TAD PGS, Inc. logo

Windows Infrastructure Engineer/Architect

TAD PGS, Inc.

Washington, DC · HybridContract$64.4/hrSeen todaySeen in employer's feed today

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
$64.4/hr
Location
Washington, DCHybrid
Schedule
Contract
Work Authorization
US work authorization required

Olive lists jobs from US employers, including remote roles you can work from the United States.

Requirements

Credentials this posting asks for.

AZ-104 CertificationDoD 8570/8140 Baseline CertificationPublic Trust clearance

Job overview

TAD PGS is hiring a Windows Infrastructure Engineer/Architect for a contract-to-hire position in the Washington, DC area. The role serves as a senior technical authority for enterprise Windows infrastructure, Active Directory, Microsoft Entra ID, Azure, and PKI. It includes architecture, security, cloud engineering, Tier 3 support, automation, and operational improvement. U.S. citizenship and the ability to obtain and maintain a Public Trust are required.

Skills & qualifications

RequiredNice to have

Skills

Windows Infrastructure ArchitectureCloud OperationsCloud EngineeringEnterprise Windows DesignFederal ComplianceMicrosoft AzureZero TrustHybrid CloudCross-Domain ArchitectureMicrosoft Entra IDSingle Sign-OnRole-Based Access ControlFederated IdentityAWS Identity CenterAzure GovernanceAzure PolicyManagement GroupsAzure MonitorCost OptimizationAnsibleChefPuppetCI/CD PipelinesPythonBashVisual BasicPowerShellSAMLOIDCOAuth 2.0Cross-Cloud AuthenticationNetworkingDNSVPNsLoad BalancersWindows Server AdministrationMicrosoft Application MaintenanceThird-Party Software MaintenanceiLORAID Configuration

Qualifications

Bachelor's in Related Technical Field or Equivalent Experience8+ Years Windows Infrastructure ExperienceMaster's in Related Field or Equivalent Experience6+ Years Relevant Experience6+ Years Cloud Operations Experience3+ Years Senior-Level Design ExperienceU.S. CitizenshipPublic Trust EligibilityAZ-104 CertificationDoD 8570/8140 Baseline CertificationITIL 4 ExperienceServiceNow Experience

Benefits

401(k) Match
Paid Time Off
Tuition Assistance
Medical Insurance

Full job description

We have an outstanding Contract to Hire position for aWindows Infrastructure Engineer/Architectto join a leading Company located in the Washington, DCsurrounding area.

Pay Rate: $64.40

US Citizenship is required.

Candidate must have the ability to obtain and maintain a Public Trust.

This highly skilled Windows Infrastructure Engineer/Architect position will have experience in securing, scaling, and supporting core enterprise identity and access management platforms. In this role, the candidate will serve as the subject matter expert and highest-tier escalation point for our Active Directory (AD) environment and Azure Active Directory /Microsoft Entra ID cloud integrations. They will be responsible for architecting robust identity solutions, managing our Enterprise Public Key Infrastructure (PKI), and providing high-level tier -3 architectural support to ensure optimal security, compliance, and system availability across our hybrid environment. This technical resource will support and engage with the infrastructure team on the various tasks being supported by the team at a higher technical level. The position will set standards the rest of the team builds to and serve as an escalation point when an issue exceeds Tier 1 and Tier 2 support. They may also provide hands-on support in program operations, configuration, deployment, maintenance, monitoring, and troubleshooting activities . A summary of the areas they will provide and qualifications.

Job Responsibilities:

  • Identify Architecture.

  • Security & PKI Management.

  • Cloud Design.

  • Azure Engineering, Administration, and Optimization.

  • Tier 3 Engineering Support.

  • Access Governance.

  • Automation and Optimization.

  • Disaster Recovery.

  • Continuous Improvement.

  • Documentation Compliance.

Basic Hiring Criteria:

  • Bachelor's degree in computer science, information systems, engineering, or a related technical field, and eight (8) or more years of progressive Windows Infrastructure Engineer/Architect experience OR Master's degree in a related field and at least 6 years of relevant experience in above areas. Equivalent additional experience may substitute for the degree.

  • A minimum of six (6) years of experience in cloud operations, engineering, or related field.

  • A minimum of three (3) years performing at a senior and lead level with design and architecture ownership for an enterprise Windows environment.

  • Familiarity with federal compliance (NIST, FISMA, FedRAMP) and CIS 4.0 controls.

  • Significant experience designing, operating and maintaining Microsoft Azure environments to include Zero Trust, hybrid cloud, and cross-domain architectures in mission environments.

  • Experience with the configuration , deployment , and management of Microsoft Entra ID / Azure AD for centralized identity, single sign-on (SSO), and role-based access control (RBAC) across Azure tenants and subscriptions.

  • Demonstrated experience with the integration of federated identity solutions with AWS Identity Center, Entra, or on-premises Active Directory.

  • Develop and enforce Azure governance frameworks, including Azure Policy, Management Groups, and Blueprints, ensuring alignment with DoD Zero Trust and least-privilege principles.

