About The Position

The Lead Technical Enterprise Architect provides overarching technical and architectural leadership across Microsoft GCC-High, Azure Government, and related secure cloud environments. This role is responsible for translating client mission and compliance requirements into secure, scalable, and maintainable enterprise cloud architectures that align with CMMC Level 2, NIST SP 800-171, and DoD Cloud Computing SRG requirements. Serving as the primary liaison between the client and the internal delivery team, the Architect ensures that all design and implementation activities adhere to compliance standards, technical best practices, and client objectives. The role leads a multi-disciplinary team responsible for the design, integration, and sustainment of secure landing zones, Entra ID (Azure AD), Intune, Azure Virtual Desktop (AVD), Windows 365, Defender for Cloud, and other Microsoft 365 GCC-High services. This is a hands-on leadership role requiring deep technical knowledge, strategic thinking, and strong communication skills to guide both internal engineering resources and client stakeholders toward a common architectural vision.

Requirements

  • Bachelor’s degree in Computer Science, Information Systems, or related field.
  • 10+ years of progressive IT experience, including at least 5 years in enterprise or cloud architecture.
  • 3+ years of experience working within Azure Government and Microsoft 365 GCC-High environments.
  • Proven success leading cross-functional technical teams and serving as a client-facing technical lead.
  • Azure Landing Zone architectures (Hub-and-Spoke, SCCA, IL4/IL5).
  • Entra ID P2, Conditional Access, PIM, MFA, and RBAC design.
  • Intune endpoint management and device compliance.
  • AVD, FSLogix, and Windows 365 Government implementations.
  • Defender for Cloud, Defender for Endpoint, Sentinel, and Purview.
  • Azure networking (VNETs, NSGs, VPN Gateway, ExpressRoute, Private Link).
  • Infrastructure-as-Code using ARM, Bicep, or Terraform.
  • U.S. Citizenship (required); Eligible for DoD Secret clearance or higher; Excellent communication, documentation, and client-facing presentation skills.

Nice To Haves

  • Master’s degree in Information Technology, Cybersecurity, or related field.
  • Prior work supporting Federal, DoD, or Defense Industrial Base (DIB) programs.
  • Familiarity with DevSecOps pipelines, CI/CD automation, and Infrastructure-as-Code best practices.
  • Strong understanding of cost optimization and FinOps principles in Azure Government.
  • Demonstrated experience in client-facing leadership and enterprise governance boards.
  • Microsoft Certified: Azure Solutions Architect Expert.
  • Microsoft Certified: Cybersecurity Architect Expert or Enterprise Administrator Expert.
  • CISSP, CISM, or CCSP.
  • ITIL v4 Foundation.

Responsibilities

  • Develop and maintain the enterprise architecture roadmap for Azure Government and GCC-High environments.
  • Lead the design of secure Azure Landing Zones, including hub-and-spoke networking, ExpressRoute integration, and hybrid connectivity to on-premises systems.
  • Ensure architectural compliance with DoD SRG, NIST SP 800-171, and CMMC Level 2.
  • Direct solutioning for identity, endpoint management, monitoring, and security—including Entra ID P2, Intune, Defender for Cloud, Sentinel, and Azure Monitor.
  • Incorporate redundancy, performance optimization, and cost efficiency into all designs.
  • Serve as the primary technical point of contact for the client and lead all architecture-related discussions and reviews.
  • Translate client requirements into actionable designs, work packages, and technical tasks.
  • Communicate architectural risks, constraints, and trade-offs clearly to both technical and business stakeholders.
  • Maintain full traceability from client requirements through technical implementation.
  • Lead a cross-functional team of cloud engineers, system administrators, network specialists, and security analysts.
  • Define priorities, assign tasks, and oversee all engineering deliverables to ensure alignment with the architecture plan.
  • Review technical documentation, diagrams, and SOPs for accuracy and completeness.
  • Conduct peer reviews, enforce configuration standards, and provide technical mentorship.
  • Collaborate with the project manager or Scrum Master to track progress, resolve blockers, and ensure on-schedule delivery.
  • Enforce compliance with CMMC Level 2, NIST SP 800-171, and FedRAMP High controls.
  • Define and oversee governance policies for access control, configuration baselines, and data protection.
  • Review and approve technical changes following established change-management procedures.
  • Partner with the ISSM and compliance team to maintain audit readiness and continuous compliance.
  • Identify opportunities to enhance security posture, automation, and cost optimization.
  • Evaluate new Microsoft capabilities (e.g., Windows 365 GCC-High, Copilot for M365, Purview).
  • Recommend modernization strategies that align with client missions and evolving compliance requirements.

Benefits

  • Paid time off based on employee grade (A-F), defined by policy: Vacation: 12-25 days, depending on grade
  • Company paid holidays
  • Personal Days
  • Sick Leave
  • Medical, dental, and vision coverage
  • Retirement savings plans (e.g., 401(k) in the U.S.)
  • Life and disability insurance
  • Employee assistance programs
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service