Job Description Job Description Description The Internal Systems Technician serves as the technical backbone for internal operations, supporting team members across Louisiana, Texas, and Georgia. This role manages internal service desk escalations, maintains documentation and automation workflows, and oversees the technical onboarding and offboarding lifecycle. Acting as a core Tier 2 resource, the technician bridges day-to-day user support with systems administration-maintaining core Microsoft cloud infrastructure, diagnosing advanced endpoint and network issues, and driving continuous operational reliability. Key Responsibilities L2 Incident Escalation & Systems Support: Serve as the primary escalation point for internal service tickets via ConnectWise PSA. Conduct root-cause analysis on recurring technical faults, resolve complex application and OS crashes, and address advanced system issues: Identity & Directory Services: Manage hybrid identity synchronization, troubleshoot Microsoft Entra ID (Azure AD Connect / Cloud Sync), and resolve complex on-prem Active Directory, DNS, and GPO conflicts. Microsoft 365 Administration: Troubleshoot advanced Exchange Online mail flow, transport rules, message trace diagnostics, shared mailbox delegation, and OneDrive/SharePoint access governance. Endpoint & Intune Management: Build, deploy, and remediate Windows endpoint configurations using Microsoft Intune (Endpoint Manager), including compliance policies, configuration profiles, BitLocker recovery, and Autopilot deployment. Network & Connectivity: Diagnose internal VLAN segmentation, switch port mappings, VPN client/gateway routing, firewall policies, and VoIP jitter/packet-loss issues. Advanced OS Remediation: Perform deep registry modifications, profile corruption fixes, driver-level debugging, and Windows Event Viewer log forensics. Provisioning & Endpoint Lifecycle: Own end-to-end hardware/software deployment and decommissioning. Standardize zero-touch or light-touch imaging and configuration using Microsoft Intune, Windows Autopilot, and immy.bot. Internal Infrastructure & Collaboration Administration: Maintain internal collaboration structures, guest access controls, retention policies, and shared storage hierarchies across Microsoft Teams and SharePoint Online. Security, Compliance & Access Hygiene: Enforce Role-Based Access Control (RBAC) and least-privilege principles. Monitor identity security policies, Conditional Access rules, self-service password reset (SSPR), and endpoint defense platforms including DUO MFA, Huntress, and Avanan. Automation & Scripting: Leverage PowerShell to automate recurring admin tasks, bulk user provisioning, license assignments, and tenant reporting. Partner with team leads to build workflows in Rewst, zofIQ, and Power Automate. Documentation & Asset Governance: Maintain internal Standard Operating Procedures (SOPs) and infrastructure architecture diagrams in Hudu. Track hardware depreciation, lifecycle health, and Microsoft licensing tiers via Lifecycle Manager. Skills, Knowledge and Expertise Experience: 2-4 years of progressive IT systems support or MSP experience handling Tier 2 ticket resolution and identity workflows. Microsoft Cloud & Identity Stack: Proficiency with Microsoft 365 Admin Center, Exchange Admin Center, and Microsoft Entra ID. Practical experience managing and enrolling devices through Microsoft Intune / Endpoint Manager. Familiarity with Conditional Access policies, Microsoft Defender for Endpoint/Office 365, and modern authentication frameworks. Working knowledge of hybrid directory structures (Active Directory + Entra ID synchronization). Scripting & Command Line: Practical ability to run and modify basic PowerShell scripts for M365 tenant management and client troubleshooting. Networking Fundamentals: Solid understanding of TCP/IP, subnetting, DHCP reservations, DNS record management, VLAN routing, and IPsec/SSL VPNs. Platform & Tooling Ecosystem: Core & PSA/RMM: ConnectWise PSA/Manage, ConnectWise Automate/RMM, Auvik. Security & Provisioning: Huntress, Avanan/Check Point, DUO Security, immy.bot. Documentation & Automation: Hudu, Liongard, Lifecycle Manager, Rewst. Core Competencies: Analytical problem-solving mindset, methodical incident isolation skills, clear technical documentation habits, and polished communication when collaborating with cross-functional internal stakeholders. Preferred Certifications: Microsoft Certified: Endpoint Administrator Associate (MD-102), Microsoft 365 Certified: Fundamentals (MS-900), CompTIA Network+, or CompTIA Security+. Benefits Health & Wellness: Medical, dental, and vision insurance. Life Insurance: Employer-paid life insurance. Retirement: 401(k) retirement plan with company match. Time Off: Paid Time Off (PTO) and paid company holidays. Growth & Culture: Professional development and training opportunities, career advancement pathways, and employee recognition programs.
09/28/2026
Full time
Job Description Job Description Description The Internal Systems Technician serves as the technical backbone for internal operations, supporting team members across Louisiana, Texas, and Georgia. This role manages internal service desk escalations, maintains documentation and automation workflows, and oversees the technical onboarding and offboarding lifecycle. Acting as a core Tier 2 resource, the technician bridges day-to-day user support with systems administration-maintaining core Microsoft cloud infrastructure, diagnosing advanced endpoint and network issues, and driving continuous operational reliability. Key Responsibilities L2 Incident Escalation & Systems Support: Serve as the primary escalation point for internal service tickets via ConnectWise PSA. Conduct root-cause analysis on recurring technical faults, resolve complex application and OS crashes, and address advanced system issues: Identity & Directory Services: Manage hybrid identity synchronization, troubleshoot Microsoft Entra ID (Azure AD Connect / Cloud Sync), and resolve complex on-prem Active Directory, DNS, and GPO conflicts. Microsoft 365 Administration: Troubleshoot advanced Exchange Online mail flow, transport rules, message trace diagnostics, shared mailbox delegation, and OneDrive/SharePoint access governance. Endpoint & Intune Management: Build, deploy, and remediate Windows endpoint configurations using Microsoft Intune (Endpoint Manager), including compliance policies, configuration profiles, BitLocker recovery, and Autopilot deployment. Network & Connectivity: Diagnose internal VLAN segmentation, switch port mappings, VPN client/gateway routing, firewall policies, and VoIP jitter/packet-loss issues. Advanced OS Remediation: Perform deep registry modifications, profile corruption fixes, driver-level debugging, and Windows Event Viewer log forensics. Provisioning & Endpoint Lifecycle: Own end-to-end hardware/software deployment and decommissioning. Standardize zero-touch or light-touch imaging and configuration using Microsoft Intune, Windows Autopilot, and immy.bot. Internal Infrastructure & Collaboration Administration: Maintain internal collaboration structures, guest access controls, retention policies, and shared storage hierarchies across Microsoft Teams and SharePoint Online. Security, Compliance & Access Hygiene: Enforce Role-Based Access Control (RBAC) and least-privilege principles. Monitor identity security policies, Conditional Access rules, self-service password reset (SSPR), and endpoint defense platforms including DUO MFA, Huntress, and Avanan. Automation & Scripting: Leverage PowerShell to automate recurring admin tasks, bulk user provisioning, license assignments, and tenant reporting. Partner with team leads to build workflows in Rewst, zofIQ, and Power Automate. Documentation & Asset Governance: Maintain internal Standard Operating Procedures (SOPs) and infrastructure architecture diagrams in Hudu. Track hardware depreciation, lifecycle health, and Microsoft licensing tiers via Lifecycle Manager. Skills, Knowledge and Expertise Experience: 2-4 years of progressive IT systems support or MSP experience handling Tier 2 ticket resolution and identity workflows. Microsoft Cloud & Identity Stack: Proficiency with Microsoft 365 Admin Center, Exchange Admin Center, and Microsoft Entra ID. Practical experience managing and enrolling devices through Microsoft Intune / Endpoint Manager. Familiarity with Conditional Access policies, Microsoft Defender for Endpoint/Office 365, and modern authentication frameworks. Working knowledge of hybrid directory structures (Active Directory + Entra ID synchronization). Scripting & Command Line: Practical ability to run and modify basic PowerShell scripts for M365 tenant management and client troubleshooting. Networking Fundamentals: Solid understanding of TCP/IP, subnetting, DHCP reservations, DNS record management, VLAN routing, and IPsec/SSL VPNs. Platform & Tooling Ecosystem: Core & PSA/RMM: ConnectWise PSA/Manage, ConnectWise Automate/RMM, Auvik. Security & Provisioning: Huntress, Avanan/Check Point, DUO Security, immy.bot. Documentation & Automation: Hudu, Liongard, Lifecycle Manager, Rewst. Core Competencies: Analytical problem-solving mindset, methodical incident isolation skills, clear technical documentation habits, and polished communication when collaborating with cross-functional internal stakeholders. Preferred Certifications: Microsoft Certified: Endpoint Administrator Associate (MD-102), Microsoft 365 Certified: Fundamentals (MS-900), CompTIA Network+, or CompTIA Security+. Benefits Health & Wellness: Medical, dental, and vision insurance. Life Insurance: Employer-paid life insurance. Retirement: 401(k) retirement plan with company match. Time Off: Paid Time Off (PTO) and paid company holidays. Growth & Culture: Professional development and training opportunities, career advancement pathways, and employee recognition programs.
Job Description Job Description Overview Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With more than 1,700+ team members, 1,500+ AI & data experts, and 100+ prime contracts, we deliver at scale and with purpose. We've been recognized as a Top Workplace by The Washington Post for six consecutive years and named to the Inc. 5000 list of Fastest-Growing Private Companies in 13 of the past 14 years. Credence is a welcoming environment for those looking to grow and make a meaningful impact. We encourage employees to push boundaries and help solve critical, world-changing federal challenges. Position Summary Credence has an immediate opening for a Network Security Engineer to join our internal IT team. This individual will own enterprise network and security infrastructure across physical and cloud-hosted environments, administer multi-vendor firewalls, and maintain compliance-aligned controls within a CMMC Level 2 and SOC 2 audit environment. The role carries meaningful responsibility for SSP accuracy, ISSO support functions, and GCP organization-level governance. The ideal candidate combines deep network security expertise with documentation discipline and a proactive, compliance-first mindset Responsibilities:Network Infrastructure & Operations Provide technical ownership of the corporate WAN, LAN, and wireless infrastructure, including planning, implementation, expansion, and lifecycle management. Monitor and maintain network performance and reliability, ensuring a minimum of 99% uptime for corporate systems, phone systems, and connectivity. Configure and manage routing, switching, firewalls, and VPNs across Palo Alto NGFW (HQ and branch), Palo Alto VM-Series (AWS Commercial), and FortiGate VM (Azure Government). Serve as primary administrator across all firewall platforms, including policy management, rule additions and modifications, allow-list maintenance, and configuration backups; maintain privileged access under a documented change-controlled process. Oversee network configuration management and backups to ensure recoverability and business continuity. Analyze and resolve escalated Tier 2+ network support tickets. Administer enterprise wireless infrastructure across multiple vendor platforms including Cisco, Aruba, and Ubiquiti; manage access point provisioning Security & Compliance Identify, assess, and mitigate network vulnerabilities through proactive monitoring and remediation. Implement and manage network security controls including firewalls, intrusion detection/prevention systems, antivirus, and secure access solutions. Collaborate with Systems Administrators on vulnerability scanning, patch management, and remediation efforts (e.g., Nessus scan results, OS hardening). Support audit readiness and compliance for CMMC Level 2 and SOC 2, including maintaining network-layer controls in the System Security Plan (SSP), providing firewall and network evidence for assessments, and contributing to ISSO functions as needed. Coordinate firewall rule changes and network modifications through a documented change management process, maintaining an audit-ready record of all changes for SOC 2 and CMMC assessment cycles. Collaboration & Support Work in coordination with Systems and Security administrators to ensure smooth systems and network integration across on-prem and cloud environments. Provide training, documentation, and knowledge sharing to IT staff on new network technologies and processes. Assist in disaster recovery planning and implementation of secure, redundant connectivity solutions. Write and maintain technical documentation, including network diagrams, cabling layouts, and internal knowledge base articles. Contribute to internal IT automation and tooling initiatives, including scripting, infrastructure-as-code, and network-layer input on expanding internal platforms and dashboards. Cloud Infrastructure & GCP Governance Serve as the GCP organization owner, maintaining folder hierarchy, org policies, IAM governance, and network configurations across all projects and access boundaries. Administer cloud-hosted network infrastructure including Palo Alto VM-Series in AWS Commercial and FortiGate VM in Azure Government; design and maintain hybrid connectivity patterns across cloud environments. Support GCP cloud networking operations including Cloud NCC hub-and-spoke architecture, HA-VPN with BGP over IKEv2, Cloud Router, and Cloud NAT. Requirements Must be a U.S. Citizenship Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience). Must have a minimum of 5+ years of hands-on working experience in network engineering, IT administration, or a related technical role. Must have a strong knowledge of Windows operating systems and enterprise networking fundamentals. Hands-on experience with enterprise firewall administration; Palo Alto NGFW experience and Cisco or equivalent routing and switching experience required. Must be proficient in managing network security tools (firewalls, IDS/IPS, VPNs, antivirus). Must be familiar with configuration management, monitoring, and documentation tools. Must have 5+years of demonstrated ability to maintain and update network security documentation including firewall rule baselines, network diagrams, and SSP network control contributions. Must have the ability to troubleshoot complex issues and communicate effectively with both technical and non-technical staff. Preferred Qualifications Certifications such as Palo Alto PCNSE, FortiGate NSE 4 or higher, CCNA, CCNP, Security+, or equivalent. FortiGate experience, including FortiGate VM in Azure Government, preferred; candidates with strong enterprise firewall experience may ramp up on FortiGate with internal support. Experience supporting Microsoft 365, Azure Government (GCC High), AWS Commercial, and GCP environments; familiarity with compliance boundaries specific to Azure Gov and GCC High preferred. Familiarity with VoIP, secure mail flow, and endpoint management integration. Experience contributing to IT/security-related project initiatives. Prior experience in an ISSO or ISSO support role, or familiarity with SSP documentation and NIST 800-171 network control mapping. Experience administering cloud-hosted firewall VMs (Palo Alto VM-Series or FortiGate VM) in AWS or Azure environments. Experience with network monitoring and management platforms such as PRTG Network Monitor, network documentation tools such as NetBox, and network automation and configuration management tools such as Ansible. Experience with Workload Identity Federation (WIF) and OIDC-based service account authentication in GCP; ability to audit and migrate from key-based service accounts. GCP Professional Cloud Network Engineer certification or equivalent demonstrated experience. Familiar with GCP organization-level governance including IAM, org policies, and folder hierarchy. Experience in a federal contractor environment or familiarity with government compliance frameworks (CMMC, FedRAMP) preferred. Comfort with scripting languages (Python, Bash) or infrastructure automation tools for network configuration and operational tasks. Salary Range: $130,000.00 to $155,000.00 annually. Actual compensation will be determined based on the selected candidate's experience, education, skills, and overall qualifications. Please join us, as together we build a better world one mission at a time powered by Technology and its People! Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Family Leave (Maternity, Paternity) Short Term & Long Term Disability Training & Development Wellness Resources
09/28/2026
Full time
