Job Title: Senior Microsoft Cloud Engineer
Employment Type: Full-Time with Benefits
Work Location: Onsite
Place of Performance: Washington, DC 20515
Work Authorization: U.S. Citizenship is required due to federal government contract requirements
Security Requirement: Candidates must successfully complete FBI fingerprinting, criminal background investigation, and obtain and maintain a favorable Public Trust Tier 2 clearance. Additional cybersecurity, computer access, and content management training may be required.
Position Overview
The Senior Microsoft Cloud Engineer will provide advanced engineering, operational, and advisory support for the Congressional Budget Office's Microsoft cloud environments, including Microsoft 365, Azure, Microsoft Entra ID, Intune, and Microsoft Security platforms. This role is responsible for designing, implementing, maintaining, securing, and optimizing enterprise cloud services while ensuring alignment with NIST SP 800-53, NIST SP 800-207 (Zero Trust Architecture), and FedRAMP Moderate requirements.
The successful candidate will serve as a senior technical advisor and collaborate with engineering teams to maintain a secure, resilient, compliant, and highly available cloud environment supporting CBO mission requirements.
Essential Duties and Responsibilities
Design, implement, operate, and optimize Microsoft 365, Azure, and Microsoft Security services to ensure reliability, scalability, and performance.
Implement and maintain cloud security controls aligned with NIST SP 800-53, NIST SP 800-207 (Zero Trust Architecture), and FedRAMP Moderate requirements.
Administer and secure services using Microsoft Entra ID, Conditional Access, privileged access controls, and least-privilege models.
Manage and support Exchange Online, Microsoft Teams, SharePoint Online, and related collaboration services.
Provide engineering support for Azure infrastructure, networking, and application workloads.
Configure and manage Microsoft Defender, Purview, Sentinel, and related security platforms.
Support formal change management processes and maintain technical documentation.
Serve as a senior technical advisor supporting audits, assessments, compliance reviews, and architecture improvements.
Implement automated reporting and dashboards using Power BI.
Configure Azure spending budget alerts and forecasting reports.
Develop and maintain incident response and disaster recovery playbooks.
Perform operational changes after hours or on weekends when necessary to minimize user disruption.
Required Qualifications
Demonstrated ability to provide senior-level technical leadership and operational support for enterprise Microsoft cloud environments.
Proven expertise designing, implementing, operating, and optimizing Microsoft cloud services.
Experience implementing cloud security architectures aligned with:
NIST SP 800-53
NIST SP 800-207 (Zero Trust Architecture)
FedRAMP Moderate
Advanced experience managing hybrid Active Directory, Microsoft 365, and Entra ID environments.
Experience implementing Microsoft's tiered security standards.
Experience managing Windows, macOS, and Apple iOS devices through Intune.
Experience managing Autopilot deployments and software delivery using Intune for environments of at least 700 endpoints.
Experience securing remote PowerShell administrative access and Microsoft Graph integrations.
Advanced and Access Management experience including:
Entra ID
Conditional Access
Privileged Access Management
Least Privilege Models
MFA implementations
Third-party MFA integrations
Smart Card Authentication
FIDO Authentication
Experience supporting Exchange Online, Teams, SharePoint Online, and Microsoft 365 services.
Experience supporting Azure infrastructure and hybrid integrations.
Experience managing Microsoft Defender, Sentinel, and Purview.
Experience managing Sentinel data ingestion sources and monitoring data quality.
Experience supporting change management processes and documentation.
Ability to function independently with minimal supervision.
Experience developing Power BI dashboards and reporting solutions.
Experience configuring Azure budgeting, alerting, and spend forecasting.
Experience developing incident response and disaster recovery procedures.
Qualifications
Experience supporting Federal Government environments.
Experience supporting FISMA and FedRAMP compliance initiatives.
Familiarity with IRS Publication 1075 safeguards.
Experience with hybrid cloud and on-premises integration strategies.
Strong written and verbal communication skills.
Ability to work independently and collaboratively within multidisciplinary teams.
Required Certifications
Candidates must possess and have maintained the following certifications (or equivalent predecessor certifications) for a minimum of five (5) years:
Microsoft 365 Certified: Administrator Expert
Microsoft Certified: Cybersecurity Architect Expert
Microsoft Certified: Azure Solutions Architect Expert
Microsoft 365 Certified: Endpoint Administrator Associate
Microsoft Certified: and Access Administrator Associate
Microsoft Certified: Windows Server Hybrid Administrator Associate
Microsoft 365 Certified: Teams Administrator Associate
Microsoft Certified: Information Security Administrator Associate
#J-18808-Ljbffr