Cloud Infrastructure Engineer


Job Location:

Philadelphia, PA - USA

Monthly Salary: Not Disclosed
Posted on: 18 hours ago
Vacancies: 1 Vacancy

Department:

Business Operations

Job Summary

Description

JOB DESCRIPTION

SRAs mission is tolevel up every day to protect our clients and their customers. This begins with our team members and their experience. SRA prides itself onmaintaininga culture where team members have a shared sense of support and belonging consistent withour ItsPersonal company value. At SRA we prioritize transparent career pathing varied DEI programming and community groups competitive benefits including mental health support and an emphasis on a sustainable healthy and engaging work culture. SRA has twice been nameda BestPlace to Work by the Philadelphia Business Journal.

These Essential Functions Requirements and Skills are guidelines. If you are a candidate who does not meet this exact job description but candemonstrateexcellent organization attention to detail professionalism flexibility and self-direction in your professional background we hope you apply. SRA values a diverse workplace and strongly encourages women people of color LGBTQ individuals people with disabilities members of ethnic minorities and veterans to apply.

Summary/Objective

Security Risk Advisors Intl. LLC (SRA) is offering a Cloud Infrastructure Engineer position with a focus on Microsoft Azure. This roleis responsible fordesigning building andoperatingsecure scalable and resilient cloud infrastructure including networking identity integrations compute storage and platform services. The Cloud Infrastructure Engineer partners with internal IT security and engineering teams to standardize Azure landing zones automate deployments using infrastructure-as-code and ensure environments meet reliability performance and costobjectives.

Essential Functions

  • Design build andmaintainAzure infrastructure using best practices for reliability scalability and operational excellence.
  • Implement andoperateAzure landing zones subscriptions management groups and governance controls (RBAC Azure Policy tagging resource organization).
  • Engineer Azure networking solutions (VNets subnets NSGs route tables Private Link/private endpoints VPN/ExpressRoute Azure Firewall) to meet connectivity and segmentation requirements.
  • Automate provisioning and configuration using infrastructure-as-code (Terraform and/or Bicep/ARM) and integrate into CI/CD pipelines.
  • Operate Azurecomputeand platform services (VMs VMSS AKS App Service Functions) including scaling patching upgrades and lifecycle management.
  • Design and manage Azure storage and data platform components (Storage Accounts Azure Files managed disks backup targets) withappropriate performanceand resiliency.
  • Implement monitoring logging and alerting using Azure Monitor Log Analytics and Application Insights; improve observability and reduce mean time to recover.
  • Partner with security teams to implement identity key management and baseline controls (Entra ID PIM Key Vault Defender for Cloud) as part of the infrastructure standard.
  • Support incident response and problem management for Azure services including root cause analysis and implementation of corrective and preventative actions.
  • Create andmaintaintechnical documentation diagrams and runbooks for Azurearchitectures operational procedures and standards.
  • Drive cost optimization and capacity planning efforts (e.g. right-sizing reservations/savings plans storage tiering) and provide clear recommendations to stakeholders.
  • Plan and test business continuity and disaster recovery capabilities for Azure workloads (backup restore replication failover) andvalidateRTO/RPO requirements.


Requirements

Competencies

  • In-depth understanding of:
  • Microsoft Azure core services and architecture (subscriptions resource groups compute storage PaaS offerings) and how to design for scale and resiliency
  • Azure networking concepts and services (VNets NSGs load balancing DNS Private Link VPN/ExpressRoute Azure Firewall)
  • Azure governance and identity fundamentals (Azure Policy RBAC management groups Entra ID PIM) and practical application of least privilege
  • Reliability engineering principles (high availability fault domains scaling observability) and secure-by-default infrastructure patterns
  • Working knowledge of:
  • Infrastructure-as-code and configuration management practices including Terraform and/or Bicep/ARM templates
  • Azure DevOps/GitHub-based CI/CD for infrastructure and platform deployments (pipelines approvals environments secrets management)
  • Monitoring logging and troubleshooting in Azure using Azure Monitor Log Analytics Application Insights and KQL
  • Backup recovery and resiliency tooling (Azure Backup Recovery Services Vault Site Recovery) and practical DR testing
  • Basic experience with:
  • Operating production cloud platforms includingon-call/incident response root cause analysis and continuous improvement
  • Container and platform operations experience (AKS and related ecosystem: ingress certificates secrets node pools upgrades)
  • Cloud cost management and optimization practices (Azure Cost Management budgeting tagging discipline forecasting)
  • Moderate experience with:
  • Scripting and automation using Python PowerShell or Bash
  • Automation using Azure-native services such as Azure Automation Logic Apps Functions and Event Grid

Supervisory Responsibility

None

Work Environment

This joboperatesin a professional office environmentor remotely as needed/required. This role routinely uses standard office equipment.

