Senior Azure Cloud Engineer
Dallas, TX - USA
Job Summary
Location: Dallas TX
Work Arrangement: Hybrid 3 days onsite / 2 days remote
Type: Direct Hire
Compensation: $150000 $210000 base salary bonus
GTN is seeking a Senior Azure Cloud Engineer to own and advance mission-critical cloud infrastructure on Microsoft Azure. This role will drive architecture decisions enforce governance and security standards lead Azure Landing Zone design and own the Microsoft Fabric platform all through Infrastructure as Code.
This position requires deep hands-on Azure platform engineering expertise strong Terraform experience and the ability to collaborate cross-functionally with business data security infrastructure and application teams. The Senior Azure Cloud Engineer will help ensure cloud capabilities are scalable secure automated cost-effective and aligned with business objectives.
- Design build and maintain Azure Landing Zones including management group hierarchy subscription design hub-and-spoke networking and policy guardrails.
- Codify all infrastructure using Terraform including reusable versioned modules and templates.
- Drive a zero-manual-setup approach across Azure infrastructure and platform services.
- Automate environment promotion from non-production to production with approval gates rollback controls and deployment validation.
- Enforce naming conventions tagging standards and resource group structures at scale using Azure Policy.
- Provision and govern Microsoft Fabric platform components through Infrastructure as Code including workspaces capacities OneLake RBAC Git integration and deployment pipelines.
- Architect scalable compute solutions using Azure VMs VM Scale Sets Availability Zones App Service AKS Azure Functions and Azure Container Apps.
- Design and maintain Azure networking topologies including VNets VNet peering hub-and-spoke models NSGs UDRs Bastion Private Endpoints Azure Firewall Front Door and DDoS Protection.
- Support hybrid connectivity through ExpressRoute Site-to-Site VPN and Azure Virtual WAN.
- Design and manage Microsoft Fabric Private Link and Managed VNet configurations.
- Manage secrets and encryption through Azure Key Vault.
- Conduct security posture reviews using Microsoft Defender for Cloud and drive remediation of findings.
- Own Azure governance across Azure Policy Management Groups subscriptions tagging standards and naming conventions.
- Drive cost optimization through Reserved Instances right-sizing auto-scaling and Azure Cost Management dashboards.
- Administer Microsoft Fabric F SKU capacity workload optimization and cost management practices.
- Define and support SLOs and SLAs for cloud platforms and workloads.
- Implement backup disaster recovery and resilience strategies with defined RPO and RTO targets.
- Support chaos engineering practices to improve platform reliability.
- Administer the Microsoft Fabric admin portal and tenant settings to enforce governance workspace isolation and usage controls.
- Build and maintain Infrastructure as Code pipelines using Terraform and Azure DevOps or GitHub Actions.
- Implement deployment stages approvals rollback processes and Key Vault secrets integration.
- Develop operational automation using PowerShell Azure CLI Python and the Microsoft Fabric PowerShell SDK.
- Automate Microsoft Fabric operations including workspace lifecycle capacity scaling deployment pipelines and REST API workflows.
- Support repeatable auditable and secure deployment practices across cloud environments.
- Provision and manage Microsoft Fabric workspaces capacities Lakehouses and OneLake using the Fabric Terraform provider and REST API.
- Design and maintain OneLake medallion architecture including Bronze Silver and Gold data layers.
- Enforce data tier governance workspace RBAC tenant governance and deployment controls.
- Manage Fabric Git integration and deployment pipelines across Dev Test and Production environments.
- Configure Fabric monitoring and integrate telemetry into the broader observability platform.
- Maintain awareness of Fabric F SKU capacity usage optimization opportunities and cost implications.
- Implement monitoring alerting dashboards and telemetry using Azure Monitor Log Analytics Application Insights and Microsoft Sentinel.
- Lead incident response for Azure platform and Microsoft Fabric issues.
- Conduct post-incident reviews and drive permanent remediation.
- Build and maintain runbooks operational procedures and escalation paths.
- Translate business requirements into scalable secure and automated cloud architectures.
- Engage with stakeholders across infrastructure security data application and business teams.
- Maintain technical documentation including runbooks architecture diagrams Landing Zone blueprints and operational procedures.
- Mentor junior engineers and promote engineering best practices.
- Evaluate emerging Azure and Microsoft Fabric services and recommend adoption roadmaps.
- 8 years of hands-on Azure cloud engineering experience across identity networking compute storage monitoring automation and governance.
- Proven experience designing and building Azure Landing Zones in production environments.
- Demonstrated experience driving full Infrastructure as Code adoption and reducing or eliminating manual cloud setup.
- Strong networking fundamentals including TCP/IP DNS BGP TLS and cloud networking patterns.
- Hands-on experience with Azure governance security monitoring cost management and reliability practices.
- Expert-level Terraform experience including modules variables remote state workspaces reusable architecture patterns and policy deployment.
- Production experience with the Microsoft Fabric Terraform provider.
- Experience provisioning Fabric workspaces capacities Lakehouses RBAC and Git integration through Infrastructure as Code.
- Experience building reusable Terraform modules and templates for enterprise-scale Azure environments.
- Strong experience with Azure DevOps or GitHub Actions.
- Experience building pipeline automation deployment stages approval workflows and secrets integration.
- Hands-on experience with non-production to production environment promotion and automated validation.
- Familiarity with deployment rollback strategies and release governance.
- Proficiency with PowerShell Azure CLI Python and the Microsoft Fabric PowerShell SDK.
- Experience automating operational tasks infrastructure deployment Fabric administration and platform workflows.
- Ability to develop scripted and pipeline-driven tooling for repeatable operations.
- Working knowledge of the Microsoft Fabric Terraform provider REST API Deployment Pipelines OneLake medallion architecture and capacity administration.
- Familiarity with the Fabric admin portal tenant settings workspace governance monitoring Private Link Managed VNets and F SKU cost considerations.
- Experience supporting Fabric governance cost optimization RBAC and deployment lifecycle management.
- Microsoft Certified: Azure Solutions Architect Expert.
- Microsoft Certified: DevOps Engineer Expert.
- Experience in regulated industries such as healthcare finance government or other compliance-heavy environments.
- Familiarity with ISO 27001 SOC 2 HIPAA FedRAMP or similar compliance frameworks.
- Experience with FinOps practices and cloud financial management tooling.
- Multi-cloud exposure across AWS GCP or cross-cloud networking strategies.
- Experience with Microsoft Sentinel Defender for Cloud and the broader Microsoft security portfolio.
- Microsoft 365 administration experience including Exchange Online Teams SharePoint OneDrive Entra ID Intune and Autopilot.
- Experience with Infrastructure as Code automation testing.
The ideal candidate is a senior Azure platform engineer who can operate across architecture automation governance security networking and data platform enablement. This person should be highly hands-on with Terraform comfortable owning Azure Landing Zones and experienced supporting Microsoft Fabric in an enterprise environment.
The right candidate will bring strong technical depth a security- and automation-first mindset and the communication skills needed to partner effectively with technical teams business stakeholders and leadership.