DevSecOps Solution Architecture-Top SecretSCI
Springfield, VT - USA
Job Summary
We are seeking a DevSecOps Solution Architect to join Microsoft Federal and lead the design and delivery of secure scalable cloud-first solutions for U.S. Government customers.
Microsoft Federal was established to address the unique mission compliance security and procurement requirements of the United States Government (USG). Our architects partner with federal agencies to define technical strategy modernize enterprise platforms and accelerate mission outcomes within highly regulated environments.
As a DevSecOps Solution Architect you will serve as a trusted technical advisor responsible for shaping cloud adoption strategies architecting enterprise-scale platforms and leading DevSecOps transformation initiatives. You will work across customer engineering cybersecurity and operations teams to design secure Azure-based solutions that enable mission-critical workloads platform services and software delivery pipelines.
This role requires a strong blend of architecture consulting engineering leadership and customer engagement experience. You will be expected to provide technical direction across cloud infrastructure platform engineering Kubernetes cybersecurity automation and operational excellence.
This role is focused on helping federal customers modernize mission systems through secure cloud architecture platform engineering and DevSecOps transformation. The DevSecOps & Azure Architect serves as a technical leader responsible for translating mission requirements into enterprise-scale Azure solutions enabling secure application delivery improving operational agility and accelerating cloud adoption across complex government environments.
Gathers and propagates customer/partner insights from a broad range of stakeholders.
Works with customer/partner stakeholders and business sponsor to socialize both the business solution and the project approach to determine if changes are needed to the business solution.
Defines and documents the architecture to communicate the value proposition of the business solution along with the project approach.
Collaborates with the Project Manager to jointly drive project/technical governance of the design build and deployment into use of proof of concepts and pilots. Works with the business sponsor and customer/partner stakeholders to gather and ratify requirements and constraints.
Collaborates with others to understand the business solution/problem. Identifies scenarios that could slow or impede pre-sales/delivery.
Works in close collaboration with others to identify categorize and communicate business and technical risks. Generates new and/or improvements to existing intellectual property (IP).
Develops a network of relationships to build influence in addressing problems/blockers.
Uses evidence-based arguments that articulate complex concepts in a simple manner to respectfully challenge Microsoft and partners when a decision will not produce optimal results.
Understands competitor solutions and identifies how customer business value can be driven through Microsofts offerings.
Acts a mentor to colleagues to educate them.
Microsoft is on a mission to empower every person and every organization on the planet to achieve more. Our culture is centered on embracing a growth mindset a theme of inspiring excellence and encouraging teams and leaders to bring their best each day. Growth mindset encourages each of us to lean in and learn what matters most to our customers to create the foundational knowledge that enables us to make customer-first decisions in everything we doing so we create life-changing innovations that impact billions of lives around the world. You can help us achieve our mission.
Responsibilities
Lead cloud architecture and DevSecOps transformation initiatives for Microsoft Federal customers
Define enterprise architecture roadmaps aligned to customer mission objectives and business outcomes
Design secure scalable and resilient Azure landing zones platform services and application hosting environments
Establish DevSecOps reference architectures engineering standards and governance models
Architect Infrastructure as Code (IaC) solutions to automate deployment and configuration management
Lead the design and implementation of Kubernetes platforms containerized applications and platform engineering capabilities
Integrate security compliance identity and governance controls into cloud and software delivery architectures
Serve as the primary technical advisor to customer leadership and engineering teams
Conduct architecture reviews technology assessments and modernization planning activities
Mentor consultants engineers and technical teams while promoting engineering best practices
Collaborate across Microsoft teams partners and customer organizations to deliver mission-focused solutions
Support proposals technical solutioning and strategic growth initiatives
- Collaborates with the Account Team and/or Bid Team to understand the business solution/problem. Drives agreement based on the customers priorities requirements/constraints approach principles concepts and expectations. Builds and documents a realistically costed Solution Approach with traceability of requirements constraints decisions and tradeoffs that balances risk technical credibility and technical innovation to meet customer need predominantly based on existing solution offerings and/or reference architecture. Creates clarity around responsibility and accountability for the cybersecurity of the solution. Follows SFI principles. Jointly leads the implementation in close partnership with the Project Manager working with IDCL. Exercises oversight and governance and establishes quality practices and standards to realize the business solution. Uses a cohesive build methodology with an agreed release schedule and timeline so the solution can be transitioned to live operations. Ensures communication of and adherence to the pre-sales value proposition. Works with the Project Manager to highlight where assumptions have proven false. Uses change requests to modify the solution/project approach when needed. As needed collaborates with Subject Matter Experts to receive specialized advice that can help define the solution and project approach and increase the time to value for the customer.
