Job Title: Azure DevOps Cloud Engineer
Location: 9120 Lockwood Blvd, Mechanicsville, VA 23116 -Onsite
Contract
DevOps & Cloud Engineering
CI/CD Engineering & Release Automation
- Design, build, and maintain CI/CD pipelines in Azure DevOps (YAML and Classic) for microservices and APIs.
- Establish reusable pipeline templates, release standards, and guardrails for compliant, repeatable deployments.
- Implement secure secrets and key management using Azure Key Vault and managed identities in pipelines.
- Automate database deployment workflows (e.G., DACPAC/SQLCMD) and integrate migration steps into releases.
- Enable blue/green or automated rollback strategies to minimize downtime and risk.
Environment Consistency & Observability
- Standardize provisioning and configuration across Dev/QA/Prod environments;
codify configuration baselines. - Build monitoring dashboards and actionable alerts for pipeline and deployment health (App Insights, pipeline logs).
- Uphold DevOps best practices tailored to a compliant government environment.
Azure Resource Engineering & Governance
- Implement and maintain Azure services and governance standards (e.G., App Services, Function Apps, API Gateways/API Management, AKS) supporting Tolling workloads.
- Support identity and access management (e.G., Entra ID SSO and role assignments) following least-privilege principles.
- Ensure solutions are fault tolerant and highly available;
coordinate change requests and rollback procedures.
Monitoring, Troubleshooting & Reliability
- Monitor Azure services and application workloads to ensure uptime and performance;
perform diagnostic deep-dives with Azure Monitor and Log Analytics. - Triage production incidents, drive timely resolution, and document root cause findings;
participate in operational cycles and maintenance readiness checks.
Compliance, Data Flows & Cost Awareness
- Consider PCI or comparable regulatory requirements when evaluating system behavior, logging, and integrations.
- Understand end-to-end data flows across tolling systems (e.G., roadway data, financial transactions, reporting) and support optimization of integrations.
- Contribute to cloud cost visibility and optimization recommendations;
align operational choices with governance and budget goals.
Collaboration & Communication
- Partner with architects, developers, DBAs, and engineers to align deployments with secure network and identity configurations;
communicate clearly with stakeholders.
Required Qualifications
- Hands-on experience with Azure DevOps CI/CD (YAML & Classic).
- Azure application deployment engineering (e.G., App Services, Functions, Containers, APIs).
- Secure secrets & key management (Azure Key Vault, RBAC, managed identities).
- SQL deployment automation integrated with CI/CD.
- Logging & observability (App Insights, pipeline logs, dashboards, alerts).
- Infrastructure as Code (Terraform, Bicep, or ARM templates).
- Scripting & automation (PowerShell and/or Python).
- Experience with Azure administration/engineering in production environments.
D esired Qualifications
- Experience designing CI/CD standards or DevOps frameworks for microservices.
- Containerization & orchestration (Docker, AKS);
registry-integrated build and release pipelines. - Governance & compliance automation (Azure Policy, RBAC standards, pipeline guardrails).
- Experience with PCI or similar compliance frameworks.
- Exposure to cloud cost analysis and optimization in enterprise environments.
- Azure certifications (e.G., AZ-104, AZ-305, AZ-400) preferred.
Guidelines
- Position requires a fingerprint-based background check.
- Candidate expected continued education to stay current with VDOT technologies.
Experience Requirements
Required
- Azure DevOps CI/CD (YAML & Classic) – 4 years.
- Azure App Services / Functions / APIs / Containers – 3 years.
- Secure Secrets & Key Management (Key Vault, RBAC, managed identities) – 3 years.
- SQL Deployment Automation (DACPAC, SQLCMD, CI/CD-integrated DB migrations) – 1 year.
- Environment Provisioning & Configuration (Dev/QA/Prod standardization) – 3 years.
- Logging & Observability (App Insights, pipeline logs, dashboards, alerts) – 3 years.
- Infrastructure as Code (Terraform/Bicep/ARM) – 2 years.
- Identity & Access (Entra ID), least-privilege IAM – 1 year.
- PCI or similar compliance frameworks – 1 year.
Desired
- AKS / Containerization (Docker, Kubernetes) – 1 year.
- Governance & Compliance Automation (Azure Policy, RBAC, pipeline guardrails) – 1 year.
- Cloud Cost Analysis & Optimization – 1 year.
Azure Devops Cloud Engineer in mechanicsville at Unknown Company
This position is listed as contract and onsite.