Job Description Job Description Overview Join a team where innovation meets mission. Our AI, cloud, cyber, and modernization solutions save agencies thousands of hours, safeguard national security, and strengthen health and humanitarian missions worldwide. With more than 1,700+ team members, 1,500+ AI & data experts, and 100+ prime contracts, we deliver at scale and with purpose. We've been recognized as a Top Workplace by The Washington Post for six consecutive years and named to the Inc. 5000 list of Fastest-Growing Private Companies in 13 of the past 14 years. Credence is a welcoming environment for those looking to grow and make a meaningful impact. We encourage employees to push boundaries and help solve critical, world-changing federal challenges. Position Summary Credence has an immediate opening for a Network Security Engineer to join our internal IT team. This individual will own enterprise network and security infrastructure across physical and cloud-hosted environments, administer multi-vendor firewalls, and maintain compliance-aligned controls within a CMMC Level 2 and SOC 2 audit environment. The role carries meaningful responsibility for SSP accuracy, ISSO support functions, and GCP organization-level governance. The ideal candidate combines deep network security expertise with documentation discipline and a proactive, compliance-first mindset Responsibilities:Network Infrastructure & Operations Provide technical ownership of the corporate WAN, LAN, and wireless infrastructure, including planning, implementation, expansion, and lifecycle management. Monitor and maintain network performance and reliability, ensuring a minimum of 99% uptime for corporate systems, phone systems, and connectivity. Configure and manage routing, switching, firewalls, and VPNs across Palo Alto NGFW (HQ and branch), Palo Alto VM-Series (AWS Commercial), and FortiGate VM (Azure Government). Serve as primary administrator across all firewall platforms, including policy management, rule additions and modifications, allow-list maintenance, and configuration backups; maintain privileged access under a documented change-controlled process. Oversee network configuration management and backups to ensure recoverability and business continuity. Analyze and resolve escalated Tier 2+ network support tickets. Administer enterprise wireless infrastructure across multiple vendor platforms including Cisco, Aruba, and Ubiquiti; manage access point provisioning Security & Compliance Identify, assess, and mitigate network vulnerabilities through proactive monitoring and remediation. Implement and manage network security controls including firewalls, intrusion detection/prevention systems, antivirus, and secure access solutions. Collaborate with Systems Administrators on vulnerability scanning, patch management, and remediation efforts (e.g., Nessus scan results, OS hardening). Support audit readiness and compliance for CMMC Level 2 and SOC 2, including maintaining network-layer controls in the System Security Plan (SSP), providing firewall and network evidence for assessments, and contributing to ISSO functions as needed. Coordinate firewall rule changes and network modifications through a documented change management process, maintaining an audit-ready record of all changes for SOC 2 and CMMC assessment cycles. Collaboration & Support Work in coordination with Systems and Security administrators to ensure smooth systems and network integration across on-prem and cloud environments. Provide training, documentation, and knowledge sharing to IT staff on new network technologies and processes. Assist in disaster recovery planning and implementation of secure, redundant connectivity solutions. Write and maintain technical documentation, including network diagrams, cabling layouts, and internal knowledge base articles. Contribute to internal IT automation and tooling initiatives, including scripting, infrastructure-as-code, and network-layer input on expanding internal platforms and dashboards. Cloud Infrastructure & GCP Governance Serve as the GCP organization owner, maintaining folder hierarchy, org policies, IAM governance, and network configurations across all projects and access boundaries. Administer cloud-hosted network infrastructure including Palo Alto VM-Series in AWS Commercial and FortiGate VM in Azure Government; design and maintain hybrid connectivity patterns across cloud environments. Support GCP cloud networking operations including Cloud NCC hub-and-spoke architecture, HA-VPN with BGP over IKEv2, Cloud Router, and Cloud NAT. Requirements Must be a U.S. Citizenship Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent experience). Must have a minimum of 5+ years of hands-on working experience in network engineering, IT administration, or a related technical role. Must have a strong knowledge of Windows operating systems and enterprise networking fundamentals. Hands-on experience with enterprise firewall administration; Palo Alto NGFW experience and Cisco or equivalent routing and switching experience required. Must be proficient in managing network security tools (firewalls, IDS/IPS, VPNs, antivirus). Must be familiar with configuration management, monitoring, and documentation tools. Must have 5+years of demonstrated ability to maintain and update network security documentation including firewall rule baselines, network diagrams, and SSP network control contributions. Must have the ability to troubleshoot complex issues and communicate effectively with both technical and non-technical staff. Preferred Qualifications Certifications such as Palo Alto PCNSE, FortiGate NSE 4 or higher, CCNA, CCNP, Security+, or equivalent. FortiGate experience, including FortiGate VM in Azure Government, preferred; candidates with strong enterprise firewall experience may ramp up on FortiGate with internal support. Experience supporting Microsoft 365, Azure Government (GCC High), AWS Commercial, and GCP environments; familiarity with compliance boundaries specific to Azure Gov and GCC High preferred. Familiarity with VoIP, secure mail flow, and endpoint management integration. Experience contributing to IT/security-related project initiatives. Prior experience in an ISSO or ISSO support role, or familiarity with SSP documentation and NIST 800-171 network control mapping. Experience administering cloud-hosted firewall VMs (Palo Alto VM-Series or FortiGate VM) in AWS or Azure environments. Experience with network monitoring and management platforms such as PRTG Network Monitor, network documentation tools such as NetBox, and network automation and configuration management tools such as Ansible. Experience with Workload Identity Federation (WIF) and OIDC-based service account authentication in GCP; ability to audit and migrate from key-based service accounts. GCP Professional Cloud Network Engineer certification or equivalent demonstrated experience. Familiar with GCP organization-level governance including IAM, org policies, and folder hierarchy. Experience in a federal contractor environment or familiarity with government compliance frameworks (CMMC, FedRAMP) preferred. Comfort with scripting languages (Python, Bash) or infrastructure automation tools for network configuration and operational tasks. Salary Range: $130,000.00 to $155,000.00 annually. Actual compensation will be determined based on the selected candidate's experience, education, skills, and overall qualifications. Please join us, as together we build a better world one mission at a time powered by Technology and its People! Benefits Health Care Plan (Medical, Dental & Vision) Retirement Plan (401k, IRA) Life Insurance (Basic, Voluntary & AD&D) Paid Time Off (Vacation, Sick & Public Holidays) Family Leave (Maternity, Paternity) Short Term & Long Term Disability Training & Development Wellness Resources
Job Description Job Description Job Title: Network Security Engineer Department: Information Technology Location: Rochester, NY Classification: Exempt Reports To: Director of Information Technology Please note: Candidates must be authorized to work in the United States and able to work onsite in the Rochester, NY office. Sponsorship is not available for this position. Company Overview: Woods Oviatt Gilman, LLP is a leading and reputable full-service law firm dedicated to providing exceptional legal services to our clients. With a team of highly skilled and experienced attorneys, we strive to deliver comprehensive and effective solutions to meet the diverse needs of our clients. Our headquarters is in Rochester, NY with additional offices in Albany and Buffalo, NY. We foster a collaborative and inclusive work environment where every team member is valued and respected. We encourage open communication, teamwork, and professional growth. Our firm promotes a healthy work-life balance and supports the well-being of our employees. Position Summary: The Network Security Engineer is a hands-on technical role responsible for implementing, configuring, and maintaining the firm's security controls across a hybrid environment, including FortiGate firewalls, endpoint protection, cloud email and Microsoft 365, Intune-managed devices, and a co-managed monitoring and detection service. The Engineer works under the direction of the Director of Information Technology, who sets security policy and priorities for the department, and provides the technical assessment, recommendations, and documentation that support those decisions. Because the firm safeguards confidential and privileged client information, this position calls for strong technical skill, sound judgment, discretion, and clear communication with both the IT team and firm personnel. Duties and Responsibilities: Network and Perimeter Security Administer, tune, and monitor FortiGate firewalls, including security policies, VPN configuration, intrusion prevention, web and content filtering, and logging Implement and maintain network segmentation, secure remote access, and wireless security across firm locations, in line with the department's standards Maintain secure connectivity for remote and hybrid users, including VPN and conditional access Conduct scheduled reviews of firewall rules and network configurations, recommend changes to the Director of Information Technology, and maintain accurate network security documentation Endpoint, Identity, and Email Security Administer the firm's endpoint protection platforms, including CrowdStrike and Microsoft endpoint protection, covering policy configuration, detection review, containment actions, and agent coverage Configure and maintain device compliance, configuration, and application deployment through Microsoft Intune in a hybrid environment, including full-disk encryption and recovery key handling Configure and maintain identity and access controls across Microsoft Entra ID and on-premises Active Directory, including multifactor authentication, conditional access, and privileged account settings, and perform periodic access reviews Configure and maintain security settings for cloud email and collaboration, including mail flow and filtering rules, phishing and malware defenses, email authentication records, and Microsoft 365 security configuration Perform vulnerability and patch management across servers, endpoints, and network devices, including scanning, prioritizing findings, tracking remediation, and reporting status to the Director of Information Technology Monitoring, Detection, and Incident Response Serve as the day-to-day technical contact for the firm's managed monitoring service, triaging alerts, validating findings, and carrying issues through to resolution Investigate security events and perform containment, eradication, and recovery steps in accordance with the firm's incident response procedures, escalating promptly to the Director of Information Technology Contribute to the development, maintenance, and testing of the firm's incident response plan, including participation in tabletop exercises Verify that backup, recovery, and business continuity controls are functioning and tested, and support the department's disaster recovery planning Security Program Support, Privacy, and Compliance Provide technical evaluation and recommendations to support the department's selection and adoption of a recognized security framework such as the NIST Cybersecurity Framework, CIS Controls, or ISO 27001 Implement and maintain the technical controls that support the framework, and assist in assessing and reporting the firm's posture against it Assist the Director of Information Technology in drafting and maintaining information security policies, standards, and procedures, and implement the technical measures that carry them out Maintain security documentation, control evidence, and a working risk log, and recommend remediation priorities to the Director of Information Technology Support compliance with applicable privacy and data protection obligations, including the New York SHIELD Act and other state privacy requirements, and requirements applicable to regulated client data such as protected health information Prepare technical responses and supporting documentation for client security requirements, including outside counsel guidelines, security questionnaires, and client and third-party audits, and complete remediation items assigned by the Director of Information Technology Support obligations arising from clients in regulated industries, including financial services requirements such as NYDFS Part 500 as applied to the firm through client agreements Perform technical security reviews of vendors, applications, and services under consideration, and provide findings and recommendations to the Director of Information Technology Assist with independent assessments, including penetration testing and external audits, and complete assigned remediation work Awareness and Collaboration Administer the firm's security awareness program, including training delivery, phishing simulations, and user communication developed with the Director of Information Technology Partner with the IT team on secure configuration, change management, and project work, and provide technical guidance to service desk staff on security escalations Report on control status, vulnerabilities, incidents, and open remediation items to the Director of Information Technology Maintain current knowledge of emerging threats, vulnerabilities, and security technologies relevant to the legal industry, and share findings with the department Technical Skills: Required Hands-on administration of FortiGate firewalls, including policy management, VPN, intrusion prevention, and content filtering Endpoint detection and response administration, ideally CrowdStrike Falcon, and familiarity with Microsoft endpoint protection Microsoft 365 security administration, including cloud email protection, mail flow and filtering, phishing defense, and email authentication using SPF, DKIM, and DMARC Identity and access administration across Microsoft Entra ID and on-premises Active Directory in a hybrid configuration, including multifactor authentication and conditional access Microsoft Intune administration, including device compliance and configuration, application deployment, and device encryption in a hybrid environment Solid networking fundamentals, including TCP/IP, routing and switching, VLANs, DNS, DHCP, segmentation, and wireless security Vulnerability management and patch management practice, including scanning, prioritization, and remediation tracking Security monitoring and log analysis, and experience working with a managed detection and response or co-managed SOC provider Working familiarity with a recognized security framework such as the NIST Cybersecurity Framework, CIS Controls, or ISO 27001, and experience implementing controls in support of one Familiarity with privacy and data protection requirements, including state breach notification obligations and handling of regulated data Ability to produce clear technical documentation, control evidence, risk write-ups, and status reporting for both technical and non-technical readers Preferred Prior experience in a law firm or other professional services environment, including familiarity with outside counsel guidelines and client security audits Experience preparing responses to client security questionnaires and third-party risk assessments Azure or other cloud security administration PowerShell or comparable scripting for automation and reporting Experience with data loss prevention, email encryption, or information rights management Experience with security awareness platforms and phishing simulation tools Familiarity with SD-WAN, zero trust, or secure access service edge architectures Relevant certifications such as Fortinet NSE, CompTIA Security+, GIAC credentials, Microsoft SC-200 or SC-300, CISSP, or CISM Qualifications and Competencies: Strong analytical and problem-solving skills, with sound technical judgment in assessing and prioritizing risk . click apply for full job details
09/28/2026
Full time
