E

Cloud & IT Infrastructure Engineer

Executive 1 Holding Company

On-siteMcLean, VAsenior$110k–$145kPosted 9h ago

Job description

We are seeking an experienced Cloud & IT Infrastructure Engineer to serve as a hands-on technical lead responsible for the management, security, automation, compliance, and ongoing improvement of our IT environment.

This position supports multiple operating companies with two distinct IT infrastructures and differing security and compliance requirements. The ideal candidate can move seamlessly between cloud infrastructure, cybersecurity/compliance, automation, and practical corporate IT support.

This is not solely a cloud architecture or help-desk role. We need a technically strong, hands-on engineer capable of supporting everything from AWS/Azure, Microsoft 365, servers, security controls, scripting, and CMMC/NIST compliance to employee computers, networking, printers, conference rooms, and office technology.

Key Responsibilities

Cloud, Infrastructure & Security

  • Administer, secure, and optimize AWS and/or Azure cloud environments, Windows/Linux servers, virtual machines, storage, backups, networking, firewalls, VPNs, and related infrastructure.

  • Manage Microsoft 365, Entra ID/Azure AD, Active Directory, Intune, SharePoint, OneDrive, and Teams.

  • Manage identities, permissions, MFA, conditional access, endpoint security, patching, vulnerability management, logging, and monitoring.

  • Maintain backup, disaster recovery, business continuity, and system restoration capabilities.

  • Maintain appropriate security and data separation across affiliated company environments.

CMMC, NIST & GovCon Compliance

  • Serve as a technical lead supporting CMMC and NIST SP 800-171 compliance and protection of CUI and sensitive information.

  • Implement, maintain, test, and document required technical security controls.

  • Support SSPs, POA&Ms, evidence collection, control validation, vulnerability remediation, and assessment preparation.

  • Support incident response, investigation, remediation, and security reporting.

  • Understand cybersecurity requirements applicable to government contractors, including CMMC, NIST, FAR, and DFARS.

Automation & Scripting

  • Develop scripts and automation using PowerShell, Python, Bash, APIs, or similar tools.

  • Automate software deployments, security updates, configurations, policies, and user provisioning/deprovisioning.

  • Manage enterprise-wide data pushes, scripts, software deployments, and configuration changes across company devices.

  • Support data migrations, system integrations, reporting, and monitoring.

Corporate IT & End-User Support

  • Configure, deploy, secure, and maintain laptops, desktops, mobile devices, and other employee technology.

  • Troubleshoot hardware, software, network, authentication, and connectivity issues.

  • Support printers, office networking/Wi-Fi, conference-room technology, Microsoft Teams, Zoom, displays, cameras, and wireless presentation systems.

  • Support employee onboarding/offboarding and device lifecycle management.

  • Coordinate with IT, telecommunications, software, hardware, and security vendors.

  • Maintain hardware/software inventories, licensing, warranties, and technical documentation.

Multi-Company Environment

  • Support multiple affiliated companies with separate infrastructure, security, and compliance requirements.

  • Maintain appropriate boundaries between environments while standardizing systems and processes where practical.

  • Balance competing technical priorities across organizations.

  • Identify opportunities to consolidate technology, licensing, tools, and processes without compromising security or compliance.

Required Qualifications

  • 7+ years of IT infrastructure, systems engineering, cloud engineering, or related experience.

  • Strong hands-on experience with AWS and/or Microsoft Azure.

  • Strong Microsoft enterprise experience, including Microsoft 365, Entra ID/Azure AD, Intune, Teams, SharePoint, and OneDrive.

  • Experience administering Windows and/or Linux servers and enterprise networking.

  • Strong knowledge of firewalls, VPNs, DNS/DHCP, identity management, endpoint security, MFA, encryption, patching, and vulnerability management.

  • Experience with PowerShell, Python, Bash, or similar scripting and automation tools.

  • Working knowledge of CMMC and NIST SP 800-171.

  • Ability to independently troubleshoot complex infrastructure and security issues while also providing hands-on corporate IT support.

  • Strong technical documentation and communication skills.

  • Eligibility for Top Secret Clearance

Preferred Qualifications

  • Direct experience implementing or maintaining CMMC Level 2 and CUI environments.

  • Experience with ATO, FedRAMP, vulnerability scanning, and other regulated or security-focused environments.

Benefits:

  • Medical, Dental and Vision coverage

  • 401(k) Matching

  • PTO