Azure Infrastructure Engineer
About the Role
We are looking for a skilled and hands-on Azure Infrastructure Engineer with strong expertise in cloud-native infrastructure architecture and deployment on Microsoft Azure. The ideal candidate will have deep experience in setting up and managing Azure Landing Zones, designing enterprise-grade networks, implementing Kubernetes (AKS) clusters, configuring ExpressRoute, and working with Azure Stack, CLI, and infrastructure-as-code tooling.
This is a pure infrastructure engineering role requiring direct technical execution, system design, troubleshooting, and secure provisioning across hybrid and multi-region environments.
Key Responsibilities
- Design, configure, and manage Azure Landing Zones, including identity, policy, subscription structure, network topology, and security controls
- Deploy and manage Azure Kubernetes Service (AKS) clusters including node pools, autoscaling, ingress controllers, and identity integrations
- Implement and optimize networking infrastructure including Virtual Networks (vNets), Subnets, Network Security Groups (NSGs), Azure Firewall, Application Gateways, and Private Endpoints
- Set up hybrid connectivity via ExpressRoute, VPN gateways, vNet peering, and Site-to-Site / IPSec tunnels
- Work with Azure AI Foundry infrastructure requirements, model hosting environments, and access / security isolation
- Use Azure CLI, PowerShell, and Infrastructure-as-Code (ARM templates, Bicep) to automate resource provisioning and configuration
- Configure and manage Azure Stack Hub and hybrid cloud deployments
- Implement monitoring and diagnostics using Azure Monitor, Log Analytics, and Network Watcher
- Ensure systems are compliant with high availability, backup, disaster recovery (DR), and security standards
- Collaborate with cloud architects and security teams to validate designs and enforce architectural guardrails
- Maintain detailed technical documentation, HLDs / LLDs, and environment runbooks
Required Skills & Qualifications
Minimum 3 years of hands-on experience in Azure infrastructure engineering rolesProficient with :o Azure Landing Zones and Cloud Adoption Framework (CAF)
o Azure Networking : vNet, NSG, UDR, VPN Gateway, ExpressRoute
o Kubernetes (AKS) : Cluster design, scaling, policies, and deployment patterns
o Azure Stack Hub / Edge, Azure CLI, and PowerShell automation
o Azure Monitor, Log Analytics, and diagnostics tooling
Strong understanding of hybrid cloud models, network segmentation, service endpoints, and RBACExperience with IaC using Bicep, ARM, or equivalent toolsAbility to troubleshoot complex cloud issues involving routing, connectivity, and resource provisioningFamiliarity with identity and security principles : Managed Identities, Key Vault, and role-based access controlExcellent documentation habits with the ability to produce HLDs, LLDs, deployment guides, and SOPsNice to Have
Microsoft certifications (AZ-104, AZ-305, AZ-700, AZ-400)Experience with Terraform or GitHub Actions for IaC pipelinesExposure to multi-region design and governance enforcementKnowledge of cloud security architecture and compliance standards (CIS / NIST)What We Offer
Mission-critical projects in cloud modernization and infrastructure transformationAccess to the latest tools, partner engineering support, and certification tracksFlexible and collaborative work culture focused on excellence and ownershipCompetitive salary, certification sponsorship, and technical career growthSkills Required
Powershell