Job Description Job Description Job Title: Network Security Engineer Department: Information Technology Location: Rochester, NY Classification: Exempt Reports To: Director of Information Technology Please note: Candidates must be authorized to work in the United States and able to work onsite in the Rochester, NY office. Sponsorship is not available for this position. Company Overview: Woods Oviatt Gilman, LLP is a leading and reputable full-service law firm dedicated to providing exceptional legal services to our clients. With a team of highly skilled and experienced attorneys, we strive to deliver comprehensive and effective solutions to meet the diverse needs of our clients. Our headquarters is in Rochester, NY with additional offices in Albany and Buffalo, NY. We foster a collaborative and inclusive work environment where every team member is valued and respected. We encourage open communication, teamwork, and professional growth. Our firm promotes a healthy work-life balance and supports the well-being of our employees. Position Summary: The Network Security Engineer is a hands-on technical role responsible for implementing, configuring, and maintaining the firm's security controls across a hybrid environment, including FortiGate firewalls, endpoint protection, cloud email and Microsoft 365, Intune-managed devices, and a co-managed monitoring and detection service. The Engineer works under the direction of the Director of Information Technology, who sets security policy and priorities for the department, and provides the technical assessment, recommendations, and documentation that support those decisions. Because the firm safeguards confidential and privileged client information, this position calls for strong technical skill, sound judgment, discretion, and clear communication with both the IT team and firm personnel. Duties and Responsibilities: Network and Perimeter Security Administer, tune, and monitor FortiGate firewalls, including security policies, VPN configuration, intrusion prevention, web and content filtering, and logging Implement and maintain network segmentation, secure remote access, and wireless security across firm locations, in line with the department's standards Maintain secure connectivity for remote and hybrid users, including VPN and conditional access Conduct scheduled reviews of firewall rules and network configurations, recommend changes to the Director of Information Technology, and maintain accurate network security documentation Endpoint, Identity, and Email Security Administer the firm's endpoint protection platforms, including CrowdStrike and Microsoft endpoint protection, covering policy configuration, detection review, containment actions, and agent coverage Configure and maintain device compliance, configuration, and application deployment through Microsoft Intune in a hybrid environment, including full-disk encryption and recovery key handling Configure and maintain identity and access controls across Microsoft Entra ID and on-premises Active Directory, including multifactor authentication, conditional access, and privileged account settings, and perform periodic access reviews Configure and maintain security settings for cloud email and collaboration, including mail flow and filtering rules, phishing and malware defenses, email authentication records, and Microsoft 365 security configuration Perform vulnerability and patch management across servers, endpoints, and network devices, including scanning, prioritizing findings, tracking remediation, and reporting status to the Director of Information Technology Monitoring, Detection, and Incident Response Serve as the day-to-day technical contact for the firm's managed monitoring service, triaging alerts, validating findings, and carrying issues through to resolution Investigate security events and perform containment, eradication, and recovery steps in accordance with the firm's incident response procedures, escalating promptly to the Director of Information Technology Contribute to the development, maintenance, and testing of the firm's incident response plan, including participation in tabletop exercises Verify that backup, recovery, and business continuity controls are functioning and tested, and support the department's disaster recovery planning Security Program Support, Privacy, and Compliance Provide technical evaluation and recommendations to support the department's selection and adoption of a recognized security framework such as the NIST Cybersecurity Framework, CIS Controls, or ISO 27001 Implement and maintain the technical controls that support the framework, and assist in assessing and reporting the firm's posture against it Assist the Director of Information Technology in drafting and maintaining information security policies, standards, and procedures, and implement the technical measures that carry them out Maintain security documentation, control evidence, and a working risk log, and recommend remediation priorities to the Director of Information Technology Support compliance with applicable privacy and data protection obligations, including the New York SHIELD Act and other state privacy requirements, and requirements applicable to regulated client data such as protected health information Prepare technical responses and supporting documentation for client security requirements, including outside counsel guidelines, security questionnaires, and client and third-party audits, and complete remediation items assigned by the Director of Information Technology Support obligations arising from clients in regulated industries, including financial services requirements such as NYDFS Part 500 as applied to the firm through client agreements Perform technical security reviews of vendors, applications, and services under consideration, and provide findings and recommendations to the Director of Information Technology Assist with independent assessments, including penetration testing and external audits, and complete assigned remediation work Awareness and Collaboration Administer the firm's security awareness program, including training delivery, phishing simulations, and user communication developed with the Director of Information Technology Partner with the IT team on secure configuration, change management, and project work, and provide technical guidance to service desk staff on security escalations Report on control status, vulnerabilities, incidents, and open remediation items to the Director of Information Technology Maintain current knowledge of emerging threats, vulnerabilities, and security technologies relevant to the legal industry, and share findings with the department Technical Skills: Required Hands-on administration of FortiGate firewalls, including policy management, VPN, intrusion prevention, and content filtering Endpoint detection and response administration, ideally CrowdStrike Falcon, and familiarity with Microsoft endpoint protection Microsoft 365 security administration, including cloud email protection, mail flow and filtering, phishing defense, and email authentication using SPF, DKIM, and DMARC Identity and access administration across Microsoft Entra ID and on-premises Active Directory in a hybrid configuration, including multifactor authentication and conditional access Microsoft Intune administration, including device compliance and configuration, application deployment, and device encryption in a hybrid environment Solid networking fundamentals, including TCP/IP, routing and switching, VLANs, DNS, DHCP, segmentation, and wireless security Vulnerability management and patch management practice, including scanning, prioritization, and remediation tracking Security monitoring and log analysis, and experience working with a managed detection and response or co-managed SOC provider Working familiarity with a recognized security framework such as the NIST Cybersecurity Framework, CIS Controls, or ISO 27001, and experience implementing controls in support of one Familiarity with privacy and data protection requirements, including state breach notification obligations and handling of regulated data Ability to produce clear technical documentation, control evidence, risk write-ups, and status reporting for both technical and non-technical readers Preferred Prior experience in a law firm or other professional services environment, including familiarity with outside counsel guidelines and client security audits Experience preparing responses to client security questionnaires and third-party risk assessments Azure or other cloud security administration PowerShell or comparable scripting for automation and reporting Experience with data loss prevention, email encryption, or information rights management Experience with security awareness platforms and phishing simulation tools Familiarity with SD-WAN, zero trust, or secure access service edge architectures Relevant certifications such as Fortinet NSE, CompTIA Security+, GIAC credentials, Microsoft SC-200 or SC-300, CISSP, or CISM Qualifications and Competencies: Strong analytical and problem-solving skills, with sound technical judgment in assessing and prioritizing risk . click apply for full job details
Job Family: SAAS/PAAS/Cloud Consulting Travel Required: Up to 10% Clearance Required: Active Secret What You Will Do: We are seeking a Power Platform Developer and an Innovation Specialist to support a front-office modernization effort for a federal DOW client. This role is responsible for designing and building the document management architecture, automated workflows, AI agent configurations, and data capabilities that span a multi-milestone delivery program. The position operates within a lean, agile sprint-based team and requires the ability to translate executive workflows into actionable, testable increments of capability across the Microsoft 365 and Power Platform ecosystem. Responsibilities: Build and maintain Power Automate workflows for inbox-driven task identification, action item routing, multi-step approvals, and exception handling Automate document detection, ingestion, and periodic summarization into SharePoint to support centralized knowledge management Design and configure SharePoint as a centralized repository for document retention, meeting records, briefs, and institutional knowledge Build Microsoft Forms-based or Canvas App-based intake tools for standardized capture and routing of meeting requests and action items Design and build Canvas Apps providing tailored, intuitive user experiences with guided workflows and embedded automation in lieu of standard form-based tools Connect Canvas Apps to Dataverse, SharePoint, and third-party data sources via connectors and custom APIs Implement RBAC, row-level security, and table permissions Configure AI Builder, Copilot Studio, or Azure AI capabilities to support predictive task modeling, document summarization, and AI-assisted meeting documentation Support integration of Power BI dashboards for executive visibility into operational metrics and sprint progress Modernize manual, email-based, and document-driven front office processes through targeted automation Participate in sprint planning, backlog grooming, daily standups, milestone reviews, and retrospectives within an agile delivery cadence Collaborate with the Business Systems Analyst to translate business requirements and current-state process documentation into sprint-ready development tasks Ensure all solutions operate within the DON's approved technology environment, minimizing security, accreditation, and sustainment risk What You Will Need: Minimum of SIX (6) years of professional experience Minimum of TWO (2) years delivering Power Platform solutions Clearance: Active and Maintained SECRET Clearance Citizenship: US Citizenship is required Education: US equivalent Bachelor's degree required Hands-on experience building Canvas Apps, Model Driven Apps, and Power Automate workflows end-to-end, including intake, routing, approval, and notification patterns Experience configuring SharePoint as a structured document repository, including metadata, libraries, and permissions Familiarity with Microsoft Forms and its integration with Power Automate for intake and routing scenarios Ability to build polished, production-ready UI/UX for non-technical executives and front office users Ability to work effectively within an agile sprint model, including participation in planning, reviews, and iterative delivery Ability to collaborate directly with stakeholders, including requirements gathering, demos, and milestone reviews What Would Be Nice To Have: Prior federal or DOW environment experience Experience with AI Builder, Copilot Studio, or Azure AI for document summarization, classification, or task prediction Power BI dashboard development and integration with Power Platform data sources Familiarity with Microsoft 365 G5 licensing and available capabilities Azure infrastructure or architecture knowledge Application Lifecycle Management (ALM) and environment management Azure DevOps and Git source control API and third-party integration experience What We Offer: Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace. Benefits include: Medical, Rx, Dental & Vision Insurance Personal and Family Sick Time & Company Paid Holidays Position may be eligible for a discretionary variable incentive bonus Parental Leave and Adoption Assistance 401(k) Retirement Plan Basic Life & Supplemental Life Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts Short-Term & Long-Term Disability Student Loan PayDown Tuition Reimbursement, Personal Development & Learning Opportunities Skills Development & Certifications Employee Referral Program Corporate Sponsored Events & Community Outreach Emergency Back-Up Childcare Program Mobility Stipend About Guidehouse Guidehouse is an Equal Opportunity Employer-Protected Veterans, Individuals with Disabilities or any other basis protected by law, ordinance, or regulation. Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco. If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation. All communication regarding recruitment for a Guidehouse position will be sent from Guidehouse email domains or . Correspondence received by an applicant from any other domain should be considered unauthorized and will not be honored by Guidehouse. Note that Guidehouse will never charge a fee or require a money transfer at any stage of the recruitment process and does not collect fees from educational institutions for participation in a recruitment event. Never provide your banking information to a third party purporting to need that information to proceed in the hiring process. If any person or organization demands money related to a job opportunity with Guidehouse, please report the matter to Guidehouse's Ethics Hotline. If you want to check the validity of correspondence you have received, please contact . Guidehouse is not responsible for losses incurred (monetary or otherwise) from an applicant's dealings with unauthorized third parties. Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.
09/28/2026
Full time
Job Family: SAAS/PAAS/Cloud Consulting Travel Required: Up to 10% Clearance Required: Active Secret What You Will Do: We are seeking a Power Platform Developer and an Innovation Specialist to support a front-office modernization effort for a federal DOW client. This role is responsible for designing and building the document management architecture, automated workflows, AI agent configurations, and data capabilities that span a multi-milestone delivery program. The position operates within a lean, agile sprint-based team and requires the ability to translate executive workflows into actionable, testable increments of capability across the Microsoft 365 and Power Platform ecosystem. Responsibilities: Build and maintain Power Automate workflows for inbox-driven task identification, action item routing, multi-step approvals, and exception handling Automate document detection, ingestion, and periodic summarization into SharePoint to support centralized knowledge management Design and configure SharePoint as a centralized repository for document retention, meeting records, briefs, and institutional knowledge Build Microsoft Forms-based or Canvas App-based intake tools for standardized capture and routing of meeting requests and action items Design and build Canvas Apps providing tailored, intuitive user experiences with guided workflows and embedded automation in lieu of standard form-based tools Connect Canvas Apps to Dataverse, SharePoint, and third-party data sources via connectors and custom APIs Implement RBAC, row-level security, and table permissions Configure AI Builder, Copilot Studio, or Azure AI capabilities to support predictive task modeling, document summarization, and AI-assisted meeting documentation Support integration of Power BI dashboards for executive visibility into operational metrics and sprint progress Modernize manual, email-based, and document-driven front office processes through targeted automation Participate in sprint planning, backlog grooming, daily standups, milestone reviews, and retrospectives within an agile delivery cadence Collaborate with the Business Systems Analyst to translate business requirements and current-state process documentation into sprint-ready development tasks Ensure all solutions operate within the DON's approved technology environment, minimizing security, accreditation, and sustainment risk What You Will Need: Minimum of SIX (6) years of professional experience Minimum of TWO (2) years delivering Power Platform solutions Clearance: Active and Maintained SECRET Clearance Citizenship: US Citizenship is required Education: US equivalent Bachelor's degree required Hands-on experience building Canvas Apps, Model Driven Apps, and Power Automate workflows end-to-end, including intake, routing, approval, and notification patterns Experience configuring SharePoint as a structured document repository, including metadata, libraries, and permissions Familiarity with Microsoft Forms and its integration with Power Automate for intake and routing scenarios Ability to build polished, production-ready UI/UX for non-technical executives and front office users Ability to work effectively within an agile sprint model, including participation in planning, reviews, and iterative delivery Ability to collaborate directly with stakeholders, including requirements gathering, demos, and milestone reviews What Would Be Nice To Have: Prior federal or DOW environment experience Experience with AI Builder, Copilot Studio, or Azure AI for document summarization, classification, or task prediction Power BI dashboard development and integration with Power Platform data sources Familiarity with Microsoft 365 G5 licensing and available capabilities Azure infrastructure or architecture knowledge Application Lifecycle Management (ALM) and environment management Azure DevOps and Git source control API and third-party integration experience What We Offer: Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace. Benefits include: Medical, Rx, Dental & Vision Insurance Personal and Family Sick Time & Company Paid Holidays Position may be eligible for a discretionary variable incentive bonus Parental Leave and Adoption Assistance 401(k) Retirement Plan Basic Life & Supplemental Life Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts Short-Term & Long-Term Disability Student Loan PayDown Tuition Reimbursement, Personal Development & Learning Opportunities Skills Development & Certifications Employee Referral Program Corporate Sponsored Events & Community Outreach Emergency Back-Up Childcare Program Mobility Stipend About Guidehouse Guidehouse is an Equal Opportunity Employer-Protected Veterans, Individuals with Disabilities or any other basis protected by law, ordinance, or regulation. Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco. If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation. All communication regarding recruitment for a Guidehouse position will be sent from Guidehouse email domains or . Correspondence received by an applicant from any other domain should be considered unauthorized and will not be honored by Guidehouse. Note that Guidehouse will never charge a fee or require a money transfer at any stage of the recruitment process and does not collect fees from educational institutions for participation in a recruitment event. Never provide your banking information to a third party purporting to need that information to proceed in the hiring process. If any person or organization demands money related to a job opportunity with Guidehouse, please report the matter to Guidehouse's Ethics Hotline. If you want to check the validity of correspondence you have received, please contact . Guidehouse is not responsible for losses incurred (monetary or otherwise) from an applicant's dealings with unauthorized third parties. Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.
