American Institutes for Research

American Institutes for Research

American Institutes for Research is a leading behavioral and social science research organization dedicated to using rigorous evidence to enhance everyday life and address critical societal issues across various fields, including education, health, and...

Professional Services
1K-5K
Founded 1946

Description

  • Design, configure, and administer Microsoft 365 services including Exchange Online, SharePoint Online, OneDrive, Teams, Copilot, and related security and compliance features.
  • Administer and harden Entra ID (Azure AD), including conditional access, identity protection, app registrations, and role-based access control.
  • Own Exchange Online configuration, including mail flow, transport rules, connectors, policies, hybrid connectivity, and advanced troubleshooting of mail delivery issues.
  • Use Kusto Query Language (KQL) in Microsoft 365 Defender, Purview, and Log Analytics to investigate incidents and develop detection queries and reports.
  • Collaborate with security and networking teams to implement and maintain security baselines, DLP, retention, eDiscovery, and auditing across the M365 environment.
  • Develop and maintain automation, scripts, and integrations using PowerShell and Microsoft Graph API to streamline administration, reporting, and provisioning.
  • Contribute to CI/CD and infrastructure-as-code practices using tools such as Azure DevOps and GitHub for Microsoft 365 configuration and related workloads.
  • Work with containerized and cloud workloads such as Kubernetes where they integrate with M365 and Entra for identity, security, or application access.
  • Lead complex incident response and root-cause analysis for M365 and identity-related outages or security events.
  • Produce and maintain technical documentation, standards, runbooks, and architectural diagrams for Microsoft 365 and Entra services.
  • Mentor junior administrators and provide guidance on best practices, governance, and operational excellence.

Requirements

  • Bachelor’s degree in Computer Science, Computer Engineering, or a related discipline with at least 9 years of relevant IT experience, or a master’s degree with at least 7 years of relevant experience, or at least 15 years of relevant industry experience.
  • At least 5 years of hands-on administration experience with Microsoft 365 and Entra ID in a mid- to large-enterprise environment.
  • Ability to communicate effectively with both technical and non-technical internal and external stakeholders.
  • Ability to collaborate effectively in a virtual, cross-functional team environment.
  • Ability to work independently and collaboratively as needed.
  • Ability to manage multiple concurrent deliveries in a fast-paced environment.
  • Strong analytical, critical thinking, and problem-solving skills with attention to detail and quality.
  • Expert-level experience with Exchange Online, including mail flow troubleshooting, advanced transport configuration, security and compliance policies, and third-party service integration.
  • Strong experience using KQL in Microsoft 365 Defender, Sentinel, or Log Analytics to query logs, create custom detections, and analyze security or operational events.
  • Deep understanding of identity and access concepts, including SSO, OAuth/OIDC, federation, conditional access, MFA, and privileged identity management.
  • Proficiency with PowerShell for automation, bulk operations, and configuration management in Microsoft 365 and Entra ID.
  • Solid knowledge of M365 security, compliance, and governance capabilities such as DLP, retention, eDiscovery, audit, and safe links/attachments.
  • Exposure to Azure DevOps, GitHub, or similar tools for scripts, pipelines, and infrastructure-as-code definitions for Microsoft 365.
  • Familiarity with container platforms such as Kubernetes or AKS and how they integrate with Entra ID for identity and access control.
  • Experience using Microsoft Graph API for automation, integration, and advanced reporting scenarios is preferred but not required.
  • Experience with Microsoft Sentinel or similar SIEM platforms for M365 and Entra monitoring and analytics is preferred but not required.
  • Experience with the Varonis platform, AWS, and/or Google Workspace is preferred but not required.
  • Must be currently authorized to work in the U.S. on a full-time basis; employment-based visa sponsorship, including H-1B sponsorship, is not available.
  • Depending on project work, qualified candidates may need to meet certain residency requirements.

Benefits

  • Remote work flexibility within the United States or from one of AIR’s U.S. office locations.
  • Anticipated annual salary range of $140,000 to $164,000 USD.
  • AIR’s Total Rewards Program is designed to reward staff competitively.
  • Salary offers are based on internal equity and external market competitiveness.
  • Opportunity to work for a mission-driven, nonpartisan, not-for-profit research organization.
  • Professional growth through the chance to influence long-term cloud strategy and mentor junior staff.
  • Equal employment opportunity and affirmative action workplace.
  • Reasonable accommodation support during the employment process for candidates with disabilities.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Microsoft Administrator II

SES 51-250 Internet Software & Services

NCUA is seeking a Microsoft Administrator II to manage and support its Microsoft-based IT infrastructure, including server, identity, collaboration, endpoint, and cloud services across agency operations.

Active Directory Azure Windows Server
1 hour, 32 minutes ago

Cloud Backend Engineer

Signaloid 1-10 Technology Hardware, Storage & Peripherals

Signaloid is hiring a backend/cloud engineer to help evolve its Cloud Compute Engine for finance, robotics, and manufacturing applications in a remote-first team.

AWS CI/CD DynamoDB EC2 Git Go K6 Linux Python REST API TypeScript
19 hours, 24 minutes ago

Senior Cloud Security Engineer (Kubernetes)

Form3 251-1K Diversified Financial Services

Form3 is hiring a defensive security engineer to build and operate security controls for highly available multi-cloud payment systems and advise engineering teams on managing platform risk.

AWS Azure CI/CD CockroachDB Flux GCP Go Helm Kubernetes Linux NATS Penetration Testing SIEM Terraform
20 hours, 36 minutes ago

Senior Engineer, Devops (AWS Automation)

BOLD 251-1K Internet Software & Services

Bold is hiring a DevOps professional to own production ML environments and MLOps infrastructure across infrastructure and data science teams.

AWS Bash CI/CD Cloudflare Docker DynamoDB FastAPI GitHub GitHub Actions Gradle Grafana Groovy Java Jenkins Kubernetes Maven Microservices New Relic OpenSearch Prometheus Python SageMaker Spinnaker Splunk Spring Boot Terraform
1 day ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers