
Sr. Azure System Administrator
Syneren Technologies Corporation
- Alexandria, VA
- Permanent
- Full-time
- Azure Infrastructure / Enclave Management Black/Red Subs
- Infrastructure Service Request Submission & Tracking
- User account management via Active Directory or Azure AD
- Deploy, configure, and maintain Azure resources (VMs, storage, networking, etc.)
- Manage Azure Active Directory, role-based access control (RBAC), and identity services
- Monitor and optimize performance of cloud-hosted applications and services
- Azure managed SQL services administration
- F5 Load Balancer and DNS configuration and maintenance
- Hardware inventory and lifecycle tracking
- System and application monitoring tools
- Email infrastructure such as Exchange or M365
- Support for tools like Teams and SharePoint
- Support for cross-domain solutions (CDS, data guards)
- Certification management / certificate renewal and revocation
- Time server synchronization and integrity
- Implement and manage security controls using Azure Security Center
- Ensure compliance with organizational and regulatory standards (e.g., HIPAA, ISO 27001)
- Patch management for desktops, laptops, and workstations
- Vulnerability scanning and patch remediation
- Management of public key infrastructure certificates
- Authentication services and single sign-on integration
- Support for segregated classified and unclassified networks
- Compliance and accreditation reporting (e.g., ATO)
- Maintain data integrity and availability across environments
- Controlled patching for classified environments via WSUS
- Secure backup media rotation for classified systems
- Support for secure token and smart card access
- Support for audits using STIGs, RMF, etc.
- Monitoring and enforcing secure network segmentation
- Enforcement of policies for USB and removable media
- Sanitization and incident response for classified data leaks
- Service level agreements for critical classified systems
- Command Cyber Readiness Inspection preparation
- Support for SCIF access and badge systems
- Endpoint Detection & Response platform operations
- Log forwarding and alerting architecture (e.g., Splunk)
- Enforcing role-based access control policies
- Automated auditing of secure config baselines (STIG/CIS)
- Hardening and auditing of jump box/bastion systems
- Privileged Access Workstation operations and restrictions
- Command-line logging (bash history, PowerShell logs)
- Password/credential rotation and hygiene enforcement
- Configuration of Sentinel, ForeScout, and Trellix
- CORA inspection / auditing support
- Conduct regular audits and vulnerability assessments
- Backup and disaster recovery testing and validation
- Maintenance of application servers
- Configure and manage Azure Backup and Site Recovery solutions
- Develop and test disaster recovery plans to ensure business continuity
- Tier-1 and Tier-2 technical support and ticket resolution
- Provide Tier 3 support for escalated technical issues
- Use tools like Azure Monitor, Log Analytics, and Application Insights to track system health
- Diagnose and resolve performance issues, outages, and configuration errors
- Assisting help desk teams with non-cloud-related technical issues
- Troubleshooting local hardware or software problems outside Azure scope
- Supporting desktop or on-premises systems during outages or transitions
- Participating in vendor selection or procurement discussions
- Reviewing third-party tools or services not directly tied to Azure infrastructure
- Coordinating with external consultants for non-Azure projects
- Informally mentoring junior IT staff or interns
- Conducting workshops or presentations on general IT topics
- Supporting cross-training initiatives across departments
- Creating internal newsletters or non-technical reports
- Documenting legacy systems or historical configurations
- Assisting with administrative tasks like scheduling or meeting coordination
- Perform Windows servers system administration duties in a mixed environment (Azure Gov & on-Prem VMware).
- Administer Microsoft AD including defining and managing Server’s GPO and security policies.
- Migrate systems from on-Prem VMware to Azure Gov cloud.
- Continuous reviewing existing Azure services and architecture and look for changes to improve performance and cost of operations.
- Proactively manage, monitor, and maintain Azure infrastructure to ensure high availability, security, and performance.
- Security and Compliance:
- Ensure all cloud solutions adhere to security policies, compliance requirements, and best practices.
- Ensure all systems are up to date with patches and all vulnerabilities are remediated according to Agency policies.
- Ensure all DOD STIG are reviewed, and new systems are properly hardened before deployment.
- Automate routine tasks and processes using Azure Automation, PowerShell, or other scripting languages to improve operational efficiency.
- Provide support to create various reports on the Azure infrastructure and on-Prem VMware.
- Stay up to date with the latest Azure technologies, trends, and best practices, and make recommendations for system enhancements or optimizations.
- At least 8 years of proven experience as a System Administrator in the US Federal Government.
- 5+ years’ experience managing Azure services (including windows VMs) in an Azure Government cloud.
- Experience Managing Windows Servers 2019/2022
- Expert on DoD patch Management and Vulnerability Remediation (Process and Tools).
- Experience going through a migration of systems from on-prem to Azure Cloud.
- Understanding of Azure services and solutions, including Azure Virtual Machines, Azure Storage, and Azure Networking.
- Microsoft Certified: Azure Administrator Associate or higher Azure certification.
- Candidate will be required to have or obtain a Secret level Clearance.
- IAT II Certifications IAW DoD (For DoD IAT Level 2, the two required certs are as follows: CompTIA Security+ or SSCP (Systems Security Certified Practitioner) Other security-related certs that are accepted (in addition to the above two certs) as well for the DoD IAT Level 2 include the following as well: CCNA Security; CySA+; GICSP; GSEC).
- BA degree in Information Technology, Computer Science, or related field
- Experience with Azure Apps, Azure Functions and Azure Kubernetes Service
- Experience with Azure DevOps
- Microsoft Certified: Azure Solutions Architect Expert
- Bachelor’s degree or higher in an IT related field such as MIS, Computer Science
- Standard office environment.
- May require extended hours during project deadlines or system implementations.
- Prolonged periods in stationary position at a desk and working on a computer.
- Must be able to lift up to 15 pounds at times.
- The person in this position needs to occasionally move throughout the office, including across longer distances such as from the building entrance to the workspace.