Senior Cloud & Infrastructure Engineer/E-ITSCO Manager

Herndon, VA
Full Time
Experienced

The Senior Cloud & Infrastructure Engineer / E-ITSCO Manager is responsible for leading ISI’s internal IT, cloud, and security operations across three business units — Managed Services (MSP/MSSP), Industrial Security Services, and SaaS Platform Operations. This role ensures Confidentiality, Integrity, and Availability (CIA) of corporate systems and data while maintaining compliance with CMMC 2.0 Level 2, NIST 800-171 R2, FedRAMP-Moderate, and DFARS 252.204-7012 requirements. 
 
The role blends hands-on engineering (Microsoft 365, Azure, AWS, hybrid infrastructure) with strategic leadership, overseeing internal IT operations, security alignment, vendor management, and compliance integration. The incumbent will build and lead a small high-performing team to deliver secure, reliable, and scalable enterprise IT services. 

Key Responsibilities 

Leadership & Department Management 
• Lead and manage the E-ITSCO department, including internal IT, cloud, and infrastructure operations. 
• Oversee Tier 1 / Tier 2 support, set priorities, and ensure SLA adherence for 170+ internal users. 
• Mentor technical staff, conduct performance reviews, and establish career development plans. 
• Manage vendor relationships, licensing, and procurement for hardware, software, and SaaS services. 
• Develop and track department KPIs (uptime, incident response, compliance readiness, satisfaction). 
• Serve as escalation point for all internal IT and infrastructure issues. 
 
Cloud & Infrastructure Engineering 
• Architect, deploy, and maintain secure hybrid environments spanning Azure, AWS (GovCloud), Rapid7 and on-prem systems. 
• Enforce CIS / DISA STIG baselines and maintain compliant configurations. 
• Manage Azure AD / Entra ID, Group Policy, Intune, Conditional Access, and device compliance. 

• Oversee network segmentation, firewalls, VPN, DNS/DHCP, and hybrid connectivity (ExpressRoute, Direct Connect). 
• Implement infrastructure-as-code (Terraform/Bicep) and maintain CI/CD pipelines for secure provisioning. 
• Maintain patching, backups, DR testing, and system documentation (CMDB, topology diagrams). 
 
Security & Compliance Integration 
• Collaborate with the Cybersecurity and Compliance departments to align internal operations with CMMC, NIST 800-171, and FedRAMP Moderate control objectives. 
• Maintain SSPs, POA&Ms, and audit evidence for infrastructure and IT controls (families 3.1 – 3.14) 
• Oversee vulnerability management, logging, and audit trail integrity (e.g., Sentinel, Defender for Cloud, Rapid7 security Tools) 
• Implement endpoint protection, data loss prevention, and encryption policies for systems containing PII or CUI. 
• Participate in annual self-assessments, mock audits, and tabletop exercises. 
 
Governance, Risk & Process Management 
• Chair the Change Control Board (CCB); enforce ITIL Incident/Problem/Change workflows. 
• Own internal IT policies, SOPs, and asset inventory; ensure quarterly review and version control. 
• Lead risk assessments and business continuity planning; maintain recovery point/time objectives. 
• Coordinate with Finance, HR, and PMO for cross-departmental systems integration and data governance. 

Qualifications 

This position requires applicants to have current, interim eligibility or previous security clearance.

  • Candidates must have held or currently hold a clearance, or have documented eligibility based on a favorable background investigation.
  • Interim clearances will be accepted for consideration.
  • All clearances are encouraged to apply.
  • U.S. citizenship is required by federal regulation.
  • Applicants without any of the above will not be considered at this time due to contract requirements.
  • Bachelor’s degree in Computer Science, Information Technology, or related field (or equivalent experience) 
  • 7+ years in IT infrastructure and cloud administration, with 3+ years in a leadership or team-lead role 
  • Experience supporting regulated or federal environments (DoD, DIB, or FedRAMP) 
  • Microsoft Certified: Azure Administrator Associate or Enterprise Administrator 
  • AWS Certified: SysOps Administrator or Solutions Architect – Associate 
  • CompTIA Security+ 
  • ITIL Foundation 
Secondary (Recommended) Certifications 
  • CISSP or CISM 
  • Microsoft Certified: Azure Security Engineer Associate 
  • AWS Security Specialty 
  • PMP or ScrumMaster 

Management & Leadership Skillset 

• Strategic planning, budgeting, and KPI management 
• Team mentorship and performance management 
• Executive-level communication and cross-department collaboration 
• Change leadership and incident command during major events 

PII Acumen 

• Implements encryption, access controls, and privacy-by-design frameworks. 
• Ensures PII/CUI handling aligns with DFARS and DoD data governance policies. 

