Title: Sr Architect
Area(s) of responsibility
Key Responsibilities
- Lead the design and implementation of enterprise-scale Azure architectures and Landing Zones.
- Define cloud governance, subscription strategy, management groups, policies, RBAC, and resource organization standards.
- Architect Hub-Spoke, Virtual WAN, hybrid cloud, and multi-region Azure environments.
- Design and implement Microsoft Entra ID solutions including Hybrid Identity, SSO, MFA, Conditional Access, PIM, Identity Governance, and Zero Trust architectures.
- Develop cloud security architectures leveraging Defender for Cloud, Sentinel, Key Vault, Azure Firewall, and compliance frameworks.
- Drive Infrastructure-as-Code (Terraform, Bicep, ARM Templates) and CI/CD automation using Azure DevOps and GitHub Actions.
- Design monitoring, observability, disaster recovery, and business continuity solutions.
- Engage with business and technical stakeholders, lead architecture reviews, and mentor cloud engineering teams.
Required Skills
- Azure Landing Zone Architecture
- Microsoft Entra ID & Identity Governance
- Azure Networking, Security, and Governance
- Azure Virtual WAN, Management Groups, Azure Policy
- Terraform, Bicep, ARM Templates
- Azure DevOps & GitHub Actions
- Microsoft Defender for Cloud & Sentinel
- Hybrid Cloud and Migration Architectures
- Zero Trust Security Framework
Experience & Qualifications
- 12+ years of overall IT experience with 7+ years in Azure Cloud Architecture.
- Proven experience designing and deploying Azure Landing Zones at enterprise scale.
- Strong expertise in Microsoft Entra ID and identity modernization initiatives.
- Experience with cloud migrations, platform modernization, and governance implementation.
- Strong stakeholder management and technical leadership skills.
Preferred Certifications
- Azure Solutions Architect Expert (AZ-305)
- Azure Administrator Associate (AZ-104)
- Identity and Access Administrator Associate (SC-300)
- Azure Security Engineer (AZ-500)
- TOGAF (Preferred)
Success Measures
- Successful deployment of enterprise Azure Landing Zones.
- Secure and compliant Microsoft Entra implementation.
- Reduced cloud operational risks through governance and automation.
- Standardized Azure architecture across business units.
- Improved identity security posture aligned to Zero Trust principles.