Job Family: SAAS/PAAS/Cloud Consulting Travel Required: Up to 10% Clearance Required: Active Secret What You Will Do: We are seeking a Power Platform Developer and an Innovation Specialist to support a front-office modernization effort for a federal DOW client. This role is responsible for designing and building the document management architecture, automated workflows, AI agent configurations, and data capabilities that span a multi-milestone delivery program. The position operates within a lean, agile sprint-based team and requires the ability to translate executive workflows into actionable, testable increments of capability across the Microsoft 365 and Power Platform ecosystem. Responsibilities: Build and maintain Power Automate workflows for inbox-driven task identification, action item routing, multi-step approvals, and exception handling Automate document detection, ingestion, and periodic summarization into SharePoint to support centralized knowledge management Design and configure SharePoint as a centralized repository for document retention, meeting records, briefs, and institutional knowledge Build Microsoft Forms-based or Canvas App-based intake tools for standardized capture and routing of meeting requests and action items Design and build Canvas Apps providing tailored, intuitive user experiences with guided workflows and embedded automation in lieu of standard form-based tools Connect Canvas Apps to Dataverse, SharePoint, and third-party data sources via connectors and custom APIs Implement RBAC, row-level security, and table permissions Configure AI Builder, Copilot Studio, or Azure AI capabilities to support predictive task modeling, document summarization, and AI-assisted meeting documentation Support integration of Power BI dashboards for executive visibility into operational metrics and sprint progress Modernize manual, email-based, and document-driven front office processes through targeted automation Participate in sprint planning, backlog grooming, daily standups, milestone reviews, and retrospectives within an agile delivery cadence Collaborate with the Business Systems Analyst to translate business requirements and current-state process documentation into sprint-ready development tasks Ensure all solutions operate within the DON's approved technology environment, minimizing security, accreditation, and sustainment risk What You Will Need: Minimum of SIX (6) years of professional experience Minimum of TWO (2) years delivering Power Platform solutions Clearance: Active and Maintained SECRET Clearance Citizenship: US Citizenship is required Education: US equivalent Bachelor's degree required Hands-on experience building Canvas Apps, Model Driven Apps, and Power Automate workflows end-to-end, including intake, routing, approval, and notification patterns Experience configuring SharePoint as a structured document repository, including metadata, libraries, and permissions Familiarity with Microsoft Forms and its integration with Power Automate for intake and routing scenarios Ability to build polished, production-ready UI/UX for non-technical executives and front office users Ability to work effectively within an agile sprint model, including participation in planning, reviews, and iterative delivery Ability to collaborate directly with stakeholders, including requirements gathering, demos, and milestone reviews What Would Be Nice To Have: Prior federal or DOW environment experience Experience with AI Builder, Copilot Studio, or Azure AI for document summarization, classification, or task prediction Power BI dashboard development and integration with Power Platform data sources Familiarity with Microsoft 365 G5 licensing and available capabilities Azure infrastructure or architecture knowledge Application Lifecycle Management (ALM) and environment management Azure DevOps and Git source control API and third-party integration experience What We Offer: Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace. Benefits include: Medical, Rx, Dental & Vision Insurance Personal and Family Sick Time & Company Paid Holidays Position may be eligible for a discretionary variable incentive bonus Parental Leave and Adoption Assistance 401(k) Retirement Plan Basic Life & Supplemental Life Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts Short-Term & Long-Term Disability Student Loan PayDown Tuition Reimbursement, Personal Development & Learning Opportunities Skills Development & Certifications Employee Referral Program Corporate Sponsored Events & Community Outreach Emergency Back-Up Childcare Program Mobility Stipend About Guidehouse Guidehouse is an Equal Opportunity Employer-Protected Veterans, Individuals with Disabilities or any other basis protected by law, ordinance, or regulation. Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco. If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation. All communication regarding recruitment for a Guidehouse position will be sent from Guidehouse email domains or . Correspondence received by an applicant from any other domain should be considered unauthorized and will not be honored by Guidehouse. Note that Guidehouse will never charge a fee or require a money transfer at any stage of the recruitment process and does not collect fees from educational institutions for participation in a recruitment event. Never provide your banking information to a third party purporting to need that information to proceed in the hiring process. If any person or organization demands money related to a job opportunity with Guidehouse, please report the matter to Guidehouse's Ethics Hotline. If you want to check the validity of correspondence you have received, please contact . Guidehouse is not responsible for losses incurred (monetary or otherwise) from an applicant's dealings with unauthorized third parties. Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.
09/28/2026
Full time
Job Family: SAAS/PAAS/Cloud Consulting Travel Required: Up to 10% Clearance Required: Active Secret What You Will Do: We are seeking a Power Platform Developer and an Innovation Specialist to support a front-office modernization effort for a federal DOW client. This role is responsible for designing and building the document management architecture, automated workflows, AI agent configurations, and data capabilities that span a multi-milestone delivery program. The position operates within a lean, agile sprint-based team and requires the ability to translate executive workflows into actionable, testable increments of capability across the Microsoft 365 and Power Platform ecosystem. Responsibilities: Build and maintain Power Automate workflows for inbox-driven task identification, action item routing, multi-step approvals, and exception handling Automate document detection, ingestion, and periodic summarization into SharePoint to support centralized knowledge management Design and configure SharePoint as a centralized repository for document retention, meeting records, briefs, and institutional knowledge Build Microsoft Forms-based or Canvas App-based intake tools for standardized capture and routing of meeting requests and action items Design and build Canvas Apps providing tailored, intuitive user experiences with guided workflows and embedded automation in lieu of standard form-based tools Connect Canvas Apps to Dataverse, SharePoint, and third-party data sources via connectors and custom APIs Implement RBAC, row-level security, and table permissions Configure AI Builder, Copilot Studio, or Azure AI capabilities to support predictive task modeling, document summarization, and AI-assisted meeting documentation Support integration of Power BI dashboards for executive visibility into operational metrics and sprint progress Modernize manual, email-based, and document-driven front office processes through targeted automation Participate in sprint planning, backlog grooming, daily standups, milestone reviews, and retrospectives within an agile delivery cadence Collaborate with the Business Systems Analyst to translate business requirements and current-state process documentation into sprint-ready development tasks Ensure all solutions operate within the DON's approved technology environment, minimizing security, accreditation, and sustainment risk What You Will Need: Minimum of SIX (6) years of professional experience Minimum of TWO (2) years delivering Power Platform solutions Clearance: Active and Maintained SECRET Clearance Citizenship: US Citizenship is required Education: US equivalent Bachelor's degree required Hands-on experience building Canvas Apps, Model Driven Apps, and Power Automate workflows end-to-end, including intake, routing, approval, and notification patterns Experience configuring SharePoint as a structured document repository, including metadata, libraries, and permissions Familiarity with Microsoft Forms and its integration with Power Automate for intake and routing scenarios Ability to build polished, production-ready UI/UX for non-technical executives and front office users Ability to work effectively within an agile sprint model, including participation in planning, reviews, and iterative delivery Ability to collaborate directly with stakeholders, including requirements gathering, demos, and milestone reviews What Would Be Nice To Have: Prior federal or DOW environment experience Experience with AI Builder, Copilot Studio, or Azure AI for document summarization, classification, or task prediction Power BI dashboard development and integration with Power Platform data sources Familiarity with Microsoft 365 G5 licensing and available capabilities Azure infrastructure or architecture knowledge Application Lifecycle Management (ALM) and environment management Azure DevOps and Git source control API and third-party integration experience What We Offer: Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace. Benefits include: Medical, Rx, Dental & Vision Insurance Personal and Family Sick Time & Company Paid Holidays Position may be eligible for a discretionary variable incentive bonus Parental Leave and Adoption Assistance 401(k) Retirement Plan Basic Life & Supplemental Life Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts Short-Term & Long-Term Disability Student Loan PayDown Tuition Reimbursement, Personal Development & Learning Opportunities Skills Development & Certifications Employee Referral Program Corporate Sponsored Events & Community Outreach Emergency Back-Up Childcare Program Mobility Stipend About Guidehouse Guidehouse is an Equal Opportunity Employer-Protected Veterans, Individuals with Disabilities or any other basis protected by law, ordinance, or regulation. Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco. If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation. All communication regarding recruitment for a Guidehouse position will be sent from Guidehouse email domains or . Correspondence received by an applicant from any other domain should be considered unauthorized and will not be honored by Guidehouse. Note that Guidehouse will never charge a fee or require a money transfer at any stage of the recruitment process and does not collect fees from educational institutions for participation in a recruitment event. Never provide your banking information to a third party purporting to need that information to proceed in the hiring process. If any person or organization demands money related to a job opportunity with Guidehouse, please report the matter to Guidehouse's Ethics Hotline. If you want to check the validity of correspondence you have received, please contact . Guidehouse is not responsible for losses incurred (monetary or otherwise) from an applicant's dealings with unauthorized third parties. Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.
Job Description Job Description Grow, innovate, and generate progress: Harness your expertise to solve challenges and celebrate success! Job Summary JCS Solutions is seeking an experienced Microsoft SaaS Solutions Technical Lead to lead the design, implementation, customization, and integration of Microsoft cloud-based business solutions for our federal clients. This role provides both technical leadership and hands-on expertise across Microsoft Dynamics 365, Power Platform, Microsoft 365, Azure, and related SaaS technologies. The ideal candidate will work closely with government stakeholders, project managers, and development teams to translate business requirements into scalable, secure, and mission-focused solutions. This position plays a critical role in driving innovation through Agile delivery methodologies, DevSecOps best practices, and modern cloud architectures. What's in it for you: Join a premier technology firm specializing in innovative solutions. Be part of a collaborative, inclusive, and innovative work culture. Enjoy tremendous growth potential in a high-performing team environment. A robust benefits package: Health, dental, and vision insurance Life insurance Short-and-long term disability Paid time off (PTO) 401k retirement plan with employer match Annual Professional Development Reimbursement Program And more! What you will do: Serve as the technical lead for the design, deployment, customization, integration, and optimization of Microsoft SaaS solutions, including Microsoft Dynamics 365, Power Platform, and Microsoft 365. Lead Agile development teams in delivering secure, scalable, and mission-focused business solutions. Collaborate with stakeholders to gather, analyze, and document functional and technical requirements. Translate business needs into technical solutions by mapping requirements to Microsoft Dynamics 365 and Power Platform capabilities. Design and implement integrations between Microsoft SaaS platforms and enterprise systems using modern APIs and cloud services. Provide hands-on technical guidance and mentorship to developers, administrators, and project team members. Lead solution deployment, provisioning, configuration management, and environment strategy across development, test, staging, and production environments. Establish and maintain DevSecOps practices utilizing Azure DevOps, CI/CD pipelines, automated testing, and secure development methodologies. Develop and oversee testing strategies, including system testing, regression testing, user acceptance testing (UAT), integration testing, and data validation. Ensure compliance with security, governance, and operational requirements while supporting continuity of operations and disaster recovery objectives. Lead post-deployment activities, including knowledge transfer, training, user support, and continuous improvement efforts. Identify opportunities to improve system performance, business processes, and user experience through innovative use of Microsoft technologies. Support technical proposal development, solution architecture reviews, and client briefings as required. This position requires periodic travel within the National Capital Region (NCR) to support customer meetings, workshops, deployment activities, and other program requirements. What you will bring: U.S. Citizenship required. Bachelor's degree in Computer Science, Information Systems, Engineering, or a related technical discipline. Equivalent professional experience may be considered. Minimum of 7 years of experience designing, developing, implementing, and supporting Microsoft business applications and cloud-based solutions. Minimum of 5 years of hands-on experience with Microsoft Dynamics 365 CRM/Customer Engagement platforms. Experience developing and implementing solutions using Microsoft Power Platform, including Power Apps, Power Automate, Power BI, and Dataverse. Experience integrating Microsoft platforms with external applications, services, and enterprise data sources. Working knowledge of Azure cloud services, Azure DevOps, CI/CD pipelines, and DevSecOps practices. Experience leading technical teams in Agile/Scrum development environments. Strong analytical, troubleshooting, and problem-solving skills. Excellent verbal and written communication skills with the ability to engage effectively with technical and non-technical stakeholders. Demonstrated ability to lead projects, prioritize competing requirements, and deliver high-quality solutions. How will you wow us: Active Secret Security Clearance. Microsoft certifications in Dynamics 365, Power Platform, Azure, or Microsoft 365. Experience supporting federal government customers. Knowledge of case management solutions and workflow automation platforms. Experience with data migration, system modernization, and cloud transformation initiatives. Familiarity with cybersecurity frameworks, compliance requirements, and Zero Trust architectures. JCS Solutions (JCS) is a premier technology firm providing innovative solutions and high-quality services in defense, national security, and civilian sectors. JCS offers enterprise-wide solutions including cloud computing, software development, cybersecurity, digital modernization, and management consulting for the federal government. At JCS, we elevate our customers' mission through the application of technology and professional services. Our commitment to investing in our workforce drives innovation and progress for our clients, employees, and communities. JCS is both a Great Place to Work and a Top Places to Work certified company. Our employees embody our core values, and we are looking for others who do too! Customer Experience: Strive for excellence and delight our clients Innovation: Embrace creative thinking to enable continual growth and powerful solutions Accountability: Take ownership of and pride in our actions and service delivery Inspire: Be inspired to be your best self and have fun in the process Integrity: Do the right thing, the right way, every time! Stewardship: The careful and responsible management of something entrusted to our care. At JCS Solutions, compensation is based on a number of factors such as location, qualifications, and applicable contract terms. The general salary range for this position is as follows: $120,000.00 - $150,000.00 Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to any protected status protected by applicable federal, state, or local laws. NOTICE : Please be aware that all JCS Solutions communications related to job interviews and offers from our recruiting team will only come We want to emphasize that we do not conduct any interviews over Discord, Slack, Skype, Zoom, or any chat app. Powered by JazzHR njxd8mVyn9
09/26/2026
Full time