- Leverages a structured SFI approach to architecture projects using existing methodologies (e.g. Waterfall Agile Iterative) that make use of existing reference architecture and established architectural styles and design patterns. Builds and maintains an architecture description document an architecture decisions log and a requirements/constraints traceability matrix to ensure the rationale for the business solutions Architecture is known and understood.
- Collaborates with the Project Manager to jointly drive project/technical governance of the design build and deployment into use of proof of concepts (POCs) and pilots. Works with customers to understand and demonstrate business value (e.g. release of revenue cost savings) that the business solution realizes.
- Works in close collaboration with the Project Manager and Account Team to identify categorize and communicate business and technical risks (including security). Defines risk mitigation activities that are foundational to the project plan. Defines risk contingency plans for invocation should the risk occur. When appropriate oversees a broad portfolio of accounts. Manages and ensures the all-up delivery of consulting engagements as necessary. Maintains the risk log.
- Defines and documents the SFI architecture through an architecture description document an architecture decisions log and a requirements/risk/constraints traceability matrix to communicate the value proposition of the business solution along with the project approach. Leads cost-based and technology-based discussions to explain the architecture in terms of its build deployment and ongoing operational use to determine customer appetite for the business solution. Uses a business-value approach that values return on investment (ROI) and customer costs-savings over technical ease of execution.
- Identifies scenarios that could slow or impede pre-sales/delivery. Orchestrates the broader Microsoft team to address and record technical blockers and works with account/project team to resolve non-technical issues. Reports significant problems to Microsoft management and escalates when needed. Includes Security practitioners in early stages to cover customers CISO and CRO concerns as well as security and data privacy regulation. Plans a way forward in complex and ambiguous situations with an innovative approach and durable design. Delegates and uses specialist skills of others to drive technical alignment across internal/external teams. Coordinates disparate approaches into a single plan of action.
- Works with the business sponsor and customer/partner stakeholders (e.g. Business users Enterprise Architects Security Team Operations Team) to gather and ratify requirements and constraints. Manages and resolves ambiguity in the requirements and constraints (including legislative and regulatory) and documents assumptions and implications where it cannot be resolved. Maintains the requirements/constraints traceability matrix to prove that solution components have a rationale/justification for inclusion in the Architecture of the business solution. Drives development and execution of Test Plans by SMEs to prove that each requirement/constraint has been implemented as expected by the customer and includes security features and controls in test plans. Where there are defects or risks works in close collaboration with the Project Manager and Customer to redress mitigate or accept and document the status of the test results.
- Shares ideas insight and strategic technical input with technical teams internal communities across the field and the larger virtual team across Microsoft using a thorough knowledge of specific Microsoft products and their context in the competitive landscape.
- Participates in external architect community events (e.g. conferences seminars technical meetups Webcasts blogs hackathons) and shares learnings with internal team. Acts a mentor to less experienced colleagues to educate them on technical and non-technical concepts.
- Uses evidence-based arguments that articulate complex concepts in a simple manner to respectfully challenge Microsoft and customers/partners when a decision or course of action will not produce optimal results. Serves as the technical conscience to challenge the status quo and unrealistic expectations. Proactively resolves conflicts and seeks resolution to balance the overall outcome. Drives consensus where possible and leads decisions to resolve conflict when needed.
- Develops a network of internal/external relationships to build influence in addressing problems/ blockers and facilitating additional views on the matter of interest. Stays up to date on Microsofts technologies products and services in order to communicate Microsofts mission strategy and capabilities.
- Understands competitor solutions and identifies how customer business value can be driven through Microsofts offerings. Steers the customer/partner conversations to the benefits of the solution rather than the features and functionalities.
