Azure Cloud Engineer / Architect

Advent Global Solutions
Richardson, TX, United States
3 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Active Directory Application Firewall Application Performance Management Systems Engineering Microsoft Azure Cloud Computing Cloud Engineering Cyber Security Databases System Configuration Continuous Integration
+36 more
Data Centers Dynamic Host Configuration Protocol DDoS Mitigation Linux Disaster Recovery Domain Name System (DNS) Identity and Access Management IT Management Internet Protocol Security (IP SEC) Subnetting Virtual Private Networks (VPN) Network Security Log Analysis SQL Azure Windows Servers Virtual Desktops NetApp Applications Network Diagrams Routing Network Segmentation Peering Performance Tuning Role-Based Access Control Azure Active Directory Zero Trust Network Access TCP/IP Virtual Machines Wide Area Networks Backup and Restore Azure Service Bus Load Balancing Cloud Monitoring HybridCloud Firewalls (Computer Science) Terraform Key Vault

Job description

We are seeking a highly experienced Senior Azure Cloud Engineer / Architect to design, build, secure, operate, and continuously improve Microsoft Azure infrastructure supporting a global, multi-site organization.

This is a senior-level, hands-on technical role requiring broad expertise across the entire Azure cloud stack, including networking, compute, identity and access management, security, storage, backup and disaster recovery, monitoring, governance, automation, and cost optimization.

The successful candidate will serve as a senior technical authority for Microsoft Azure, capable of both designing enterprise cloud architecture and directly implementing, configuring, troubleshooting, securing, and supporting Azure infrastructure while also being able to mentor junior cloud engineers. The role will collaborate with Network, Security, Server, Application, Database, and IT teams across multiple countries and regions, Azure Architecture & Infrastructure

  • Design, implement, and support enterprise-scale Azure environments across multiple geographic regions.
  • Develop and maintain Azure Landing Zones, management groups, subscriptions, resource groups, naming standards, tagging, and governance models.
  • Architect highly available, resilient, secure, and scalable cloud infrastructure aligned with Microsoft best practices.
  • Build and administer Windows and Linux Azure Virtual Machines, managed disks, images, snapshots, Availability Zones, Availability Sets, and VM Scale Sets.
  • Establish standardized deployment patterns for production, development, test, and disaster recovery environments.
  • Serve as a senior escalation point for complex Azure infrastructure and architecture issues.

Azure Networking

Design, implement, and troubleshoot enterprise Azure networking technologies, including:

  • Virtual Networks (VNets), subnets, VNet peering, and global peering
  • Hub-and-spoke architectures and Azure Virtual WAN
  • Network Security Groups (NSGs) and User Defined Routes (UDRs)
  • Azure Firewall, Application Gateway, and Web Application Firewall (WAF)
  • Azure Front Door, Load Balancers, NAT Gateway, and Traffic Manager
  • Private Link, Private Endpoints, and Service Endpoints
  • Azure DNS and Private DNS Zones
  • ExpressRoute, Site-to-Site VPN, and Point-to-Site VPN
  • Hybrid cloud, global WAN, and SD-WAN connectivity
  • Network segmentation and Zero Trust architecture

Troubleshoot complex routing, DNS, firewall, VPN, peering, private endpoint, and application connectivity issues across Azure and on-premises environments.

Identity, IAM & Security

  • Design and administer Microsoft Entra ID, Azure RBAC, Conditional Access, Privileged Identity Management (PIM), Managed Identities, Service Principals, and Application Registrations.
  • Implement least-privilege and Zero Trust access models.
  • Design and maintain security controls using Microsoft Defender for Cloud, Azure Firewall, WAF, DDoS Protection, Key Vault, Azure Policy, encryption, private endpoints, and security monitoring.
  • Partner with Cybersecurity teams to remediate vulnerabilities, configuration issues, security recommendations, and audit findings.
  • Ensure Azure environments comply with corporate security standards and applicable regulatory requirements.

