Description

Key Responsibilities

  • Assist in setting up and configuring Core Azure subscriptions, resource groups, and environments.
  • Implement Azure Policies, RBAC permissions, and tagging standards based on team guidance.
  • Deploy and support core Azure networking components including VWAN, Azure Firewall, VNets, NSGs, Private Endpoints, and VPN/ExpressRoute.
  • Configure and manage Azure Application Gateways and related services.
  • Contribute to infrastructure automation using Bicep, ARM, or PowerShell scripts.
  • Troubleshoot connectivity and application issues between Azure and on-premises networks.
  • Support incident resolution and assist with root cause analysis.
  • Monitor Azure environments and configure alerting, logging, and diagnostics.
  • Collaborate with development, architecture, and security teams on deployments and infrastructure changes.
  • Follow and enforce cloud governance, security, and compliance policies.


 

Required Qualifications

  • Hands-on experience managing and deploying Azure Landing Zone architecture in enterprise environments (3+ years).
  • Strong Azure networking skills including VWAN, ExpressRoute, VPN, Firewall, and VNet, plus hybrid networking with on-premises systems (3+ years).
  • Experience designing Azure environments with a “private-by-default” approach including Private Endpoints, disabling public IPs, NSG restrictions, Azure Firewall, and policies to prevent public exposure (3+ years).
  • Familiarity with implementing and managing Azure Policies, RBAC, and resource tagging strategies (3+ years).
  • Strong problem-solving and communication skills with the ability to collaborate effectively with cross-functional teams (5+ years)

Education

Bachelor's degree