Samtek Logo

Samtek

Cloud Engineer - Azure

Posted Yesterday
Remote
Hiring Remotely in United States
Mid level
Remote
Hiring Remotely in United States
Mid level
As an Azure Cloud Engineer, you will build and automate Azure environments, manage infrastructure as code, and support cloud migration for healthcare systems.
The summary above was generated by AI

About Samtek


At Samtek, we're redefining cloud innovation as an engineer-owned and operated, SBA-certified minority-owned small business founded in 2018. Our mission is simple: empower federal agencies and large enterprises with cutting-edge DevSecOps and cloud transformation solutions that drive security, scalability, and speed. From cloud-native application development and platform engineering to robust security implementations, data center migrations, and seamless operations, we deliver modern IT services backed by over 50 years of collective expertise.

We're a diverse, collaborative team that's passionate about pushing the boundaries of technology. Our culture thrives on curiosity, inclusivity, and real impact—whether it's optimizing cloud environments for mission-critical operations or fostering innovation in a supportive, hybrid work setting. Join us to work on high-stakes projects that matter, grow alongside top talent, and be part of a company that's not just building the future of cloud computing, but shaping it.


Samtek: Where engineers lead, and excellence follows.


Job Summary 

Samtek Inc is seeking a skilled Azure Cloud Engineer to join a high-impact team delivering secure, compliant, and scalable Azure solutions for the Centers for Medicare & Medicaid Services (CMS). This is a hands-on engineering role focused on building, automating, and operating Azure Government (GCC High) environments while supporting large-scale migrations and cloud-native modernization of mission-critical healthcare systems.

 

Key Responsibilities 
  • Implement and manage Azure Landing Zones using Enterprise-Scale architecture, Bicep, Terraform, and Azure Policy 
  • Deploy and configure Azure governance frameworks (Management Groups, Azure Policy, Blueprints, Resource Graph, tagging, cost management) 
  • Build and maintain infrastructure-as-code (IaC) repositories using Bicep, Terraform Enterprise/Cloud, ARM templates, and Azure CLI/PowerShell 
  • Execute cloud migration waves (rehost, refactor, replatform) with Azure Migrate, Azure Site Recovery (ASR), Database Migration Service (DMS), and Data Box 
  • Configure Zero-Trust networking and security controls including Azure Firewall, Private Link, Private Endpoints, VNet peering, ExpressRoute, NSGs, and Azure DDoS Protection 
  • Implement and manage identity solutions using Azure Entra ID (formerly AAD), Conditional Access, Privileged Identity Management (PIM), and RBAC 
  • Integrate and operate DevSecOps pipelines with Azure DevOps, GitHub Actions, Azure Pipelines, and security tools (Microsoft Defender for Cloud, Sentinel, Prisma Cloud) 
  • Automate compliance evidence collection and monitoring using Microsoft Defender for Cloud, Azure Policy, and Sentinel playbooks for FedRAMP High and CMS ARS requirements 
  • Support containerized workloads on Azure Kubernetes Service (AKS), Azure Container Apps, and Azure Red Hat OpenShift 
  • Troubleshoot production issues, perform root cause analysis, and optimize performance/cost in GCC High environments 
  • Contribute to Architecture Review Board (ARB) packages, System Security Plans (SSP), diagrams, and ATO documentation 
  • Collaborate daily with cloud architects, security engineers, developers, and CMS stakeholders

 

Required Skills & Experience 
  • 4+ years of hands-on experience building and operating production workloads in Azure (commercial and/or Government) 
  • 2+ years working in Azure Government Community Cloud High (GCC High) 
  • Strong proficiency in Infrastructure as Code: Bicep (required), Terraform (strong plus), ARM
  • Experience deploying and managing Azure Enterprise-Scale Landing Zones 
  • Solid understanding of Azure networking (VNet, Private Link, Firewall, ExpressRoute, VPN
  • Hands-on experience with Azure DevOps (Repos, Pipelines, Boards) and GitHub Actions 
  • Familiarity with Microsoft Defender for Cloud, Azure Policy, Sentinel, and Log Analytics 
  • Scripting and automation skills: PowerShell (required), Python or Bash (plus) 
  • U.S. citizenship and ability to obtain and maintain CMS Public Trust clearance
Preferred Qualifications 
  • Active Microsoft certifications: 
    • Azure Administrator Associate (AZ-104) 
    • Azure Solutions Architect Expert (AZ-305) or DevOps Engineer Expert (AZ-400) 
    • Azure Security Engineer Associate (AZ-500) 
  • Experience with CMS MARS-E, CMS ARS, FedRAMP High, or NIST 800-53 control implementation 
  • Prior work on CMS contracts (SPARC, ESIM, EPMO, XLC) 
  • Knowledge of Azure Health Data Services, FHIR APIs, Synapse Analytics, or Databricks 
  • Experience with AKS, Azure Arc, or Azure Stack HCI 
  • Active Public Trust clearance or higher

 

Other Requirements 
  • Must have resided in the U.S. for at least 3 of the last 5 years 
  • Must be eligible for CMS Public Trust clearance 
  • No visa sponsorship available

Top Skills

Azure
Azure Cli
Azure Container Apps
Azure Devops
Azure Kubernetes Service
Azure Red Hat Openshift
Bicep
Github Actions
Microsoft Defender For Cloud
Powershell
Terraform

Similar Jobs

Yesterday
Remote
United States
Mid level
Mid level
Cloud • Information Technology • Database • Business Intelligence • Consulting
Seeking a Mid-Level Azure VDI Cloud Engineer to design, deploy, and manage Azure Virtual Desktop environments for federal clients, ensuring compliance with federal standards and optimizing performance.
Top Skills: Azure AdAzure Virtual DesktopBlob StorageJIRANetworkingPowershellSharepointTerraformVirtual Machines
10 Days Ago
Remote
United States
Mid level
Mid level
Information Technology
The Cloud Engineer will manage, deploy, and maintain scalable cloud infrastructure on Azure and AWS while optimizing performance and troubleshooting issues. They will also support onboarding for complex clients, design cloud solutions, and support sales activities.
Top Skills: Active DirectoryAWSAzureMicrosoft 365Vpns
4 Days Ago
Remote
United States
Mid level
Mid level
Information Technology • Legal Tech
The role involves maintaining and improving Azure infrastructure, managing Infrastructure as Code with Terraform, enhancing security measures, and operating CI/CD pipelines.
Top Skills: AzureAzure DevopsBashCircleCIDatadogEfkElkGithub ActionsPowershellPythonTerraform

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account