Cloud Architect
Apply NowCompany: West Advanced Technologies (WATI)
Location: Sacramento, CA 95823
Description:
Cloud Architect
Sacramento, CA
24 months
Mandatory Qualifications:
Three (3) years performing in-depth Cloud systems analysis architecture.
Three (3) years of experience providing multi-cloud Cloud Engineering Architecture services.
Three (3) years in implementations of Microsoft 365 products, including but not limited to: Windows 10, Enterprise Mobility Suite (E5 SKU), Office Pro Plus, Exchange Online, and ancillary security features for State of CA organizations.
Three (3) years of experience in the design and implementation of advanced Azure Active Directory identity solutions, including multi-tenant ADFS, B2B, and B2C concepts.
Two (2) years of experience in multi-cloud architecture, including industry best practices design patterns, interoperability, and operations.
Two (2) of experience in the migration/upgrade of organizations (5,000 user "seats" or more) to Office 365 Government.
Two (2) years of experience in designing, implementing, and migrating solutions for/to Azure and AWS.
Three (3) years of experience in developing cloud governance and security standards across public and private cloud environments.
Three (3) years of experience drafting and implementing Infrastructure-as-Code.
Two (2) years of experience automating public and private cloud management & deployment tasks using RedHat Ansible & Ansible Tower.
Two (2) years of experience developing data and analytics solutions in Microsoft Azure, using services such as Azure Databricks, Data Lake Storage, and Data Factory.
Responsibilities:
Provide strategic and comprehensive planning and design for how CNRA can best utilize the M365 suite of products to increase productivity while increasing security and compliance.
a. Perform analysis, planning, and design of existing CNRA usage of M365.
b. In coordination with DWR, develop repeatable implementation plans, configurations, and analysis to be used throughout CNRA for decision making and ease of implementation.
c. Provide customized implementation and configuration plans for M365 products at the CNRA and department level.
d. Perform assessments to gauge a department's readiness to implement a given M365 product, proposed customizations, or configuration changes.
e. Conduct assessments and planning engagements specific to the M365 E5 suite of products and how a given department could best utilize and implement them.
f. Perform security assessments using Office 365 Secure Score.
Provide Implementation, configuration, optimization, and solution development as needed for M365 products and platforms through a work authorization process.
a. Office 365 Products:
i. Teams
ii. SharePoint Online
iii. OneDrive for Business
iv. Exchange Online
v. Office Pro Plus
vi. Power Apps
vii. Power Automate
viii. Planner
b. Enterprise Mobility + Security features:
i. Azure Active Directory Premium
ii. Intune
iii. Azure Information Protection
iv. Cloud App Security
v. Advanced Threat Analytics
vi. Conditional Access
vii. Multi-factor Authentication
c. M365 E5 features:
i. Azure Active Directory P2
ii. Azure Information Protection P2
iii. Azure Advanced Threat Protection
iv. Windows Defender Advanced Threat Protection
v. Office 365 Threat Intelligence
vi. Advanced Data Governance
vii. Customer Lockbox
viii. Advanced eDiscovery
ix. My Analytics
x. Power BI Pro
xi. Audio Conferencing, Telephony
d. Window 10 implementation, configuration, and/or optimization of deployments (as needed).
Provide implementation, configuration, and troubleshooting of on-premises Active Directory services (Replication, health, security, design, etc.)
Provide implementation support of advanced cloud identity solutions using Azure Active Directory, including application federation for single sign-on (SSO), B2B collaboration, and B2C federation.
Provide implementation, configuration, and troubleshooting support of Azure Active Directory Connect, directory synchronization, pass-through authentication, and Active Directory Federation Services (ADFS).
Deploy/Upgrade the State of California Unified Global Address List Solution in Azure (as needed)
Provide support for federating agency-wide applications for shared SSO.
Provide comprehensive implementation and development of solutions for CNRA and DWR's hybrid-cloud datacenter:
a. Conduct server migrations between Azure, AWS, and VMWare as needed.
b. Perform application migrations, refactoring, and/or rearchitecting between clouds.
c. Implement Infrastructure-as-a-Service (IaaS) solutions.
d. Implement Platform-as-a-Service (PaaS) solutions.
e. Implementation and configuration of Azure Security Center and AWS Security Hub.
f. Develop "landing zones" and reference architectures utilizing best practices.
g. Support for defining new workload placement.
h. Provide support with governance, compliance, and operations improvement across AWS, Azure, and VMWare.
i. Develop and implement policies for enforcing policy assignments from the DWR cloud governance plan.
j. Support complex multi-cloud networking services, implement proxies, firewalls, routes, etc.
k. Configuration, support, and troubleshooting Network Virtual Appliances (Palo Altos in Azure, AWS).
l. Advise on developing standards that drive consistency across cloud environments.