- Uses evidence-based approach to function as customer advocate and shares insights with Product Engineering teams and the business with a view to improving Microsoft technologies products services and offerings such that they can better meet customer/partner needs.
- Works with customer/partner stakeholders (e.g. Enterprise Architects Security Team Development Team Operations Team) and business sponsor to socialize both the business solution and the project approach to determine if changes are needed to the business solution. Where the cost of change is accepted by the customer shares this feedback with the project team and the broader account team to make the necessary adjustments using mechanisms such as updating the solution approach and projected costs in presales and change requests in delivery. Engages in risk discussions bringing in Security SMEs to create clarity around who is responsible for cyber security around proposed solutioning.
- Gathers and propagates customer/partner insights from a broad range of stakeholders as well as the main business sponsor that will help shape and form both the definition and ongoing execution of the project. Learns to Identify and evaluate industry trends (customer industry verticals information technology IT industry). Recognizes and considers Microsofts frameworks (e.g. Secure Architecture Framework) and customer risk appetites.
Qualifications
- Masters Degree in Computer Science Information Technology Engineering or related field AND 6 years experience in technology solutions practice development architecture consulting and/or technology domain (e.g. Security) OR Bachelors Degree in Computer Science Information Technology Engineering or related field AND 8 years experience in technology solutions practice development architecture consulting and/or technology domain (e.g. Security) OR equivalent experience.
- 4 years technical sales experience.
- 4 years project management experience.
- Technical or Professional Certification in Domain (e.g. Security).
8 years of experience in cloud architecture DevSecOps software engineering platform engineering infrastructure engineering or related technical disciplines
Proven experience designing and implementing enterprise-scale Azure solutions
Deep knowledge of Azure services including networking identity compute storage governance security monitoring and automation
Experience architecting cloud-native and hybrid cloud environments
Strong understanding of Infrastructure as Code (IaC) using Bicep Terraform ARM Templates or similar tools
Hands-on experience designing CI/CD and DevSecOps solutions using Azure DevOps GitHub and modern automation platforms
Experience with Kubernetes Azure Kubernetes Service (AKS) container platforms and platform engineering concepts
Working knowledge of Zero Trust architecture cloud security principles and compliance frameworks
Experience leading technical strategy discussions with executive technical and customer stakeholders
Strong consulting communication and leadership skills
Preferred Technical Experience
Experience with the following technologies and capabilities is highly desired:
Microsoft Azure
Azure Landing Zones
Azure DevOps
GitHub Enterprise
Azure Kubernetes Service (AKS)
Container Platforms (Docker Kubernetes)
Microsoft Entra ID
Azure Networking and Hybrid Connectivity
Azure Monitor Log Analytics and Application Insights
Bicep Terraform and ARM Templates
PowerShell Python C# and Bash
Security Information and Event Management (SIEM) solutions
Cloud Security Posture Management (CSPM)
Platform Engineering and Site Reliability Engineering (SRE)
Zero Trust Architecture
Government security and compliance frameworks (NIST RMF DoD FedRAMP IL2-IL6)
Leadership Expectations
Successful candidates will be expected to:
Drive technical strategy and architecture decisions
Influence executive stakeholders and customer leadership
Lead architectural governance and design reviews
Guide engineering teams through complex technical challenges
Establish reusable patterns standards and reference architectures
Balance mission objectives operational realities security requirements and delivery constraints
Solution Architecture IC4 - The typical base pay range for this role across the U.S. is USD $101800 - $193800 per year. There is a different range applicable to specific work locations within the San Francisco Bay area and New York City metropolitan area and the base pay range for this role in those locations is USD $126100 - $207600 per year.
Certain roles may be eligible for benefits and other compensation. Find additional benefits and pay information here:
position will be open for a minimum of 5 days with applications accepted on an ongoing basis until the position is filled.
Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age ancestry citizenship color family or medical care leave gender identity or expression genetic information immigration status marital status medical condition national origin physical or mental disability political affiliation protected veteran or military status race ethnicity religion sex (including pregnancy) sexual orientation or any other characteristic protected by applicable local laws regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process read more about requesting accommodations.
Required Experience:
IC