Haystack
← Back to Jobs
Technology

Hybrid Multi-Cloud Engineer SME (Azure/Identity) with Security Clearance

LeidosFort Belvoir, VA🇺🇸United StatesPosted 29 Jul 2026

Quick Overview

Salary
$131.3k - $237.3k/yr
Work Type
Hybrid
Level
Mid Senior

Job Description

R-00188322 Description Leidos is seeking a highly skilled Hybrid Multi-Cloud Engineer SME to support mission-critical Department of Defense (DoD) cloud modernization initiatives in Fort Belvoir, VA or Albuquerque, New Mexico. This position will serve as a senior technical contributor responsible for designing, engineering, implementing, and sustaining secure Microsoft Azure cloud solutions within classified enterprise environments. The successful candidate will possess deep expertise in Microsoft Azure architecture, hybrid cloud engineering, and enterprise identity management. This role requires an experienced engineer capable of translating complex mission requirements into secure, scalable cloud solutions while maintaining a hands-on engineering role throughout the solution lifecycle. The ideal candidate will have experience supporting DoD cloud initiatives, implementing hybrid identity solutions, and engineering cloud environments that align with Zero Trust principles and Department of Defense cybersecurity requirements. Clearance: Must have Active Top Secret security clearance with eligibility for access to Sensitive Compartmented Information (SCI). Primary Responsibilities: * Architect, design, engineer, and implement secure Microsoft Azure cloud solutions supporting DoD mission requirements. * Design and deploy green-field Azure environments and hybrid cloud architectures integrating on-premises infrastructure with Azure services. * Design, implement, and maintain enterprise hybrid identity solutions utilizing Microsoft Entra ID, Microsoft Entra Connect, Active Directory, and related identity technologies. * Engineer secure authentication, authorization, identity governance, and privileged access management (PAM) solutions supporting just-in-time (JIT) access, attribute- and role- based access controls (ABAC/RBAC) and similar Zero Trust principles and objectives. * Design Azure Landing Zones, governance frameworks, subscription architectures, and management group strategies following Microsoft Cloud Adoption Framework (CAF) and Azure Well-Architected Framework guidance. * Engineer Infrastructure as Code (IaC) solutions using Bicep, ARM Templates, Terraform, or comparable automation technologies. * Design secure Azure networking solutions utilizing Virtual Networks, ExpressRoute, VPN Gateway, Azure Firewall, Virtual WAN, and private connectivity services. * Implement Azure-native monitoring, backup, disaster recovery, governance, and security capabilities. * Configure and administer Microsoft Entra ID Governance capabilities, including Access Reviews, Entitlement Management, Lifecycle Workflows, Conditional Access, and Privileged Identity Management (PIM). * Collaborate with cybersecurity, systems engineering, networking, and application development teams to deliver integrated cloud solutions. * Support Authority to Operate (ATO) activities and ensure compliance with DoD cybersecurity policies, Risk Management Framework (RMF), and applicable Security Technical Implementation Guides (STIGs). * Produce architecture documentation, engineering diagrams, implementation guides, standard operating procedures, and technical documentation. * Troubleshoot and resolve complex cloud infrastructure, networking, identity, and security issues. * Evaluate emerging Microsoft cloud technologies and recommend technical solutions supporting customer mission objectives. Basic Qualifications: * Bachelor's degree in Computer Science, Information Systems, Engineering, or a related technical discipline and 12 – 15 years of prior relevant experience or Masters with 10 – 13 years of prior relevant experience. May possess a Doctorate in technical domain. Specific experience, education and training may be considered in lieu of degree. * Active Top Secret security clearance with eligibility for access to Sensitive Compartmented Information (SCI). * Current DoD 8570/8140 IAT Level II certification. * Microsoft Certified: Azure Solutions Architect Expert certification. * Minimum of five years of experience designing and implementing Microsoft Azure enterprise cloud solutions. * Demonstrated experience architecting hybrid Azure environments integrating enterprise on-premises infrastructure with Azure cloud services. * Advanced experience with Microsoft Entra ID, Microsoft Entra Connect, Active Directory, AWS IAM, hybrid identity synchronization, federation, and enterprise identity management with enterprise Identity, Credential, and Access Management (E-ICAM) solutions. * Experience implementing Microsoft Entra ID Governance capabilities, including: * Entra Conditional Access
* Policy Information Points and Policy Engines
* Access Reviews
* Entitlement Management
* Lifecycle Workflows
* Identity lifecycle automation * Experience implementing Azure Landing Zones and enterprise governance models. * Strong understanding of Azure networking, storage, compute, governance, and security services. * Experience with Infrastructure as Code utilizing Terraform, Azure Bicep, ARM Templates, or similar technologies. * Experience with Azure CLI, PowerShell, and scripting using Python or comparable automation languages. * Strong understanding of Zero Trust architecture, identity-centric security, and cloud security best practices. * Excellent written and verbal communication skills. Preferred Qualifications: * AWS Certified Solutions Architect – Professional certification. * Experience integrating Azure and AWS within hybrid multi-cloud enterprise environments. * Familiarity with the Department of Defense Joint Warfighting Cloud Capability (JWCC) and DoD Joint Tenant cloud environments. * Understanding of the DoD Enterprise Cloud Strategy and cloud modernization initiatives. * Familiarity with the Department of Defense Enterprise Identity, Credential, and Access Management (E-ICAM) architecture and its role in enterprise identity federation, identity governance, Zero Trust implementation, and secure access to DoD cloud environments. * Experience with Azure Arc, Azure Stack HCI, Azure Local, and hybrid cloud management technologies. * Experience with Azure Kubernetes Service (AKS) and cloud-native container platforms. * Experience with Microsoft Defender for Cloud, Microsoft Sentinel, Microsoft Intune, and Microsoft Purview. * Experience implementing DevSecOps pipelines using Azure DevOps and/or GitHub Enterprise. If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares. Original Posting: July 28, 2026 For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above. Pay Range: Pay Range $131,300.00 - $237,350.00 The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law. About Leidos Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com . Pay and Benefits Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits . Securing Your Data Beware of fake employment opportunities using Leidos’ name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system – never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other personal information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at . If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission . Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws. #Featuredjob

Skills

AWS
Active Directory
Azure
Kubernetes
PowerShell
Python
Terraform
Zero Trust

Similar jobs