Cloud Engineer - DoD, CMMC
Peerless Tech Solutions LLC
Full-time
Remote
Job description
$90,000.00 - $110,000.00 per year.
FULLY REMOTE (in U.S. Only).
NO TRAVEL (0% Travel).
Full-time, permanent, salaried.
W-2 plus benefits.
About Us: Looking to join a company that inspires employee growth and advancement? Are you eager for new challenges and making a difference in your work environment? Peerless Tech Solutions is a leading provider of innovative cybersecurity solutions and managed security services focused on compliance for Defense, Federal, and Commercial customers.
We are seeking a skilled Cloud Engineer with a strong background in designing, implementing, and managing Microsoft Azure Cloud infrastructures that comply with Department of Defense (DoD) security standards, CMMC, NIST SP 800-171, and SP 800-53 to join our Peerless team.
Position Overview: As a Cloud Engineer at Peerless, you will engineer secure, scalable cloud environments tailored to DoD cybersecurity standards. Your role will be vital in maintaining compliance while delivering innovative cloud solutions that meet the evolving needs of our customers.
In this role, you will be expected to demonstrate the following capabilities:
- A strong work ethic, high attention to detail, excellent research skills, and professional-level technical writing.
- Versatility as a “Swiss-army knife” engineer who can lead cloud solution engineering projects, but also has a strong background and expertise in Linux-based systems (e.g., Debian/Ubuntu, Red Hat/RHEL).
- Excellent problem-solving skills and ability to work collaboratively in a team environment.
- Primary duties include delivering Azure‑centric cloud engineering to clients, including building new Azure tenants, performing cloud migrations, and deploying core infrastructure such as networking, virtual machines, storage, identity, and security controls. The engineer will troubleshoot complex cloud issues, act as a Tier 3 escalation point, and support hybrid identity, governance, and secure configuration standards. The position also involves participating in client projects that may span Azure, AWS, and Google Cloud, assisting with cross‑cloud migrations, implementing landing zones, and working directly with customers to gather requirements and ensure smooth project execution.
- Secondary duties include conducting compliance and technical research, supporting internal teams with subject matter expertise, and contributing to the development of internal tools, documentation, and innovative solutions.
Key Responsibilities:
- Architect and Design
- Design and implement scalable infrastructure solutions using cloud services like Azure or hybrid environments aligned with DoD standards (i.e., NIST SP 800-171).
- Support cloud migrations, cost optimization, and operational scaling for client workloads.
- Experience in migrating on-premises systems to Microsoft Azure Cloud or from other cloud platforms (i.e., AWS, Google)
- Conduct architecture reviews to ensure compliance with federal security mandates and industry best practices.
- Design and configure Azure services, including Azure Active Directory (AD), Virtual Networks, Azure Security Center.
- Expertise in Linux architecture (i.e. RHEL, Ubuntu) and security management.
- Participate in architecture reviews, client consultations, and technical solution development.
- Configure open-source solutions in on-premises and cloud environments, utilizing GitHub for source control, collaboration, and CI/CD pipelines.
- Implementation and Integration
- Integrate Azure Cloud solutions and Linux systems with existing enterprise IT and security systems.
- Implement identity, access, and security controls using (i.e. Entra ID, AWS IAM), and Conditional Access, and network segmentation.
- Implement Zero Trust Architecture principles within Azure environments.
- Monitor system performance and troubleshoot issues to ensure high availability.
- Compliance and Governance
- Ensure all solutions are aligned with and meet NIST SP 800-171 and the Cybersecurity Maturity Model Certification (CMMC) regulations.
- Ensure all systems meet FIPS 140-2/FIPS 140-3 encryption requirements and other applicable DoD mandates.
- Ensure Cloud Service Providers (CSPs) are Federal Risk and Authorization Management Program (FedRAMP) approved prior to implementation to maintain CSP compliance.
- Ensure compliance with NIST SP 800-145 CSP standards to support accurate identification, implementation, and governance of cloud computing models.
- Collaboration and Leadership
- Provide technical guidance to cross-functional teams, including developers, IT staff, and compliance officers.
- Train and mentor junior engineers on cloud security best practices.
- Act as a subject matter expert (SME) on Cloud and DevOps during client engagements and audits.
Qualifications:
Candidates with the Azure Cloud certifications listed below are HIGHLY PREFERRED. The ideal candidate must possess experience in cloud engineering, development, and Linux, aligned with the responsibilities of this role. Individuals holding the AZ-104 certification, has experience with Azure Government Community Cloud (GCC), and at least one certification from the Preferred or Desirable categories will be considered strong candidates.
- Education and Experience
- Bachelor’s degree in Computer Science, Information Technology, or a related Computer Engineering field (Required).