Job Description Job Description Grow, innovate, and generate progress: Harness your expertise to solve challenges and celebrate success! Job Summary JCS Solutions is seeking an experienced Microsoft SaaS Solutions Technical Lead to lead the design, implementation, customization, and integration of Microsoft cloud-based business solutions for our federal clients. This role provides both technical leadership and hands-on expertise across Microsoft Dynamics 365, Power Platform, Microsoft 365, Azure, and related SaaS technologies. The ideal candidate will work closely with government stakeholders, project managers, and development teams to translate business requirements into scalable, secure, and mission-focused solutions. This position plays a critical role in driving innovation through Agile delivery methodologies, DevSecOps best practices, and modern cloud architectures. What's in it for you: Join a premier technology firm specializing in innovative solutions. Be part of a collaborative, inclusive, and innovative work culture. Enjoy tremendous growth potential in a high-performing team environment. A robust benefits package: Health, dental, and vision insurance Life insurance Short-and-long term disability Paid time off (PTO) 401k retirement plan with employer match Annual Professional Development Reimbursement Program And more! What you will do: Serve as the technical lead for the design, deployment, customization, integration, and optimization of Microsoft SaaS solutions, including Microsoft Dynamics 365, Power Platform, and Microsoft 365. Lead Agile development teams in delivering secure, scalable, and mission-focused business solutions. Collaborate with stakeholders to gather, analyze, and document functional and technical requirements. Translate business needs into technical solutions by mapping requirements to Microsoft Dynamics 365 and Power Platform capabilities. Design and implement integrations between Microsoft SaaS platforms and enterprise systems using modern APIs and cloud services. Provide hands-on technical guidance and mentorship to developers, administrators, and project team members. Lead solution deployment, provisioning, configuration management, and environment strategy across development, test, staging, and production environments. Establish and maintain DevSecOps practices utilizing Azure DevOps, CI/CD pipelines, automated testing, and secure development methodologies. Develop and oversee testing strategies, including system testing, regression testing, user acceptance testing (UAT), integration testing, and data validation. Ensure compliance with security, governance, and operational requirements while supporting continuity of operations and disaster recovery objectives. Lead post-deployment activities, including knowledge transfer, training, user support, and continuous improvement efforts. Identify opportunities to improve system performance, business processes, and user experience through innovative use of Microsoft technologies. Support technical proposal development, solution architecture reviews, and client briefings as required. This position requires periodic travel within the National Capital Region (NCR) to support customer meetings, workshops, deployment activities, and other program requirements. What you will bring: U.S. Citizenship required. Bachelor's degree in Computer Science, Information Systems, Engineering, or a related technical discipline. Equivalent professional experience may be considered. Minimum of 7 years of experience designing, developing, implementing, and supporting Microsoft business applications and cloud-based solutions. Minimum of 5 years of hands-on experience with Microsoft Dynamics 365 CRM/Customer Engagement platforms. Experience developing and implementing solutions using Microsoft Power Platform, including Power Apps, Power Automate, Power BI, and Dataverse. Experience integrating Microsoft platforms with external applications, services, and enterprise data sources. Working knowledge of Azure cloud services, Azure DevOps, CI/CD pipelines, and DevSecOps practices. Experience leading technical teams in Agile/Scrum development environments. Strong analytical, troubleshooting, and problem-solving skills. Excellent verbal and written communication skills with the ability to engage effectively with technical and non-technical stakeholders. Demonstrated ability to lead projects, prioritize competing requirements, and deliver high-quality solutions. How will you wow us: Active Secret Security Clearance. Microsoft certifications in Dynamics 365, Power Platform, Azure, or Microsoft 365. Experience supporting federal government customers. Knowledge of case management solutions and workflow automation platforms. Experience with data migration, system modernization, and cloud transformation initiatives. Familiarity with cybersecurity frameworks, compliance requirements, and Zero Trust architectures. JCS Solutions (JCS) is a premier technology firm providing innovative solutions and high-quality services in defense, national security, and civilian sectors. JCS offers enterprise-wide solutions including cloud computing, software development, cybersecurity, digital modernization, and management consulting for the federal government. At JCS, we elevate our customers' mission through the application of technology and professional services. Our commitment to investing in our workforce drives innovation and progress for our clients, employees, and communities. JCS is both a Great Place to Work and a Top Places to Work certified company. Our employees embody our core values, and we are looking for others who do too! Customer Experience: Strive for excellence and delight our clients Innovation: Embrace creative thinking to enable continual growth and powerful solutions Accountability: Take ownership of and pride in our actions and service delivery Inspire: Be inspired to be your best self and have fun in the process Integrity: Do the right thing, the right way, every time! Stewardship: The careful and responsible management of something entrusted to our care. At JCS Solutions, compensation is based on a number of factors such as location, qualifications, and applicable contract terms. The general salary range for this position is as follows: $120,000.00 - $150,000.00 Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to any protected status protected by applicable federal, state, or local laws. NOTICE : Please be aware that all JCS Solutions communications related to job interviews and offers from our recruiting team will only come We want to emphasize that we do not conduct any interviews over Discord, Slack, Skype, Zoom, or any chat app. Powered by JazzHR njxd8mVyn9
Job Description Job Description Implementing the Microsoft Defender solution and supporting the transition to emerging Microsoft technologies. Experience with the Microsoft Defender Suite including Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Defender Cloud Apps (MDCA), and Mobile Threat Defender (MTD) is needed, and to assist with deployment of complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center. In addition to implementing the Microsoft Defender solution including MDE, MDO, MDCA, and MTD, this position will be responsible for developing SOPs/TTPS for maintaining agent handlers, repositories, Microsoft Intune, Microsoft 365 Defender, and Microsoft Defender for Cloud Apps and support the transition from DoD Enterprise Capabilities to emerging Microsoft technologies. This position will deploy complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center, coordinating efforts to test and verify solutions for future implementation. This position requires the ability to work core hours between 6:00 am to 6:00 pm during the week and participate in on-call rotation for after-hours support. Requirements Experience with Microsoft Intune and Microsoft Defender Experience with server management, including virtualization, and Windows server administration Experience with scripting languages, including PowerShell and KQL Experience with Azure in hybrid environments, Active Directory on prem and cloud, and Group Policies Experience with end user technology deployments and upgrades Experience with supporting Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Microsoft Defender for Cloud and Sentinel, Microsoft Defender for Endpoint Mobile Threat Defense (MTD), Microsoft Endpoint Manager Admin Center, Microsoft Security Administration, Microsoft Office 365, and Microsoft Configuration management service center Active TS/SCI clearance; willingness to take a polygraph exam HS diploma or GED and 7+ years of experience with supporting IT projects and activities, Associate's degree and 5+ years of experience with supporting IT projects and activities, or Bachelor's degree and 3+ years of experience with supporting IT projects and activities DoD 8570 IAT Level II Certification, including CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP Certification Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification within 60 days of start date Optional Qualifications: Experience in managing and administrating systems associated with software deployments, patches, and scripts to a large enterprise environment Experience in collaborating with peers and managers to identify, manage, and generate appropriate reporting and metrics standards based on deployments and management needs Experience with managing complex IT projects involving multiple teams or organizations Experience with tracking and resolving incidents via ticket queue Experience with providing hands on PC and mobile support to end users Ability to be an active member and solve problems by recommending outside-the-box, cost effective solutions Ability to pay strict attention to detail Possession of excellent written and verbal communication and interpersonal skills Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
09/26/2026
Full time
Job Description Job Description Implementing the Microsoft Defender solution and supporting the transition to emerging Microsoft technologies. Experience with the Microsoft Defender Suite including Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Defender Cloud Apps (MDCA), and Mobile Threat Defender (MTD) is needed, and to assist with deployment of complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center. In addition to implementing the Microsoft Defender solution including MDE, MDO, MDCA, and MTD, this position will be responsible for developing SOPs/TTPS for maintaining agent handlers, repositories, Microsoft Intune, Microsoft 365 Defender, and Microsoft Defender for Cloud Apps and support the transition from DoD Enterprise Capabilities to emerging Microsoft technologies. This position will deploy complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center, coordinating efforts to test and verify solutions for future implementation. This position requires the ability to work core hours between 6:00 am to 6:00 pm during the week and participate in on-call rotation for after-hours support. Requirements Experience with Microsoft Intune and Microsoft Defender Experience with server management, including virtualization, and Windows server administration Experience with scripting languages, including PowerShell and KQL Experience with Azure in hybrid environments, Active Directory on prem and cloud, and Group Policies Experience with end user technology deployments and upgrades Experience with supporting Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Microsoft Defender for Cloud and Sentinel, Microsoft Defender for Endpoint Mobile Threat Defense (MTD), Microsoft Endpoint Manager Admin Center, Microsoft Security Administration, Microsoft Office 365, and Microsoft Configuration management service center Active TS/SCI clearance; willingness to take a polygraph exam HS diploma or GED and 7+ years of experience with supporting IT projects and activities, Associate's degree and 5+ years of experience with supporting IT projects and activities, or Bachelor's degree and 3+ years of experience with supporting IT projects and activities DoD 8570 IAT Level II Certification, including CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP Certification Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification within 60 days of start date Optional Qualifications: Experience in managing and administrating systems associated with software deployments, patches, and scripts to a large enterprise environment Experience in collaborating with peers and managers to identify, manage, and generate appropriate reporting and metrics standards based on deployments and management needs Experience with managing complex IT projects involving multiple teams or organizations Experience with tracking and resolving incidents via ticket queue Experience with providing hands on PC and mobile support to end users Ability to be an active member and solve problems by recommending outside-the-box, cost effective solutions Ability to pay strict attention to detail Possession of excellent written and verbal communication and interpersonal skills Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
Job Description Job Description Implementing the Microsoft Defender solution and supporting the transition to emerging Microsoft technologies. Experience with the Microsoft Defender Suite including Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Defender Cloud Apps (MDCA), and Mobile Threat Defender (MTD) is needed, and to assist with deployment of complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center. In addition to implementing the Microsoft Defender solution including MDE, MDO, MDCA, and MTD, this position will be responsible for developing SOPs/TTPS for maintaining agent handlers, repositories, Microsoft Intune, Microsoft 365 Defender, and Microsoft Defender for Cloud Apps and support the transition from DoD Enterprise Capabilities to emerging Microsoft technologies. This position will deploy complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center, coordinating efforts to test and verify solutions for future implementation. This position requires the ability to work core hours between 6:00 am to 6:00 pm during the week and participate in on-call rotation for after-hours support. Requirements Experience with Microsoft Intune and Microsoft Defender Experience with server management, including virtualization, and Windows server administration Experience with scripting languages, including PowerShell and KQL Experience with Azure in hybrid environments, Active Directory on prem and cloud, and Group Policies Experience with end user technology deployments and upgrades Experience with supporting Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Microsoft Defender for Cloud and Sentinel, Microsoft Defender for Endpoint Mobile Threat Defense (MTD), Microsoft Endpoint Manager Admin Center, Microsoft Security Administration, Microsoft Office 365, and Microsoft Configuration management service center Active TS/SCI clearance; willingness to take a polygraph exam HS diploma or GED and 7+ years of experience with supporting IT projects and activities, Associate's degree and 5+ years of experience with supporting IT projects and activities, or Bachelor's degree and 3+ years of experience with supporting IT projects and activities DoD 8570 IAT Level II Certification, including CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP Certification Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification within 60 days of start date Optional Qualifications: Experience in managing and administrating systems associated with software deployments, patches, and scripts to a large enterprise environment Experience in collaborating with peers and managers to identify, manage, and generate appropriate reporting and metrics standards based on deployments and management needs Experience with managing complex IT projects involving multiple teams or organizations Experience with tracking and resolving incidents via ticket queue Experience with providing hands on PC and mobile support to end users Ability to be an active member and solve problems by recommending outside-the-box, cost effective solutions Ability to pay strict attention to detail Possession of excellent written and verbal communication and interpersonal skills Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
09/26/2026
Full time
Job Description Job Description Implementing the Microsoft Defender solution and supporting the transition to emerging Microsoft technologies. Experience with the Microsoft Defender Suite including Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Defender Cloud Apps (MDCA), and Mobile Threat Defender (MTD) is needed, and to assist with deployment of complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center. In addition to implementing the Microsoft Defender solution including MDE, MDO, MDCA, and MTD, this position will be responsible for developing SOPs/TTPS for maintaining agent handlers, repositories, Microsoft Intune, Microsoft 365 Defender, and Microsoft Defender for Cloud Apps and support the transition from DoD Enterprise Capabilities to emerging Microsoft technologies. This position will deploy complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center, coordinating efforts to test and verify solutions for future implementation. This position requires the ability to work core hours between 6:00 am to 6:00 pm during the week and participate in on-call rotation for after-hours support. Requirements Experience with Microsoft Intune and Microsoft Defender Experience with server management, including virtualization, and Windows server administration Experience with scripting languages, including PowerShell and KQL Experience with Azure in hybrid environments, Active Directory on prem and cloud, and Group Policies Experience with end user technology deployments and upgrades Experience with supporting Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Microsoft Defender for Cloud and Sentinel, Microsoft Defender for Endpoint Mobile Threat Defense (MTD), Microsoft Endpoint Manager Admin Center, Microsoft Security Administration, Microsoft Office 365, and Microsoft Configuration management service center Active TS/SCI clearance; willingness to take a polygraph exam HS diploma or GED and 7+ years of experience with supporting IT projects and activities, Associate's degree and 5+ years of experience with supporting IT projects and activities, or Bachelor's degree and 3+ years of experience with supporting IT projects and activities DoD 8570 IAT Level II Certification, including CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP Certification Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification within 60 days of start date Optional Qualifications: Experience in managing and administrating systems associated with software deployments, patches, and scripts to a large enterprise environment Experience in collaborating with peers and managers to identify, manage, and generate appropriate reporting and metrics standards based on deployments and management needs Experience with managing complex IT projects involving multiple teams or organizations Experience with tracking and resolving incidents via ticket queue Experience with providing hands on PC and mobile support to end users Ability to be an active member and solve problems by recommending outside-the-box, cost effective solutions Ability to pay strict attention to detail Possession of excellent written and verbal communication and interpersonal skills Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
