Group Cloud Engineer
Role details
Job location
Tech stack
Job description
We are looking for a talented and experienced Senior Cloud & Infrastructure Engineer to join the Colosseum Dental Group technology team. In this role, you will take full ownership of our multi-country Microsoft Azure environments, hybrid infrastructure, and network services across Europe, driving harmonisation, automation, security hardening, and continuous infrastructure evolution across all our markets.
As a key member of our DevOps-oriented team, you will shape how we build, operate, and scale cloud infrastructure across the group, setting standards and playing a central role in our ongoing digital transformation. This is a hands-on, cross-functional position suited for someone who thrives in a diverse and fast-moving technical environment, and who enjoys both deep engineering work and broader operational responsibilities., * Design, deploy, and maintain Azure environments across Colosseum Dental Group's countries, following best practices for security, compliance, scalability, and cost optimization
- Manage cloud networking including VNets/VPCs, peering, VPN gateways, DNS, and load balancers
- Implement and maintain Infrastructure as Code (IaC) using tools such as Terraform or Bicep
- Monitor cloud resource usage, performance, and cost
- Drive optimization initiatives
- Evolve cloud security posture through continuous improvement of identity & access management, network security, and compliance frameworks (e.g. ISO 27001, GDPR, NIS2).
- Collaborate cross-functionally with IT, security, and development teams to support application migrations and new service deployments.
- Develop and maintain cloud governance processes, documentation, and operational runbooks.
- Monitor cloud resource usage and spend and optimise cost allocation across environments and business units.
- Evaluate and contribute to roadmap decisions for cloud infrastructure evolution, including emerging technologies and architectural improvements.
Windows Server & Hybrid Infrastructure
- Administer and maintain Windows Server environments within Azure (Active Directory, DNS, DHCP, Group Policy, File Services) across multiple countries/regions
- Manage hybrid identity and connectivity solutions (Azure AD Connect, Entra ID, hybrid join)
- Oversee patch management, backup, and disaster recovery procedures
- Support and maintain virtualization platforms (Hyper-V / VMware)
Cloud Networking
- Manage and optimize cloud-native networking components including firewalls, NSGs, route tables, and private endpoints
- Maintain site-to-site and point-to-site VPN connectivity between cloud and on-premises environments
- Collaborate with security teams to ensure network segmentation and compliance
Network Device Management (Nice to Have)
- Configure, monitor, and troubleshoot Cisco Meraki devices (switches, access points, firewalls/MX appliances) via the Meraki Dashboard
- Support multi-site network deployments and SD-WAN configurations
SaaS Platform Administration (Nice to Have)
- Assist in the administration of business-critical SaaS platforms (e.g., Microsoft 365, Intune, endpoint management, or other enterprise tools)
- Manage user provisioning, access controls, and integrations across SaaS solutions
- Work with vendors and internal stakeholders on onboarding new SaaS platforms
Requirements
- 5+ years of hands-on experience with Microsoft Azure and Windows Servers in production environments.
- Proven expertise in Azure services including Virtual Networks, Azure AD / Entra ID, Azure Policy, Defender for Cloud, Azure Monitor, and Azure DevOps or GitHub
- Strong experience with infrastructure automation and IaC (Terraform, Bicep, or ARM templates).
- Solid understanding of cloud security principles, identity management, and compliance in regulated industries.
- Proficiency in cloud networking concepts (routing, firewalls, DNS, VPN, private connectivity).
- Experience managing multi-region or multi-tenant Azure environments.
- Active industry certification(s) such as AZ-104, AZ-305 (Azure Solutions Architect), AZ-500 (Security), or equivalent.
- Excellent communication skills in English (additional languages a plus) and ability to work across cultures and time zones.
Preferred Qualifications
- Experience with Google Cloud Platform (GCP) and/or Amazon Web Services (AWS).
- Experience with Cisco Meraki or similar SD-WAN/cloud-managed networking platforms
- Familiarity with SaaS administration (e.g. M365, Azure AD/Entra ID, MDM/Intune, Atlassian)
- Familiarity with LAN/WAN networking concepts, SD-WAN, VPNs, and hybrid connectivity solutions.
- Experience working within multi-country or enterprise-scale organisations.
- Additional certifications such as Google Professional Cloud Architect or AWS Solutions Architect.
Benefits & conditions
- Be part of one of Europe's leading and fastest-growing dental care groups.
- Work on complex, real-world cloud challenges across multiple countries and environments.
- Shape the cloud strategy and leave a visible, lasting impact on our infrastructure.
- Collaborate with a skilled and international team committed to continuous improvement.
- Competitive compensation, benefits, and opportunities for professional development.