AI Cloud Expert Architect

MatchPoint Solutions
Maryland Heights, MO, United States
12 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$208,000.0 - $228,800.0
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Amazon Web Services Computing Platforms Systems Engineering Microsoft Azure Cloud Computing Computer Programming Continuous Integration Domain Name System (DNS) Github Network Topologies Python (Programming Language)
+24 more
Modular Design Network Diagnostics Network Segmentation OpenID Zero Trust Network Access Security Assertion Markup Language (SAML) Systems Integration Workflow Management Systems Policy as Code Software Modules Cloud Platform System Delivery Pipeline Large Language Models Firewalls (Computer Science) Containerization Kubernetes Infrastructure Automation Frameworks Information Technology Hashicorp Enterprise Integration Virtual Agents Api Design Terraform Security Orchestration, Automation & Response

Job description

Expert Cloud Architect to lead the architecture, design, and automation of our enterprise cloud platform and security integration frameworks. In this role, you will bridge cloud platform engineering with advanced automation-architecting landing zones, designing Infrastructure-as-Code (IaC) module libraries, and integrating intelligent agentic workflows that orchestrate data from enterprise platforms like Tenable, Infoblox, and firewall management systems. This is a hands-on technical role for a builder who can author enterprise Terraform at scale, design resilient multi-stage CI/CD pipelines, and design automated security attack path mapping and compensating control frameworks., Platform Architecture & Infrastructure-as-Code Landing Zone Evolution: Own and evolve enterprise landing zone architectures, network segmentation, and identity federation in AWS or Azure. LLM & Bedrock Build agent on Kubernetes and Bedrock Strong Python Programing Terraform Module Engineering: Author, version, and maintain reusable enterprise Terraform module libraries, setting strict security defaults and modular design principles. Pipeline Architectures: Build multi-stage CI/CD pipeline architectures in Azure DevOps or GitHub Actions, incorporating policy-as-code enforcement, drift detection, and automated validation. Hybrid Networking: Design secure enterprise network topologies, including transit networks, private endpoints, DNS resolution frameworks, and micro-segmentation. Security Automation & Agentic Workflow Design Vulnerability & Topology Integration: Architect automated workflows and agentic integrations that connect directly to security tooling (e.g., Tenable) to extract vulnerability data. Network & Firewall Intelligence: Leverage network topology data (e.g., Infoblox) and active firewall rule sets to model potential attack vectors and exposure paths across hosted workloads. Compensating Controls & Remediation: Implement automated governance and architecture frameworks to identify required compensating controls (e.g., preventing data exfiltration or lateral movement). Policy-as-Code Enforcement: Embed security standards into deployment pipelines using tools such as Azure Policy, AWS SCPs, OPA/Rego, or Sentinel. Escalation & Technical Leadership Technical Unblocking: Serve as the top-tier escalation point for Senior Cloud Engineers, resolving complex state migration, provider upgrades, and cross-account orchestration issues. Architecture Decision Records (ADRs): Document and enforce binding technical patterns, non-functional requirements, and architectural standards across engineering squads.

Requirements

Experience: 8+ years of hands-on experience in cloud infrastructure, systems engineering, or cloud platform architecture. Cloud Platform: Deep expertise in AWS (preferred) or Azure (single-cloud depth in either environment is acceptable). Infrastructure-as-Code: 5+ years of hands-on experience writing Terraform at scale (enterprise module libraries, multi-environment state management, and custom provider/module development). CI/CD Automation: 4+ years designing CI/CD pipelines using Azure DevOps, GitHub Actions, or equivalent frameworks. Security & Network Integration: Proven track record of integrating enterprise security/networking tools (e.g., Tenable API, Infoblox, Palo Alto/NVA firewalls) into automated cloud infrastructure workflows. Education: Bachelor’s degree in Computer Science, Information Technology, or equivalent industry experience. Preferred / Desirable Skills AWS Certified Solutions Architect Professional OR Azure Solutions Architect Expert. HashiCorp Certified: Terraform Associate. Familiarity with agentic AI integration concepts, API-driven security orchestrations, and automated threat/attack path modeling. Hands-on experience with container platforms (EKS / AKS) and GitOps workflows. Knowledge of zero-trust architecture, identity federation (SAML/OIDC), and secrets management.

About the company

MatchPoint Solutions is a fast-growing, young, energetic global IT-Engineering services company with clients across the US. We provide technology solutions to various clients like Uber, Robinhood, Netflix, Airbnb, Google, Sephora, and more! More recently, we have expanded to working internationally in Canada, China, Ireland, UK, Brazil, and India. Through our culture of innovation, we inspire, build, and deliver business results, from idea to outcome. We keep our clients on the cutting edge of the latest technologies and provide solutions by using industry-specific best practices and expertise. We are excited to be continuously expanding our team. If you are interested in this position, please send over your updated resume. We look forward to hearing from you!

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

6:36 min

Funding open source through GitHub Accelerator and Sponsors

Stormy Peters · World Congress 2023

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas Südbröcker · LIVE

6:13 min

Defining cloud proficiency by technical role

Piet Van Dongen · LIVE

Videos

See all

Related articles

See all