HamburgerMenu
hirist

Job Description

Description :


We are seeking a highly experienced Sr Azure Infrastructure Engineer to lead and evolve our cloud platform within a regulated financial services environment.



This is a hands-on, architecture-level role responsible for designing, securing, and operating a scalable, compliant Azure ecosystem supporting mission-critical workloads.

You will act as a cloud authority and technical leader, partnering with IT, Security, and Product Engineering to define Azure standards, bootstrap secure environments, and ensure operational excellence across customer-facing deployments.

You will mentor engineers, influence platform strategy, and continuously improve reliability, security posture, and cost efficiency using Infrastructure as Code and automation-first practices.

This role requires deep independence, architectural judgment, and ownership-someone comfortable making high-impact decisions, challenging assumptions, and setting long-term cloud direction.

Role & Responsibilities :



- Architect, implement, and operate enterprise-grade Azure infrastructure for mission-critical workloads


- Design and maintain high availability, disaster recovery, and business continuity architectures


- Lead Azure Landing Zone design (management groups, subscriptions, policies, identity, networking)


- Define and enforce cloud security architecture using Zero Trust principles


- Implement identity and access management with Azure Entra ID, RBAC, PIM, Conditional Access, and managed identities


- Design and manage network security controls (NSGs, Azure Firewall, WAF, Private Endpoints, VPN/ExpressRoute)


- Implement data protection, encryption, and secure secret management using Key Vault and CMK


- Ensure compliance with financial and security standards (PCI DSS, SOC 2, GDPR, NIST/ISO 27001)


- Drive security monitoring, incident response, and post-incident reviews using Defender for Cloud and Sentinel


- Lead Infrastructure as Code strategy using Terraform and/or Bicep/ARM


- Establish GitOps-style workflows and automation-first infrastructure deployments


- Build operational tooling and automation using PowerShell, Bash, and Python


- Ensure environment consistency across development, testing, staging, and production


- Design and optimize CI/CD pipelines with Azure DevOps, GitHub Actions, or Jenkins


- Support application teams with deployment automation, release strategies, and rollbacks


- Apply SRE practices including SLIs, SLOs, error budgets, and capacity planning


- Design and operate container platforms using Azure Kubernetes Service (AKS)


- Implement secure container pipelines with Docker, Helm, image scanning, and policy enforcement


- Architect monitoring and observability using Azure Monitor, Log Analytics, and Application Insights


- Define alerts, dashboards, and runbooks for proactive operations


- Lead FinOps initiatives including cost modeling, budget controls, and optimization strategies


- Act as a technical leader, mentor, and escalation point for engineering teams


- Produce technical documentation, architecture diagrams, and operational runbooks


- Collaborate with Security, Compliance, and Product teams to align cloud strategy with business goals


- Influence cloud standards, best practices, and long-term platform roadmap

Skills & Qualifications :

Must-Have :



- 10+ years of overall IT experience, with 7+ years of deep, hands-on Azure experience in enterprise or regulated environments.


- Proven experience designing and operating production-grade Azure architectures at scale.


- Expert-level knowledge of core Azure services : Compute, Networking, Storage, Security.


- Strong expertise in Infrastructure as Code (Terraform and/or Bicep/ARM).


- Advanced scripting and automation skills in PowerShell, with working knowledge of Python or Bash.


- Hands-on experience with AKS, Docker, and cloud-native deployment patterns.


- Experience implementing identity and access management : Azure Entra ID (Azure AD), RBAC, PIM, Conditional Access, managed identities


- Expertise in data protection and encryption strategies (Key Vault, CMK, disk encryption, secure secret management).


- Deep understanding of cloud security architecture, governance, identity, and compliance frameworks.


- Understanding of cost optimization and FinOps practices in Azure


- Strong troubleshooting skills across networking, identity, performance, and deployment failures.


- Excellent communication skills for diverse audiences.


- Bachelor's degree in computer science, Engineering, or equivalent practical experience.

Preferred :


- Microsoft certifications such as AZ-305, AZ-500, AZ-400.



- Experience supporting financial services, banking, fintech, or regulated industries.


- Experience working with data engineering teams and SQL, snowflake and data as a service product.


- Hands-on experience with Azure Sentinel, ExpressRoute, policy-as-code, compliance automation.


- Exposure to multi-cloud or hybrid cloud strategies.


- Experience leading cloud migrations or greenfield Azure builds.

What We're Looking for in You :



We're looking for a cloud leader, not just an operator.

You take ownership, think several steps ahead, and balance speed with security and reliability.

You enjoy mentoring others, improving systems, and shaping cloud strategy-not just keeping the lights on.

If you thrive in complex, high-impact environments and enjoy building secure, scalable Azure platforms that stand up to real-world scrutiny, this role is for you

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in

Loading chat...