Determine - through analysis, interviews, and requirements gathering, how CNRA can better utilize Automation to increase efficiency, standardization, and security within IT.
Develop and implement Automation solutions according to a defined list of target areas.
Develop solutions using RedHat Ansible for automating tasks on-premises and in Azure/AWS.
Develop Ansible dynamic inventories, leveraging plugins for ServiceNow, VMWare, Azure, AWS, and other platforms as source of authority.
Develop Infrastructure-as-Code (IaC) solutions using Terraform, Azure Resource Manager, AWS Cloud Formation templates, and/or VRealize Blueprints.
Develop custom PowerShell scripts as needed.
Provide Implementation, migration, and configuration of Azure DevOps (Pipelines, Boards, Repositories, Artifacts, etc.)
Define, where possible, new processes or propose updates to existing ones for optimizing the support and operations of new technologies.
Consult on how to align processes and incidents with ServiceNow integration capabilities for more seamless and advanced workflow scenarios.
Plan and design all deployments, implementations, and migrations in a comprehensive, coordinated manner so that maximum efficiency is attained across all related work streams
Provide technical and non-technical user training related to the solutions developed or adopted as part of the project.
Develop documentation for new Operational process and procedures.
Provide support staff qualified to provide 24/7/365 Tier III critical support, included but not limited to: Microsoft 365 suite of products, Azure, Azure Active Directory, O365 tenant settings, and on-premises supporting infrastructure such as Active Directory, Directory Synchronization (Statewide Global Address List), and Active Directory Federation Services (ADFS).
Develop & manage processes required for the critical support service, including intake process, SLAs, escalation paths, runbooks, etc.
Education: Bachelor's Degree in Information Technology.
Regards
Naresh Damagalla
West Advanced Technologies, Inc
E: naresh.d@wati.com
Sacramento, CA
24 months
Mandatory Qualifications:
Three (3) years performing in-depth Cloud systems analysis architecture.
Three (3) years of experience providing multi-cloud Cloud Engineering Architecture services.
Three (3) years in implementations of Microsoft 365 products, including but not limited to: Windows 10, Enterprise Mobility Suite (E5 SKU), Office Pro Plus, Exchange Online, and ancillary security features for State of CA organizations.
Three (3) years of experience in the design and implementation of advanced Azure Active Directory identity solutions, including multi-tenant ADFS, B2B, and B2C concepts.
Two (2) years of experience in multi-cloud architecture, including industry best practices design patterns, interoperability, and operations.
Two (2) of experience in the migration/upgrade of organizations (5,000 user "seats" or more) to Office 365 Government.
Two (2) years of experience in designing, implementing, and migrating solutions for/to Azure and AWS.
Three (3) years of experience in developing cloud governance and security standards across public and private cloud environments.
Three (3) years of experience drafting and implementing Infrastructure-as-Code.
Two (2) years of experience automating public and private cloud management & deployment tasks using RedHat Ansible & Ansible Tower.
Two (2) years of experience developing data and analytics solutions in Microsoft Azure, using services such as Azure Databricks, Data Lake Storage, and Data Factory.
Responsibilities:
Provide strategic and comprehensive planning and design for how CNRA can best utilize the M365 suite of products to increase productivity while increasing security and compliance.
a. Perform analysis, planning, and design of existing CNRA usage of M365.
b. In coordination with DWR, develop repeatable implementation plans, configurations, and analysis to be used throughout CNRA for decision making and ease of implementation.
c. Provide customized implementation and configuration plans for M365 products at the CNRA and department level.
d. Perform assessments to gauge a department's readiness to implement a given M365 product, proposed customizations, or configuration changes.
e. Conduct assessments and planning engagements specific to the M365 E5 suite of products and how a given department could best utilize and implement them.
f. Perform security assessments using Office 365 Secure Score.
