Database Admin/Cloud Engineer
- Posted 3 days ago
- Be among the first 20 applicants
Job Description
Builds and operates the Azure platform that fmPilot 2.0 migrates onto: Landing zone, networking, platform services, security baseline and monitoring. Partners with the DevOps engineer so every environment is reproducible through code.
Key Responsibilities
‒ Design and provision Azure services for the platform: App Service, Functions, Azure SQL, Storage, Service Bus, Key Vault
‒ Own networking: Virtual networks, subnets, private endpoints, network security groups, DNS and hybrid connectivity, including SFTP integration over VNet.
‒ Establish the security baseline: managed identities, role-based access control, Azure Policy and Microsoft Defender for Cloud.
‒ Build monitoring and alerting with Azure Monitor, Application Insights and Log Analytics.
‒ Design for high availability and disaster recovery; manage capacity and cost.
‒ Support workload migration cutovers and troubleshoot platform issues across environments.
Required Skills And Experience
‒ Five or more years in infrastructure or cloud engineering with substantial hands-on Azure experience.
‒ Deep knowledge of Azure platform-as-a-service offerings and when to use each.
‒ Azure networking, including private endpoints, firewalls, DNS and hybrid connectivity to on-premises systems.
‒ Identity-aware infrastructure: managed identities, RBAC and Key Vault integration.
‒ Scripting with PowerShell or Azure CLI; working knowledge of Bicep or Terraform.
‒ Monitoring, alerting and incident response for production cloud workloads.
Preferred Qualifications
‒ Azure certifications such as AZ-104 or AZ-305.
‒ Experience migrating .NET workloads from on-premises or IaaS to Azure PaaS.
‒ Cost optimization and reserved capacity planning experience.
Key Responsibilities
‒ Design and provision Azure services for the platform: App Service, Functions, Azure SQL, Storage, Service Bus, Key Vault
‒ Own networking: Virtual networks, subnets, private endpoints, network security groups, DNS and hybrid connectivity, including SFTP integration over VNet.
‒ Establish the security baseline: managed identities, role-based access control, Azure Policy and Microsoft Defender for Cloud.
‒ Build monitoring and alerting with Azure Monitor, Application Insights and Log Analytics.
‒ Design for high availability and disaster recovery; manage capacity and cost.
‒ Support workload migration cutovers and troubleshoot platform issues across environments.
Required Skills And Experience
‒ Five or more years in infrastructure or cloud engineering with substantial hands-on Azure experience.
‒ Deep knowledge of Azure platform-as-a-service offerings and when to use each.
‒ Azure networking, including private endpoints, firewalls, DNS and hybrid connectivity to on-premises systems.
‒ Identity-aware infrastructure: managed identities, RBAC and Key Vault integration.
‒ Scripting with PowerShell or Azure CLI; working knowledge of Bicep or Terraform.
‒ Monitoring, alerting and incident response for production cloud workloads.
Preferred Qualifications
‒ Azure certifications such as AZ-104 or AZ-305.
‒ Experience migrating .NET workloads from on-premises or IaaS to Azure PaaS.
‒ Cost optimization and reserved capacity planning experience.
More Info
Key Skills
Log Analytics
Private endpoints
Microsoft Defender for Cloud
Subnets
Azure services
Network security groups
Azure Policy
Managed identities
Bicep
Application Insights
Azure Monitor
Hybrid connectivity
Azure CLI
