Key ResponsibilitiesCloud InfrastructureOwn and mature our Azure cloud environment: architecture, storage, identity (Entra ID), governance, cost management, and security postureLead cloud migration and hybrid-cloud integration efforts for on-prem workloads where appropriateImplement and enforce cloud security configuration, CA policy, Defender security tooling, monitoring and loggingIntune configurations, package deployment, and endpoint managementMaintain monitoring, backup/DR, and patch/configuration management practices for cloud-hosted systemsUse AI, copilot, and PowerShell to automate repetitive administration and security tasksNetwork ArchitectureDesign, document, and continuously improve network architecture, including segmentation between CUI-scoped enclaves and general business networksManage firewall, VLAN, and ACL configurations (including CUI subnet access control lists) and maintain accurate network documentation/diagramsLead network hardening initiatives and access control requirements (e.g., AC, SC control families)Evaluate and implement zero-trust and micro-segmentation strategiesClassified Environment (training provided)Maintain secure configurations, audits, and documentation for the classified workstations;Maintain active Security+ certificationMaintain System Security Plans (SSPs), POA&Ms, and supporting documentationSupport periodic government inspections, self-inspections, vulnerability scans, and audit log reviews for the classified systemServe as day-to-day POC for the classified environment, coordinating with the Facility Security Officer (FSO) and compliance team as neededGeneral Systems AdministrationAdminister Windows Server, Active Directory/Entra ID, endpoint management, and core virtual infrastructure servicesParticipate in security assessments, incident response testing, risk assessments, and 3rd party auditsExecute vulnerability scans, system patching, configuration deploymentsSupport configuration and software management controls (e.g., application allow-listing, nonessential functionality restrictions) in coordination with compliance staffParticipate in change management processes for IT systems affecting CUI/classified scopePrioritize and resolve escalated technical issues and mentor junior IT staff, manage ticketing systems, and address chronic or persistent issuesOwn and support all critical security incidents, interruptions/outages, and end-user issues with flexible evening/weekend work when requiredMaintain system documentation, diagrams, project plans, asset inventoryRequired QualificationsHands-on expertise in hybrid cloud migration, Microsoft Azure networking, cloud technologies, protocols, and authentication, and WAN network architectureExperience administering Azure: identity (Entra ID), virtual machines, vnet, CA policy, Azure Foundry, Purview, Defender, Intune, etc. Systems Administrator - Cloud & Network InfrastructurePosition SummaryWe are seeking a Systems Administrator with strong Azure and networking expertise.