Get more replies from employers
Send a job-specific resume in minutes.
Trinity Technology Solutions LLC seeks a Principal Cloud Architect (Azure) to lead enterprise Azure and SAP RISE integration. You will own design of secure, scalable Landing Zones, enforce IaC, and drive governance for global workloads.
Strong leadership and extensive Azure/SAP on Azure experience are required. Responsibilities include architecting multi-region Azure environments, implementing Zero Trust security, and guiding migration strategies while collaborating with SAP Basis teams and
Job Description: Principal Cloud Architect (Azure)
We are seeking a visionary Principal Cloud Architect with over 15 years of IT experience to lead the architecture, design, and secure evolution of our cloud ecosystem. In this role, you will be the strategic blueprint owner for our global enterprise footprint, bridging the gap between cutting‑edge Microsoft Azure cloud native infrastructure and SAP RISE environments.
You will own the design of highly secure enterprise‑scale Azure Landing Zones (ALZ), ensuring that our infrastructure is resilient, compliant, and optimized for mission‑critical enterprise workloads.
Design and deploy enterprise-scale Microsoft Azure infrastructure, specifically tailored to host and interface with SAP RISE (S/4HANA Cloud) deployments.
Architect robust, low‑latency network topologies and integration patterns between Azure native services and the SAP RISE managed environment.
Lead complex cloud migration strategies, translating legacy infrastructure into agile, cost‑effective, and highly available cloud models.
Own the architecture, governance, and scaling of Azure Landing Zones, ensuring strict alignment with the Microsoft Cloud Adoption Framework (CAF).
Enforce “Infrastructure as Code” (IaC) as the standard delivery mechanism using tools like Terraform, Bicep, or Azure Resource Manager (ARM) templates.
Establish guardrails around subscription topology, identity management, resource organization, and management groups.
Embed Zero Trust architecture and Cloud Security Principles into every layer of the cloud design (Identity, Network, Data, and Workload).
Implement strict compliance frameworks using Azure Policy, Azure Microsoft Defender for Cloud, and enterprise key management (Azure Key Vault).
Collaborate with InfoSec to design robust Identity and Access Management (IAM) architectures using Microsoft Entra ID (formerly Azure AD), role‑based access control (RBAC), and Privileged Identity Management (PIM).
Act as the primary technical liaison between enterprise infrastructure teams, SAP Basis teams, and Microsoft architects.
Provide technical mentorship to cloud engineers and developers, fostering a culture of cloud excellence and continuous learning.
15+ years of experience in enterprise IT infrastructure design, systems engineering, and architecture.
5+ years of dedicated hands‑on experience architecting complex environments on the Microsoft Azure platform.
Proven track record with SAP on Azure / SAP RISE: Deep understanding of the RISE with SAP model, including boundaries of responsibility, integration architectures, and network connectivity (e.g., ExpressRoute, VPN topologies).
Enterprise‑Scale Landing Zones: Demonstrated experience designing multi‑region, multi‑subscription Azure environments utilizing Management Groups and automated governance.
Networking Expertise: Mastery of Hub‑Spoke architectures, Azure Virtual WAN, Azure Firewall, Application Gateways, and ExpressRoute routing optimized for SAP traffic.
Automation: Highly proficient in Terraform or Bicep for automated provisioning.
High Availability & DR: Deep understanding of Azure Availability Zones, Backup, and Site Recovery strategies for database layers (HANA, SQL) and application tiers.
Microsoft Certified: Azure Solutions Architect Expert
Microsoft Certified: Azure Security Engineer Associate