  • Experience with Azure Monitor and cost optimization strategies.

  • Deep expertise in Microsoft Azure architecture, Microsoft Entra ID and on-prem interoperability.

  • Familiarity with orchestration tools like Ansible, Chef, or Puppet for configuration management and ability to implement Continuous Integration/Continuous Deployment (CI/CD) pipelines for cloud infrastructure provisioning and deployment automation.

  • Ability to script in one more of the following computer languages: Python, Bash, Visual Basic or PowerShell.

  • Strong understanding of federated identity, modern authentication protocols (SAML, OIDC, OAuth 2.0), and cross-cloud authentication mechanisms.

  • Deep expertise in Microsoft Azure architecture, Microsoft Entra ID and on-prem interoperability.

  • Hands on experience with and knowledge of networking concepts (DNS, VPNs, load balancers, etc.) and cloud-based networking configurations.

  • Configure, maintain and upgrade 2019, 2022, & 2025 servers operating systems by performing system administration tasks related to:

  • Microsoft Application installation and maintenance

  • 3rd Party software installation and maintenance

  • Configure, maintain and upgrade physical and virtual server installations in FTC datacenters , to include:

  • OS installation and configuration

  • Out-of-band management configuration (iLO, etc.)

  • Hardware installation/maintenance (network adapter, memory, hard drives, etc.)

  • RAID Configuration

  • Network adapter configuration

  • SCSI and Fiber Channel configuration

  • Experience and ability to immediately contribute to Automation Tasks and Infrastructure-as-Code tools and templates.

  • Provide experience designing, deploying, and maintaining Active Directory Certificate Services (AD CS) / PKI environments.

  • Applied knowledge of system security engineering, including CIS and STIG hardening, vulnerability management, and federal compliance frameworks (FISMA, NIST SP 800-53).

  • Extensive experience with Visio or other networking diagram tools and solid understanding of Networking principles.

  • Excellent troubleshooting skills with the ability to resolve complex technical issues in a timely manner .

  • Strong problem-solving skills and ability to conduct root cause analysis.

  • Actively participate in the process of reviewing and improving operational processes, procedures, technology, and documentation. Support the program team in efforts to improve service delivery to the FTC. Adopt program directed procedural changes, process changes, and tool changes as required for the role.

  • Perform work activities in accordance with program processes, procedures, and service level agreements.

  • Support other anticipated requirements that will emerge and are reasonably aligned to the role supporting server elements of the infrastructure.

  • Demonstrated ability to complete technical projects independently, with strong organizational skills and attention to detail.

  • Create, monitor and drive to resolution change requests and trouble tickets for service level changes that affect Windows Servers and applications installed on Windows servers.

  • Excellent written and verbal communication skills. This includes drafting SOPs and technical documentation as well as communication with senior program and customer leadership.

  • Must be able to present designs, plans, courses of action, and analyses of alternatives to technical leadership personnel and boards for approvals.

  • ITIL4 experience.

  • ServiceNow experience and review incoming ServiceNow tickets and work to resolve any incident tickets and service requests as assigned for:

  • Server builds

  • Server configuration changes

  • Windows Permissions changes

  • File Server ACL changes

  • Application maintenance for:

  • Symantec Endpoint Protection (Servers)

  • Carbon Black Protection (Servers)

  • DNS/DHCP Updates

  • Active Directory (including Group Policy Objects)

  • Maintain status of assigned tickets in accordance with program standards and program SLAs, including quality of status and timeliness of updates.

  • Be comfortable in preparation of data and presentations then active participation and presenting in the company and customer meetings as required.

Required Certifications:

  • Microsoft Certified Azure Administrator Associate certification (AZ-104).

  • Current DoD 8570/8140 baseline certification appropriate for Intermediate System Administrator roles (e.g., Security+, GSEC, SSCP, or equivalent).

Desired Qualifications:

  • Any other certifications in support of the stated work scope requirements.

Benefits offered vary by contract. Depending on your temporary assignment, benefits may include direct deposit, free career counseling services, 401(k), select paid holidays, short-term disability insurance, skills training, employee referral bonus, and affordable medical coverage plan, and DailyPay (in some locations). For a full description of benefits available to you, be sure to talk with your recruiter.

Military connected talent encouraged to apply.

VEVRAA Federal Contractor / Request Priority Protected Veteran Referrals / Equal Opportunity Employer / Veterans / Disabled

To read our Candidate Privacy Information Statement, which explains how we will use your information, please visithttp://www.tadpgs.com/candidate-privacy/orhttps://pdsdefense.com/candidate-privacy/

The Company will consider qualified applicants with arrest and conviction records in accordance with federal, state, and local laws and/or security clearance requirements, including, as applicable:

  • The California Fair Chance Act

  • Los Angeles City Fair Chance Ordinance

  • Los Angeles County Fair Chance Ordinance for Employers

  • San Francisco Fair Chance Ordinance

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.