AI Cloud Expert Architect
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+24 more
Job description
Expert Cloud Architect to lead the architecture, design, and automation of our enterprise cloud platform and security integration frameworks. In this role, you will bridge cloud platform engineering with advanced automation-architecting landing zones, designing Infrastructure-as-Code (IaC) module libraries, and integrating intelligent agentic workflows that orchestrate data from enterprise platforms like Tenable, Infoblox, and firewall management systems. This is a hands-on technical role for a builder who can author enterprise Terraform at scale, design resilient multi-stage CI/CD pipelines, and design automated security attack path mapping and compensating control frameworks., Platform Architecture & Infrastructure-as-Code Landing Zone Evolution: Own and evolve enterprise landing zone architectures, network segmentation, and identity federation in AWS or Azure. LLM & Bedrock Build agent on Kubernetes and Bedrock Strong Python Programing Terraform Module Engineering: Author, version, and maintain reusable enterprise Terraform module libraries, setting strict security defaults and modular design principles. Pipeline Architectures: Build multi-stage CI/CD pipeline architectures in Azure DevOps or GitHub Actions, incorporating policy-as-code enforcement, drift detection, and automated validation. Hybrid Networking: Design secure enterprise network topologies, including transit networks, private endpoints, DNS resolution frameworks, and micro-segmentation. Security Automation & Agentic Workflow Design Vulnerability & Topology Integration: Architect automated workflows and agentic integrations that connect directly to security tooling (e.g., Tenable) to extract vulnerability data. Network & Firewall Intelligence: Leverage network topology data (e.g., Infoblox) and active firewall rule sets to model potential attack vectors and exposure paths across hosted workloads. Compensating Controls & Remediation: Implement automated governance and architecture frameworks to identify required compensating controls (e.g., preventing data exfiltration or lateral movement). Policy-as-Code Enforcement: Embed security standards into deployment pipelines using tools such as Azure Policy, AWS SCPs, OPA/Rego, or Sentinel. Escalation & Technical Leadership Technical Unblocking: Serve as the top-tier escalation point for Senior Cloud Engineers, resolving complex state migration, provider upgrades, and cross-account orchestration issues. Architecture Decision Records (ADRs): Document and enforce binding technical patterns, non-functional requirements, and architectural standards across engineering squads.
Requirements
Experience: 8+ years of hands-on experience in cloud infrastructure, systems engineering, or cloud platform architecture. Cloud Platform: Deep expertise in AWS (preferred) or Azure (single-cloud depth in either environment is acceptable). Infrastructure-as-Code: 5+ years of hands-on experience writing Terraform at scale (enterprise module libraries, multi-environment state management, and custom provider/module development). CI/CD Automation: 4+ years designing CI/CD pipelines using Azure DevOps, GitHub Actions, or equivalent frameworks. Security & Network Integration: Proven track record of integrating enterprise security/networking tools (e.g., Tenable API, Infoblox, Palo Alto/NVA firewalls) into automated cloud infrastructure workflows. Education: Bachelor’s degree in Computer Science, Information Technology, or equivalent industry experience. Preferred / Desirable Skills AWS Certified Solutions Architect Professional OR Azure Solutions Architect Expert. HashiCorp Certified: Terraform Associate. Familiarity with agentic AI integration concepts, API-driven security orchestrations, and automated threat/attack path modeling. Hands-on experience with container platforms (EKS / AKS) and GitOps workflows. Knowledge of zero-trust architecture, identity federation (SAML/OIDC), and secrets management.
About the company
MatchPoint Solutions is a fast-growing, young, energetic global IT-Engineering services company with clients across the US. We provide technology solutions to various clients like Uber, Robinhood, Netflix, Airbnb, Google, Sephora, and more! More recently, we have expanded to working internationally in Canada, China, Ireland, UK, Brazil, and India. Through our culture of innovation, we inspire, build, and deliver business results, from idea to outcome. We keep our clients on the cutting edge of the latest technologies and provide solutions by using industry-specific best practices and expertise. We are excited to be continuously expanding our team. If you are interested in this position, please send over your updated resume. We look forward to hearing from you!
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
7 Cloud Computing Trends Coming in 2025 for Developers
Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence
Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud
Navigating the AI Shift