This joboperatesin a professional office environment and all co-ops are expected to work in the office every day. This role routinely uses standard office equipment.

Physical Demands

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. While performing the duties of this job the employeeis regularly required totalk and hear; use hands to finger handle or feel; and reach with hands and arms. The employeefrequentlyis required tostand and walk. This is alargely sedentaryrole.

Candidates with disabilities are encouraged to apply and emailwith any questions. Reasonable accommodations may be made to enable disabled individuals to perform the essential functions of this role.

Position Type/Expected Hours of Work

This is a full-timepositionand hours of work and days are Monday through Friday 8:30am to evening and weekend work may berequiredas job duties demand.

Travel

Less than 5%.

Required Education and Experience

  • Punctuality andtimelyattendance to external client and internal stakeholder needs.
  • Abachelors degree in Information Technology Computer Science or a similar field of study or equivalent experience.
  • 3 years of hands-on experience engineering and operating cloud infrastructure with strong recent experience in Microsoft Azure (networkingcompute storage and governance).
  • Relevant certifications preferred (e.g. AZ-104 AZ-305 AZ-400;HashiCorpTerraform Associate). Security certifications (e.g. AZ-500) are a plus.
  • A passionfor learning about Azure services cloud infrastructure patterns automation andoperational bestpractices.
  • Excellent verbal and written communication skills.
  • Strong time management and organizational skills.

Other Duties

Pleasenotethis job description is not designed to cover orcontaina comprehensive listing of activities duties or responsibilities that arerequired ofthe employee for this job. Duties responsibilities and activities may change at any time with or without notice.

EEO Statement

Security Risk Advisorsisan Equal Opportunity Employer and prohibits discrimination or harassment of any kind. All employment decisions at SRA are based on business needs job requirements and individual qualifications without regard to race color sex sexual orientation gender identity or expression age religion national origin disability marital or family status veteran status medical condition or any similar category protected under federal state or local laws.



Benefits

Work with Experts: Robust internal training program plus Company-paid external training. SRA recognizes the value of professional development for employees. Therefore we encourage our employees to pursue continuing education and role-specific training. Every SRA employee is eligible to attend one training per year paid for by SRA.

Mental Health Services: SRA has partnered with BetterHelp to provide SRA employees with free mental health support. BetterHelp connects individuals with licensed therapists for chat video and phone sessions.

Medical / Dental / Other (regular full-time employees only)

  • Generous medical dental and vision benefits at different price points.
  • Company-paid disability and life insurance.
  • Company 401(k) plan including annual 3% safe harbor contribution.
  • Free patient advocacy service that helps find care providers and resolve insurance queries.
  • Free financial advising.
  • Generous parental leave sick leave and vacation policies.
  • Possibility to work remotely or with a flexible schedule when needed and approved.
  • Company-paid cell phone with discounted accessories.
  • 1-2-3 Give Program: 1. SRA will give $1000 to a charity of your choice. 2. If you give an additional amount (up to $1000) then 3. SRA will match that amount up to $1000.
  • Other discounted employee-paid benefits including pet insurance legal support and voluntary life insurance.

(Subject to change)


Required Experience:

IC

DescriptionJOB DESCRIPTIONSRAs mission is tolevel up every day to protect our clients and their customers. This begins with our team members and their experience. SRA prides itself onmaintaininga culture where team members have a shared sense of support and belonging consistent withour ItsPersonal c...

About Company

Company Logo

Security Risk Advisors offers Purple Teams, Cloud Security, Penetration Testing, Cyber Physical Systems Security and 24x7x365 Cybersecurity Operations. Based in Philadelphia, SRA operates across the USA, Ireland and Australia.

View Profile View Profile