For one of our longterm multiyear fulltime projects we are looking for an Azure Platform Architect out of Illinois (Remote till COVID).
Roles and Responsibilities:
- Architecture and Design for large scale Azure hybrid cloud deployments with Azure Kubernetes Services and Azure Public Cloud
- Design and implement enterprise scale Azure Landing Zone including subscription structures identity management network topologies policies compliance etc.
- Design and Provision Dev/Test/Prod Infrastructureascode using Azure CLI Powershell Terraform
- Define the architecture for high availability data redundancy data loss prevention site recovery and resilience
- Define and implement the architecture for high throughput and scale with capacity planning load balancing strategies
- Design and implement provisioning of productiongrade Azure Kubernetes Services (AKS) Azure Container Registry NGINX Ingress Controller Service Mesh etc.
- Implement the security architecture to ensure data security at rest and in transit application security key management identity management authentication and authorization with OIDC and OAuth2 infrastructure security with Azure Virtual Nets NSGs UDR etc.
- Demonstrate deep understanding of Azure Security solutions and best practices around Azure Sentinel Azure Security Center etc.
- Handson implementation of the log analytics and monitoring architecture using Azure Monitor Azure Application Insights
- Handson automation of infrastructure applications and softwaredefined networking through CI/CD pipeline ARM Templates Azure CLI scripts using Azure DevOps
Certifications (One of the following certifications is required):
- AZ400 Microsoft Azure DevOps Solutions
- 70533 Azure Infrastructure Solutions
- AZ301 Microsoft Azure Architect Technologies
Primary Skills:
- Azure CLI Terraform and Powershell
- Microsoft Cloud Adoption Framework
- Container platforms and tools Kubernetes Docker Azure Kubernetes Service Azure Container Service
- Azure Advanced Networking Azure Virtual Networks ExpressRoute SitetoSite VPN NSG App Service Environment ASG UDR
- Azure PAAS Services Security and Provisioning Azure API Management Policies Azure App Service Event Hubs Service Bus Cosmos DB Azure SQL
- Identity Management Azure AD Azure AD B2C Open ID Connect
- Secrets Management Azure Key Vault HSTS SSL/TLS Ingress Control Certificate management Azure Security Center Threat Detection Container Security tools e.g. Twistlock
- Cloud Observability Experience with Azure Sentinel Azure Log Analytics Operations Management Suite (OMS) SysDig Application Insights.