Cravath, Swaine & Moore LLP Logo

Cravath, Swaine & Moore LLP

Senior Cloud Engineer

Reposted An Hour Ago
Hybrid
New York, NY
180K-220K Annually
Senior level
Hybrid
New York, NY
180K-220K Annually
Senior level
The Senior Cloud Engineer will manage the Firm's Microsoft identity, access, and hybrid infrastructure, focusing on design, implementation, and technical leadership within a high-availability environment.
The summary above was generated by AI
OVERVIEW

Cravath has been known as one of the premier U.S. law firms for more than two centuries. Throughout our history, we have played a central role in developing how law is practiced, how lawyers are trained and how business risk is managed. Our goal is to be the firm of choice for clients with respect to their most challenging legal issues, most significant business transactions and most critical disputes.


We are seeking a Senior Cloud Engineer to take ownership of the Firm’s Microsoft identity, access, and hybrid infrastructure platforms. This is a hands-on role for an engineer who is very comfortable working with Entra ID, Azure and hybrid infrastructure, while leading complex initiatives from design through implementation.


This role is best suited for someone who enjoys solving difficult technical problems, improving how identity and access are managed across the environment, and balancing modernization work with the realities of a high-availability production environment.

RESPONSIBILITIES

Identity & Authentication

  • Owns and evolves the Firm’s Microsoft Entra ID and hybrid identity environment, including Conditional Access, Enterprise Applications, and SSO across SAML and OIDC-integrated applications;
  • Designs and maintains authentication and access controls, including MFA, passwordless authentication, Windows Hello for Business, certificate-based authentication, and administrative account segmentation;
  • Manages privileged access controls, including role-based access, PIM, and related administrative security standards;
  • Leads the transition from legacy authentication models to cloud-first identity, including migration of ADFS-integrated applications, adoption of Password Hash Sync where appropriate, and significant reduction of legacy authentication dependencies; and
  • Improves visibility, monitoring, and security controls across the identity platform, in partnership with IT Security.

Cloud & Core Infrastructure

  • Leads Active Directory upgrades and improvements, including domain and forest planning, domain controller lifecycle management, replication health, and related directory services;
  • Maintains and optimizes core infrastructure services including Active Directory, PKI, DNS, DHCP, and DFS/DFSR; and
  • Contributes to broader infrastructure initiatives, including NetApp storage optimization and NFS modernization, and supports VMware-based hybrid infrastructure where needed.

Automation & Engineering

  • Builds and maintains PowerShell automation for identity, infrastructure, and operational workflows;
  • Develops scripts and integrations using Microsoft Graph API for provisioning, reporting, and administrative tasks; and
  • Maintains clear technical documentation, standards, and runbooks to support operations and project delivery.

Technical Leadership & Operations

  • Acts as a technical lead on identity and infrastructure projects from design through post-implementation review;
  • Partners with Security, Application Development, and Operations teams to deliver secure, practical solutions;
  • Troubleshoots complex authentication, access, and hybrid identity issues in a 24/7 production environment;
  • Takes ownership of high-priority and unplanned work and drives issues through to resolution with minimal oversight;
  • Participates in an on-call rotation and provide after-hours support when needed; and
  • Performs additional duties as assigned.
QUALIFICATIONS
  • Bachelor’s degree or equivalent practical experience;
  • 10+ years of experience supporting Microsoft-based enterprise environments, with a strong focus on identity, authentication, and directory services;
  • Strong hands-on experience with Azure, Microsoft Entra ID, hybrid identity, Conditional Access, SSO, Intune, and Active Directory;
  • Hands-on experience with PowerShell, Microsoft Graph API, and Azure-based identity and hybrid connectivity services;
  • Experience leading complex infrastructure, identity, or modernization initiatives in production environments;
  • Solid understanding of identity security, privileged access, and Zero Trust concepts;
  • Ability to work through ambiguity, manage competing priorities, and make sound technical decisions in a fast-paced environment;
  • Experience with VMware and NetApp is a plus;
  • Microsoft Azure Administrator (AZ-104) and other relevant Microsoft identity or security certifications are preferred;
  • Strong communication skills and the ability to work effectively across technical and non-technical teams; and
  • Ability to work additional hours as needed, including nights and weekends.

This position is located in our New York office, and currently has a hybrid work schedule, but that is subject to change. The estimated salary range for this position is $180,000 to $220,000. The actual salary offered will be based on a wide range of factors, including relevant skills, training, experience, education, and where applicable, licensure or certification obtained. Market and Firm factors are also considered. In addition to base salary and discretionary bonus(es), we offer a generous employee benefits package including, but not limited to, paid time off, medical, dental, vision care, 401(k) and substantial health club discounts.

Similar Jobs

2 Days Ago
Hybrid
140K-215K Annually
Senior level
140K-215K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Build and operate a scalable integrations platform for data connectors ingesting petabytes/day. Design and develop distributed, multi-region systems in Go/Python, implement connectors (REST, WebSocket, file), ensure high availability, optimize performance/cost, support production incidents, and drive cross-team platform initiatives and SDK improvements.
Top Skills: AWSAzureEdrFirewallsGCPGoIds/IpsPythonRest ApisSdksSIEMWebsockets
3 Days Ago
Easy Apply
In-Office
Easy Apply
160K-200K Annually
Senior level
160K-200K Annually
Senior level
Artificial Intelligence • Computer Vision • Machine Learning • Payments • Real Estate • PropTech
Design, implement, and maintain scalable, secure cloud infrastructure across products. Lead infrastructure modernization (CI/CD, IaC, Kubernetes), disaster recovery, incident response, and PCI/SOC2 compliance. Troubleshoot Linux/Windows environments, manage observability and service-mesh components, integrate legacy systems, and mentor junior engineers.
Top Skills: Amazon AuroraAtmosAWSAws MskAws Secrets ManagerBashCi/CdDatadogEksEnvoyGoHashicorp VaultHelmIacInfisicalIstioKafkaKubernetesLinuxPythonTerraformWindows
5 Days Ago
Remote or Hybrid
United States
Senior level
Senior level
Information Technology • Sales • Security • Cybersecurity • Automation
Act as the technical presales lead for AI agent and cloud identity security across North America: scope engagements, design and run POCs and architectures across AWS/Azure/GCP, secure non-human and machine identities, create repeatable technical assets, and partner with account teams to close deals.
Top Skills: Aws IamAzure AdClaudeCopilotCursorCyberark DefenderEntra IdGCPOkta

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account