Full Job Description
Key Responsibilities
• Design, deploy, and maintain Azure infrastructure including VNets, Subnets, NSGs, Azure Firewall, and ExpressRoute circuits.
• Manage and optimize Azure PaaS services including App Service Environments (ILB ASE), Azure Kubernetes Service (AKS), Azure SQL, Key Vault, and Storage Accounts.
• Configure and troubleshoot Private Endpoints, Private DNS Zones, and VNet peering for secure connectivity.
• Implement and manage Azure Monitor, Log Analytics Workspaces, and Alerts for observability.
• Collaborate with network and security teams to enforce NSG rules, UDRs, and Azure Policy.
• Participate in cloud migration activities including rehost, replatform, and refactor assessments.
• Develop and maintain IaC templates using Bicep, ARM, or Terraform.
• Support ExpressRoute gateway SKU upgrades and FastPath enablement.
• Contribute to governance documentation, effort estimations, and technical runbooks.
• Engage with stakeholders and managed service providers (e.g., CGI) for change management and delivery.
Required Qualifications
• Hands-on Azure experience.
• Strong knowledge of Azure Networking: VNet, NSG, UDR, Azure Firewall, ExpressRoute, VPN Gateway.
• Experience with Azure PaaS: App Service, AKS, Azure SQL, Storage, Key Vault, Service Bus.
• Proficiency in IaC: Bicep, ARM Templates, or Terraform.
• Familiarity with Azure Monitor, Log Analytics, and Diagnostic Settings.
• Experience with Azure DevOps or GitHub Actions pipelines.
• Microsoft Certified: Azure Administrator (AZ-104) or Azure Solutions Architect Expert (AZ-305) preferred.
• Strong troubleshooting and documentation skills.
Nice to Have
• Experience with Fortinet NVA configuration in Azure.
• Familiarity with multi-cloud (AWS, OCI) architectures.