About the role
What will you do at Delan Associates Inc.?
About the job
Client's Tek Office is seeking an experienced Senior Cloud Engineer with a focus on Microsoft 365/Entra to join its diverse and talented group. The Senior Cloud Engineer manages and optimizes the organization’s Microsoft 365 and Entra ID tenants, with primary responsibility for Exchange Online, identity, security, and collaboration services.
This role requires advanced skills in Microsoft 365 administration, investigation, and strong cross‑platform experience, with the ability to drive automation and modern cloud practices. This position reports to the Director of IT Infrastructure Operations.
This position offers hybrid work flexibility, requiring three days per week in Client's Crystal City, Virginia office, with occasional travel for meetings, training sessions, and conferences.
Key Responsibilities
- The key responsibilities for the position include, but are not limited to:
- Design, configure, and administer Microsoft 365 services including Exchange Online, SharePoint Online, OneDrive, Teams, Copilot, and related security/compliance features.
- Administer and harden Entra ID (Azure AD), including conditional access, identity protection, app registrations, and role‑based access control.
- Own Exchange Online configuration: mail flow, transport rules, connectors, policies, hybrid connectivity, and advanced troubleshooting of mail delivery issues.
- Investigate incidents, identify patterns, and develop detection queries and reports leveraging Microsoft 365 Defender, Purview, and Log Analytics.
- Collaborate with security and networking teams to implement and maintain security baselines, DLP, retention, eDiscovery, and auditing across the M365 environment.
- Develop and maintain automation, scripts, and integrations to streamline administration, reporting, and provisioning.
- Contribute to CI/CD and infrastructure‑as‑code practices (e.g., Azure DevOps, GitHub) for Microsoft 365 configuration and related workloads.
- Work with containerized and cloud workloads (e.g., Kubernetes) where they integrate with M365/Entra for identity, security, or application access.
- Lead complex incident response and root‑cause analysis for M365 and identity‑related outages and security events.
- Produce and maintain technical documentation, standards, runbooks, and architectural diagrams for Microsoft 365 and Entra services.
- Mentor junior collaborators and provide guidance on best practices, governance, and operational excellence.
Qualifications
- Education, Knowledge, and Experience:
- Bachelor’s degree in Computer Science, Computer Engineering, or related discipline and at least 9 years of relevant experience in the IT industry, or a master’s degree with at least 7 years of relevant experience, or at least 15 years of relevant industry experience.
- At least 5 years experience of hands‑on administration experience with Microsoft 365 and Entra ID in a mid‑ to large‑enterprise environment.
- Exposure to Azure DevOps, GitHub, or similar tools to manage scripts, pipelines, and infrastructure‑as‑code definitions for Microsoft 365.
- Strong experience using KQL in Microsoft 365 Defender, Sentinel, or Log Analytics to query logs, create custom detections, and analyze security or operational events.
- Demonstrated expert‑level experience with Exchange Online: mail flow troubleshooting, advanced transport configuration, security and compliance policies, and integration with third‑party services.
- Skills
- Effective communicator with demonstrated ability to communicate with and understand the needs of both technical and non-technical internal and external clients.
- Demonstrated ability to work well independently, and collaboratively as needed.
- Adept in a fast-paced environment to manage multiple concurrent deliveries.
- Demonstrated analytical, critical thinking, and problem-solving skills with a focus on detail and high quality.
- Deep understanding of identity and access concepts: SSO, OAuth/OIDC, federation, conditional access, MFA, and privileged identity management.
- Proficiency with PowerShell for automation, bulk operations, and configuration management in Microsoft 365 and Entra ID.
- Solid knowledge of security, compliance, and governance capabilities in M365 (e.g., DLP, retention, eDiscovery, audit, safe links/attachments).
- Familiarity with container platforms (e.g., Kubernetes/AKS) and how they integrate with Entra ID for identity and access control.
- Experience using Microsoft Graph API for automation, integration, and advanced reporting scenarios is preferred.
- Experience with Microsoft Sentinel or similar SIEM platforms for M365 and Entra monitoring and analytics is preferred.
- Experience with LSoft List-Plex is preferred.
- Passion for the craft with a demonstrated ability to learn and understand the technology both at a high level and at a detailed level.
Which skills does this role require?
Make your next move
Build a shortlist and prepare
Identify the requirements you can demonstrate, then choose examples from your work to discuss with the hiring team.
- Build a focused shortlist before you applyCompare role requirements with your experience and give each application a clear reason.
- Platform engineering jobsCompare current openings and review what to look for in this role.
- Practice explaining your experience in an interviewRehearse your answers before meeting the hiring team.
Other roles to compare
Review the responsibilities and requirements before adding an opening to your shortlist.
Applied AI Design Engineer (100 % remote) (m/f/d)
EWOR · Capon Bridge, West Virginia, United States
AI Risk Engineer
Bright Vision Technologies · Columbus, Ohio, United States
Senior Pre-Sales Solutions Engineer - SIEM/Security Analytics / CTI
Anomali · Boston, Massachusetts, United States
AI Evaluations Engineer, US Decision Intelligence
Apple · Cupertino, California, United States
AI Integration Engineer (Hybrid)
DXC Technology · Arlington, Virginia, United States
Research Engineer, Responsible Frontier AI Research, DeepMind
Google · New York, New York, United States
Role information can change. Confirm current details on the original application page.
