We are seeking a skilled and motivated Azure Cloud Engineer with deep expertise in cloud infrastructure, Azure Landing Zones, and on-premises-to-Azure migrations. The ideal candidate will have a strong understanding of Azure native services, infrastructure-as-code practices, cloud governance, and cloud security operations, including Microsoft Defender for Cloud. This role will be pivotal in designing, implementing, and managing scalable and secure Azure environments that align with enterprise architecture and security standards.
- Design and implement Azure Landing Zones using Microsoft best practices and enterprise-scale architectures.
- Lead or support end-to-end migrations of infrastructure workloads from on-premises environments to Azure.
- Develop and manage infrastructure as code (IaC) using tools such as Terraform, Bicep, or ARM templates.
- Configure and manage core Azure IaaS services (e.g., VMs, VNets, NSGs, Load Balancers, Storage Accounts).
- Implement governance controls, including Management Groups, Policies, Blueprints, and Role-Based Access Control (RBAC).
- Monitor and maintain cloud security posture using Microsoft Defender for Cloud and Azure Security Center.
- Ensure proper backup, disaster recovery (DR), and business continuity configurations across cloud infrastructure.
- Optimize the cost, performance, and reliability of cloud infrastructure through continuous assessments.
- Work with cross-functional teams to ensure cloud solutions meet business, technical, and compliance requirements.
- Maintain documentation of architectures, configurations, and procedures.
- Stay current on Azure developments and proactively recommend improvements.
- Bachelor’s degree in Computer Science, Information Technology, or related field.
- 3+ years of delivery experience in infrastructure or cloud engineering roles.
- Proven experience with Microsoft Azure, particularly with IaaS, PaaS, and hybrid cloud models.
- Hands-on experience with Azure Migrate, ASR, and other migration tools.
- Strong knowledge of Azure Networking, Identity & Access Management (IAM), and resource organization (subscriptions, management groups, etc.).
- Experience with Terraform, Bicep, or ARM templates for infrastructure provisioning.
- Familiarity with Defender for Cloud, Sentinel, and other Microsoft security and monitoring tools.
- Understanding of cloud governance, security best practices, and Zero Trust architecture.
- Good scripting knowledge using PowerShell, Azure CLI, or Python.
- Ability to troubleshoot and optimize infrastructure performance and availability.
- Microsoft Certified: Azure Solutions Architect, Azure Administrator, or Azure Security Engineer.
- Experience working in regulated environments (e.g., finance, healthcare, education, or government).
- Familiarity with Azure Arc, Hybrid Join, and private endpoints.
- Knowledge of ITIL practices, Change Management, and Operational Readiness.