{"schemaVersion":"jobsearcher.job.v1","id":"ef56a3611c30dc7593e89ee2","url":"https://jobsearcher.com/jobs/ef56a3611c30dc7593e89ee2","canonicalUrl":"https://jobsearcher.com/jobs/ef56a3611c30dc7593e89ee2","title":"Lead Engineer (Level 3)","description":"Position: Lead Engineer (Level 3)\nDepartment: Service and Support\nGeneral Summary:\nLead Engineers are strong in all the most common and popular technologies as well as some of the more mature ones. In addition to strong technical aptitudes, backed by at least 5 years of hard core in the trenches experience, this person is a powerful communicator and a person who can manage well when the client is in a pickle and really needs strong guidance. The pace and demands in this environment are usually much greater than an \"in-house\" position. This person should be prompt and/or know the importance of communicating ETA's to clients. This person should be skillful at pre-project/work-briefings with each client on each project. This person should then be able to execute with a high degree of success in integrating and/or solving problems in environments rich in Microsoft365, Server, Exchange, SQL, IIS, VPNs, firewalls, backups, Linux, UNIX and more.\nPosition Responsibilities:\nDAILY time entry accounting for at least 7 hours in the form of Resolution Notes in Service Tickets\nAdherence to SLA requirements for ticket resolution and related KPIs\nRespond to customer support tickets, on the service board, especially escalations, communicating clear updates and ETAs, troubleshooting and resolving issues to completion, documenting work performed and time accurately.\nAct as Project Lead for large projects and deployments\nProvide guidance and backup coverage for junior Engineers\nT&M service requests\nParticipate in on-call support rotations as needed\nAdminister/oversee Professional Services Automation (PSA) and Remote Monitoring and Management (RMM) software for consistent asset accuracy, alerting, patching, and reporting; drive problem investigations and RCAs for major incidents.\nAct as a resource for ticket escalation and mentor for engineers; perform advanced diagnostics and remediation across Microsoft 365/Entra ID, Exchange/Teams/SharePoint, Windows Server/AD/DNS/DHCP, virtualization (Hyper‑V/VMware), email platforms, SAN/backup/HA, and network/firewall scenarios.\nPre‑Sales / Quote Support:\nProvide operational input for quotes and statements of work for both projects and managed services. This includes labor models, onboarding effort, standard stack requirements, delivery risks, etc.\nPersonnel Management and Supervisory Responsibilities:\nSupervise, lead, mentor and evaluate junior engineers. Coach and train junior engineers with an emphasis on retaining high quality personnel and increasing their capabilities.\nAssist in the hiring process of additional staff members as needed, assuming significant responsibility for final decision on potential candidates.\nOnboard newly hired engineers and operational staff.\nAssist with training plans and career paths for junior engineers.\nMaintain high standards for documentation, communication, and professionalism.\nBusiness and Operational Management:\nDevelop and report on operational KPIs; improve utilization, reduce rework, align labor to demand, and contribute to the services P&L.\nImplement improvements that scale reliably and securely; maintain strategic vendor relationships. Vendor management includes building relationships with vendors to drive improvements to utilization and working with billing/licensing platforms.\nProvide operational input for quotes and statements of work for both projects and managed services. This includes labor models, onboarding effort, standard stack requirements, delivery risks, etc.\nExperience:\nEngineer with minimum five years’ experience\nMinimum 4 years’ experience – Active Directory Support, Microsoft Windows and Windows Server Support, Microsoft Exchange Support\nMinimum 4 years’ experience – Microsoft 365/Azure Active Directory\nMinimum 4 years’ experience - Switching/VLAN/Routing/Firewalling Support\nMinimum 4 years’ experience - Server Hardware Technologies (CPU/RAID/SCSI) Support\nMinimum 4 years’ experience - Data Backup and Recovery Support, EDR Antivirus Support, VPN Connectivity Support\nCredentials:\n1. Microsoft 365 / Entra ID (expert practitioner):\nTenant admin at scale, Conditional Access design, MFA/Self-Service, break-glass strategy, Identity Protection signals.\nExchange Online, SharePoint/OneDrive, Teams admin & troubleshooting (mail flow, hybrid basics, sharing boundaries).\nIntune/Endpoint Manager: Autopilot, compliance, configuration profiles, app deployment, BitLocker policy, Windows Update for Business; baseline macOS MDM familiarity.\n2. Security:\nDefender for Endpoint/M365 deployment & tuning (exclusions, suppression, ASR), incident triage; basic KQL for investigation; coordinate with SOC/EDR vendors.\nPractical Zero Trust enforcement: least-privilege, device compliance gates, privileged access segmentation.