication protocols.
- Hands-on experience with networking concepts and cloud-based networking configurations.
- Experience in configuring, maintaining, and upgrading servers and physical and virtual installations.
- Experience with Automation Tasks and Infrastructure-as-Code tools.
- Experience designing, deploying, and maintaining Active Directory Certificate Services (AD CS)/PKI environments.
- Applied knowledge of system security engineering and federal compliance frameworks.
- Experience with Visio or other networking diagram tools.
- Excellent troubleshooting skills and problem-solving abilities.
- Demonstrated ability to complete technical projects independently.
- Excellent written and verbal communication skills.
- ITIL4 and ServiceNow experience.
Required Certifications
- Microsoft Certified Azure Administrator Associate certification (AZ-104).
- Current DoD 8570/8140 baseline certification appropriate for Intermediate System Administrator roles (e.g., Security+, GSEC, SSCP, or equivalent).
Preferred Certifications
- Any other certifications in support of the stated work scope requirements.
Location
Washington, DC (hybrid). Work primarily offsite with the need to support onsite as needed to meet the needs of the program.
Additional Requirements
- Must possess, or be eligible to obtain, a Public Trust background investigation and/or clearance.
- Due to Federal contracting requirements, candidates must be a U.S. Citizen.
Benefits PEAK's benefit offerings available for our associates include medical, dental, vision, Flexible Spending Account (FSA), Dependent Care Savings Account (DCA), and 401K plan.PEAK believes that taking care of our team is essential for success and we are proud to provide benefits that enhance both your well-being and your future. Additionally, our associates may be eligible for Paid Sick Leave as required by Federal, State, or local laws. Equal Opportunity Employer (EEO) PEAK Technical Staffing is committed to creating a diverse and inclusive environment and is proud to be an Equal Opportunity Employer. PEAK does not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, or veteran status, or any other characteristic protected by applicable law. All employment decisions are made based on qualifications, merit, and business need. We encourage all individuals to apply. Americans Disabilities Act (ADA) The physical and mental requirements described in this job description are representative of those that must be met by an employee to successfully perform the essential functions of the position. Reasonable accommodations may be made to enable qualified individuals with disabilities to perform the essential functions.Must be able to perform the essential physical functions of the position, including sitting, standing, walking, stooping, kneeling, andlifting upto 25 pounds, with or without reasonable accommodation. Candidate Privacy To read our Candidate Privacy Information Statement, which explains how we will use your information, please navigate to https://peaktechnical.com/privacy-policy/and https://peaktechnical.com/ca-residents-privacy-rights/ AI Recruiting Disclosure We use AI-assisted tools to help review applications and compare your experience to job requirements, but all hiring decisions are made by human recruiters. You may request a human-only process or opt out of automated communication at any time. Required notices and our latest bias audit are available on our website: www.peaktechnical.com/ai-disclosure.