Microsoft 365 Engineer - Tier 2 in at Sparkhound
Explore Related Opportunities
Job Description
The Microsoft 365 Engineer provides day-to-day administration and support of Microsoft 365 GCC-High tenants operating under federal compliance obligations. This role is accountable to the Director of Operations for service stability, provisioning accuracy, and incident response within defined authorization boundaries, and operates under the functional oversight of the client's designated technical function owner.
Duties and Responsibilities
- Perform user and license provisioning and de-provisioning within GCC High tenant boundaries, ensuring entitlement accuracy and timely access removal
- Configure and troubleshoot Exchange Online, SharePoint Online, Teams, and OneDrive within the constraints and feature set of the GCC High environment
- Support Conditional Access policy operation and troubleshoot multifactor authentication failures affecting user access
- Monitor routine security and compliance signals, including DLP alerts and Secure Score, and escalate findings to the client function owner with sufficient context for decision-making
- Coordinate patching and update cycles for Microsoft 365 applications, accounting for the delayed feature release cadence specific to GCC High
- Serve as responder for Severity 2 and 3 service disruptions, driving incident resolution and coordinating escalation to Microsoft Government support where required
- Recognize and halt on activities reserved for client authorization, including tenant-level architecture or configuration changes affecting CMMC, ITAR, or DFARS 252.204-7012 compliance posture; changes to data residency, sovereignty, or access controls; and any change with tenant-wide impact
- Escalate immediately and per defined procedure any suspected unauthorized access, data spillage, or exposure of export-control-sensitive data
- Maintain accurate documentation of configurations, changes, and incident history, and follow change management procedures without exception in client environments
- Contribute to recurring service reviews covering security posture, compliance alignment, and operational trends
- 3–5 years administering Microsoft 365 in a production environment, including Exchange Online, SharePoint Online, Teams, and OneDrive
- Direct working experience in a GCC High, GCC, or DoD cloud tenant, with demonstrated understanding of how these environments differ from commercial M365 in feature availability, service endpoints, admin portals, release cadence, and third-party integration support
- Working familiarity with the compliance frameworks governing these environments, including CMMC, ITAR, and DFARS 252.204-7012, sufficient to recognize when a routine-looking request carries compliance implications
- Practical experience with Conditional Access policy troubleshooting and multifactor authentication support
- Experience with Microsoft Purview compliance tooling, DLP alert triage, and Secure Score interpretation
- Demonstrated discipline operating within authorization boundaries — the judgment to stop and escalate rather than resolve, and the communication skills to explain why to a client waiting on an answer
- Experience with incident response procedures in a regulated environment, including data spillage escalation protocols
- Experience delivering support in a managed services or multi-client environment, including ticket queue discipline, SLA adherence, and change management
- PowerShell proficiency for M365 administration and reporting
- Microsoft certifications such as MS-102 (Microsoft 365 Administrator) or SC-300 (Identity and Access Administrator), or equivalent demonstrated experience, preferred
All Sparkhound employees are expected to handle client and company data with care, follow our information security policies, complete required security training, and report any suspected incidents or policy violations promptly. Employees are also responsible for maintaining accurate documentation and following change management procedures when working in client environments.