Haystack
← Back to Jobs
Other
AS

Azure Architecture SME with Security Clearance

ASD, Inc.Dept Commerce, DC🇺🇸United StatesPosted Oct 2, 2026

Why This Role Stands Out

This Sr. Azure Engineer role offers a fantastic opportunity to shape critical cloud infrastructure within a reputable organization, leveraging your expertise in Azure networking and IaC to drive innovation. If you thrive on complex technical challenges and enjoy building secure, high-performance cloud environments, this position is perfect for you to make a significant impact. Apply today to join a team that values your skills and dedication.

Quick Overview

Seniority
Mid Senior
Work mode
On Site
Location
Dept Commerce, DC, United States
Posted
5 days ago
ScrumAgile

Job Description

The Azure Architecture SME – Lead is responsible for architecting, designing, and guiding the implementation of secure, scalable, and high performing Azure cloud solutions. This role provides technical leadership, problem‑solving expertise, and hands‑on support across networking, identity, infrastructure automation, and cloud‑to‑on‑prem integrations. The SME will develop architect diagrams, lead complex migrations using Azure Site Recovery, deliver technical presentations to government customers, and design and drive implementation of Entra architecture for enterprise environments.

Key Responsibilities Lead the design of end‑to‑end Azure architecture, producing detailed architect diagrams utilizing VISIO and technical documentation. Lead technical presentations, architectural discussions, and solution deep dives with government customers and stakeholders. Lead and conduct the migration planning and execution using Azure Site Recovery, overseeing dependency mapping, failover testing, and cutover operations. Manage and optimize replication traffic over ExpressRoute/VPN; design and isolate VNETs for test and validation to support migration readiness.

Serve as the point of contact for all Azure networking issues, leading problem‑solving efforts, guiding architecture decisions, and advising leadership on technical direction. Ensure secure and reliable connectivity between cloud and on‑prem environments while maintaining optimal performance, resiliency, and availability. Lead, design, implement, and manage Azure networking components including virtual networks, subnets, NSGs, Azure Firewall, VPN/ExpressRoute, load balancers, and routing topologies.

Lead security hardening and protection of infrastructure across cloud and on‑prem environments while supporting system and workload migrations. Design and lead implementation of Microsoft Entra architecture, including identity governance, conditional access, role management, and cross‑tenant integrations. Build and manage Azure infrastructure using DevOps practices and Infrastructure‑as‑Code (IaC) tools such as Terraform, Bicep, ARM templates, Azure DevOps, and GitHub Actions.

Mentor and collaborate with System Administrators on account administration, VM configuration, monitoring implementation, patch management, and operational support. Oversee all system changes and ensure compliance with DISA STIGs, hardening guidelines, and relevant organizational controls for each VM or server.

QUALIFICATIONS: Education: Bachelor’s degree or higher in Systems Engineering, Computer Science, Information Technology, or a closely related technical field.

Experience: 10+ years of related experience required, with at least 5+ years of preferred experience in database and data management. 5+ years Azure Il5/IL6 environments Required Certification(s): • CompTia Security+ is required to satisfy DoD 8570.01M requirements for IAT Level II • Other work-dependent certifications a plus

Required Skills: Experience design and development of network solutions in an Azure Il5 and Il6 environment Experience using Microsoft Entra ID and Microsoft Entra Monitor Extensive knowledge of Azure Network Design, Establishing Entra architecture Strong Azure networking skills: VNets, NSGs, routing, Azure Firewall, load balancing, ExpressRoute/VPN Understanding of CI/CD concepts and secure pipeline development in controlled cloud environments Advanced knowledge using Ansible or PowerShell scripts Desired Qualifications: Experience with two or more of the areas outlined below is preferred but not required: Experience with Azure Migration solutions Experience with Cloud based Database systems Experience using MS Visio for updating diagrams Experience working in Agile/Scrum environments Experience working in Federal or State government environments CLEARANCE REQUIREMENTS: Must possess active Secret or higher clearance and maintain as a condition of employment LOCATION: Hybrid in Washington, D.C.; on-site work at least three days a week at customer location will be required

Similar jobs