Governance & Resource Management

  • Manage Azure management groups, subscriptions, resource groups, policies, resource locks, tagging, and RBAC.
  • Establish enterprise cloud governance standards and deployment guardrails.
  • Maintain appropriate separation of duties and administrative boundaries.
  • Implement Azure Policy and standardized security and configuration baselines.
  • Ensure consistent resource ownership, lifecycle management, and operational standards across the global Azure environment.

Storage, Backup & Disaster Recovery

  • Design and support Azure Storage Accounts, Blob Storage, Azure Files, Managed Disks, Azure NetApp Files, File Sync, encryption, and storage replication.
  • Architect and administer Azure Backup, Recovery Services Vaults, and Azure Site Recovery.
  • Design multi-region disaster recovery solutions based on defined RTO and RPO requirements.
  • Conduct periodic recovery testing and ensure critical workloads can recover from regional or infrastructure failures.

Monitoring, Automation & Infrastructure as Code

  • Design monitoring and alerting using Azure Monitor, Log Analytics, Application Insights, Network Watcher, Azure Service Health, Alerts, Action Groups, and Workbooks.
  • Drive an Infrastructure-as-Code-first approach to improve deployment consistency, security, repeatability, and recoverability.

Hybrid, Global Infrastructure & Cloud Operations

  • Integrate Azure with global data centers, corporate offices, manufacturing facilities, warehouses, and other enterprise locations.
  • Support ExpressRoute, IPSec VPN, SD-WAN, hybrid DNS, Active Directory/Entra ID, and global routing architectures.
  • Understand multi-region architectures, data residency requirements, and global disaster recovery considerations.
  • Monitor Azure consumption and optimize cloud costs through right-sizing, Reservations, Savings Plans, resource cleanup, budgets, alerts, and Azure Advisor recommendations.
  • Create and maintain architecture diagrams, network diagrams, build documentation, operational procedures, disaster recovery documentation, and cloud standards.

Requirements

  • 8+ years of enterprise infrastructure, cloud engineering, systems engineering, or related experience.
  • 5+ years of hands-on Microsoft Azure experience supporting enterprise environments.
  • Advanced knowledge of Azure networking, including VNets, peering, routing, firewalls, load balancing, private endpoints, VPNs, DNS, and ExpressRoute.
  • Advanced knowledge of Azure Virtual Machines, compute, storage, availability, and performance optimization.
  • Strong knowledge of Microsoft Entra ID, IAM, RBAC, PIM, Conditional Access, Managed Identities, and Service Principals.
  • Strong understanding of Azure security architecture, including Defender for Cloud, Azure Firewall, WAF, Key Vault, Azure Policy, and Zero Trust principles.
  • Experience with Azure Landing Zones, management groups, subscriptions, resource groups, governance, and enterprise cloud standards.
  • Experience with Azure Backup, Site Recovery, Azure Monitor, and Log Analytics.
  • Strong understanding of enterprise networking technologies, including TCP/IP, routing, DNS, DHCP, firewalls, VPNs, and load balancing.
  • Strong Windows Server knowledge and working knowledge of Linux.
  • Demonstrated experience troubleshooting complex, business-critical production environments.
  • Strong communication skills and experience working with globally distributed technical teams., * Terraform Associate or equivalent Infrastructure as Code experience
  • Experience with Azure DevOps, Azure SQL, Azure Virtual Desktop, and CI/CD.
  • Experience supporting large multinational organizations, manufacturing environments, global data centers, and hybrid cloud architectures.

Key Success Characteristics

The ideal candidate is a hands-on senior cloud technologist capable of moving seamlessly between architecture and engineering. This individual can design an enterprise Azure solution at the architectural level and then work directly within Azure to build, secure, troubleshoot, automate, and optimize it.

The successful candidate will demonstrate strong technical ownership, exceptional troubleshooting skills, a security-first mindset, and the ability to lead technical design discussions and mentor other engineers. They must be comfortable working across networking, compute, identity, security, storage, automation, and traditional infrastructure while communicating effectively with technical teams and IT leadership.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

5:28 min

Bitcoin scaling and the transition to peer-to-peer transactions

Jad Wahab · LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

1:35 min

Powping protocol for direct peer-to-peer interactions

Glenn Wolfe · LIVE

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · World Congress 2022

Videos

See all

Related articles

See all