\n3. Windows Server/AD:\nAD health/DNS/DHCP/GPO, Entra Connect cloud sync concepts, certificate services basics; backup/restore/tested runbooks.\n4. Virtualization & DR:\nVMware or Hyper-V at advanced admin level; Veeam (or equivalent) for VM & M365 backup; tested BC/DR playbooks.\n5. Networking:\nVLANs, routing, VPN (site-to-site/remote), QoS, NAC/Wi-Fi fundamentals; hands-on with at least two MSP-common firewalls (Fortinet/Meraki/WatchGuard/SonicWall) and switch stacks.\n6. Automation & Tooling:\nStrong PowerShell 7 (Graph modules), scripting for tenant and endpoint automation; PSA & RMM policy hygiene and reporting leadership.\n7. Additional Preferred Experience:\nAzure: landing zone-lite for SMB workloads (naming/ RBAC/ Policy), IaaS (VMs, managed disks, availability options), Private Link, site-to-site VPN, Azure Files/ADFSL patterns; Azure Backup and ASR.\nIdentity & governance: PIM, access reviews, basic Purview DLP/labels exposure for SMB; 3rd-party SSO app integrations.\nData Loss Protection (DLP): Deployment and management of process and technologies to protect sensitive information, experience with WISPs or SOC certifications.\nSD-WAN/SASE concepts, DNS filtering, email security gateways, secure remote access brokers.\nCertifications:\nMicrosoft Certifications or equivalent experience:\n1. Required: MS-102: Microsoft 365 Administrator Expert\n2. Additional Preferred:\nSC-100: Microsoft Cybersecurity Architect Expert\nSC-200: Security Operations Analyst Associate\nSC-300: Identity and Access Administrator Associate\nSC-401: Information Security Administrator Associate\nAZ-104 Azure Administrator Associate\nAZ-305: Azure Solutions Architect Expert\nAZ-500: Azure Security Engineer Associate\nPL-600: Microsoft Power Platform Solution Architect\nMD-102: Endpoint Administrator Associate\nVendor Certifications or equivalent experience:\nSonicwall\nVMWare / Hyper-V\nThreatlocker\nKaseya Certified Technician in Datto Backup\nKaseya Certified Technician in K365 Endpoint\nKaseya Certified Technician in RocketCyber\nBenefits:\nDental insurance\nHealth insurance\nPaid time off\nVision insurance\nAbility to Commute:\nReston, VA 20190 (Required)\nWork Location: In person","company":"Solve","rawCompany":"solve","city":"Reston","state":"VA","isRemote":false,"isActive":false,"createdAt":"2026-08-03T14:50:49.031Z","occupations":[{"code":"15-1244.00","title":"Network and Computer Systems Administrators","slug":"network-and-computer-systems-administrators"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1231.00","title":"Computer Network Support Specialists","slug":"computer-network-support-specialists"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"},{"code":"541513","title":"Computer Facilities Management Services","slug":"computer-facilities-management-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Lead Engineer (Level 3)","description":"Position: Lead Engineer (Level 3)\nDepartment: Service and Support\nGeneral Summary:\nLead Engineers are strong in all the most common and popular technologies as well as some of the more mature ones. In addition to strong technical aptitudes, backed by at least 5 years of hard core in the trenches experience, this person is a powerful communicator and a person who can manage well when the client is in a pickle and really needs strong guidance. The pace and demands in this environment are usually much greater than an \"in-house\" position. This person should be prompt and/or know the importance of communicating ETA's to clients. This person should be skillful at pre-project/work-briefings with each client on each project. This person should then be able to execute with a high degree of success in integrating and/or solving problems in environments rich in Microsoft365, Server, Exchange, SQL, IIS, VPNs, firewalls, backups, Linux, UNIX and more.\nPosition Responsibilities:\nDAILY time entry accounting for at least 7 hours in the form of Resolution Notes in Service Tickets\nAdherence to SLA requirements for ticket resolution and related KPIs\nRespond to customer support tickets, on the service board, especially escalations, communicating clear updates and ETAs, troubleshooting and resolving issues to completion, documenting work performed and time accurately.\nAct as Project Lead for large projects and deployments\nProvide guidance and backup coverage for junior Engineers\nT&M service requests\nParticipate in on-call support rotations as needed\nAdminister/oversee Professional Services Automation (PSA) and Remote Monitoring and Management (RMM) software for consistent asset accuracy, alerting, patching, and reporting; drive problem investigations and RCAs for major incidents.\nAct as a resource for ticket escalation and mentor for engineers; perform advanced diagnostics and remediation across Microsoft 365/Entra ID, Exchange/Teams/SharePoint, Windows Server/AD/DNS/DHCP, virtualization (Hyper‑V/VMware), email platforms, SAN/backup/HA, and network/firewall scenarios.\nPre‑Sales / Quote Support:\nProvide operational input for quotes and statements of work for both projects and managed services. This includes labor models, onboarding effort, standard stack requirements, delivery risks, etc.