About Northern Trust: Northern Trust, a Fortune 500 company, is a globally recognized, award-winning financial institution that has been in continuous operation since 1889.
Northern Trust is proud to provide innovative financial services and guidance to the world's most successful individuals, families, and institutions by remaining true to our enduring principles of service, expertise, and integrity. With more than 130 years of financial experience and over 22,000 partners, we serve the world's most sophisticated clients using leading technology and exceptional service.
We're seeking an
Azure Infrastructure Engineer who can design, build, and operate secure, scalable cloud platforms-
and collaborate effectively with Java engineering teams. You will own core Azure infrastructure (networking, compute, storage, security) while enabling high-velocity delivery of JVM/Spring Boot services on
ACA (Azure Container Apps), App Services, and serverless runtimes. You'll partner with software engineers, SRE, security, and architecture to ensure our applications are reliable, observable, and compliant with enterprise standards (RBAC, tagging/naming, and Entra ID group models).
Key Responsibilities Cloud Platform Engineering
- Design and implement Azure landing zones and subscriptions with RBAC, Entra ID integration, MFA, and compliant tagging/naming standards; automate guardrails using policy and role assignments.
- Build secure virtual networks, subnets, route tables, NSGs, and Private Endpoints/Private Link to isolate services and eliminate public exposure.
- Provision and manage compute/services: ACA (Azure Container Apps), Azure App Services, Functions, VMs, App Config, Key Vault, and SQL Server; define transition patterns for on-prem to Azure.
Enable Java Application Delivery
- Partner with Java teams to containerize services, tune JVM ( memory), and deploy to ACA/App Services; standardize CI/CD pipelines and rollouts (blue/green, canary).
- Implement serverless schedules for Java workloads using Azure Functions (including time triggers) to simplify batch job orchestration.
Security & Compliance
- Enforce secrets management with Key Vault, least-privilege access, and identity-based controls; integrate with enterprise RBAC/Entra ID groups.
- Support data security patterns for analytics platforms (e.g., SQL Server) including workspace isolation, encryption at rest (SSE/CMK), and backup practices.
Reliability, Observability & Operations
- Establish SLOs/SLIs, dashboards, and alerting via Azure Monitor/Log Analytics; implement autoscaling and cost controls.
- Drive incident response, root-cause analysis, and post-mortems; implement resilience patterns (health probes, retry/backoff, circuit breaking).
- Automate infrastructure with Terraform/Bicep, GitOps, and pipelines; maintain environment parity across dev/test/prod.
Governance & Architecture
- Contribute design docs and runbooks; socialize standards for naming, tagging, and environment isolation; review app designs for cloud fit and security compliance.
Qualifications Applicants must be authorized to work in the U.S. without the need for employment-based visa sponsorship now or in the future. Northern Trust will not sponsor applicants for U.S. work visa status for this opportunity (no sponsorship is available for H-1B, L-1, TN, O-1, E-3, H-1B1, F-1, J-1, OPT, CPT or any other employment-based visa)
Must-Have
- 5+ years in cloud infrastructure or SRE with Azure (networking, compute, storage, identity, security).
- Hands-on with ACA (Azure Container Apps), App Services, Functions, Private Endpoints/Private Link, Key Vault, App Config, SQL Server.
- Strong Java ecosystem familiarity: JVM tuning, Spring Boot microservices, packaging, containerization, and deployment to ACA/App Services; serverless batch patterns via Functions time triggers.
- IaC (Terraform/Bicep), GitHub Actions/Azure DevOps, and GitOps workflows.
- Security fundamentals: RBAC, Entra ID, MFA, secrets management, and compliance controls.
Nice-to-Have
- Experience with messaging and data platforms (Event Hubs, Service Bus, Kafka/Confluent) and analytics (SQL Server).
- Observability tooling (PrometheGrafana), performance testing, and cost optimization.
- Certifications: AZ-104, AZ-305, AZ-400.
Salary Range:
$99,600 - 169,200 USD
Salary range is a good faith estimate of base pay. Northern Trust provides a comprehensive benefits package including retirement benefits (401k and pension), health and welfare benefits (medical, dental, vision, spending accounts and disability), paid time off, parental and caregiver leave, life & accident insurance, and other voluntary and well-being benefits. Northern Trust also provides a discretionary bonus program that may include an equity component.
Working with Us: As a Northern Trust partner, greater achievements await. You will be part of a flexible and collaborative work culture in an organization where financial strength and stability is an asset that emboldens us to explore new ideas.
Movement within the organization is encouraged, senior leaders are accessible, and you can take pride in working for a company committed to assisting the communities we serve! Join a workplace with a greater purpose.
We'd love to learn more about how your interests and experience could be a fit with one of the world's most admired and sustainable companies! Build your career with us and apply today. #MadeForGreater
Reasonable accommodation Northern Trust is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation for any part of the employment process, please email our HR Service Center at .
We hope you're excited about the role and the opportunity to work with us. We value an inclusive workplace and understand flexibility means different things to different people.
Apply today and talk to us about your flexible working requirements and together we can achieve greater.