Solution Architect Lead - D365/Power Platform/Azure

GoIntellects Inc.Washington, DC
$88 - $88Hybrid

About The Position

CFSA requires a senior, deeply hands-on Solution Architect resource to serve as the technical design authority for STAAND (Stronger Together Against Abuse and Neglect in DC), the District's federally certified Comprehensive Child Welfare Information System (CCWIS). STAAND is a person-centric, AI-enabled platform built on Microsoft Dynamics 365 and the Power Platform hosted in a Government Community Cloud (GCC) tenant, with Azure services operating in Microsoft's commercial cloud. It supports CFSA social workers, supervisors, private agency partners, providers, resource parents, and District sister agencies across nine functional modules — Intake and Investigations, Case Management, ICPC, Finance (Contracts, Service Logs, and Fiscal), Provider, Eligibility and Subsidy, Placement, Services, and Management Reports — plus six external portals (Mandated Reporter, MPD, NYTD, OSSE, Resource Parent, and Community). STAAND also fields CORA, an AI assistant supporting natural-language search and AI-assisted contact notes among other use cases. The Resource will own architecture, security design, AI engineering, and the platform-release change cadence required to keep STAAND current and improving. This is a build-and-design role, not an advisory or oversight role. The Resource is expected to personally configure, code, prototype, review, and troubleshoot in the platform while serving as the credible technical voice to CFSA executive leadership, STAAND Product Team, OCTO, Microsoft, and Federal Partners (ACF/Children's Bureau). The Resource will work under the direct supervision of the District DevOps Manager.

Requirements

  • Senior, hands-on Solution Architect resource
  • Technical design authority for STAAND
  • Microsoft Dynamics 365 and Power Platform expertise
  • Azure services expertise
  • Government Community Cloud (GCC) tenant experience
  • Experience with nine functional modules: Intake and Investigations, Case Management, ICPC, Finance (Contracts, Service Logs, and Fiscal), Provider, Eligibility and Subsidy, Placement, Services, and Management Reports
  • Experience with six external portals: Mandated Reporter, MPD, NYTD, OSSE, Resource Parent, and Community
  • Experience with AI assistant development (CORA)
  • Experience with architecture, security design, AI engineering
  • Experience with platform-release change cadence
  • Ability to personally configure, code, prototype, review, and troubleshoot
  • Credible technical voice to executive leadership, product teams, and partners
  • Direct supervision of District DevOps Manager
  • Logical and physical data models
  • Dataverse table and relationship design
  • Solution segmentation
  • Environment strategy
  • Integration topology
  • Model-driven app configuration
  • Plug-ins and custom APIs (C#/.NET)
  • PCF controls
  • TypeScript/JavaScript client extensions
  • Power Fx
  • Plug-in pipeline optimization
  • Architecture standards, design patterns, naming conventions, technical debt registers
  • Design authority review for significant changes
  • Diagnosis of deep platform issues (performance, API limits, etc.)
  • Maintenance of architecture artifacts for CCWIS review, federal audit, and District IT governance
  • Design, document, and harden the boundary between GCC and commercial Azure
  • Define data traversal policies across tenants
  • Implement cross-tenant identity, managed identities, service principals, Key Vault, private networking, API gateway patterns
  • Maintain data residency and FedRAMP authorization boundaries
  • Hands-on technical lead for AI capability
  • Design, build, evaluate, and productionize agents in Azure AI Foundry and Copilot Studio
  • Tool and function calling, orchestration, multi-agent patterns
  • Grounding and retrieval over Dataverse and document stores
  • Prompt and context engineering
  • Structured output, human-in-the-loop checkpoints
  • AI evaluation discipline (golden datasets, automated evals, etc.)
  • AI model lifecycle management
  • Responsible AI controls (content safety, PII/PHI handling, bias testing, etc.)
  • Support predictive and analytic capability
  • Build reusable AI platform assets
  • Own security architecture end to end
  • Technical counterpart to ISSO, OCTO security, and privacy officials
  • Compliance with OCTO IT policies, NIST SP 800-53, FISMA, FedRAMP, HIPAA, 45 CFR 1355, Title IV-E confidentiality, DC data protection law
  • Design and enforce least privilege (Dataverse, row/column security, portal roles, PAM, separation of duties)
  • Lead secure SDLC (threat modeling, code review, SAST/DAST, scanning, secrets management)
  • Support penetration tests, vulnerability assessments, audit response
  • Define AI-specific security requirements
  • Contribute to incident response, continuity, and disaster recovery planning
  • Own STAAND change pipeline
  • Plan and execute against Microsoft's Dynamics 365 biannual release waves and Power Platform service updates
  • Evaluate new platform, Azure, and AI capabilities
  • Maintain a rolling multi-year technical roadmap
  • Drive performance, reliability, and cost optimization
  • Advance DevOps maturity
  • Maintain and report technical issues and risk register
  • Own data architecture supporting AFCARS, NCANDS, NYTD, CFSR, and Title IV-E reporting
  • Design and maintain bi-directional exchanges with District and external partners
  • Establish automated data quality controls
  • Translate between social work practice and technical architecture
  • Brief CFSA IT Steering Committee, CIO, STAAND Product Leadership, OCTO leadership, Council oversight staff, court monitors, and ACF/Children's Bureau reviewers
  • Serve as principal technical liaison to Microsoft and vendors
  • Author decision memos, architecture decision records, briefing decks, federal reporting content
  • Mentor CFSA staff and other contract resources

Nice To Haves

  • Flexible work from home options available.

