Job Title: Senior DevOps Engineer / Architect
Location: Chicago, IL (Hybrid Local Candidates Only)
Only candidates local to Chicago, IL will be considered. Must provide LinkedIn profile and location proof.
Position Summary
We are seeking a Senior DevOps Engineer/Architect with deep handson experience building cloudnative, eventdriven, and APIfirst workloads on Azure. The engineer will help design and harden an immutable evidencing platform used to ingest compliance artifacts, audit evidence, and control attestations from multiple internal systems. This role requires strong architecture skills, advanced DevOps expertise, and the ability to build secure, scalable, policydriven infrastructure aligned with PCIDSS, SOX, and GLBA requirements.
Required Education
Bachelor s Degree in Computer Science, Information Management, or related field
Preferred Certifications (Nice to Have)
Azure Security Engineer Associate
AWS Certified Security Specialty
CISSP, CCSP
Required Experience & Technical Skills
5+ years building production workloads on Azure (eventdriven, APIfirst architectures)
Strong Azure API Management (APIM) experience: inbound/outbound XML policies, backends, named values, developer portal, versioning
Experience implementing immutable/appendonly storage (WORM blob policies, Cosmos DB change feed auditing, etc.)
Deploying and managing NoSQL / Cosmos DB
Envelope encryption patterns using Azure Key Vault (CMK, rotation, purge protection)
Zerotrust network design: Private Endpoints, VNet integration, NSG/UDR patterns
Solid Terraform skills: modules, remote state, Azure provider, CI/CD via GitHub Actions or Azure DevOps
Strong coding experience in Python and Node.js
Handson proficiency with integrated testing tools
Ability to write KQL for operational queries, alerting, and audit log analysis
Experience integrating with thirdparty tool APIs (GRC platforms, vulnerability scanners, ticketing systems, etc.)
Required Soft Skills
Strong written and verbal communication
Ability to collaborate effectively with crossfunctional teams
Key Responsibilities
Design and implement API ingestion pipelines via Azure APIM (OAuth2/JWT validation, rate limiting, schema enforcement)
Build eventdriven ingestion workflows using Azure Service Bus and Azure Functions (durable, fanout patterns)
Implement immutable artifact storage using Azure Blob Storage (WORM retention locks) and Cosmos DB for tamperevident metadata
Architect Redis Cache for highthroughput query caching while preserving immutability guarantees
Integrate Azure Key Vault for envelope encryption (CMK, automated rotation)
Build Log Analytics Workspace telemetry pipelines for ingestion events, access audits, and integrity verification logs
Write Terraform IaC for all infrastructure (no clickops; policyascode enforced)
Implement thirdparty API integrations to ingest evidence artifacts from source systems