freehire launches on Product Hunt on 26 August.

Follow →

Cloud Architect

Key Responsibilities

Cloud Platform and Infrastructure

  • Design, implement and operate secure, scalable Azure infrastructure.
  • Build and maintain Azure management groups, subscriptions, RBAC, networking and shared services.
  • Develop hub-and-spoke network architectures, including VNets, firewalls, private endpoints, VPN and ExpressRoute connectivity.
  • Support Azure services including Key Vault, Azure Monitor, Log Analytics, storage, Container Apps, Functions, Databricks and related platform components.
  • Establish consistent Dev, QA, UAT and Production environments.

Infrastructure as Code

  • Design and maintain reusable Terraform modules for Azure infrastructure.
  • Manage remote state, workspaces, module versioning and environment promotion.
  • Ensure platform resources are managed through version-controlled infrastructure-as-code rather than manual portal changes.
  • Implement drift detection, policy-as-code and controlled production deployments.

CI/CD and DevOps Automation

  • Build and maintain GitLab CI/CD pipelines for infrastructure and applications.
  • Implement pipeline stages covering formatting, validation, security scanning, planning, testing and deployment.
  • Establish merge-request-driven workflows with code review, Terraform plan visibility, approvals and gated production releases.
  • Create reusable CI/CD templates for application, data and infrastructure teams.
  • Automate deployment, smoke testing, rollback and release processes.

DevSecOps, Governance and Compliance

  • Integrate SAST, SCA, secret scanning, container and infrastructure security tools into CI/CD pipelines.
  • Define vulnerability thresholds and promotion policies.
  • Implement Azure Policy, tagging, encryption, private-endpoint and diagnostic-logging guardrails in accordance with applicable security, regulatory and internal requirements.
  • Work with Security and Infrastructure teams to embed secure-by-default practices across the platform.
  • Support cloud controls aligned with applicable financial-services regulatory, governance, security and operational requirements.

Reliability, Observability and Cost Optimisation

  • Implement monitoring, logging, alerting and operational dashboards using Azure Monitor, Log Analytics, Grafana and related tools.
  • Improve platform availability, resilience, disaster recovery and incident response.
  • Participate in troubleshooting, root-cause analysis, post-incident reviews and continuous improvement.
  • Develop cost-optimisation practices including rightsizing, autoscaling, non-production auto-shutdown and storage lifecycle management.
  • Improve deployment resilience, rollback strategies and operational runbooks.

Collaboration and Technical Leadership

  • Partner with application, data, security, infrastructure and engineering teams.
  • Coach engineers on Terraform, CI/CD, cloud architecture and production-readiness practices.
  • Review and improve Terraform configurations, pipeline definitions and technical designs.
  • Document platform patterns, standards, runbooks and implementation guides.
  • Contribute to technical strategy and the continued modernisation of Dymon’s engineering platform.

Requirements

  • 10-15 years of experience in DevOps, Cloud Engineering, Platform Engineering or Site Reliability Engineering.
  • Strong hands-on experience with Microsoft Azure.
  • Demonstrated experience designing and implementing Terraform modules and multi-environment infrastructure.
  • Strong experience building CI/CD pipelines using GitLab, Azure DevOps, GitHub Actions, Jenkins or similar tools.
  • Good understanding of Azure networking, including VNets, NSGs, private endpoints, VPN and ExpressRoute.
  • Experience with Azure RBAC, managed identities, Key Vault, Azure Policy, Azure Monitor and Log Analytics.
  • Proficiency in at least one scripting language, such as Python, PowerShell or Bash.
  • Practical experience with DevSecOps, including SAST, SCA, secret scanning, container or IaC security.
  • Strong troubleshooting and debugging skills across cloud infrastructure, pipelines and application deployments.
  • Excellent written and verbal communication skills.
  • Ability to work effectively with technical and non-technical stakeholders.

The core technical profile is based on the existing Azure Cloud Engineer requirements, which emphasise Terraform, GitLab CI/CD, Azure networking, DevSecOps, monitoring and cross-team enablement. ​

Desirable Experience

  • Azure landing zones and enterprise-scale cloud architecture.
  • Kubernetes, Docker or cloud-native application platforms.
  • Databricks, Azure Data Factory, Kafka, Spark or other data-platform technologies.
  • Hybrid cloud or on-premises migration projects.
  • Financial services, asset management, hedge funds or other regulated environments, with an understanding of applicable regulatory and control requirements.
  • Cloud security, identity governance, disaster recovery or FinOps.

See also

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available