Microsoft Engineer – Hybrid Migration & Compliance
Responsibilities & Duties
Role Overview
We are seeking a highly skilled Microsoft Engineer to lead a large-scale hybrid migration from on-premises Exchange Server 2019 to Microsoft 365 GCC (G3). This project will involve migrating ~400 mailboxes (~16 TB) while ensuring hybrid coexistence, compliance with CJIS, PCI, HIPAA standards, and integration with enterprise security platforms. The successful candidate will design, implement, and validate all identity, security, governance, and migration components, delivering a secure, compliant, and modern collaboration environment.
Key Responsibilities:
Strategy & Planning
-
Conduct discovery workshops to confirm compliance requirements (CJIS, PCI, HIPAA, GCC).
-
Develop the migration roadmap, batch sequencing strategy, and project milestones.
-
Assess Exchange 2019 environment, Active Directory, and Entra Connect readiness.
Identity & Security
-
Deploy and configure Entra Connect with Password Hash Sync for hybrid identity.
-
Implement and enforce MFA, Conditional Access, and identity hardening policies.
-
Integrate Imprivata MFA for CJIS-governed Police Department accounts.
-
Apply Microsoft 365 baseline security configurations and remediate compliance gaps.
Hybrid Enablement & Migration
-
Execute Hybrid Configuration Wizard (HCW) and configure secure mail flow.
-
Conduct a pilot migration (20 mailboxes) and refine migration processes.
-
Perform department-based batch migrations (~16 TB), validating mailbox content, routing, and access.
-
Troubleshoot hybrid coexistence issues, free/busy sync, and GAL synchronization.
Compliance & Governance
-
Design and implement governance features including DLP, retention, and eDiscovery.
-
Integrate Sophos firewall and EDR for automated event-driven responses.
-
Conduct compliance testing against CJIS, PCI, HIPAA, and GCC requirements.
Training & Knowledge Transfer
-
Deliver training sessions for administrators on hybrid identity and compliance management.
-
Provide as-built documentation covering hybrid configuration, security baselines, and governance.
-
Support cutover validation and Exchange 2019 decommissioning roadmap.
Required Qualifications & Experience
-
Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or related field.
-
8+ years of hands-on experience with Microsoft Exchange & Microsoft 365 architecture.
-
Proven success in Exchange hybrid deployments and large-scale migrations (>10 TB).
-
Strong expertise in Entra Connect, MFA, Conditional Access, and identity security.
-
Experience with compliance frameworks (CJIS, HIPAA, PCI, GCC).
-
Knowledge of third-party integrations (Imprivata MFA, Sophos firewall/EDR).
-
Proficiency in Microsoft 365 governance tools (DLP, retention, eDiscovery).
-
Strong troubleshooting and migration optimization skills.
-
Excellent communication, documentation, and stakeholder management skills.
Preferred Qualifications
-
Microsoft Certified: Cybersecurity Architect Expert or Messaging Administrator Expert.
-
Previous experience supporting law enforcement or public sector environments.
-
Familiarity with third-party migration tools (e.g., Quest, BitTitan).