Azure Cloud Architect
# Azure Cloud Architect **Tezo** · Hyderabad, Telangana · `On-site` 🕒 **Статус:** *Опубликовано: сегодня* · *Источник: Indeed* --- ### About the Role Job role : Azure Cloud Architect Experience : 12- 15 years Location : Hyderabad Key Responsibilities Own the end-to-end Azure solution architecture for migration and modernization of enterprise applications from on-premises environments to Azure. Design Azure architecture for multi-tenant SaaS/application platforms, including appropriate tenant isolation, shared services, identity, data, messaging, and control-plane patterns. Define Azure landing zone, subscription, resource group, networking, security, governance, and environment strategy. Design hybrid connectivity between on-premises and Azure using technologies such as VPN, ExpressRoute, private endpoints, VNets, routing, NSGs and Azure Firewall. Architect secure ingress/egress using Azure Front Door, Application Gateway/WAF, API Management and Azure Firewall, selecting the appropriate service based on traffic patterns and security requirements. Design API architecture using A zure API Management, including OAuth2/OIDC, mTLS, certificates, throttling, policies, versioning and API security. Evaluate and select appropriate compute platforms including Azure Kubernetes Service (AKS), Azure Container Apps and Azure App Service, considering workload characteristics, operational complexity, scalability and cost. Design identity architecture using Microsoft Entra ID, Managed Identities, workload identities, RBAC and service-to-service authentication. Architect event-driven and asynchronous integration using Azure Event Hubs, Service Bus, Functions and related messaging patterns. Define telemetry and high-volume event ingestion architecture using Event Hubs and Azure Data Explorer (ADX) , including partitioning, retention, throughput and tenant identification strategies. Design application and operational data solutions covering Azure databases, storage, hot/warm/cold data, archival and long-term retention. Define patterns for Service Bus topics/queues, dead-letter handling, retries, idempotency and failure recovery. Architect high availability, disaster recovery, backup and multi-region deployment strategies, including North America regional pairing requirements. Define observability and monitoring using Azure Monitor, Application Insights, Log Analytics and platform telemetry. Establish security architecture aligned with Zero Trust, least privilege, encryption, secrets management, network segmentation and Azure security best practices. Drive infrastructure automation using Terraform/Bicep and CI/CD pipelines. Define architecture standards, reusable patterns, Architecture Decision Records (ADRs) and technical guardrails. Conduct architecture reviews, threat modelling, performance reviews, capacity planning and cost optimization. Work closely with application engineering, DevOps, security, data and product teams to translate architecture into an executable migration roadmap. Provide hands-on technical guidance during implementation, troubleshooting and production readiness. Required Technical Skills Strong hands-on architecture experience with: Azure Platform: Azure Landing Zones, subscriptions, VNets, Private Link/Private Endpoints, Azure Firewall, Front Door, Application Gateway/WAF, VPN Gateway and ExpressRoute. Application & Compute: AKS, Azure Container Apps, App Service, Functions, containerized workloads, microservices and distributed application architecture. API & Integration: Azure API Management, REST APIs, OAuth/OIDC, mTLS, Event Hubs, Service Bus, event-driven architecture and asynchronous messaging. Identity & Security: Microsoft Entra ID, Managed Identity, Workload Identity, RBAC, Key Vault, certificates/secrets management and Zero Trust principles. Data & Telemetry: Azure Data Explorer (ADX), Azure Storage, relational/NoSQL databases, high-volume telemetry ingestion, data retention and archival strategies. DevOps & IaC: Terraform and/or Bicep, Azure DevOps/GitHub Actions, CI/CD, automated environment provisioning and policy-as-code. Operations: Azure Monitor, Application Insights, Log Analytics, alerting, SRE/operational readiness, HA/DR, backup and capacity planning. Architecture Experience We Are Specifically Looking For The ideal candidate should be able to confidently design and challenge architectures on Azure: On-prem Azure connectivity Front Door/WAF API Management APIs/microservices Event Hubs/Service Bus processing services operational and telemetry data stores. They should also be comfortable making architectural trade-offs such as: AKS vs Container Apps vs App Service, Front Door vs Application Gateway, Event Hubs vs Service Bus, public vs private connectivity, shared vs tenant-specific infrastructure, and centralized vs distributed data/storage patterns. Required Experience 10+ years in software/cloud/infrastructure engineering with significant architecture responsibility. 5+ years of hands-on Microsoft Azure architecture experience. Proven experience designing enterprise-scale Azure platforms. Experience with multi-tenant SaaS or distributed application architectures. Experience migrating workloads from OCI, AWS, data centers or on-premises environments to Azure. Strong understanding of cloud networking, security, identity and integration architecture. Experience with high-volume event/telemetry platforms is highly desirable. Ability to produce HLDs, LLDs, architecture diagrams, ADRs, deployment patterns and migration roadmaps. Strong stakeholder communication skills with the ability to explain architecture decisions to both engineering teams and senior stakeholders. Preferred Qualifications Microsoft Azure architecture certifications such as A Z-305 / Azure Solutions Architect Expert are preferred. Experience with Terraform, Kubernetes/AKS, Azure Well-Architected Framework, Cloud Adoption Framework, FinOps and enterprise-scale Azure governance would be advantageous.
Наблюдалась 2026-09-21, впервые 2026-09-21, источник — Indeed.