Senior Engineer, Microsoft
- Hybrid
- All software engineering jobs
- Full Time
- ( Managed Services )
About the role
AHEAD builds platforms for digital business. By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, we help enterprises deliver on the promise of digital transformation.
At AHEAD, we prioritize creating a culture of belonging, where all perspectives and voices are represented, valued, respected, and heard. We create spaces to empower everyone to speak up, make change, and drive the culture at AHEAD.
We are an equal opportunity employer, and do not discriminate based on an individual's race, national origin, color, gender, gender identity, gender expression, sexual orientation, religion, age, disability, marital status, or any other protected characteristic under applicable law, whether actual or perceived.
We embrace all candidates that will contribute to the diversification and enrichment of ideas and perspectives at AHEAD.
AHEAD is looking for an Azure Engineer to join our Managed Services practice supporting a portfolio of enterprise clients. You will own the day-to-day resolution of incidents, escalations, and service requests across core Azure infrastructure domains — identity, networking, compute, virtual desktop, security, and storage. You'll work directly with clients and Microsoft Support to drive resolution, ensure SLA adherence, and surface patterns that lead to lasting improvements.
AHEAD is looking for an Azure Engineer to join our Managed Services practice supporting a portfolio of enterprise clients. You will own the day-to-day resolution of incidents, escalations, and service requests across core Azure infrastructure domains — identity, networking, compute, virtual desktop, security, and storage. You'll work directly with clients and Microsoft Support to drive resolution, ensure SLA adherence, and surface patterns that lead to lasting improvements.
Responsibilities
- Troubleshoot MFA, conditional access, PIM, B2C authentication flows, and sign-in failures
- Manage guest invitations, ADFS integration, NPS extension issues, and Azure AD certificate problems
- Investigate anomalous sign-in activity and unauthorized access events
- Support ExpressRoute circuits, VNet configuration, Private Link/Endpoints, and route tables
- Troubleshoot DNS resolution, APIM connectivity, public IP SKU migrations, and DDoS exposure
- Resolve egress failures, BGP path issues, and service tag policy implementation
- Manage Azure VM incidents including unresponsive machines, failed RDP sessions, and live migration events
- Lead Azure Migrate engagements and Azure Arc onboarding for hybrid environments
- Handle ASR replication health, quota increase requests, and hotpatch deployment issues
- Provision and troubleshoot Cloud PC environments, enrollment failures, and BSOD events
- Resolve Teams media optimization (AVD vs. SlimCore), mapped drive visibility, and profile issues
- Manage host pool quotas and coordinate with Microsoft on AVD-specific escalations
- Monitor and respond to Microsoft Defender for Cloud alerts and ASR policy application failures
- Support Purview implementation and LSASS credential theft rule configuration across large server estates
- Assist with ADFS certificate replacement and certificate lifecycle management
- Troubleshoot Azure Blob Storage connectivity, SAS token policies, and ADLS access issues
- Investigate storage account anomalies and assist with data migration to and from Azure Storage
- Advise on storage security configurations and access tier optimization
Identity & Access (Entra ID / B2C / AD)
Networking
VM / Compute & Migration
Azure Virtual Desktop / Windows 365
Security / Defender
Storage
Required Qualifications
- 3–5 years of hands-on Azure infrastructure support or engineering experience
- Strong working knowledge across identity, networking, compute, and storage fundamentals in Azure
- Experience opening and driving Microsoft Support cases through to resolution
- Proficiency with Azure Portal, Azure CLI, and PowerShell for diagnostics and remediation
- Solid understanding of Azure networking: VNets, NSGs, ExpressRoute, Private Link, DNS
- Clear, professional communication with both technical teams and client stakeholders
- Proficiency In SQL
Preferred Qualifications
- Microsoft Certified: Azure Administrator Associate (AZ-104) or equivalent
- Experience in a Managed Services Provider (MSP) environment supporting multiple enterprise clients
- Familiarity with Azure Virtual Desktop, Windows 365, or Intune device management
- Exposure to Microsoft Defender for Cloud, Purview, or Azure Security Center
- Scripting skills in PowerShell or Python for automation and incident tooling
Description as published by AHEAD.