Cloud Systems Engineer

Agile ITSan Diego, CA
$130,000 - $145,000

About The Position

This role is the technical backbone of the practice, responsible for architecting and deploying cloud environments for clients who handle Controlled Unclassified Information (CUI), primarily on Microsoft Azure Government and GCC High tenants. The engineer will work directly with compliance-minded customers, requiring fluency in both cloud infrastructure and cybersecurity frameworks. The company is in a high-growth phase and seeks to expand its team to support defense contractors in meeting CMMC compliance and operating securely in Microsoft cloud environments.

Requirements

  • 3+ years of hands-on experience with Microsoft Azure
  • Experience with Microsoft 365 Entra ID, Intune, Defender suite, Exchange Online, SharePoint
  • Strong written and verbal communication
  • Bias towards creating documentation around what you do
  • Familiarity with ITSM frameworks and ITIL concepts
  • Must successfully pass a cognitive assessment as part of the hiring process.
  • Must successfully complete a typing test to validate typing speed and accuracy.

Nice To Haves

  • Active certifications: AZ-900 / AZ-104 / AZ-500, MS-500, SC-200, or CompTIA Security+
  • Experience supporting a CMMC Level 2 C3PAO assessment or DFARS 252.204-7012 compliance engagement
  • Familiarity with Autotask
  • Prior MSP or multi-tenant managed services experience
  • Exposure to CMMC Registered Practitioner (RP) or Certified Professional (CP) program
  • Working knowledge of NIST SP 800-171 controls
  • Ability to scope CUI environments, define trust boundaries, and document them for audit purposes
  • and/or Azure Government cloud environments
  • Working knowledge of NIST SP 800-171 controls — not just awareness
  • Ability to scope CUI environments, define trust boundaries, and document them for audit purposes

Responsibilities

  • Design and deploy Azure Government and GCC High environments that meet CMMC Level 2 / NIST SP 800-171 control requirements
  • Configure and deploy Microsoft 365 GCC High tenants including Entra ID, Conditional Access, Defender for Endpoint, and Purview
  • Perform CUI boundary scoping, identify what systems are in-scope and architect accordingly to minimize assessment surface
  • Implement and document technical controls across access management, audit logging, configuration management and system protection
  • Serve as the technical escalation point for managed service clients on compliance and infrastructure issues
  • Collaborate with account managers to identify scope changes and risks before they become client problems

Benefits

  • Comprehensive benefits package (medical, retirement plan, PTO, professional development)
  • Competitive executive compensation (base salary + commission)
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service