Network Acumen 

• Designs segmented, secure networks with defense-in-depth principles. 
• Administers firewalls, routing, VPNs, and MFA-secured remote access. 

CMMC & NIST 800-171 Acumen 

• Maintains alignment for infrastructure-related controls (3.1–3.14). 
• Supports evidence collection for SPRS scoring and audit preparation. 

Process Management 

• Establishes, audits, and continuously improves ITIL processes. 
• Documents and enforces SOPs, runbooks, and change workflows. 
• Leads quarterly process reviews and lessons-learned retrospectives. 

What we offer:

  • The salary range for this role is $140,000-$170,000 commensurate with experience
  • Hybrid work - 2 days in office (Herndon, VA)
  • A competitive salary and benefits package
  • A casual, friendly, and relaxed work environment
  • Professional growth encouragement and support
Industrial Security Integrators, LLC (“IsI”) is an equal opportunity employer committed to affirmative action and diversity in the workplace. It is the policy of IsI to provide Equal Employment Opportunities (EEO) to Employees and Applicants, without regard to race, color, religion, sex, age, marital status, citizenship status, national origin, sexual orientation, gender identity, veteran status or disability or any other factor protected by law and to provide advancement opportunities for minorities, women, disabled individuals, and veterans. IsI is stronger and more effective when our workforce includes highly qualified individuals with diverse backgrounds, cultures, and traditions.

IsI Enterprises does not accept unsolicited resumes from individual recruiters or third-party recruiting agencies in response to job postings or otherwise. Placement fees will not be paid to any recruiter unless IsI has an active agreement in place with the recruiter and such a request has been made by the IsI hiring team and such candidate was submitted to the IsI hiring team via our Applicant Tracking System. Any unsolicited resumes or other data submitted to IsI in violation of this policy may be used by IsI without obligation to pay any fees of any kind to the recruiter.

Share

Apply for this position

Required*
We've received your resume. Click here to update it.
Attach resume as .pdf, .doc, .docx, .odt, .txt, or .rtf (limit 5MB) or Paste resume

Paste your resume here or Attach resume file

To comply with government Equal Employment Opportunity and/or Affirmative Action reporting regulations, we are requesting (but NOT requiring) that you enter this personal data. This information will not be used in connection with any employment decisions, and will be used solely as permitted by state and federal law. Your voluntary cooperation would be appreciated. Learn more.

Invitation for Job Applicants to Self-Identify as a U.S. Veteran
  • A “disabled veteran” is one of the following:
    • a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or
    • a person who was discharged or released from active duty because of a service-connected disability.
  • A “recently separated veteran” means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.
  • An “active duty wartime or campaign badge veteran” means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.
  • An “Armed forces service medal veteran” means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.
Veteran status



Voluntary Self-Identification of Disability
Voluntary Self-Identification of Disability Form CC-305
OMB Control Number 1250-0005
Expires 04/30/2026
Why are you being asked to complete this form?

We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.

Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp.

How do you know if you have a disability?

A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability. Disabilities include, but are not limited to:

  • Alcohol or other substance use disorder (not currently using drugs illegally)
  • Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDS
  • Blind or low vision
  • Cancer (past or present)
  • Cardiovascular or heart disease
  • Celiac disease
  • Cerebral palsy
  • Deaf or serious difficulty hearing
  • Diabetes
  • Disfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disorders
  • Epilepsy or other seizure disorder
  • Gastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndrome
  • Intellectual or developmental disability
  • Mental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSD
  • Missing limbs or partially missing limbs
  • Mobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supports
  • Nervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)
  • Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilities
  • Partial or complete paralysis (any cause)
  • Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysema
  • Short stature (dwarfism)
  • Traumatic brain injury
Please check one of the boxes below:

PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.

You must enter your name and date
Human Check*