Eng Sr Prin II - Sys

BAE SystemsHerndon, VA
Hybrid

About The Position

BAE Systems is seeking an Expert level Cloud Engineer with 11+ years of experience and a strong Cloud Engineering background to join their technology-based program supporting a key government customer. This program is responsible for delivering and maintaining a full enterprise platform with enterprise services for end users that will eventually replace the entire Enterprise suite of services that exist today for the customer. The candidate will manage Azure and M365 environments.

Requirements

  • Bachelor's degree in Computer Science, Information Technology, or related field.
  • 11+ years of experience in designing, implementing, and managing large-scale Azure and M365 environments.
  • Strong technical skills in Azure and M365, including: Azure Active Directory (AAD), Azure Information Protection (AIP), Microsoft 365 Security & Compliance, Azure Storage, Azure Security Center, Azure Monitor, PowerShell, Azure CLI, Microsoft Sysinternals Toolsuite, Role based access control, Conditional Access and MFA, FSLogix Profiles, Azure Virtual Desktop (AVD).
  • Excellent communication and collaboration skills, with the ability to work with cross-functional teams and stakeholders.
  • Strong problem-solving skills, with the ability to troubleshoot and resolve complex Azure and M365 issues.
  • Certifications in Azure and M365, such as Microsoft Certified: Identity and Access Administrator Associate.

Nice To Haves

  • Familiarity with Azure, Microsoft 365, and Active Directory Domain Services (AD DS)
  • Experience with PowerShell and Kusto Query Language (KQL)
  • Certifications: Azure Solutions Architect Expert, Microsoft 365 Certified: Enterprise Administrator Expert

Responsibilities

  • Design and implement identity solutions using Microsoft Entra ID (formerly Azure AD), including hybrid identity setups and federation services like ADFS.
  • Configure and maintain Conditional Access policies to enforce security and compliance across users, devices, and applications.
  • Manage entitlement group systems to ensure proper role-based access control (RBAC) and lifecycle automation.
  • Leverage security tools such as Defender for Identity and Azure Identity Protection to detect and respond to identity-based threats.
  • Support Zero Trust principles by enforcing least privilege access and continuous verification across identity workflows.
  • Troubleshoot and resolve IAM issues, including authentication failures, access anomalies, and policy misconfigurations.
  • Collaborate with cross-functional teams to align identity strategies with business requirements and regulatory standards.
  • Document identity architectures and procedures to support operational continuity and knowledge sharing.
  • Stay current with identity protocols like OAuth 2.0, OpenID Connect, SAML, and SCIM, and integrate them into secure solutions.

Benefits

  • health, dental, and vision insurance
  • health savings accounts
  • a 401(k) savings plan
  • disability coverage
  • life and accident insurance
  • employee assistance program
  • legal plan
  • discounts on things like home, auto, and pet insurance
  • paid time off
  • paid holidays
  • paid parental leave
  • military leave
  • bereavement leave
  • any applicable federal and state sick leave
  • company recognition program to receive monetary or non-monetary recognition awards
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service