Overview
Skills
Job Details
ey Responsibilities
Design and implement Azure infrastructure solutions using Bicep and optionally Terraform.
Build and maintain Azure Virtual Networks (VNets), subnets, NSGs, UDRs, and VPN/ExpressRoute connectivity.
Configure and manage Azure Firewall, Application Gateway, and Private Link integrations for secure access.
Implement and manage IAM components including RBAC, Managed Identities, and Azure AD Groups.
Deploy and manage AKS clusters, ACR, and containerized workloads following best practices.
Develop and maintain Azure DevOps multi-stage YAML pipelines with integration across AKS, ACR, and Bicep deployments.
Apply branching strategies and pull request workflows using Azure Repos or GitHub.
Automate operational tasks using PowerShell, Azure CLI, or Bash scripting.
Monitor and analyze system health using Azure Monitor, Log Analytics, and Application Insights.
Enforce Azure Policy, integrate Defender for Cloud, and ensure compliance and key management.
Manage resource governance using Resource Groups, Management Groups, Tags, and Blueprints.
Optimize costs through Azure Cost Management, budgets, and Advisor recommendations.
Implement security and testing practices including Bicep linting, deployment validation, and security scans.
Support blue-green, canary, and rolling update strategies in AKS for high availability and minimal downtime.
Required Skills (Must Have)
Infrastructure as Code (IaC): Azure Bicep (Terraform optional)
Azure Networking: VNets, Subnets, NSGs, UDRs, VPN Gateway, ExpressRoute
Network Security: Azure Firewall, Application Gateway, Private Link
IAM: Azure RBAC, Managed Identities, Azure AD Groups
Containerization: AKS, ACR, Docker
DevOps CI/CD: Azure DevOps YAML pipelines, templates, multi-stage deployment
Version Control: Azure Repos, GitHub, branching, and pull request workflows
Resource Governance: Management Groups, Tags, Blueprints
Access Control in DevOps: Service Connections, Permissions, Approvals