- 5+ years of experience in cloud engineering and solution design across on-prem, cloud (IaaS, PaaS, SaaS), and hybrid environments
- 4+ years of experience with Microsoft 365 (M365/O365)
- 3+ years of experience working with Microsoft Azure, Azure Active Directory (Azure AD), Entra ID, and Azure virtual machines
- 3+ years of experience configuring and administering Linux-based systems (e.g., Debian/Ubuntu, RHEL)
- 2+ years of experience with Microsoft Active Directory and Exchange (on-prem)
- 2+ years of experience managing Active Directory Domain Services (AD DS)
- 2+ years of experience with Microsoft Intune / Endpoint Manager (MEM)
- 2+ years of experience performing cloud migrations (on-prem to cloud, cloud to cloud, enclave to enclave)
- 2+ years of demonstrated responsibility for project and service delivery
- 2+ years of experience supporting development pipelines or scripting solutions
- 1+ years of experience with Microsoft Defender for Business, Cloud, and Endpoints
- 1+ years of experience managing SSL/TLS certificates for web and application servers
- Technical Skills:
- Strong working knowledge of Azure services, including cloud migration.
- Experience in other cloud platforms such as AWS and Google Cloud is favorable.
- Proficiency in securing and administering Linux systems
- Experience with cybersecurity technologies (e.g., vulnerability scanning, SIEM, DLP)
- Hands-on experience with identity and access management, encryption, and network security
- Scripting or programming skills (e.g., PowerShell, KQL, JSON, REST, Python, HTML, JavaScript, .NET)
- Experience with Microsoft Power Automate
- Familiarity with Microsoft GCC High or Azure GovCloud environments
- Experience with Microsoft Sentinel, Defender for Cloud, and M365 security features
- Experience with Ansible, Kubernetes, and Docker in production or lab environments
- Experience supporting DoD, federal civilian, or other regulated industry environments
- Certifications:
Required:
- Microsoft Certified: Azure Administrator Associate (AZ-104) (Can potentially be supplemented with strong Azure experience or with any of the Preferred or Desirable Azure certifications.)
- CompTIA Security+
Preferred:
- Microsoft Certified: Azure DevOps Engineer Expert (AZ-400)
- Microsoft Certified: Azure Security Engineer Associate (AZ-500)
- Microsoft Certified: Azure Network Engineer Associate (AZ-700)
- CompTIA Linux+
Desirable:
- Microsoft Certified: Azure Solutions Architect Expert (AZ-305)
- Microsoft Certified: Azure Virtual Desktop Administrator (AZ-140)
Valued:
- CISSP, CCSP, or equivalent security certifications
- CEH or other relevant DoD 8570 certifications
- Other Requirements:
- U.S. Citizenship.
- Passing of background check and drug screening.
- Security clearance (Public Trust, Secret, Top Secret, SCI, etc.)
Benefits:
- 401(k)
- Dental insurance
- Flexible schedule
- Health insurance
- Health savings account
- Life insurance
- Paid time off
- Professional development assistance
- Referral program
- Retirement plan
- Vision insurance
Compensation Package:
- Bonus opportunities
- Performance bonus
- Yearly pay
Why Join Us:
- Work on impactful projects that support national security.
- Competitive compensation and benefits package.
- Opportunities for professional development and certifications.
- Collaborative and mission-driven work environment
Schedule:
- Monday to Friday
Work Location: Fully Remote
Job Type: Full-time
Pay: $90,000.00 - $110,000.00 per year
Benefits:
- 401(k)
- 401(k) matching
- Dental insurance
- Flexible schedule
- Health insurance
- Health savings account
- Life insurance
- Paid time off
- Professional development assistance
- Referral program
- Retirement plan
- Vision insurance
Application Question(s):
- What experience do you have in scripting and automation?
- What is your experience with employing Intune, Entra ID, MDM/MAM, Microsoft Authenticator?
- What is your experience in Cloud platforms do you have to include Cloud Migrations? (i.e. AWS to Azure, Azure to AWS, On-Prem to Azure)
- Do you have any experience with Azure Government Community Cloud (GCC)?
- Do you have experience with Azure Virtual Desktop?
- What experience do you have configuring cloud systems (i.e., Azure, AWS, Google) or other information systems to meet NIST or cybersecurity standards?
- What experience with Linux do you have and how many years? RHEL or Ubuntu?
Education:
- Bachelor's (Required)
Experience:
- Cloud Engineering: 5 years (Required)
- Azure: 3 years (Required)
- Linux - RHEL/Ubuntu: 2 years (Preferred)
License/Certification:
- Azure Administrator Associate (AZ-104) (Required)
- Azure Security Engineer Associate AZ-500 (Preferred)
Security clearance:
- Confidential (Required)
Work Location: Remote