Job Description Job Description Implementing the Microsoft Defender solution and supporting the transition to emerging Microsoft technologies. Experience with the Microsoft Defender Suite including Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Defender Cloud Apps (MDCA), and Mobile Threat Defender (MTD) is needed, and to assist with deployment of complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center. In addition to implementing the Microsoft Defender solution including MDE, MDO, MDCA, and MTD, this position will be responsible for developing SOPs/TTPS for maintaining agent handlers, repositories, Microsoft Intune, Microsoft 365 Defender, and Microsoft Defender for Cloud Apps and support the transition from DoD Enterprise Capabilities to emerging Microsoft technologies. This position will deploy complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center, coordinating efforts to test and verify solutions for future implementation. This position requires the ability to work core hours between 6:00 am to 6:00 pm during the week and participate in on-call rotation for after-hours support. Requirements Experience with Microsoft Intune and Microsoft Defender Experience with server management, including virtualization, and Windows server administration Experience with scripting languages, including PowerShell and KQL Experience with Azure in hybrid environments, Active Directory on prem and cloud, and Group Policies Experience with end user technology deployments and upgrades Experience with supporting Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Microsoft Defender for Cloud and Sentinel, Microsoft Defender for Endpoint Mobile Threat Defense (MTD), Microsoft Endpoint Manager Admin Center, Microsoft Security Administration, Microsoft Office 365, and Microsoft Configuration management service center Active TS/SCI clearance; willingness to take a polygraph exam HS diploma or GED and 7+ years of experience with supporting IT projects and activities, Associate's degree and 5+ years of experience with supporting IT projects and activities, or Bachelor's degree and 3+ years of experience with supporting IT projects and activities DoD 8570 IAT Level II Certification, including CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP Certification Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification within 60 days of start date Optional Qualifications: Experience in managing and administrating systems associated with software deployments, patches, and scripts to a large enterprise environment Experience in collaborating with peers and managers to identify, manage, and generate appropriate reporting and metrics standards based on deployments and management needs Experience with managing complex IT projects involving multiple teams or organizations Experience with tracking and resolving incidents via ticket queue Experience with providing hands on PC and mobile support to end users Ability to be an active member and solve problems by recommending outside-the-box, cost effective solutions Ability to pay strict attention to detail Possession of excellent written and verbal communication and interpersonal skills Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
09/26/2026
Full time
Job Description Job Description Implementing the Microsoft Defender solution and supporting the transition to emerging Microsoft technologies. Experience with the Microsoft Defender Suite including Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Defender Cloud Apps (MDCA), and Mobile Threat Defender (MTD) is needed, and to assist with deployment of complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center. In addition to implementing the Microsoft Defender solution including MDE, MDO, MDCA, and MTD, this position will be responsible for developing SOPs/TTPS for maintaining agent handlers, repositories, Microsoft Intune, Microsoft 365 Defender, and Microsoft Defender for Cloud Apps and support the transition from DoD Enterprise Capabilities to emerging Microsoft technologies. This position will deploy complex architectures based on Microsoft Intune, Endpoint manager, and 365 Defender center, coordinating efforts to test and verify solutions for future implementation. This position requires the ability to work core hours between 6:00 am to 6:00 pm during the week and participate in on-call rotation for after-hours support. Requirements Experience with Microsoft Intune and Microsoft Defender Experience with server management, including virtualization, and Windows server administration Experience with scripting languages, including PowerShell and KQL Experience with Azure in hybrid environments, Active Directory on prem and cloud, and Group Policies Experience with end user technology deployments and upgrades Experience with supporting Microsoft Defender for Endpoint (MDE), Microsoft Defender for Office (MDO), Microsoft Defender for Cloud and Sentinel, Microsoft Defender for Endpoint Mobile Threat Defense (MTD), Microsoft Endpoint Manager Admin Center, Microsoft Security Administration, Microsoft Office 365, and Microsoft Configuration management service center Active TS/SCI clearance; willingness to take a polygraph exam HS diploma or GED and 7+ years of experience with supporting IT projects and activities, Associate's degree and 5+ years of experience with supporting IT projects and activities, or Bachelor's degree and 3+ years of experience with supporting IT projects and activities DoD 8570 IAT Level II Certification, including CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP Certification Ability to obtain a DoD 8570.01-M Cybersecurity Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification within 60 days of start date Optional Qualifications: Experience in managing and administrating systems associated with software deployments, patches, and scripts to a large enterprise environment Experience in collaborating with peers and managers to identify, manage, and generate appropriate reporting and metrics standards based on deployments and management needs Experience with managing complex IT projects involving multiple teams or organizations Experience with tracking and resolving incidents via ticket queue Experience with providing hands on PC and mobile support to end users Ability to be an active member and solve problems by recommending outside-the-box, cost effective solutions Ability to pay strict attention to detail Possession of excellent written and verbal communication and interpersonal skills Benefits Essential Network Security (ENS) Solutions, LLC is a service-disabled veteran owned, highly regarded IT consulting and management firm. ENS consults for the Department of Defense (DoD) and Intelligence Community (IC) providing innovative solutions in the core competency area of Identity, Credential and Access Management (ICAM), Software Development, Cyber and Network Security, System Engineering, Program/Project Management, IT support, Solutions, and Services that yield enduring results. Our strong technical and management experts have been able to maintain a standard of excellence in their relationships while delivering innovative, scalable and collaborative infrastructure to our clients. Why ENS? Free Platinum-Level Medical/Dental/Vision coverage, 100% paid for by ENS 401k Contribution from Day 1 PTO + 11 Paid Federal Holidays Long & Short Term Disability Insurance Group Term Life Insurance Tuition, Certification & Professional Development Assistance Workers' Compensation Relocation Assistance Candidate AI Usage Policy AI tools are an important part of daily work at ENS Solutions, and we are committed to their responsible and ethical use. To ensure a fair and equitable candidate evaluation based on individual skills, knowledge, and experience, candidates are not permitted to use artificial intelligence or other assistive tools during interviews, whether in person or virtual, unless explicit permission has been granted in advance.
Security Architect (Microsoft Security & Azure) Location: Remote (U.S.) Preference: Middle Tennessee candidates preferred Type: Direct Hire Compensation: $170,000 Base Salary Start Date: ASAP We're looking for a Security Architect to help lead a major security transformation for a growing healthcare organization. This is a rare opportunity to step into a highly visible role and help shape the future of enterprise security. You'll work closely with technology leadership to modernize security capabilities, evaluate existing tooling, and build a long-term security strategy centered around the Microsoft ecosystem. The environment is heavily invested in Microsoft technologies, and this role will focus on identity, cloud security, endpoint protection, monitoring, governance, and Zero Trust architecture. If you enjoy building security programs, influencing architecture decisions, and solving complex problems across a large organization, this role offers the chance to make a lasting impact. What You'll Be Doing Design and maintain enterprise security architecture across Microsoft 365 and Azure environments Develop security standards, roadmaps, governance models, and reference architectures Evaluate existing security tools and recommend modernization strategies Lead Zero Trust initiatives across identity, endpoint, application, and cloud environments Architect solutions using Microsoft Entra ID, Intune, Defender, Sentinel, Purview, and Azure Security services Partner with infrastructure, compliance, application, and security teams on strategic initiatives Conduct architecture reviews, risk assessments, and security evaluations Improve monitoring, threat detection, and incident response capabilities Support cloud adoption, acquisitions, and technology transformation projects Advise technical and business leaders on security risks, tradeoffs, and remediation priorities What We're Looking For Healthcare industry experience is required 7+ years of cybersecurity, cloud security, infrastructure security, or security architecture experience 5+ years designing and implementing Microsoft security solutions in enterprise environments Strong experience with: Microsoft Entra ID Microsoft Defender XDR Microsoft Sentinel Microsoft Intune Microsoft Purview Azure Security Services Experience implementing or supporting Zero Trust security strategies Experience developing security architectures, standards, and remediation roadmaps Ability to communicate effectively with both technical and executive stakeholders Nice to Have CISSP, CISM, CCSP, SC-100, or similar certifications PowerShell or Microsoft Graph experience Identity governance and privileged access management experience Experience supporting healthcare provider organizations Experience with acquisitions, integrations, or large-scale transformations SIEM/SOAR architecture experience By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
09/26/2026
Full time
Security Architect (Microsoft Security & Azure) Location: Remote (U.S.) Preference: Middle Tennessee candidates preferred Type: Direct Hire Compensation: $170,000 Base Salary Start Date: ASAP We're looking for a Security Architect to help lead a major security transformation for a growing healthcare organization. This is a rare opportunity to step into a highly visible role and help shape the future of enterprise security. You'll work closely with technology leadership to modernize security capabilities, evaluate existing tooling, and build a long-term security strategy centered around the Microsoft ecosystem. The environment is heavily invested in Microsoft technologies, and this role will focus on identity, cloud security, endpoint protection, monitoring, governance, and Zero Trust architecture. If you enjoy building security programs, influencing architecture decisions, and solving complex problems across a large organization, this role offers the chance to make a lasting impact. What You'll Be Doing Design and maintain enterprise security architecture across Microsoft 365 and Azure environments Develop security standards, roadmaps, governance models, and reference architectures Evaluate existing security tools and recommend modernization strategies Lead Zero Trust initiatives across identity, endpoint, application, and cloud environments Architect solutions using Microsoft Entra ID, Intune, Defender, Sentinel, Purview, and Azure Security services Partner with infrastructure, compliance, application, and security teams on strategic initiatives Conduct architecture reviews, risk assessments, and security evaluations Improve monitoring, threat detection, and incident response capabilities Support cloud adoption, acquisitions, and technology transformation projects Advise technical and business leaders on security risks, tradeoffs, and remediation priorities What We're Looking For Healthcare industry experience is required 7+ years of cybersecurity, cloud security, infrastructure security, or security architecture experience 5+ years designing and implementing Microsoft security solutions in enterprise environments Strong experience with: Microsoft Entra ID Microsoft Defender XDR Microsoft Sentinel Microsoft Intune Microsoft Purview Azure Security Services Experience implementing or supporting Zero Trust security strategies Experience developing security architectures, standards, and remediation roadmaps Ability to communicate effectively with both technical and executive stakeholders Nice to Have CISSP, CISM, CCSP, SC-100, or similar certifications PowerShell or Microsoft Graph experience Identity governance and privileged access management experience Experience supporting healthcare provider organizations Experience with acquisitions, integrations, or large-scale transformations SIEM/SOAR architecture experience By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
Cloud Architect (Azure) Location: Remote (U.S.) Preference: Middle Tennessee candidates preferred Type: Direct Hire Compensation: $170,000 Base Salary Travel: Minimal travel, occasional trips to Louisville, KY as needed We're looking for a Cloud Architect to help lead a major infrastructure transformation within a healthcare environment. The organization is in the middle of bringing technology services in-house and moving away from a long-standing managed environment. A big part of that effort involves evaluating existing workloads, determining what belongs in Azure, and helping build a long-term cloud strategy that makes sense for both the business and its clinical operations. This isn't a role where you'll inherit a large architecture team. We're looking for someone comfortable operating independently, making recommendations, and helping establish best practices as cloud capabilities continue to grow. If you've led Azure initiatives, assessed legacy workloads, and enjoy helping organizations modernize their infrastructure, this is the kind of opportunity where your work will be highly visible. What You'll Be Working On Evaluate existing infrastructure and determine cloud readiness for Azure migration Develop cloud architecture standards, roadmaps, and long-term strategy Partner with infrastructure, security, and business teams on modernization efforts Lead architectural decisions around Azure services, governance, scalability, and resiliency Design secure and sustainable cloud solutions for both business and clinical environments Support data center transformation initiatives and workload migrations Assist with acquisition-related integrations and cloud planning Create architecture documentation, standards, and implementation guidance Advise leadership on cloud adoption, modernization priorities, and technology investments What We're Looking For Healthcare industry experience is required 7+ years of infrastructure, cloud, or enterprise architecture experience Strong Azure architecture experience in large environments Experience evaluating and migrating on-prem workloads to Azure Experience creating cloud strategy, governance models, and architectural standards Strong understanding of Microsoft cloud technologies and ecosystem services Experience working directly with technical and business stakeholders Ability to operate independently and drive initiatives forward Strongly Preferred Microsoft Azure Solutions Architect experience Microsoft 365 architecture experience Microsoft Entra ID Hybrid identity environments Exchange Online Intune SharePoint Online PowerShell automation Microsoft Graph Enterprise migration and modernization projects Multi-site healthcare environments By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
09/26/2026
Full time
Cloud Architect (Azure) Location: Remote (U.S.) Preference: Middle Tennessee candidates preferred Type: Direct Hire Compensation: $170,000 Base Salary Travel: Minimal travel, occasional trips to Louisville, KY as needed We're looking for a Cloud Architect to help lead a major infrastructure transformation within a healthcare environment. The organization is in the middle of bringing technology services in-house and moving away from a long-standing managed environment. A big part of that effort involves evaluating existing workloads, determining what belongs in Azure, and helping build a long-term cloud strategy that makes sense for both the business and its clinical operations. This isn't a role where you'll inherit a large architecture team. We're looking for someone comfortable operating independently, making recommendations, and helping establish best practices as cloud capabilities continue to grow. If you've led Azure initiatives, assessed legacy workloads, and enjoy helping organizations modernize their infrastructure, this is the kind of opportunity where your work will be highly visible. What You'll Be Working On Evaluate existing infrastructure and determine cloud readiness for Azure migration Develop cloud architecture standards, roadmaps, and long-term strategy Partner with infrastructure, security, and business teams on modernization efforts Lead architectural decisions around Azure services, governance, scalability, and resiliency Design secure and sustainable cloud solutions for both business and clinical environments Support data center transformation initiatives and workload migrations Assist with acquisition-related integrations and cloud planning Create architecture documentation, standards, and implementation guidance Advise leadership on cloud adoption, modernization priorities, and technology investments What We're Looking For Healthcare industry experience is required 7+ years of infrastructure, cloud, or enterprise architecture experience Strong Azure architecture experience in large environments Experience evaluating and migrating on-prem workloads to Azure Experience creating cloud strategy, governance models, and architectural standards Strong understanding of Microsoft cloud technologies and ecosystem services Experience working directly with technical and business stakeholders Ability to operate independently and drive initiatives forward Strongly Preferred Microsoft Azure Solutions Architect experience Microsoft 365 architecture experience Microsoft Entra ID Hybrid identity environments Exchange Online Intune SharePoint Online PowerShell automation Microsoft Graph Enterprise migration and modernization projects Multi-site healthcare environments By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
Key Responsibilities Data Platform & Migration Design the firm"s data architecture in Microsoft Fabric, including a Lakehouse / medallion (bronze-silver-gold) model, and lead the migration of legacy SQL databases, ETL server processes, and aging vendor reporting into it. Establish engineering standards for source control, CI/CD, testing, monitoring, and documentation across the data estate. Define how data is delivered to and interacts with users through semantic models, Power BI, and self-service tooling, with a clear vision for the end-user experience. Leverage AI (Microsoft Copilot, agents, and AI-assisted development) to accelerate delivery and unlock new analytical and operational capabilities. Operations & Reliability Partner with business teams to identify opportunities to add efficiency or capability through technology, and translate those into architected solutions. Build resilient, stress-tested solutions and lead root-cause diagnosis when processes fail. Document architecture, dependencies, and runbooks so critical knowledge is shared, not siloed. Required Qualifications Bachelor's degree in a related field, or equivalent demonstrated experience defined as eight (8) or more years in data engineering/architecture roles, including at least one delivered production migration to a modern data platform. Relevant certifications (e.g., Microsoft DP-600 Fabric Analytics Engineer or Azure Data Engineer Associate) may substitute for formal education. Demonstrated experience architecting and delivering modern data platforms. Direct Microsoft Fabric experience is strongly preferred; equivalent, transferable experience on Azure Synapse, Databricks, or a comparable Lakehouse platform Strong SQL engineering skills (not just data extraction) and proven ability to model, transform, and land data in its intended destination. Hands-on experience building data pipelines / ETL and integrating disparate systems via APIs. Proficiency with Power BI semantic models and report development. Comfort working in a Microsoft 365 / Azure ecosystem (OneDrive, SharePoint, Teams, Entra).
