Requirements
- Azure platform operations across enterprise IaaS and PaaS, including landing zones, subscriptions, RBAC, policy, and governance.
- Strong Windows Server administration (AD, GPO, IIS) with practical Linux experience (RHEL/Ubuntu) for broader support.
- Infrastructure-as-Code with Terraform and/or Bicep, using reusable modules and Git-based workflows.
- Configuration-as-Code with Ansible and/or DSC to maintain hardened, compliant desired state.
- Automation and scripting with PowerShell and Bash, with Python desirable for tooling.
- CI/CD using Azure DevOps or GitHub Actions, including quality gates, secrets/security scanning, and SBOM generation.
- Azure networking fundamentals: VNets, vWAN, ExpressRoute, VPN, Private Endpoints, and DNS, plus hybrid connectivity patterns.
- Containers and Kubernetes exposure (AKS or ARO), image registry practices, and environment provisioning/on‑demand environments.
- Observability and reliability: monitoring, logging, alerting baselines, SRE concepts (SLOs, error budgets), backup/DR, and patch orchestration.
- Security and compliance: Zero Trust, identity and access management (AAD, PIM), and integration with Defender and vulnerability scanning.
- Cost optimisation using FinOps practices, tagging strategies, budgeting, and guardrails.
- Bachelor’s degree in Computer Science, Engineering, or related field (or equivalent experience).
Nice to Have
- Experience supporting VMware‑to‑Azure migration.
- Experience working with Temenos or similar core banking platforms.
- Relevant Azure certifications - Microsoft Azure Administrator AZ 104, Azure Solutions Architect/Identity/Security (AZ‑305/AZ‑500), DevOps Engineer Expert (AZ‑400), FinOps Certified Practitioner, ITIL 4 Foundation.