Cloud Architect IV - Azure
Indexed description
The Cloud Architect IV - Azure supports GAMA-1's corporate and customer cloud initiatives by leading the design, implementation, security, and management of Azure-based environments in a remote work environment. This role is critical to establishing and maintaining a CMMC-compliant cloud infrastructure, modernizing legacy systems, and advancing secure cloud-first solutions.
Success in this role is demonstrated through the delivery of secure, compliant, and scalable Azure environments that strengthen cybersecurity, improve operational efficiency, and support business growth.
What You Will Do in This Role
The Cloud Architect IV - Azure leads the design, implementation, security, automation, governance, and ongoing operation of Azure cloud environments, ensuring scalable, resilient, cost-effective, and compliant cloud services through CloudOps, DevSecOps, and modern identity and security practices.
- Lead the hands-on implementation and orchestration of Azure environments, including the configuration and optimization of VNets, Gateways, and ExpressRoute connections. Implement, manage, and optimize Azure Virtual Desktop (AVD) environments to facilitate secure, controlled access for users
- Utilize Microsoft Intune for device configuration, management, and deployment of security policies across a hybrid workforce. Automate release management to multiple endpoints, ensuring compliance, consistency, and reporting across all devices
- Develop and maintain comprehensive backup, disaster recovery, and business continuity strategies using Azure Backup and Azure Site Recovery to ensure data resilience and operational continuity
- Architect and manage Microsoft Entra ID (formerly Azure AD) environments, including Conditional Access, Multi-Factor Authentication (MFA), and Single Sign-On (SSO). Implement and manage advanced security suites, including Microsoft Defender for Cloud and Microsoft Sentinel, to ensure proactive threat detection and response
- Implement and manage robust data encryption strategies, including encryption at rest and in transit, using services such as Azure Key Vault, Azure Disk Encryption, and TLS. Implement and configure Microsoft Purview Data Loss Prevention (DLP) policies to identify, monitor, and protect sensitive information across the environment
- Develop and enforce Azure Policies to maintain governance and ensure cloud resources align with organizational standards. Ensure cloud architectures adhere to applicable cybersecurity and compliance frameworks, including Risk Management Framework (RMF), NIST 800-53, and NIST 800-171 requirements
- Standardize and automate cloud provisioning using Infrastructure as Code (IaC) tools such as Terraform, Bicep, or Ansible to ensure repeatability and reduce configuration errors
- Develop and manage CI/CD pipelines with integrated security scanning and automated compliance checks to support secure DevSecOps practices
- Implement cloud cost governance and resource optimization strategies to manage and reduce cloud expenditures
- Lead CloudOps initiatives by establishing robust monitoring, incident management, and continuous operational improvement strategies to ensure high availability and optimal performance of cloud services
What You Will Bring
- Bachelor of Science in Computer Science, Computer Engineering, Information Technology, or a related field required; Master's degree preferred
- 10+ years of experience in systems architecture, infrastructure engineering, or cloud engineering, including 5+ years supporting Azure commercial or government cloud environments
- Proven track record leading large-scale cloud migrations, infrastructure modernization initiatives, and enterprise cloud deployments
- Experience with Azure Virtual Network (VNet), Application Gateway, VPN, Load Balancer, Network Security Groups (NSGs), and hybrid connectivity solutions
- Experience with Microsoft Entra ID, Entra Connect/Cloud Sync, Conditional Access, Single Sign-On (SSO), and Multi-Factor Authentication (MFA)
- Experience with Microsoft Intune (MDM/MAM), Azure Policy, Azure Monitor, and Log Analytics
- Experience with Microsoft Defender, Microsoft Sentinel, Zero Trust architecture, security governance, and compliance frameworks
- Experience with Azure Virtual Desktop (AVD), Microsoft 365, and SharePoint Online
- Microsoft Certified Azure Solutions Architect Expert, Azure Security Engineer Associate, or equivalent industry certifications preferred
Work authorization/security clearance requirements
- Ability to obtain a security clearance
Work Environment
- This work is normally completed in a remote environment
Physical Demands
- Prolonged periods of sitting at a desk and working on a computer
- Must be able to access and navigate each department at the organization's and client facilities
Travel Required
- No
Proficiency Requirement
- The employee is expected to demonstrate proficiency in all essential job functions, tools, and processes related to this position within the first 90 days of employment. This includes acquiring a thorough understanding of job-specific responsibilities, systems, and workflows as outlined during onboarding and training. Failure to meet this requirement may result in additional training, reassessment, or other actions as deemed necessary by management
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search