FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in Azure Government environment design and implementation, with a strong focus on infrastructure as code, security architecture, and compliance with federal regulations such as FedRAMP. Proficient in deploying and managing cloud infrastructure, ensuring operational excellence through documented runbooks and effective on-call rotations.
Highest-signal resume keywords
Azure Government ExperienceInfrastructure As CodeTerraform ExpertiseFedRAMP Compliance ExperienceAzure Security Services Knowledge
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Cloud Infrastructure EngineeringProduction Kubernetes ExperienceWindows Node Pools ManagementContainerized .NET WorkloadsSecurity Architecture ImplementationMachine-Readable ComplianceEndpoint Security DeploymentRunbook Definition and ManagementTechnical Control ExplanationFIPS 140 Familiarity
Soft Skills
Clear CommunicationTeam Leadership
Tools & Technologies
Microsoft SentinelDefender For CloudAzure Key VaultAzure PolicyPrivate LinkEntra IDManaged Identities
Certifications & Qualifications
Azure Security Engineer (AZ-500)Azure Solutions Architect
Industry Keywords
FedRAMPDoD CC SRGStateRAMPGovRAMPPCIISO 27001SOC 2STIG Hardening
Tech Stack
Tools & technologiesAzureCloudKubernetesLinuxNode.jsTerraformVault.NET
About the role
Key responsibilities & impact- Design and build the Azure Government environment for M-Files’ federal offering
- Author and own infrastructure as code and deployment pipelines, with every environment change versioned, reviewed, and redeployed
- Implement the security architecture, including Microsoft Sentinel integration and log routing, Defender for Cloud, hardened STIG/CIS node and container baselines, and FIPS-mode configuration across Windows and Linux compute
- Stand up customer-managed-key infrastructure with the product team
- Build the machine-readable evidence pipeline required by FedRAMP 20x
- Work daily with advisory partner engineers deploying endpoint security
- Define operating runbooks covering federal-timeframe patching, monthly authenticated scanning, backup and restore testing, break-glass access, and the on-call rotation
- Lead the on-call rotation as the team forms
- Demonstrate controls during third-party assessment, produce evidence on request, and remediate findings
- Deploy the environment from code in Azure Government against the signed-off reference architecture
- Establish steady-state operations with documented runbooks and a functioning on-call rotation
Requirements
What you’ll need- 7+ years in cloud infrastructure or platform engineering, with at least 3 years hands-on in Azure at production scale
- Azure Government experience strongly preferred
- Deep Terraform experience and conviction that infrastructure is code, reviewed and redeployed, never hand-edited
- Production Kubernetes experience (AKS preferred), including Windows node pools and containerized .NET workloads
- Working knowledge of Azure security services: Sentinel, Defender for Cloud, Key Vault, Azure Policy, Private Link, Entra ID and managed identities
- Experience building or operating an environment under FedRAMP, DoD CC SRG, StateRAMP/GovRAMP, or an equivalent regulated framework (PCI, ISO 27001, SOC 2)
- Familiarity with FIPS 140 and STIG hardening
- Ability to explain a technical control to a non-engineer assessor clearly and without hedging
- U.S. person status (U.S. citizen or lawful permanent resident) and ability to work from the United States; no visa sponsorship
- Pre-employment background screening and identity verification to NIST SP 800-63A Identity Assurance Level 2
- Annual acknowledgement of federal environment Rules of Behavior and completion of role-based security training
- Participation in the annual incident-response exercise
- Willingness to participate in an on-call rotation or U.S. business-hours coverage
- FedRAMP 20x or OSCAL/machine-readable compliance experience preferred
- Azure Security Engineer (AZ-500) or Azure Solutions Architect certification preferred
- Experience migrating a commercial SaaS into a sovereign or government cloud preferred
Benefits
Comp & perks- Flexible work/life balance through remote-enabled work
- 10 paid holidays annually
- Unlimited PTO
- Matching 401K Plan (25% of employee's contribution up to the IRS max)
- Health insurance (PPO and HDHP/HSA plans offered)
- Dental insurance
- Vision insurance
- Life insurance (1x employee salary)
- Short-term disability (employer paid)
- Long-term disability (employer paid)
- Flexible Spending Plan (medical and dependent)
