Назад
Company hidden
6 дней назад

Cloud Engineer (Identity and Messaging)

160 000 - 200 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Cloud Engineer (Identity and Messaging): Supporting, securing, and enhancing enterprise identity and messaging services across on-premises and Microsoft cloud environments with an accent on Active Directory, Entra ID, Exchange, and hybrid infrastructure. Focus on engineering secure federal environments, troubleshooting complex authentication and mail-flow failures, automating administration with PowerShell, and meeting NIST, FISMA, FedRAMP, and DISA compliance requirements.

Location: Denver, CO; on-site. Must have existing Top Secret and/or DOE Q clearance. Select positions may require U.S. citizenship and a background investigation of up to 10 years.

Salary: $160,000–$200,000 annually.

Company

hirify.global provides Microsoft consulting services, cloud services, unified communications, systems management, and custom solutions for public-sector and commercial organizations, including federal government agencies.

What you will do

  • Design, administer, secure, and optimize multi-domain and multi-forest Active Directory environments, including domain controllers, trusts, GPOs, DNS, DHCP, replication, schema, and disaster recovery.
  • Administer Exchange Server and Exchange Online, including high availability, hybrid deployments, mailbox migrations, mail flow, retention, eDiscovery, and Microsoft Defender for Office 365.
  • Implement and troubleshoot Entra ID, Entra Connect, Cloud Sync, hybrid authentication, SSO, Conditional Access, MFA, PIM, and certificate-based PIV/CAC authentication.
  • Maintain identity, directory synchronization, and mail flow across segmented federal networks, firewalls, VLANs, proxies, DMZs, VPNs, and security zones.
  • Support vulnerability remediation, security hardening, audits, incident response, and compliance activities aligned with DOE requirements, NIST 800-53, FISMA, FedRAMP, DISA STIGs, and CISA baselines.
  • Develop PowerShell and Microsoft Graph automation, produce technical documentation, and provide Tier III and on-call operational support.

Requirements

  • Senior-level experience supporting federal government customers in professional, multi-vendor environments.
  • Bachelor’s degree in a relevant field and 7+ years administering enterprise Active Directory, including multi-domain or multi-forest architectures.
  • 5+ years administering Exchange Server, including hands-on hybrid deployment experience, plus 3+ years supporting Microsoft 365, Entra ID, and Exchange Online.
  • Strong knowledge of TCP/IP, routing, subnetting, NAT, VLANs, firewalls, DNS, PKI, certificates, SMTP, Kerberos, and LDAP.
  • Experience with PowerShell, Microsoft 365 administration, IAM, ADFS, Windows Server, Exchange, virtualization, and federal security tooling.
  • Existing Top Secret and/or DOE Q clearance is required; U.S. citizenship and an extensive background investigation may be required for select positions.

Nice to have

  • Experience with Microsoft Defender, Purview, Sentinel, CyberArk, BeyondTrust, PAM, and Zero Trust initiatives.
  • Experience with GCC, GCC High, or DoD Microsoft 365 tenants and government-specific connectivity requirements.
  • Experience with PIV/CAC, administrative forests, ESAE/Red Forest, domain and tenant migrations, TIC 3.0, and cross-domain solutions.
  • Microsoft, CompTIA, CCNA, CISSP, GIAC, or ITIL certifications.

Culture & Benefits

  • Work within federal government and public-sector consulting environments.
  • Collaborate with program managers, CIO staff, security officers, contractors, and multi-vendor teams.
  • Participate in enterprise modernization and Microsoft cloud migration initiatives.
  • Support structured change control, audit-ready documentation, and compliance-driven operations.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →