Title: Architect
Area(s) of responsibility
15+ Years
Key Responsibilities
- Architect and maintain enterprise-scale Azure environments.
- Manage Windows Server infrastructure in hybrid and Azure environments.
- Drive Infrastructure as Code adoption using Terraform.
- Design and manage CI/CD pipelines using Azure DevOps.
- Lead AVD implementation, administration, and optimization.
- Act as escalation point for critical incidents and problem management.
- Mentor technical teams and provide cloud leadership.
- Participate in 24x7 on-call and escalation coverage.
Mandatory Azure Skills
- Expert-level hands-on experience in designing, deploying, and managing large-scale Azure IaaS environments.
- Azure Virtual Machines (Windows & Linux)
- Virtual Machine Scale Sets (VMSS)
- Azure Managed Disks and Storage Accounts
- Availability Zones and Availability Sets
- Azure Backup and Recovery Services Vault
- Azure Site Recovery (ASR)
- Azure Compute Gallery (Shared Image Gallery)
- Azure Dedicated Hosts
- Azure Resource Manager (ARM)
- Azure Virtual Networks (VNet
- Network Security Groups (NSG)
- Application Security Groups (ASG)
- User Defined Routes (UDR)
- Azure Load Balancer (Internal & External)
- Azure Application Gateway (WAF)
- Azure Firewall
- Azure Front Door
- VPN Gateway
- ExpressRoute
- Private Endpoints and Private Link
- Azure DNS
- Network Watcher and Connectivity Monitoring
- Hub-and-Spoke Network Architecture
- Azure App Services
- Azure Functions
- Azure Logic Apps
- Azure API Management (APIM)
- Azure Container Registry (ACR)
- Azure Kubernetes Service (AKS)
- Azure SQL Database
- Managed Instance
- Azure Storage Services
- Blob Storage
- Azure Files
- Queues
- Tables
- Azure Service Bus
- Event Grid
- Event Hub
- Azure Cache for Redis
- Azure Data Factory (Preferred)
- Microsoft Entra ID (Azure AD)
- Azure Virtual Desktop (AVD)
- Microsoft Intune
- Microsoft Defender Suite
- Microsoft Sentinel
- Microsoft Purview
- Microsoft 365 Integration with Azure Services
- Microsoft Defender for Cloud
- Azure Security Center
- Role-Based Access Control (RBAC)
- Privileged Identity Management (PIM)
- Azure Policies
- Azure Blueprints
- Azure Key Vault
- Managed Identities
- Conditional Access
- Azure Landing Zones
- Subscription and Tenant Governance
- Security Hardening and Compliance Management
- Azure Monitor
- Log Analytics Workspace
- Application Insights
- Azure Alerts and Action Groups
- Azure Automation
- Update Management
- Operational Excellence and SRE Practices
- Capacity Planning and Performance Optimization
- Azure DevOps & Infrastructure as Code
- Azure DevOps Services
- CI/CD Pipeline Design and Implementation
- YAML Pipelines
- Git Repositories and Branching Strategies
- Terraform for Azure Infrastructure Provisioning
- Infrastructure as Code (IaC)
- ARM Templates and Bicep
- Release Management and Deployment Automation
- Azure Landing Zone Design and Implementation
- Enterprise-scale Azure Architecture
- Cloud Migration and Modernization
- Azure Migrate
- Hybrid Cloud Solutions
- High Availability and Disaster Recovery Design
- Cost Optimization and FinOps
- Multi-Subscription Management
- Enterprise Governance Frameworks