Job Description :
Job Title: Senior Azure Engineer
Location: Jackson, MS (Remote)
Job Type: long term contract

The Senior Azure Engineer is a strategic technical role responsible for designing, implementing, and governing the State Department of Education K-12's enterprise Microsoft Azure cloud environment. This position requires deep expertise in Infrastructure as Code (IaC), landing zone architecture, and cloud security to build a scalable, secure, and compliant platform that supports critical educational applications and data systems. The engineer will automate processes, establish governance, and mentor team members to advance the department's cloud maturity in alignment with the Microsoft Cloud Adoption Framework (CAF).
Essential Duties and Responsibilities
  1. Cloud Platform Architecture & Implementation:

    • Lead the implementation of a landing zone architecture using TerraForm to establish a well-architected, multi-subscription Azure environment for the State education department.

    • Design and implement core cloud infrastructure components including network CIDR block and IP address planning, virtual networks, subnets, vnet gateways for transit routing, ExpressRoute, and firewall configurations.

    • Establish and manage identity foundation using Azure Active Directory with integration with on-premises systems via Entra ID Connect.

  2. Infrastructure as Code (IaC) & Automation:

    • Develop infrastructure as code (IaC) leveraging TerraForm as the primary tool to ensure all Azure resource deployments are automated, version-controlled, consistent, and repeatable.

    • Build, maintain, and optimize CI/CD pipelines in Azure DevOps for deploying IaC, managing the full lifecycle from code commit to production deployment.

    • Automate processes and infrastructure lifecycle management using Azure Automation, PowerShell, and CLI scripts to minimize manual intervention.

  3. Security, Governance & Compliance:

    • Manage security and access controls of cloud-based solutions by implementing Azure Policy, Azure Blueprints, and Role-Based Access Control (RBAC) with a principle of least privilege.

    • Demonstrate an understanding of security concepts including governance and access control, applying them to protect sensitive student data (FERPA) and meet Mississippi state security requirements.

    • Configure and manage monitoring and logging of the Azure platform using cloud native services (Azure Monitor, Log Analytics, Application Insights) for security, performance, and cost insights.

  4. Operational Excellence & Mentorship:

    • Analyze existing operational standards, processes, and/or governance to identify and implement improvements, driving cloud operational maturity.

    • Serve as a subject matter expert on Azure, providing guidance to application development and infrastructure teams on cloud-native best practices.

    • Act as an enthusiastic learner with the ability to teach and mentor teammates and cross functional partners, fostering a culture of cloud expertise within the department.

    • Provide Tier 3 support for complex cloud infrastructure issues.

Mandatory Skills & Qualifications
  1. This position requires a qualified Azure Engineer with at least 10 years' progressive IT experience, with a minimum of 8 years focused on Microsoft Azure, in the following areas:

  2. Azure Platform Expertise:

    • Microsoft Azure experience involving design, deployment, configuration, and optimization of enterprise-scale IaaS and PaaS services (Compute, Storage, Networking, Databases, AKS).

    • Strong foundational knowledge of the Cloud Adoption Framework for Azure with practical experience implementing its pillars (Cost Management, Security, Governance, Reliability, Performance Efficiency, Operational Excellence).

  3. Infrastructure as Code & DevOps:

    • Expertise in IaC development with Terraform for managing complex, multi-environment Azure deployments. Implementation of a landing zone architecture through TerraForm is a core requirement.

    • Proven experience deploying IaC with Azure DevOps (YAML and Classic pipelines), including managing service connections, variable groups, and pipeline security.

    • Proficient with GIT to perform source code management (branching strategies, pull requests, code reviews).

  4. Security & Networking:

    • Hands-on experience designing and implementing Azure security controls (NSGs, ASGs, Azure Firewall, Defender for Cloud, Key Vault).

    • Basic understanding of Azure Active Directory and integration with on-premises systems (Entra ID Connect, hybrid identity).

    • Proven skill in network CIDR block and IP address planning as well as vnet gateway for transit routing (hub-and-spoke, peering).

  5. Monitoring & Governance:

    • Experience with monitoring and logging Azure platform using cloud native services (Azure Monitor, Alerts, Dashboards, Workbooks, KQL queries).

  6. Professional Skills:

    • Excellent communication skills, both written and verbal, with a keen attention to detail. Ability to create clear architecture diagrams, runbooks, and governance documentation.

    • Proven ability to analyze and improve operational standards and processes.

    • Strong analytical and problem-solving skills with a strategic mindset.

    • Experience in a state government or educational (K-12/higher ed) environment with compliance requirements (FERPA, NIST 800-53, CIS Benchmarks).

    • Microsoft Azure certifications (AZ-305: Azure Solutions Architect Expert, AZ-400: DevOps Engineer Expert).

    • Experience with Azure governance tools (Microsoft Copilot for Azure, Azure Policy, Azure Purview).

    • Knowledge of containerization and orchestration (Docker, Azure Kubernetes Service - AKS).

    • Familiarity with scripting languages (PowerShell, Python, Azure CLI).

             

Similar Jobs you may be interested in ..