\nPersonnel Management and Supervisory Responsibilities:\nSupervise, lead, mentor and evaluate junior engineers. Coach and train junior engineers with an emphasis on retaining high quality personnel and increasing their capabilities.\nAssist in the hiring process of additional staff members as needed, assuming significant responsibility for final decision on potential candidates.\nOnboard newly hired engineers and operational staff.\nAssist with training plans and career paths for junior engineers.\nMaintain high standards for documentation, communication, and professionalism.\nBusiness and Operational Management:\nDevelop and report on operational KPIs; improve utilization, reduce rework, align labor to demand, and contribute to the services P&L.\nImplement improvements that scale reliably and securely; maintain strategic vendor relationships. Vendor management includes building relationships with vendors to drive improvements to utilization and working with billing/licensing platforms.\nProvide operational input for quotes and statements of work for both projects and managed services. This includes labor models, onboarding effort, standard stack requirements, delivery risks, etc.\nExperience:\nEngineer with minimum five years’ experience\nMinimum 4 years’ experience – Active Directory Support, Microsoft Windows and Windows Server Support, Microsoft Exchange Support\nMinimum 4 years’ experience – Microsoft 365/Azure Active Directory\nMinimum 4 years’ experience - Switching/VLAN/Routing/Firewalling Support\nMinimum 4 years’ experience - Server Hardware Technologies (CPU/RAID/SCSI) Support\nMinimum 4 years’ experience - Data Backup and Recovery Support, EDR Antivirus Support, VPN Connectivity Support\nCredentials:\n1. Microsoft 365 / Entra ID (expert practitioner):\nTenant admin at scale, Conditional Access design, MFA/Self-Service, break-glass strategy, Identity Protection signals.\nExchange Online, SharePoint/OneDrive, Teams admin & troubleshooting (mail flow, hybrid basics, sharing boundaries).\nIntune/Endpoint Manager: Autopilot, compliance, configuration profiles, app deployment, BitLocker policy, Windows Update for Business; baseline macOS MDM familiarity.\n2. Security:\nDefender for Endpoint/M365 deployment & tuning (exclusions, suppression, ASR), incident triage; basic KQL for investigation; coordinate with SOC/EDR vendors.\nPractical Zero Trust enforcement: least-privilege, device compliance gates, privileged access segmentation.\n3. Windows Server/AD:\nAD health/DNS/DHCP/GPO, Entra Connect cloud sync concepts, certificate services basics; backup/restore/tested runbooks.\n4. Virtualization & DR:\nVMware or Hyper-V at advanced admin level; Veeam (or equivalent) for VM & M365 backup; tested BC/DR playbooks.\n5. Networking:\nVLANs, routing, VPN (site-to-site/remote), QoS, NAC/Wi-Fi fundamentals; hands-on with at least two MSP-common firewalls (Fortinet/Meraki/WatchGuard/SonicWall) and switch stacks.\n6. Automation & Tooling:\nStrong PowerShell 7 (Graph modules), scripting for tenant and endpoint automation; PSA & RMM policy hygiene and reporting leadership.\n7. Additional Preferred Experience:\nAzure: landing zone-lite for SMB workloads (naming/ RBAC/ Policy), IaaS (VMs, managed disks, availability options), Private Link, site-to-site VPN, Azure Files/ADFSL patterns; Azure Backup and ASR.\nIdentity & governance: PIM, access reviews, basic Purview DLP/labels exposure for SMB; 3rd-party SSO app integrations.\nData Loss Protection (DLP): Deployment and management of process and technologies to protect sensitive information, experience with WISPs or SOC certifications.\nSD-WAN/SASE concepts, DNS filtering, email security gateways, secure remote access brokers.\nCertifications:\nMicrosoft Certifications or equivalent experience:\n1. Required: MS-102: Microsoft 365 Administrator Expert\n2. Additional Preferred:\nSC-100: Microsoft Cybersecurity Architect Expert\nSC-200: Security Operations Analyst Associate\nSC-300: Identity and Access Administrator Associate\nSC-401: Information Security Administrator Associate\nAZ-104 Azure Administrator Associate\nAZ-305: Azure Solutions Architect Expert\nAZ-500: Azure Security Engineer Associate\nPL-600: Microsoft Power Platform Solution Architect\nMD-102: Endpoint Administrator Associate\nVendor Certifications or equivalent experience:\nSonicwall\nVMWare / Hyper-V\nThreatlocker\nKaseya Certified Technician in Datto Backup\nKaseya Certified Technician in K365 Endpoint\nKaseya Certified Technician in RocketCyber\nBenefits:\nDental insurance\nHealth insurance\nPaid time off\nVision insurance\nAbility to Commute:\nReston, VA 20190 (Required)\nWork Location: In person","datePosted":"2026-08-03T14:50:49.031Z","dateModified":"2026-08-03T14:50:49.031Z","hiringOrganization":{"@type":"Organization","name":"Solve","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Reston","addressRegion":"VA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"ef56a3611c30dc7593e89ee2"},"url":"https://jobsearcher.com/jobs/ef56a3611c30dc7593e89ee2"}}