09/24/2026
Full time
Key Responsibilities Data Platform & Migration Design the firm"s data architecture in Microsoft Fabric, including a Lakehouse / medallion (bronze-silver-gold) model, and lead the migration of legacy SQL databases, ETL server processes, and aging vendor reporting into it. Establish engineering standards for source control, CI/CD, testing, monitoring, and documentation across the data estate. Define how data is delivered to and interacts with users through semantic models, Power BI, and self-service tooling, with a clear vision for the end-user experience. Leverage AI (Microsoft Copilot, agents, and AI-assisted development) to accelerate delivery and unlock new analytical and operational capabilities. Operations & Reliability Partner with business teams to identify opportunities to add efficiency or capability through technology, and translate those into architected solutions. Build resilient, stress-tested solutions and lead root-cause diagnosis when processes fail. Document architecture, dependencies, and runbooks so critical knowledge is shared, not siloed. Required Qualifications Bachelor's degree in a related field, or equivalent demonstrated experience defined as eight (8) or more years in data engineering/architecture roles, including at least one delivered production migration to a modern data platform. Relevant certifications (e.g., Microsoft DP-600 Fabric Analytics Engineer or Azure Data Engineer Associate) may substitute for formal education. Demonstrated experience architecting and delivering modern data platforms. Direct Microsoft Fabric experience is strongly preferred; equivalent, transferable experience on Azure Synapse, Databricks, or a comparable Lakehouse platform Strong SQL engineering skills (not just data extraction) and proven ability to model, transform, and land data in its intended destination. Hands-on experience building data pipelines / ETL and integrating disparate systems via APIs. Proficiency with Power BI semantic models and report development. Comfort working in a Microsoft 365 / Azure ecosystem (OneDrive, SharePoint, Teams, Entra).
D365 F&O Solution Architect / Senior L3 Support Engineer DETAILS Location: 100% Remote Position Type: 6M C2H Hourly / Salary: to $160K (based on experience) JOB SUMMARY Vaco is currently seeking a D365 F&O Solution Architect / Senior L3 Support Engineer for a 6M C2H opportunity that is 100% remote. The D365 F&O Solution Architect / Senior L3 Support Engineer will serve as the senior technical lead for a key enterprise client, driving quarterly health assessments, architectural recommendations, and L3 escalation support. The D365 F&O Solution Architect / Senior L3 Support Engineer is a client-facing role blending deep platform expertise with advisory delivery in a managed services environment, working alongside a primarily India-based team to exceed support outcomes. The D365 F&O Solution Architect / Senior L3 Support Engineer must bring solution architecture experience, strong Dynamics knowledge, and the ability to guide clients through optimizations without direct hands-on implementation. D365 Architecture Leadership Architecture / Operational Support Balance - 50/50 Strategic / Operational Support Driving Strategic Architecture Activities / Supporting Ticket Resolution / Escalations D365 Architecture - Providing Senior Architect-Level Expertise for D365 Platform Health Assessments / Architectural Reviews / Platform Optimization Initiatives D365 F&O Platform Assessments - Leading Quarterly Health Assessments / Architectural Reviews of D365 F&O Environments in Partnership With Customers and MS Customization / Configuration Analysis - Evaluating Customizations / Extensions / Configurations to Identify Performance Bottlenecks / Stability Risks / Architectural Inefficiencies Architecture Optimization / Advisory Services - Providing Actionable Recommendations Around Architecture Improvements / Best Practices / Remediation Strategies to Improve Platform Performance / Reliability / Scalability System Health / Performance Evaluation - Conducting Deep-Dive Analysis into How Platform Customizations / Configuration Decisions Impact Overall System Stability / Health Client Advisory / Technical Consulting - Delivering Findings / Architecture Diagrams / Strategic Guidance Implementing Recommendations via Consultative Engagements without Direct Hands-On System Modification Responsibilities Client Advisory / Strategic Guidance Quarterly Evaluations - Leading Client-Facing Quarterly Evaluations with MS Focused on Best Practices / Recommendations / Platform Improvement Opportunities Customer Engagement / Advisory Leadership - Confidently Interfacing Directly with Customers during Health Assessments / Technical Discussions / Architecture Reviews Pre-Sales Technical Support - Participating in Pre-Sales Conversations with Prospective Large D365 Customers to Demonstrate Technical Depth / Platform Expertise / Service Offerings Technical-to-Business Translation - Translating Complex Technical Concepts into Clear / Business-Friendly Recommendations / Actionable Guidance Stakeholder Trust / Relationship Building - Building Strong Technical Credibility / Trust with Client Stakeholders via Consistent Advisory Engagement / Expertise L3 Escalation / Delivery Oversight D365 Technical Escalation Authority - Primary Escalation Point / Highest Technical Authority for Distributed Dynamics Support Teams (L2/L3 Offshore Delivery Model) Major Incident / Production Support (P1/P2) - Handling Complex High-Impact Production Issues Advanced Troubleshooting / Root Cause Analysis Overflow Customer Support - Providing Supplemental Support on Direct Customer Tickets Maintaining Service Continuity / SLA Compliance Microsoft Escalation Management - Opening / Managing / Driving Escalations with Microsoft Support for Critical Platform Issues / Defects Production Stability / Risk Mitigation - Ensuring System Stability via Proactive Technical Guidance / Preventive Actions / Permanent Corrective Fix Implementation JOB REQUIREMENTS D365 F&O Platform Architecture (expert) - Assess / Optimize Large-Scale / Multi-Company D365 Environments D365 F&O Architecture / Metadata Model / Batch Framework / Data Entities / Security Model Diagnostics / Performance Troubleshooting (advanced) - Identifying Root Causes of Performance / Stability Trace Parser / PerfTimer / X Profiler / LCS Diagnostics / Azure Monitoring / Application Insights Database / Batch Performance (advanced) - Batch Processing Optimization / Troubleshooting SQL Server / Azure SQL Query Optimization / Indexing / Performance Tuning Development / Customization Knowledge (advanced / light hands-on) - X / Extensions / Chain of Command / Event Handlers (Review / Critique Custom Code) NOT Heavy Development Focused on Reviewing / Guiding vs. Writing Significant New Code Azure / Integration Awareness (working knowledge) - Azure Services (Logic Apps / Service Bus / Azure Functions / DataFactory, etc.) Relating to D365 Integrations PRFEFERRED (not required) MS Certifications - MB-500 / MB-700 / MB-920, etc. Microsoft / Vendor Health Assessments - Participating in Quarterly MS-Led / Vendor-Led Platform Health Assessments / Reviews Pre-Sales Technical Exposure - Pre-Sales Technical Discussions Supporting Solution Positioning / Customer Advisory Engagements DevOps / ALM Awareness (understanding) - Supporting DevOps / Application Lifecycle Management Concepts (Azure DevOps / LCS / Deployable Packages) Determining compensation for this role (and others) at Vaco/Highspring depends upon a wide array of factors including but not limited to the individual's skill sets, experience and training, licensure and certifications, office location and other geographic considerations, as well as other business and organizational needs. With that said, as required by local law in geographies that require salary range disclosure, Vaco/Highspring notes the salary range for the role is noted in this job posting. The individual may also be eligible for discretionary bonuses, and can participate in medical, dental, and vision benefits as well as the company's 401(k) retirement plan. Additional disclaimer: Unless otherwise noted in the job description, the position Vaco/Highspring is filing for is occupied. Please note, however, that Vaco/Highspring is regularly asked to provide talent to other organizations. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. Submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. Further assessment of candidates beyond this initial phase within Vaco/Highspring will be otherwise assessed by recruiters and hiring managers. Vaco/Highspring does not have knowledge of the tools used by its clients in making final hiring decisions and cannot opine on their use of AI products. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally . click apply for full job details
09/24/2026
Full time
D365 F&O Solution Architect / Senior L3 Support Engineer DETAILS Location: 100% Remote Position Type: 6M C2H Hourly / Salary: to $160K (based on experience) JOB SUMMARY Vaco is currently seeking a D365 F&O Solution Architect / Senior L3 Support Engineer for a 6M C2H opportunity that is 100% remote. The D365 F&O Solution Architect / Senior L3 Support Engineer will serve as the senior technical lead for a key enterprise client, driving quarterly health assessments, architectural recommendations, and L3 escalation support. The D365 F&O Solution Architect / Senior L3 Support Engineer is a client-facing role blending deep platform expertise with advisory delivery in a managed services environment, working alongside a primarily India-based team to exceed support outcomes. The D365 F&O Solution Architect / Senior L3 Support Engineer must bring solution architecture experience, strong Dynamics knowledge, and the ability to guide clients through optimizations without direct hands-on implementation. D365 Architecture Leadership Architecture / Operational Support Balance - 50/50 Strategic / Operational Support Driving Strategic Architecture Activities / Supporting Ticket Resolution / Escalations D365 Architecture - Providing Senior Architect-Level Expertise for D365 Platform Health Assessments / Architectural Reviews / Platform Optimization Initiatives D365 F&O Platform Assessments - Leading Quarterly Health Assessments / Architectural Reviews of D365 F&O Environments in Partnership With Customers and MS Customization / Configuration Analysis - Evaluating Customizations / Extensions / Configurations to Identify Performance Bottlenecks / Stability Risks / Architectural Inefficiencies Architecture Optimization / Advisory Services - Providing Actionable Recommendations Around Architecture Improvements / Best Practices / Remediation Strategies to Improve Platform Performance / Reliability / Scalability System Health / Performance Evaluation - Conducting Deep-Dive Analysis into How Platform Customizations / Configuration Decisions Impact Overall System Stability / Health Client Advisory / Technical Consulting - Delivering Findings / Architecture Diagrams / Strategic Guidance Implementing Recommendations via Consultative Engagements without Direct Hands-On System Modification Responsibilities Client Advisory / Strategic Guidance Quarterly Evaluations - Leading Client-Facing Quarterly Evaluations with MS Focused on Best Practices / Recommendations / Platform Improvement Opportunities Customer Engagement / Advisory Leadership - Confidently Interfacing Directly with Customers during Health Assessments / Technical Discussions / Architecture Reviews Pre-Sales Technical Support - Participating in Pre-Sales Conversations with Prospective Large D365 Customers to Demonstrate Technical Depth / Platform Expertise / Service Offerings Technical-to-Business Translation - Translating Complex Technical Concepts into Clear / Business-Friendly Recommendations / Actionable Guidance Stakeholder Trust / Relationship Building - Building Strong Technical Credibility / Trust with Client Stakeholders via Consistent Advisory Engagement / Expertise L3 Escalation / Delivery Oversight D365 Technical Escalation Authority - Primary Escalation Point / Highest Technical Authority for Distributed Dynamics Support Teams (L2/L3 Offshore Delivery Model) Major Incident / Production Support (P1/P2) - Handling Complex High-Impact Production Issues Advanced Troubleshooting / Root Cause Analysis Overflow Customer Support - Providing Supplemental Support on Direct Customer Tickets Maintaining Service Continuity / SLA Compliance Microsoft Escalation Management - Opening / Managing / Driving Escalations with Microsoft Support for Critical Platform Issues / Defects Production Stability / Risk Mitigation - Ensuring System Stability via Proactive Technical Guidance / Preventive Actions / Permanent Corrective Fix Implementation JOB REQUIREMENTS D365 F&O Platform Architecture (expert) - Assess / Optimize Large-Scale / Multi-Company D365 Environments D365 F&O Architecture / Metadata Model / Batch Framework / Data Entities / Security Model Diagnostics / Performance Troubleshooting (advanced) - Identifying Root Causes of Performance / Stability Trace Parser / PerfTimer / X Profiler / LCS Diagnostics / Azure Monitoring / Application Insights Database / Batch Performance (advanced) - Batch Processing Optimization / Troubleshooting SQL Server / Azure SQL Query Optimization / Indexing / Performance Tuning Development / Customization Knowledge (advanced / light hands-on) - X / Extensions / Chain of Command / Event Handlers (Review / Critique Custom Code) NOT Heavy Development Focused on Reviewing / Guiding vs. Writing Significant New Code Azure / Integration Awareness (working knowledge) - Azure Services (Logic Apps / Service Bus / Azure Functions / DataFactory, etc.) Relating to D365 Integrations PRFEFERRED (not required) MS Certifications - MB-500 / MB-700 / MB-920, etc. Microsoft / Vendor Health Assessments - Participating in Quarterly MS-Led / Vendor-Led Platform Health Assessments / Reviews Pre-Sales Technical Exposure - Pre-Sales Technical Discussions Supporting Solution Positioning / Customer Advisory Engagements DevOps / ALM Awareness (understanding) - Supporting DevOps / Application Lifecycle Management Concepts (Azure DevOps / LCS / Deployable Packages) Determining compensation for this role (and others) at Vaco/Highspring depends upon a wide array of factors including but not limited to the individual's skill sets, experience and training, licensure and certifications, office location and other geographic considerations, as well as other business and organizational needs. With that said, as required by local law in geographies that require salary range disclosure, Vaco/Highspring notes the salary range for the role is noted in this job posting. The individual may also be eligible for discretionary bonuses, and can participate in medical, dental, and vision benefits as well as the company's 401(k) retirement plan. Additional disclaimer: Unless otherwise noted in the job description, the position Vaco/Highspring is filing for is occupied. Please note, however, that Vaco/Highspring is regularly asked to provide talent to other organizations. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. Submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. Further assessment of candidates beyond this initial phase within Vaco/Highspring will be otherwise assessed by recruiters and hiring managers. Vaco/Highspring does not have knowledge of the tools used by its clients in making final hiring decisions and cannot opine on their use of AI products. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally . click apply for full job details
