JOB OVERVIEWA senior hands-on contributor who designs, automates, and evolves secure, scalable Azure platform foundations and delivery pipelines for cost-efficient applications. Reporting to the Manager, DevOps (Platform Engineering), this role builds production-ready cloud architectures in Azure, codifies everything (IaC + Policy as Code), and drives reliable CI/CD with strong guardrails. As a DevOps Engineer III, you'll own complex components, accelerate product teams, mentor I/II engineers, and collaborate across Security, App Dev, and SRE, without formal people management responsibilities. This role operates within the patterns, standards, and landing zone owned at the platform level and does not set org-wide technical direction.
RESPONSIBILITIES AND DUTIES: - Technical Leadership & Collaboration
- Serve as a senior individual contributor for cloud and delivery engineering, mentor junior teammates via reviews, pairing, and documentation
- Translate business and compliance requirements into practical designs, tickets, and runbooks; communicate tradeoffs and timelines
- Partner with Security, App Dev, Reliability, and Connectivity teams to align architecture, SLAs, and incident processes; contribute to technical standards
- Cloud Architecture & Platform Engineering
- Implement and extend Azure reference architectures (hub/spoke VNets, Private Link, App Gateway/WAF, NSGs, routing, DNS) for highly available apps, within the networking and connectivity standards set by the network architecture team
- Implement resilient data/service backends (Azure SQL, Storage, Redis, Service Bus/Event Grid) within the data standards set by the DBA Guild, applying appropriate networking, backup, and DR patterns
- Implement secrets and configuration management (Azure Key Vault, managed identities) and environment isolation across dev/test/stage/prod
- CI/CD & Automation
- Implement GitOps/continuous delivery with policy gates, approvals, environments, and automated rollbacks
- Codify infrastructure using advanced Terraform (state strategy, module design, testability, CI integration); author and contribute reusable versioned modules that conform to the platform's Terraform standards, and enforce drift detection and automated plan/apply with change controls
- Implement Azure DevOps multi-stage YAML pipelines (build, security scans, infra deploy, progressive delivery)
- Build platform automation and internal tooling with PowerShell/Python + Microsoft Graph/Azure CLI; create self-service templates and golden images
- Support SRE practices including SLOs, error budgets, blue/green or canary deployments
- Cost & Performance Management
- Use Azure cost tools to right-size compute/storage, tune autoscaling profiles, and optimize reservations/spot usage; publish cost dashboards and forecasts
- Proactively reduce spend via architectural improvements (caching, CDN, data lifecycle policies, build farm efficiency)
- Contribute to and implement reservation strategy within platform-level standards
- Observability & Security
- Embed observability solutions (New Relic, Log Analytics, Application Insights) across platform services
- Apply security guardrails (Azure Policy, role separation, least privilege) within the standards set by the
- Zero Trust Team
- Design secure, compliant architectures aligned with frameworks (e.g., SOC 2, HIPAA, HITRUST)
- Documentation & Knowledge Management
- Maintain high-quality architecture diagrams, pipeline docs, runbooks, architecture decision records, and "how-to" guides; keep standards current and searchable
- Contribute patterns/modules to the internal platform catalog; champion reuse over one-offs
QUALIFICATIONS:- 5+ years hands-on Azure engineering at scale (multi-subscription/enterprise environments)
- Advanced Terraform skills (state strategy, module design, testability, CI integration)
- Azure DevOps pipelines expertise (multi-stage YAML, approvals, environments)
- Windows Server + PowerShell automation proficiency; working Linux/Bash proficiency
- Strong networking fundamentals (VNets, routing, DNS, load balancing, private endpoints)
- Azure container services experience (Azure Container Apps, Web Apps, Function Apps: deployment patterns, troubleshooting, registry integration)
- Experience designing secure, compliant architectures (e.g., SOC 2, HIPAA, HITRUST context helpful)
- Knowledge of event-driven and messaging patterns (Service Bus vs Event Grid vs Storage Queues)
REQUIRED SOFTWARE EXPERIENCE:- Terraform
- Azure CLI
- Azure Cloud Shell
- Azure Portal
- Azure DevOps
- IIS
- PowerShell
Note: This job description is not intended to be all-inclusive. Employees may perform other related duties as requested to meet the ongoing needs of the organization.Salary Range: $120,000.00 - $150,000.00 USDA word on Al-assisted candidate fraud & deepfakes: Our company maintains a zero-tolerance policy for the use of Al tools to misrepresent a candidate's skills, experience, or qualifications during the hiring process.
We utilize advanced screening methods to detect such practices and reserve the right to disqualify and report candidates who violate this policy.