Responsibilities

  • Own and maintain the authoritative STAAND architecture: logical and physical data models, Dataverse table and relationship design, solution segmentation, environment strategy, and integration topology.
  • Personally build in the platform — model-driven app configuration, plug-ins and custom APIs (C#/.NET), PCF controls, TypeScript/JavaScript client extensions, Power Fx, and plug-in pipeline optimization.
  • Establish and enforce architecture standards, design patterns, naming conventions, and technical debt registers across all modules and portals.
  • Chair design authority review for significant changes; sign off on solution designs before build.
  • Diagnose deep platform issues: performance degradation, API and service-protection limits, plug-in execution ordering, solution layering conflicts, storage growth, portal rendering.
  • Maintain architecture artifacts sufficient to satisfy CCWIS review, federal audit, and District IT governance.
  • Design, document, and harden the boundary between the GCC Dynamics/Power Platform tenant and Azure commercial-cloud services.
  • Define what data may traverse that boundary, in what form (de-identified, tokenized, aggregated, or full record), under what authorization, and with what logging — including explicit architectural boundaries for protected data categories such as Medicaid Enrollment.
  • Implement cross-tenant identity, managed identities, service principals, Key Vault secret lifecycle, private networking, and API gateway patterns.
  • Maintain a defensible position on data residency and FedRAMP authorization boundaries for every commercial-cloud service in use, and present that position to auditors and federal reviewers.
  • Serve as hands-on technical lead for CFSA's AI capability, including CORA and its expansion into agentic workflows.
  • Design, build, evaluate, and productionize agents in Azure AI Foundry and Copilot Studio: tool and function calling, orchestration and multi-agent patterns, grounding and retrieval over Dataverse and document stores, prompt and context engineering, structured output, and human-in-the-loop checkpoints.
  • Own AI evaluation discipline: golden datasets, automated evals, groundedness and hallucination measurement, regression testing on model or prompt changes, latency and cost benchmarking, controlled rollout.
  • Manage the AI model lifecycle — track model releases and deprecations, run comparative evaluation before adopting a new model, execute migrations without regression to worker-facing quality.
  • Implement responsible AI controls appropriate to a child welfare setting: content safety, PII/PHI handling, bias and fairness testing, explainability, audit logging of AI-influenced actions, and clear framing of AI output as decision support rather than decision making.
  • Support predictive and analytic capability aligned to agency mission priorities, ensuring models are validated, monitored for drift, and governed.
  • Build reusable AI platform assets — prompt libraries, agent templates, evaluation harnesses, observability dashboards.
  • Own the security architecture of STAAND end to end; serve as technical counterpart to the agency ISSO, OCTO security, and District privacy officials.
  • Apply and evidence compliance with OCTO IT policies (octo.dc.gov/page/it-policies), NIST SP 800-53, FISMA, FedRAMP, HIPAA, 45 CFR 1355 (CCWIS), Title IV-E confidentiality, and District data protection law including DC Code § 28-3851 et seq. breach notification obligations.
  • Design and enforce least privilege: Dataverse business unit and role architecture, row/column-level security, portal web roles and table permissions, privileged access management, separation of duties for finance and eligibility functions.
  • Lead secure SDLC: threat modeling, secure code review, static and dynamic analysis, dependency and supply-chain scanning, secrets management, remediation tracking with severity-based SLAs.
  • Support penetration tests, vulnerability assessments, and audit response; own STAAND-assigned POA&M items.
  • Define AI-specific security requirements: prompt injection defenses, tool-permission scoping, data exfiltration prevention, agent action auditing.
  • Contribute to incident response, continuity, and disaster recovery planning; validate RTO/RPO through periodic exercises.
  • Own the STAAND change pipeline from enhancement request through design, build, test, release, and post-release verification, including published release notes and coordination with the CISA training organization.
  • Plan and execute against Microsoft's Dynamics 365 biannual release waves and Power Platform service updates: early-access testing in a dedicated environment, deprecation and breaking-change assessment, and a documented impact and remediation plan per wave.
  • Evaluate new platform, Azure, and AI capabilities against the STAAND roadmap; run structured proofs of concept and make evidence-based adopt / trial / hold / retire recommendations.
  • Maintain a rolling multi-year technical roadmap balancing stabilization, platform health, security, federal compliance, and innovation.
  • Drive performance, reliability, and cost optimization — capacity and license consumption, Azure spend, storage tiering, API efficiency.
  • Advance DevOps maturity: source-controlled solutions, automated build and deploy pipelines, environment refresh, automated regression testing, release quality metrics.
  • Maintain and report the technical issues and risk register with mitigation owners and timelines.
  • Own the data architecture supporting AFCARS, NCANDS, NYTD, CFSR, and Title IV-E reporting, including lineage, quality rules, exception handling, and submission validation.
  • Design and maintain bi-directional exchanges with District and external partners consistent with CCWIS interoperability requirements.
  • Establish automated data quality controls, duplicate person detection and merge integrity, and reconciliation with legacy records.
  • Translate between social work practice and technical architecture; observe real workflow with intake workers, investigators, case managers, placement staff, and fiscal teams before designing for it.
  • Brief the CFSA IT Steering Committee Members, CIO, STAAND Product Leadership, OCTO leadership, Council oversight staff, court monitors, and ACF/Children's Bureau reviewers, calibrating to each audience.
  • Serve as principal technical liaison to Microsoft (Industry Solutions Delivery, Customer Success, product groups) and to implementation and support vendors; hold them to architectural and quality standards.
  • Author decision memos, architecture decision records, briefing decks, and federal reporting content requiring minimal editing.
  • Mentor CFSA staff and other contract resources; build internal capability and reduce single-point-of-failure dependency.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service