Desktop Engineer Role Summary The Desktop Engineer is responsible for delivering a secure, scalable, and modern end-user computing experience across the enterprise. This position owns the technologies, processes, and standards that support workstation deployment, device management, software delivery, endpoint security, and lifecycle governance. Working closely with infrastructure, security, and support teams, this individual will develop solutions that improve operational efficiency, enhance security posture, and simplify device administration across a diverse endpoint ecosystem. What You'll Do Build and Optimize Endpoint Services Design and maintain enterprise endpoint management solutions. Define standards for workstation provisioning, configuration, and ongoing support. Develop automated deployment and enrollment processes for corporate devices. Establish and maintain endpoint governance, policies, and technical standards. Drive modernization efforts that improve the employee technology experience. Manage Device Lifecycle Operations Oversee endpoint deployment from initial provisioning through retirement. Maintain operating system upgrade strategies and refresh programs. Manage enterprise desktop and laptop standards. Ensure consistent configurations across user populations and business units. Support multi-platform endpoint environments, including Windows and mobile technologies. Deliver Software and Updates Develop application deployment strategies and packaging standards. Manage operating system, security, and application update processes. Coordinate testing, validation, and rollout activities for enterprise releases. Identify opportunities to automate software distribution and maintenance tasks. Minimize business disruption while maintaining current and secure systems. Strengthen Endpoint Security Implement controls that support organizational cybersecurity objectives. Partner with security teams to address vulnerabilities and compliance requirements. Monitor endpoint health, policy enforcement, and device compliance metrics. Support hardening initiatives and security remediation efforts. Participate in incident response and root cause analysis when endpoint systems are involved. Advanced Technical Support Serve as the highest level of escalation for endpoint-related issues. Investigate complex operating system, application, and device management problems. Perform technical analysis and recommend long-term solutions to recurring issues. Mentor support personnel and provide technical guidance across IT teams. Reporting, Analytics, and Process Improvement Create dashboards and reporting that provide visibility into asset health, deployment success, compliance, and software utilization. Analyze trends and recommend improvements to endpoint operations. Document architecture, standards, procedures, and support models. Continuously evaluate emerging technologies and recommend enhancements. Minimum Qualifications Professional Experience Five or more years of experience supporting and engineering enterprise endpoint environments. Demonstrated experience administering modern device management solutions. Experience managing large-scale workstation deployments and operating system migrations. Background supporting structured release, patching, and change management processes. Technical Expertise Experience in several of the following areas: Microsoft Intune Microsoft Endpoint Configuration Manager (MECM/SCCM) Windows endpoint administration Microsoft 365 endpoint technologies Active Directory Group Policy administration Endpoint compliance and security controls Software packaging and deployment Endpoint automation and scripting Education Bachelor's degree in Information Technology, Computer Science, Engineering, or a related discipline; equivalent professional experience may be considered in lieu of a degree. Required Credential Microsoft 365 Certified: Endpoint Administrator Associate Preferred Qualifications Experience with Azure-based device management solutions. Familiarity with identity and access management technologies. Knowledge of networking concepts, including DNS, DHCP, TCP/IP, and VPN technologies. Experience with desktop, application, or virtual desktop virtualization platforms. Exposure to macOS, Linux, and mobile device management environments. Proficiency with PowerShell or similar automation tools. Preferred Certifications CompTIA A+ CompTIA Network+ CompTIA Security+ Microsoft Azure Fundamentals Azure Administrator Associate Success Profile The successful candidate combines deep technical expertise with a continuous-improvement mindset. They are comfortable designing solutions, leading initiatives, resolving complex technical issues, and influencing technology standards across the organization. This individual is passionate about automation, endpoint security, operational excellence, and creating a reliable, modern computing experience for employees. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
09/24/2026
Full time
Desktop Engineer Role Summary The Desktop Engineer is responsible for delivering a secure, scalable, and modern end-user computing experience across the enterprise. This position owns the technologies, processes, and standards that support workstation deployment, device management, software delivery, endpoint security, and lifecycle governance. Working closely with infrastructure, security, and support teams, this individual will develop solutions that improve operational efficiency, enhance security posture, and simplify device administration across a diverse endpoint ecosystem. What You'll Do Build and Optimize Endpoint Services Design and maintain enterprise endpoint management solutions. Define standards for workstation provisioning, configuration, and ongoing support. Develop automated deployment and enrollment processes for corporate devices. Establish and maintain endpoint governance, policies, and technical standards. Drive modernization efforts that improve the employee technology experience. Manage Device Lifecycle Operations Oversee endpoint deployment from initial provisioning through retirement. Maintain operating system upgrade strategies and refresh programs. Manage enterprise desktop and laptop standards. Ensure consistent configurations across user populations and business units. Support multi-platform endpoint environments, including Windows and mobile technologies. Deliver Software and Updates Develop application deployment strategies and packaging standards. Manage operating system, security, and application update processes. Coordinate testing, validation, and rollout activities for enterprise releases. Identify opportunities to automate software distribution and maintenance tasks. Minimize business disruption while maintaining current and secure systems. Strengthen Endpoint Security Implement controls that support organizational cybersecurity objectives. Partner with security teams to address vulnerabilities and compliance requirements. Monitor endpoint health, policy enforcement, and device compliance metrics. Support hardening initiatives and security remediation efforts. Participate in incident response and root cause analysis when endpoint systems are involved. Advanced Technical Support Serve as the highest level of escalation for endpoint-related issues. Investigate complex operating system, application, and device management problems. Perform technical analysis and recommend long-term solutions to recurring issues. Mentor support personnel and provide technical guidance across IT teams. Reporting, Analytics, and Process Improvement Create dashboards and reporting that provide visibility into asset health, deployment success, compliance, and software utilization. Analyze trends and recommend improvements to endpoint operations. Document architecture, standards, procedures, and support models. Continuously evaluate emerging technologies and recommend enhancements. Minimum Qualifications Professional Experience Five or more years of experience supporting and engineering enterprise endpoint environments. Demonstrated experience administering modern device management solutions. Experience managing large-scale workstation deployments and operating system migrations. Background supporting structured release, patching, and change management processes. Technical Expertise Experience in several of the following areas: Microsoft Intune Microsoft Endpoint Configuration Manager (MECM/SCCM) Windows endpoint administration Microsoft 365 endpoint technologies Active Directory Group Policy administration Endpoint compliance and security controls Software packaging and deployment Endpoint automation and scripting Education Bachelor's degree in Information Technology, Computer Science, Engineering, or a related discipline; equivalent professional experience may be considered in lieu of a degree. Required Credential Microsoft 365 Certified: Endpoint Administrator Associate Preferred Qualifications Experience with Azure-based device management solutions. Familiarity with identity and access management technologies. Knowledge of networking concepts, including DNS, DHCP, TCP/IP, and VPN technologies. Experience with desktop, application, or virtual desktop virtualization platforms. Exposure to macOS, Linux, and mobile device management environments. Proficiency with PowerShell or similar automation tools. Preferred Certifications CompTIA A+ CompTIA Network+ CompTIA Security+ Microsoft Azure Fundamentals Azure Administrator Associate Success Profile The successful candidate combines deep technical expertise with a continuous-improvement mindset. They are comfortable designing solutions, leading initiatives, resolving complex technical issues, and influencing technology standards across the organization. This individual is passionate about automation, endpoint security, operational excellence, and creating a reliable, modern computing experience for employees. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
Manager, Infrastructure Location: San Antonio, TX Employment Type: Full-Time, Direct Hire Work Authorization: No sponsorship available Position Overview We are seeking an experienced Manager, Infrastructure to lead and support an enterprise IT infrastructure environment. This position will be responsible for the strategy, reliability, security, and day-to-day operation of core infrastructure while leading and developing a technical team. The ideal candidate is a strong people leader who remains technically hands-on and can serve as an escalation point for complex infrastructure issues. Key Responsibilities Lead and develop the infrastructure team while providing technical direction and mentorship. Oversee enterprise networking, servers, cloud platforms, virtualization, storage, and related infrastructure. Manage and support Microsoft technologies including Azure, Microsoft 365, Intune, and Entra ID. Support virtualized environments utilizing technologies such as VMware, Hyper-V, and Nutanix. Ensure infrastructure environments are secure, reliable, scalable, and highly available. Lead infrastructure upgrades, migrations, implementations, and modernization initiatives. Support disaster recovery, business continuity, incident response, and infrastructure security initiatives. Partner with security, application, and business teams on technology projects and organizational priorities. Identify opportunities to improve infrastructure through automation and scripting. Manage vendors, technology partners, licensing, and infrastructure-related services. Qualifications 8+ years of experience in infrastructure, systems, network engineering, or a related technology discipline. 3+ years of experience leading or managing technical teams. Strong knowledge of enterprise networking, systems, cloud, virtualization, and storage. Experience with Microsoft Azure and Microsoft 365 technologies. Experience with enterprise virtualization platforms. Strong understanding of networking concepts, firewalls, VPNs, and network security. Experience with infrastructure security, disaster recovery, and business continuity. Familiarity with automation or scripting technologies such as PowerShell or Python. Strong troubleshooting, communication, and leadership skills. Ability to remain technically engaged while managing and developing a team. Preferred Qualifications Experience working within security or compliance frameworks such as NIST, CMMC, or SOC 2. Experience with infrastructure automation and Microsoft Graph API. Relevant certifications such as CCNP, Azure Solutions Architect Expert, or similar advanced infrastructure/cloud certifications. Experience supporting large or complex enterprise environments. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.
09/24/2026
Full time
Manager, Infrastructure Location: San Antonio, TX Employment Type: Full-Time, Direct Hire Work Authorization: No sponsorship available Position Overview We are seeking an experienced Manager, Infrastructure to lead and support an enterprise IT infrastructure environment. This position will be responsible for the strategy, reliability, security, and day-to-day operation of core infrastructure while leading and developing a technical team. The ideal candidate is a strong people leader who remains technically hands-on and can serve as an escalation point for complex infrastructure issues. Key Responsibilities Lead and develop the infrastructure team while providing technical direction and mentorship. Oversee enterprise networking, servers, cloud platforms, virtualization, storage, and related infrastructure. Manage and support Microsoft technologies including Azure, Microsoft 365, Intune, and Entra ID. Support virtualized environments utilizing technologies such as VMware, Hyper-V, and Nutanix. Ensure infrastructure environments are secure, reliable, scalable, and highly available. Lead infrastructure upgrades, migrations, implementations, and modernization initiatives. Support disaster recovery, business continuity, incident response, and infrastructure security initiatives. Partner with security, application, and business teams on technology projects and organizational priorities. Identify opportunities to improve infrastructure through automation and scripting. Manage vendors, technology partners, licensing, and infrastructure-related services. Qualifications 8+ years of experience in infrastructure, systems, network engineering, or a related technology discipline. 3+ years of experience leading or managing technical teams. Strong knowledge of enterprise networking, systems, cloud, virtualization, and storage. Experience with Microsoft Azure and Microsoft 365 technologies. Experience with enterprise virtualization platforms. Strong understanding of networking concepts, firewalls, VPNs, and network security. Experience with infrastructure security, disaster recovery, and business continuity. Familiarity with automation or scripting technologies such as PowerShell or Python. Strong troubleshooting, communication, and leadership skills. Ability to remain technically engaged while managing and developing a team. Preferred Qualifications Experience working within security or compliance frameworks such as NIST, CMMC, or SOC 2. Experience with infrastructure automation and Microsoft Graph API. Relevant certifications such as CCNP, Azure Solutions Architect Expert, or similar advanced infrastructure/cloud certifications. Experience supporting large or complex enterprise environments. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. EEO Notice Vaco by Highspring is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race (including but not limited to traits historically associated with race such as hair texture and hair style), color, sex (includes pregnancy or related conditions), religion or creed, national origin, citizenship, age, disability, status as a veteran, union membership, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, political affiliation, or any other protected characteristics as required by federal, state or local law. Vaco by Highspring and its parents, affiliates, and subsidiaries are committed to the full inclusion of all qualified individuals. As part of this commitment, Vaco by Highspring and its parents, affiliates, and subsidiaries will ensure that persons with disabilities are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact . Vaco by Highspring also wants all applicants to know their rights that workplace discrimination is illegal. Representation Notice By submitting to this position, you agree that you will be giving Vaco by Highspring the exclusive right to present your as a candidate for the foregoing employment opportunity. You further agree that you have represented information about yourself accurately and have not affirmatively misrepresented your qualifications. You also agree to maintain as confidential, to the fullest extent permitted by law, any information you learn from Vaco by Highspring about the position and you will limit disclosure of information about the position only to the extent necessary to perform any obligations in furtherance of your application. In exchange, Vaco by Highspring agrees to exercise reasonable efforts to represent you through all solicitation, job screening and resume dispersal. For residents of Ontario, Canada: Based on Highspring's discussions with its Client, Highspring's understanding is that this position for employment is a current vacancy (either through Highspring as a contractor or with the client directly). Privacy Notice Vaco by Highspring and its parents, affiliates, and subsidiaries ("we," "our," or "Vaco by Highspring") respects your privacy and are committed to providing transparent notice of our policies. California residents may access Vaco by Highspring HR Notice at Collection for California Applicants and Employees here. Virginia residents may access our state specific policies here. Residents of all other states may access our policies here. Canadian residents may access our policies in English here and in French here. Residents of countries governed by GDPR may access our policies here. Additionally, submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. More details about Vaco by Highspring's use of AI can be found here (). Further assessment of candidates beyond this initial phase will be conducted by recruiters and hiring managers. Vaco by Highspring does not know and cannot opine on if its client's use of AI products in hiring. Pay Transparency Notice Determining compensation for this role (and others) at Vaco by Highspring depends upon a wide array of factors including but not limited to: the individual's skill sets, experience and training; licensure and certification requirements; office location and other geographic considerations; other business and organizational needs. With that said, as required by local law, Vaco by Highspring believes that the following salary range referenced above reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure. The individual may also be eligible for discretionary bonuses.