Senior Cloud Solutions Architect (Hybrid Cloud)
Role Overview: We are looking for a Senior Cloud Solutions Architect to serve as the primary visionary for our cloud-native banking platforms. You will design secure, scalable, and cost-effective architectures across both Azure and AWS. Your mission is to translate complex business requirements into technical designs that satisfy rigorous banking regulations, satisfy cybersecurity audits, and empower engineering teams to build with speed and safety.
Key Responsibilities:
-
Architecture Design: Create high-level and low-level design documents (HLD/LLD) for web and mobile-backend applications, ensuring high availability and disaster recovery (DR) capabilities.
-
Hybrid-Cloud Governance: Establish organizational structures across cloud providers, including the segregation of environments using Subnets, Resource Groups (Azure), and Accounts/Organizations (AWS) according to the Principle of Least Privilege.
-
Network Sovereignty: Architect complex network topologies featuring Hub-and-Spoke models, Private Link, Transit Gateways, and WAF/DDoS protection to ensure data never traverses the public internet unnecessarily.
-
Security & Compliance Advocacy: Act as the technical liaison to Cybersecurity, Data Management, and Corporate Risk teams. You must defend your designs under scrutiny, proving compliance with banking standards (e.g., PCI-DSS, ISO 27001, and central bank regulations).
-
FinOps Strategy: Optimize the Total Cost of Ownership (TCO) by selecting the correct SKUs (e.g., Reserved Instances vs. Spot, Premium vs. Standard tiers) and ensuring resource tagging for accurate department billing.
-
Technical Mentorship: Provide a "North Star" for Platform and DevOps engineers, ensuring that the implemented Infrastructure-as-Code (Terraform) aligns perfectly with your architectural blueprints.
Technical & Professional Requirements:
-
Dual-Cloud Expertise: Professional-level certification in AWS (Solutions Architect Professional) or Azure (Solutions Architect Expert) is highly preferred.
-
Network Engineering: Mastery of Cloud Networking (VPC/VNET peering, VPN Tunnels, Direct Connect/ExpressRoute, and Load Balancing) preferred.
-
Security-First Mindset: Experience implementing Zero-Trust architecture, Identity Access Management (IAM) at scale, and encryption-at-rest/transit.
-
Banking Domain Knowledge: Proven experience designing systems within the financial sector, with a firm grasp of audit trails, data residency, and risk mitigation.
-
Stakeholder Management: Ability to influence C-suite executives and pivot technical language for business stakeholders while maintaining deep technical credibility with engineers.
Application Lifecycle: Strong understanding of modern application stacks (Microservices, Containerization/K8s, and Serverless).