Assist in setting up and configuring Core Azure subscriptions, resource groups, and environments.
Implement Azure Policies, RBAC permissions, and tagging standards based on team guidance.
Deploy and support core Azure networking components including VWAN, Azure Firewall, VNets, NSGs, Private Endpoints, and VPN/ExpressRoute.
Configure and manage Azure Application Gateways and related services.
Contribute to infrastructure automation using Bicep, ARM, or PowerShell scripts.
Troubleshoot connectivity and application issues between Azure and on-premises networks.
Support incident resolution and assist with root cause analysis.
Monitor Azure environments and configure alerting, logging, and diagnostics.
Collaborate with development, architecture, and security teams on deployments and infrastructure changes.
Follow and enforce cloud governance, security, and compliance policies.
Required Qualifications
Hands-on experience managing and deploying Azure Landing Zone architecture in enterprise environments (3+ years).
Strong Azure networking skills including VWAN, ExpressRoute, VPN, Firewall, and VNet, plus hybrid networking with on-premises systems (3+ years).
Experience designing Azure environments with a “private-by-default” approach including Private Endpoints, disabling public IPs, NSG restrictions, Azure Firewall, and policies to prevent public exposure (3+ years).
Familiarity with implementing and managing Azure Policies, RBAC, and resource tagging strategies (3+ years).
Strong problem-solving and communication skills with the ability to collaborate effectively with cross-functional teams (5+ years)