M
Senior Azure Cloud Engineer MMH260309-1
Momentum
Centurion · On-site Full-time Senior 3w ago
About the role
Role Purpose
The Senior Azure Cloud Engineer is responsible for designing, implementing, optimizing, and maintaining cloud solutions on Microsoft Azure. The role ensures high availability, security, scalability, and operational excellence across cloud workloads, while providing strategic input into cloud architecture, governance, automation, and cost optimization.
Requirements
Qualifications
- Minimum
- Bachelor’s degree in IT, Computer Science, Engineering or equivalent experience.
- 5–8+ years experience in cloud engineering, with at least 4 years focused on Azure.
- Preferred Certifications
- AZ-104: Azure Administrator Associate
- AZ-305: Azure Solutions Architect Expert
- AZ-400: Azure DevOps Engineer Expert
- SC-100 / SC-200 / SC-300 (Security focused – optional)
- Terraform Associate (Hashicorp) (nice to have)
Technical Skills
- Required Skills & Experience
- Strong expertise with:
- Azure Compute (VMs, Scale Sets, App Services)
- Networking (VNets, NSGs/ASGs, Azure Firewall, ExpressRoute/VPN)
- Azure Active Directory / Entra ID
- Azure Kubernetes Service (AKS)
- Storage (Blob, Files, Disks, Backup, Site Recovery)
- Identity, RBAC, Security Center / Defender
- Monitoring and Observability tools
- Strong scripting: PowerShell, Azure CLI, optional Python.
- Experience with Terraform/Bicep or ARM templates.
- Understanding of hybrid cloud (Azure Arc, ADFS, on-prem integration).
- Strong expertise with:
- Tools & Technologies Exposure (Optional but Beneficial)
- Azure DevOps, GitLab
- ITSM tools ( JIRA )
Duties and Responsibilities
Cloud Architecture & Design
- Design and implement Azure cloud architectures following Well-Architected Framework principles.
- Lead the design of scalable and secure Azure Infrastructure-as-a-Service (IaaS) and Platform-as-a-Service (PaaS) solutions.
- Create reference architectures, governance models, and landing zones (e.g., CAF, Enterprise Scale).
Cloud Operations & Administration
- Manage Azure resources: VMs, VNets, Storage Accounts, AKS, App Services, Firewalls, Load Balancers, Azure SQL, Key Vault, etc.
- Implement and maintain monitoring, alerting, and logging using Azure Monitor, Log Analytics, Application Insights, and Sentinel.
- Ensure high availability, DR readiness, and resilience across all cloud workloads.
Security, Governance & Compliance
- Implement Azure security best practices including Conditional Access, Defender for Cloud, IAM/RBAC, Key Vault, and Zero-Trust.
- Enforce governance using Policies, Blueprints, Management Groups, and proper RBAC structures.
- Conduct risk assessments and ensure compliance with ISO27001, POPIA, or organisation-specific standards.
Automation & DevOps
- Develop Infrastructure-as-Code using ARM, Bicep, Terraform, or Azure CLI/PowerShell.
- Build and maintain CI/CD pipelines (Azure DevOps / GitHub Actions).
- Automate operational tasks to reduce toil and improve efficiency.
Cost Optimization & FinOps
- Perform Azure cost analysis, budgeting, forecasting, and rightsizing.
- Optimize resource usage via automation, reservations, hybrid benefits, and scaling configurations.
- Provide FinOps reports and recommendations to leadership.
Collaboration & Leadership
- Act as a technical escalation point for Azure-related issues.
- Mentor junior cloud engineers and drive best-practice adoption.
- Work closely with security, networking, development, and operations teams.
As an applicant, please verify the legitimacy of this job advert on our company career page. -346021336
Requirements
- Minimum Bachelor’s degree in IT, Computer Science, Engineering or equivalent experience.
- 5–8+ years experience in cloud engineering, with at least 4 years focused on Azure.
- Strong expertise with: Azure Compute (VMs, Scale Sets, App Services)
- Networking (VNets, NSGs/ASGs, Azure Firewall, ExpressRoute/VPN)
- Azure Active Directory / Entra ID
- Azure Kubernetes Service (AKS)
- Storage (Blob, Files, Disks, Backup, Site Recovery)
- Identity, RBAC, Security Center / Defender
- Monitoring and Observability tools
- Strong scripting: PowerShell, Azure CLI, optional Python.
- Experience with Terraform/Bicep or ARM templates.
- Understanding of hybrid cloud (Azure Arc, ADFS, on-prem integration).
Responsibilities
- Design and implement Azure cloud architectures following Well-Architected Framework principles.
- Lead the design of scalable and secure Azure Infrastructure-as-a-Service (IaaS) and Platform-as-a-Service (PaaS) solutions.
- Create reference architectures, governance models, and landing zones (e.g., CAF, Enterprise Scale).
- Manage Azure resources: VMs, VNets, Storage Accounts, AKS, App Services, Firewalls, Load Balancers, Azure SQL, Key Vault, etc.
- Implement and maintain monitoring, alerting, and logging using Azure Monitor, Log Analytics, Application Insights, and Sentinel.
- Ensure high availability, DR readiness, and resilience across all cloud workloads.
- Implement Azure security best practices including Conditional Access, Defender for Cloud, IAM/RBAC, Key Vault, and Zero-Trust.
- Enforce governance using Policies, Blueprints, Management Groups, and proper RBAC structures.
- Conduct risk assessments and ensure compliance with ISO27001, POPIA, or organisation-specific standards.
- Develop Infrastructure-as-Code using ARM, Bicep, Terraform, or Azure CLI/PowerShell.
- Build and maintain CI/CD pipelines (Azure DevOps / GitHub Actions).
- Automate operational tasks to reduce toil and improve efficiency.
- Perform Azure cost analysis, budgeting, forecasting, and rightsizing.
- Optimize resource usage via automation, reservations, hybrid benefits, and scaling configurations.
- Provide FinOps reports and recommendations to leadership.
- Act as a technical escalation point for Azure-related issues.
- Mentor junior cloud engineers and drive best-practice adoption.
- Work closely with security, networking, development, and operations teams.
Skills
AKSARM templatesAzure CLIAzure ComputeAzure Cosmos DBAzure DevOpsAzure FirewallAzure MonitorAzure SQLBicepBlob StorageExpressRouteGitLabKey VaultLog AnalyticsNSGs/ASGsNetworkingPowerShellPythonRBACTerraformVNetsVPN
Don't send a generic resume
Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.
Get started free