Provide Implementation, configuration, optimization, and solution development as needed for M365 products and platforms through a work authorization process.
a. Office 365 Products:
i. Teams
ii. SharePoint Online
iii. OneDrive for Business
iv. Exchange Online
v. Office Pro Plus
vi. Power Apps
vii. Power Automate
viii. Planner
b. Enterprise Mobility + Security features:
i. Azure Active Directory Premium
ii. Intune
iii. Azure Information Protection
iv. Cloud App Security
v. Advanced Threat Analytics
vi. Conditional Access
vii. Multi-factor Authentication
c. M365 E5 features:
i. Azure Active Directory P2
ii. Azure Information Protection P2
iii. Azure Advanced Threat Protection
iv. Windows Defender Advanced Threat Protection
v. Office 365 Threat Intelligence
vi. Advanced Data Governance
vii. Customer Lockbox
viii. Advanced eDiscovery
ix. My Analytics
x. Power BI Pro
xi. Audio Conferencing, Telephony
d. Window 10 implementation, configuration, and/or optimization of deployments (as needed).
Provide implementation, configuration, and troubleshooting of on-premises Active Directory services (Replication, health, security, design, etc.)
Provide implementation support of advanced cloud identity solutions using Azure Active Directory, including application federation for single sign-on (SSO), B2B collaboration, and B2C federation.
Provide implementation, configuration, and troubleshooting support of Azure Active Directory Connect, directory synchronization, pass-through authentication, and Active Directory Federation Services (ADFS).
Deploy/Upgrade the State of California Unified Global Address List Solution in Azure (as needed)
Provide support for federating agency-wide applications for shared SSO.
Provide comprehensive implementation and development of solutions for CNRA and DWR's hybrid-cloud datacenter:
a. Conduct server migrations between Azure, AWS, and VMWare as needed.
b. Perform application migrations, refactoring, and/or rearchitecting between clouds.
c. Implement Infrastructure-as-a-Service (IaaS) solutions.
d. Implement Platform-as-a-Service (PaaS) solutions.
e. Implementation and configuration of Azure Security Center and AWS Security Hub.
f. Develop "landing zones" and reference architectures utilizing best practices.
g. Support for defining new workload placement.
h. Provide support with governance, compliance, and operations improvement across AWS, Azure, and VMWare.
i. Develop and implement policies for enforcing policy assignments from the DWR cloud governance plan.
j. Support complex multi-cloud networking services, implement proxies, firewalls, routes, etc.
k. Configuration, support, and troubleshooting Network Virtual Appliances (Palo Altos in Azure, AWS).
l. Advise on developing standards that drive consistency across cloud environments.
Determine - through analysis, interviews, and requirements gathering, how CNRA can better utilize Automation to increase efficiency, standardization, and security within IT.
Develop and implement Automation solutions according to a defined list of target areas.
Develop solutions using RedHat Ansible for automating tasks on-premises and in Azure/AWS.
Develop Ansible dynamic inventories, leveraging plugins for ServiceNow, VMWare, Azure, AWS, and other platforms as source of authority.
Develop Infrastructure-as-Code (IaC) solutions using Terraform, Azure Resource Manager, AWS Cloud Formation templates, and/or VRealize Blueprints.
Develop custom PowerShell scripts as needed.
Provide Implementation, migration, and configuration of Azure DevOps (Pipelines, Boards, Repositories, Artifacts, etc.)
Define, where possible, new processes or propose updates to existing ones for optimizing the support and operations of new technologies.
Consult on how to align processes and incidents with ServiceNow integration capabilities for more seamless and advanced workflow scenarios.
Plan and design all deployments, implementations, and migrations in a comprehensive, coordinated manner so that maximum efficiency is attained across all related work streams
Provide technical and non-technical user training related to the solutions developed or adopted as part of the project.
Develop documentation for new Operational process and procedures.
Provide support staff qualified to provide 24/7/365 Tier III critical support, included but not limited to: Microsoft 365 suite of products, Azure, Azure Active Directory, O365 tenant settings, and on-premises supporting infrastructure such as Active Directory, Directory Synchronization (Statewide Global Address List), and Active Directory Federation Services (ADFS).
Develop & manage processes required for the critical support service, including intake process, SLAs, escalation paths, runbooks, etc.
Education: Bachelor's Degree in Information Technology.
Regards
Naresh Damagalla
West Advanced Technologies, Inc
E: naresh.d@wati.com