Job Description
Description
The Leidos Digital Modernization Sector is seeking a highly skilled Azure Cloud Engineer with deep expertise in networking and infrastructure automation. This is a 100% remote hands-on engineering role. The ideal candidate is self-sufficient, execution-focused, and capable of collaborating across teams to deliver secure, scalable, and performant cloud infrastructure solutions.
Primary Responsibilities :
Design, implement, and maintain Azure infrastructure (compute, storage, networking, identity, and governance) using Infrastructure as Code (IaC).
Architect and configure virtual networks (VNets), network security groups (NSGs), ExpressRoute, VPN gateways, private endpoints, and load balancers in Azure.
Integrate and optimize hybrid cloud connectivity (on-prem to Azure), ensuring performance, redundancy, and security compliance.
Implement and manage Azure Firewall, Application Gateway, and Azure Front Door configurations for secure and resilient application delivery.
Automate provisioning and configuration using Terraform, Bicep, or ARM templates with CI / CD integration (GitHub Actions, Azure DevOps, or GitLab).
Collaborate with application and security teams to enforce zero trust and network segmentation principles.
Troubleshoot and optimize DNS, routing, latency, and firewall rules across hybrid environments.
Support monitoring, alerting, and performance optimization via Azure Monitor, Log Analytics, and Network Watcher.
Maintain compliance with DoD / NIST, FedRAMP, or enterprise security frameworks (if applicable).
Hybrid Cloud Infrastructure Management
Design, deploy, and manage virtual cloud server infrastructures across hybrid environments (on-premises and cloud).
Maintain and optimize virtualization platforms, such as VMware ESXi, Hyper-V, or cloud-native virtualization solutions.
Implement and manage Infrastructure-as-Code (IaC) tools such as Terraform, Ansible, or CloudFormation to automate deployments and configurations.
Cloud Environment Support
Collaborate with cross-functional teams to provision, maintain, and scale cloud resources in platforms like AWS, Azure, Google Cloud Platform (GCP), or Oracle Cloud Infrastructure (OCI).
Monitor cloud resource utilization, ensuring cost efficiency and scalability.
Troubleshoot issues and perform root cause analysis to resolve system and application-related problems.
DevSecOps Integration
Work within a DEVSECOPS framework to ensure infrastructure meets security, compliance, and operational standards.
Support CI / CD pipelines and integrate infrastructure automation into the development lifecycle.
Implement containerization and orchestration technologies, such as Docker and Kubernetes, to support microservices architectures.
Performance Optimization and Monitoring
Configure and maintain monitoring tools to ensure availability and performance of systems and applications.
Identify and implement optimizations to improve system efficiency, latency, and uptime.
Security and Compliance
Apply security best practices to protect hybrid cloud infrastructures, including identity and access management (IAM), network segmentation, and encryption.
Assist in audits and compliance initiatives (e.g., RMF, NIST, ISO 27001).
Collaboration and Support
Provide tier-2 / 3 support for escalated issues, collaborating with internal teams and external vendors as needed.
Document procedures, configurations, and troubleshooting steps to support knowledge sharing and team growth.
Mentor junior engineers and contribute to team knowledge-sharing initiatives.
Basic Qualifications :
BS degree and 8+ years of prior relevant experience or Masters with 6+ years of prior relevant experience, additional years of experience may be accepted in lieu of a degree.
Minimum 10 years of experience in Azure Cloud Engineering or Cloud Infrastructure roles.
Possession of at least one of the following certifications :
US Citizen and current active DoD Secret clearance.
Strong expertise in Azure networking — including ExpressRoute, Virtual WAN, Peering, Load Balancers, Application Gateway, Azure Firewall, and Private Link.
Proficiency with Terraform, Bicep, or ARM templates.
Deep understanding of networking protocols (TCP / IP, DNS, DHCP, VPN, routing, subnetting, BGP).
Hands-on experience with CI / CD pipelines for infrastructure deployments.
Familiarity with security and identity in Azure (Azure AD, RBAC, Managed Identities).
Experience with SASE, ZScaler, Palo Alto Prisma, or Cloudflare network integrations.
Familiarity with Kubernetes networking (CNI, service mesh) or container-based deployments.
Understanding of security frameworks (NIST, CIS Benchmarks, Zero Trust).
Excellent troubleshooting and problem-solving skills in complex, hybrid environments.
Strong documentation and collaboration habits.
Preferred Skills and Certifications :
Additional industry certifications such as VMware VCP or Kubernetes CKA.
Experience with security frameworks (e.g., RMF, NIST 800-53).
Knowledge of scripting or programming languages, such as Python, PowerShell, or Bash.
Familiarity with log management and monitoring tools (e.g., Splunk, Datadog, or ELK stack).
Come break things (in a good way). Then build them smarter.
We're the tech company everyone calls when things get weird. We don’t wear capes (they’re a safety hazard), but we do solve high-stakes problems with code, caffeine, and a healthy disregard for “how it’s always been done.”
Original Posting : October 15, 2025
For U.S. Positions : While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range : Pay Range $104,650.00 - $189,175.00
The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
#Remote
Senior Cloud Engineer • Aurora, CO, US