Job Summary
We are seeking a skilled Azure Cloud Engineer to design, deploy, and operate large-scale, secure, and resilient cloud platforms on Microsoft Azure.
In this role you will own the end-to-end cloud engineering lifecycle, including architecture, infrastructure‑as‑code, automation, security hardening, cost optimization, observability, and ongoing operational excellence for production workloads.
The ideal candidate will combine deep technical expertise across Azure services with strong DevOps engineering practices, and will partner closely with application development, security, and SRE teams to deliver cloud-native solutions that meet demanding business requirements for scalability, reliability, and compliance.
Key Responsibilities
- Design and implement enterprise‑grade Azure cloud architectures spanning compute, networking, storage, identity, and data services, with explicit attention to scalability, security, and total cost of ownership.
- Develop, maintain, and continuously improve infrastructure‑as‑code using Terraform, Bicep, or ARM templates, treating infrastructure changes with the same rigor as application code through version control and peer review.
- Configure and manage Azure landing zones, virtual networks, subnets, route tables, and network security groups to enforce strong segmentation and least‑privilege connectivity between workloads.
- Implement secure identity, access management, and governance controls using Azure Active Directory, conditional access, role‑based access control, and Azure Policy to ensure compliance with internal and regulatory standards.
- Architect and operate Azure Kubernetes Service (AKS) clusters, including node pool design, auto‑scaling, network policy, and integration with container registries and service meshes.
- Deploy, scale, and tune Azure data and analytics platforms such as Azure SQL, Cosmos DB, Synapse Analytics, Data Factory, and Event Hubs to meet specific workload patterns and SLAs.
- Build and operate comprehensive CI/CD pipelines using Azure DevOps or GitHub Actions, enabling fast, automated, and auditable releases of both infrastructure and application code.
- Design and implement robust observability practices using Azure Monitor, Log Analytics, Application Insights, and third‑party tooling, with thoughtful dashboards, alerting, and SLO tracking.
- Drive Azure cost optimization initiatives, including right‑sizing, reserved‑instance planning, lifecycle policies, and architectural changes that meaningfully reduce monthly cloud spend.
- Implement disaster‑recovery and business‑continuity strategies, including backup, geo‑replication, failover testing, and documented runbooks that have been validated through regular drills.
- Strengthen security posture by integrating Microsoft Defender for Cloud, Sentinel, key vault, and managed identities, and by routinely remediating findings from compliance scans.
- Collaborate closely with application teams to architect cloud‑native solutions, advising on patterns, anti‑patterns, and Azure‑native services that best fit each problem domain.
- Develop automation scripts and tooling in PowerShell, Bash, and Python to streamline repetitive operational work and reduce time‑to‑resolution for common incidents.
- Mentor junior engineers, lead architecture reviews, and contribute actively to internal communities of practice around Azure and DevOps.
Required Qualifications
- Bachelor's degree in Computer Science, Engineering, or a related technical discipline.
- Five or more years of cloud engineering experience, with at least three years focused on Microsoft Azure in production environments.
- Strong hands‑on experience with Azure core services, including compute, storage, networking, identity, and platform‑as‑a‑service offerings.
- Production‑level experience with infrastructure‑as‑code tools such as Terraform, Bicep, or ARM templates.
- Solid experience designing and operating Azure Kubernetes Service (AKS) clusters at scale.
- Hands‑on experience with Azure DevOps or GitHub Actions for CI/CD across infrastructure and applications.
- Strong scripting skills in PowerShell, Bash, and Python, with the ability to write maintainable automation code.
- Deep understanding of cloud security principles, identity management, and compliance frameworks.
- Experience implementing monitoring, alerting, and observability strategies across distributed workloads.
- Strong troubleshooting, communication, and documentation skills.
Preferred Qualifications
- Experience operating hybrid cloud or multi‑cloud environments spanning Azure and on‑premises infrastructure.
- Familiarity with service mesh technologies such as Istio or Linkerd on AKS.Exposure to Fin
- Ops practices and cloud cost‑management tooling.
- Experience with regulated environments such as HIPAA, PCI‑DSS, SOC2, or Fed
- RAMP.
Equal Employment Opportunity
StatementWe are an equal opportunity employer and place a high value on diversity and inclusion at our company.
We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law.
We also make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs.
Bright Vision Technologies is an Equal Opportunity Employer, including Disability/Veterans.BV Teck expressly prohibits any form of workplace harassment or discrimination.
Any improper interference with employees' ability to perform their job duties may result in disciplinary action up to and including termination of employment.#J-18808-Ljbffr
Skills
- ARM (Advanced RISC Machine), Access Control, Applications Security, Architectural Services, Automation, Bash Scripting, Business Strategy, Cloud Architecture, Cloud Computing, Communication Skills, Computer Networks, Computer Science, Computer Services, Continuous Deployment/Delivery, Continuous Improvement, Continuous Integration, Cost Control, Data Analysis, Database Analysis, DevOps, Disaster Recovery, Disciplinary Action, Diversity, Documentation, Engineering, Failover, GitHub, HIPAA (Health Insurance Portability and Accountability Act), Hubs, Hybrid Cloud, Identify Issues, Identity Data Management, Legal, Machine Tool, Maintain Compliance, Mentoring, Microsoft Active Directory, Microsoft Product Family, Microsoft Windows Azure, Network Integration, Network Routing, Network Security, PCI-DSS, Process Improvement, Production Systems, Psychiatry and Mental Health, Python Programming/Scripting Language, Regulatory Compliance, Replication and Remote Mirroring, Reporting Dashboards, Right-Sizing, SQL Databases, Scripting (Scripting Languages), Service Level Agreement (SLA), Software Design, Software Development, Software Engineering, Source Code/Configuration Management (SCM), Subnet, Systems Engineering, Time Management, Total Cost of Ownership, Windows PowerShell, Writing Skills
About the Company
Business Network Consulting