We are seeking a
Platform / Cloud Architect
to design and govern the core cloud-agnostic platform foundations for TASMU Platform 2.0. The role ensures
consistent deployment, security, connectivity, and operational standards
across multiple vendor-delivered capabilities.
The architect defines the target platform architecture across
Azure
and additional clouds, enabling standardized landing zones, Kubernetes runtime patterns, infrastructure-as-code, and shared platform services (identity, observability, logging, CI/CD, networking). The role provides
technical leadership for platform modernization
, ensures design compliance through architecture reviews, and drives
platform reliability, scalability, and cost governance
from build through operations.
Key Responsibilities
-
Define and maintain
TASMU 2.0 platform reference architecture
(cloud-agnostic runtime, shared services, control plane).
-
Design and govern
landing zones, subscription/project structures, network hub/spoke, DNS, routing, and private connectivity patterns
.
-
Establish standardized
Kubernetes architecture
(AKS/GKE/other), cluster baseline, node pool strategy, GPU/TPU readiness, and autoscaling.
-
Define
IaC/GitOps standards
(Terraform/Bicep/Helm, pipelines, drift control, environment promotion).
-
Own
platform-level security-by-design controls
(identity integration, secrets/keys, WAF, segmentation, policy-as-code).
-
Specify
observability and operations foundations
(OTel, logs/metrics/traces, alerting, ITSM integration, SLOs).
-
Drive
resiliency architecture
(HA, backup/restore, DR strategy, RPO/RTO targets, runbooks and testing).
-
Establish
platform service catalog foundations
and “golden paths” for onboarding smart solutions and vendors.
-
Partner with
FinOps
to implement cost governance (tagging, budgets, anomaly detection, chargeback/showback).
-
Provide
technical assurance
for vendor platform deliverables and support production readiness reviews/go-live gates.
Skills & Abilities
-
Deep expertise in
cloud platform architecture
(networking, compute, storage, security, and operations).
-
Strong
Kubernetes platform engineering skills
(cluster design, security, autoscaling, ingress/egress, service mesh concepts).
-
Ability to create
pragmatic cloud-agnostic standards
while leveraging managed services appropriately.
-
Proven experience implementing
IaC/GitOps and platform governance
(policies, baselines, compliance).
-
Strong
troubleshooting mindset
for cross-vendor, cross-environment platform issues and reliability improvements.
Education & Experience
-
Bachelor’s degree in
Computer Science, Information Technology, Cybersecurity
; Master’s degree highly preferred.
-
8+ years
in cloud/platform engineering or architecture roles; experience in government, telco, or critical infrastructure preferred.
-
Hands-on delivery experience with
Azure plus at least one other cloud (GCP/AWS)
and hybrid connectivity patterns.
-
Experience building
secure landing zones, enterprise networks, and multi-environment delivery pipelines
.
-
Experience running
production platforms with SRE/ITIL-aligned practices
(incident/change/problem management).
-
Relevant certifications preferred:
Azure Solutions Architect Expert, Kubernetes CKA/CKS, TOGAF, Cloud Security
.
Preferred Tools
-
IaC/GitOps:
Terraform, Bicep, Helm, ArgoCD/Flux, GitHub, Azure DevOps
-
Cloud & Kubernetes:
Azure, AKS, GKE, Container Registries, Service Mesh (Istio/Linkerd)
-
Observability/Security:
OpenTelemetry, Dynatrace/Datadog, Microsoft Defender for Cloud, Microsoft Sentinel
Soft Skills
-
Strong
technical leadership
and ability to set standards across vendors
-
Clear
communication of complex architectures
to technical and non-technical stakeholders
-
Structured problem solving
and root-cause analysis discipline
-
Delivery focus:
balancing ideal architecture with time/cost constraints
-
Collaboration and influence across
security, operations, and delivery teams