Network Cloud Architect
CYNET SYSTEMS INC.
Atlanta, United States of America
yesterday
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
English Experience level
SeniorJob location
Remote
Atlanta, United States of America
Tech stack
Azure
Border Gateway Protocol
Big Data
Cloud Engineering
Digital Architecture
Disaster Recovery
DNS
Virtual Private Networks (VPN)
Log Analysis
Network Architecture
Network Planning and Design
Routing
Network Segmentation
Azure
Zero Trust Network Access
Load Balancing
System Availability
HybridCloud
Firewalls (Computer Science)
Containerization
Kubernetes
Infrastructure Automation Frameworks
Information Technology
Bicep
Microsoft Sentinel
Hardware Infrastructure
Terraform
Job description
- Design and implement Azure cloud architecture aligned with enterprise governance standards.
- Define Azure landing zones, subscription strategies, management groups, and identity integration.
- Architect hybrid connectivity between on-premises infrastructure and Azure environments.
- Lead infrastructure discovery and dependency mapping for migration workloads.
- Develop phased migration strategies including rehost, replatform, and refactor approaches.
- Create cutover, rollback, coexistence, and decommissioning plans.
- Design network security controls, firewall strategies, NSGs, ASGs, UDRs, and conditional access models.
- Enable infrastructure automation and provisioning frameworks.
- Define monitoring, backup, patching, and lifecycle management strategies.
- Collaborate with operations teams to transition to cloud operating models.
- Document architecture standards, runbooks, and technical reference patterns.
- Provide technical guidance to leadership, stakeholders, and project teams.
Requirements
- 10+ years of experience in enterprise infrastructure and network architecture.
- 5+ years of hands-on Azure architecture experience.
- Proven experience leading large-scale data center to Azure cloud migration projects.
- Strong expertise in hybrid networking including ExpressRoute, VPN, and BGP routing.
- Experience with Azure landing zones and enterprise cloud governance.
- Strong understanding of enterprise firewall architectures.
- Experience with Azure AD/Entra ID and hybrid identity integration.
- Deep understanding of infrastructure security and Zero Trust architecture principles.
- Strong knowledge of DNS, IPAM, routing, and load balancing.
- Experience working in environments managed by third-party infrastructure providers.
Experience:
- Experience designing Azure VNet architecture and hub-and-spoke topology.
- Experience implementing network segmentation and micro-segmentation strategies.
- Experience designing high availability, resiliency, disaster recovery, and business continuity solutions.
- Experience developing Infrastructure-as-Code solutions using Terraform, ARM, or Bicep.
- Experience implementing monitoring and observability solutions using Azure Monitor, Log Analytics, and Sentinel.
- Experience with Azure Firewall, Network Virtual Appliances, Application Gateway, and Front Door.
- Experience supporting container platforms and Kubernetes (AKS) integration.
- Experience with cloud governance, tagging strategy, and FinOps alignment., * Strong analytical and problem-solving skills.
- Excellent communication and stakeholder management abilities.
- Ability to work in large enterprise and hybrid cloud environments.
- Strong documentation and architecture governance experience.
Skills:
- Microsoft Azure.
- Azure Landing Zones.
- ExpressRoute.
- VPN and BGP Routing.
- Azure Firewall.
- Terraform.
- ARM Templates.
- Bicep.
- Azure Monitor.
- Log Analytics.
- Microsoft Sentinel.
- Kubernetes (AKS).
- Infrastructure as Code.
- Zero Trust Security.
- DNS and IPAM.
- Load Balancing.
- Disaster Recovery and Business Continuity.
Qualification and Education:
- Bachelor s degree in Computer Science, Information Technology, Engineering, or related field preferred.
- Azure certifications are highly preferred.