Overview
AIS is seeking an AI / M365 Security and Identity Governance Engineer to support a federal customer in engineering security, identity, and governance controls that allow AI, virtual desktop, and Microsoft 365 services to scale safely in a regulated environment.
AIS is an employee-owned company focused on mission-driven work, continuous learning, and an inclusive culture where contributions directly impact company success.
Key Responsibilities
- •Design and implement Entra ID, Conditional Access, privileged access, RBAC, and identity-lifecycle controls.
- •Establish security patterns for Azure AI Foundry, AVD, Power Platform, and Microsoft 365 workloads.
- •Implement Azure Policy, private networking, logging, audit, and security monitoring requirements.
- •Collaborate with Purview and compliance teams on data classification, DLP, retention, and information-protection controls.
- •Conduct design reviews, risk assessments, and control validation with engineering and customer security stakeholders.
- •Develop clear security standards and operational procedures that delivery and O&M teams can execute.
Required Qualifications
- •6+ years in Microsoft cloud security or identity engineering.
- •Hands-on expertise with Entra ID, Conditional Access, RBAC, PIM, Azure Policy, and secure Azure networking.
- •Experience implementing Microsoft Purview, M365 security, or data-protection controls.
- •Working knowledge of NIST-based controls and regulated-environment delivery.
- •Ability to balance secure design with practical adoption and delivery outcomes.
Nice to Have
- •Azure Government or GCC High experience.
- •Microsoft security certifications such as SC-300, SC-100, or SC-200.
- •AI-security, data-governance, or Zero Trust implementation experience.
Compensation
The targeted base salary range for this role is $117,000 to $177,000 per year. Final offer will be based on skillset, experience, education, certifications, and location.