Senior Cloud Engineer
CapgeminiIrving, TX, US; Southfield, MI, US; Nashville, TN, US; Santa Clara, CA, US; Atlanta, GA, US; Tampa, FL, US; Berwyn, PA, US; Burlington, MA, US; Brooklyn, NY, US; McLean, VA, US; San Francisco, CA, US; Dallas, TX, US; Chicago, IL, US; New York, NY, US; Sea (Remote)
About the role
Capgemini CIS is seeking a highly motivated Microsoft 365 Operations Engineer with deep experience administering Microsoft Intune, Azure Virtual Desktop (AVD), and other Microsoft 365 workloads within regulated and high-security environments.
General responsibilities
- Provide strategic input to identity and security architecture in Microsoft 365, Azure AD, and related services.
- Collaborate with security, operations, and compliance teams to implement secure-by-design configurations.
- Develop technical documentation, runbooks, and executive-level reporting for compliance audits and operational transparency.
- Troubleshoot Tier 3 issues related to Intune policy conflicts, AVD connectivity, and security misconfigurations.
- Serve as the subject matter expert for endpoint security, AVD, and Zero Trust implementations within Microsoft ecosystems.
Key responsibilities
Azure Virtual Desktop
- Plan, deploy, and manage scalable AVD environments in Azure Government Cloud.
- Implement FSLogix profile management, MSIX app attach, and integration with Defender and Sentinel.
- Monitor AVD performance and usage analytics for capacity planning and optimization.
GCC High and compliance-focused workloads
- Work within Microsoft 365 GCC High environments, ensuring compliance with DoD, FedRAMP High, and NIST 800-53 frameworks.
- Secure Microsoft 365 workloads with a focus on tenant hardening, conditional access, DLP, and insider risk policies.
Required qualifications
- US citizenship or Green Card holder.
- BS/BA degree and 8 years of IT experience, or 10 years of experience without a degree.
- Experience with M365 GCC High, Azure Government Cloud, and DoD-compliant environments.
- Experience in hybrid cloud and on-premises environments.
- Experience managing Microsoft, Unix, and Linux environments.
- Expert knowledge of Intune and Azure AD Conditional Access.
- Working knowledge of AVD architecture, deployment, and management in regulated environments.
- Proficiency in PowerShell scripting.
- Experience designing solutions aligned with Zero Trust Architecture, NIST, and FedRAMP High standards.
- Strong communication skills for technical and executive-level briefings and documentation.
Preferred qualifications
- Microsoft certifications such as SC-200, MS-500, AZ-104, MD-102, or AZ-140.
- Experience integrating third-party SIEM, EDR, or MDM platforms with Microsoft solutions.
- Experience with Log Analytics, KQL, Logic Apps playbook automation, and Graph API.
- Familiarity with Microsoft Purview, DLP, and Insider Risk Management.
- DoD 8570 Level II certifications such as Security+ CE, GSEC, SSCP, CCNA Security, or equivalent.
Compensation and benefits
The base compensation range is $70,176 to $144,100. The role is permanent and full-time, with benefits that may include paid time off, holidays, medical, dental and vision coverage, retirement savings plans, life and disability insurance, and employee assistance programs.
About Capgemini
Capgemini is a global business and technology transformation partner with 340,000 team members in more than 50 countries.