Azure Cloud Engineer

ARS

Memphis (TN)

On-site

USD 120,000 - 180,000

Full time

11 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

ARS-Rescue Rooter is seeking an experienced Azure Cloud Engineer to design, implement, and secure enterprise Azure environments, including AVD and hybrid migrations. You will automate deployments with Terraform, Bicep, ARM templates, and PowerShell while ensuring compliance with PCI DSS and Zero Trust.

The role collaborates across Infrastructure, Security, Networking, and Applications teams. You will manage CI/CD pipelines, governance, and operational excellence, delivering scalable cloud

Qualifications

  • Bachelor's degree in IT, Computer Science, Engineering, or related field; equivalent professional experience considered.
  • 5+ years of enterprise infrastructure engineering experience, including 3+ years of hands-on Microsoft Azure engineering.
  • Hands-on experience with Azure infrastructure, AVD, cloud migrations, hybrid networking, IaC/automation, identity/access management, and cloud security.
  • Experience supporting regulated environments using PCI DSS, NIST, CIS, or similar frameworks.
  • Working knowledge of SQL Server/Azure SQL Managed Instance, containerization/Kubernetes/AKS, and Azure Cosmos DB.

Responsibilities

  • Design, deploy, and optimize secure Azure IaaS environments with VMs, storage, backup, and monitoring.
  • Plan and administer AVD environments including host pools, session hosts, images, and FSLogix.
  • Automate Azure deployments with Terraform, Bicep, ARM, PowerShell, Azure CLI, and YAML.
  • Migrate on-premises infrastructure and apps to Azure with readiness assessments and modernization.
  • Support Azure DevOps CI/CD pipelines and IaC for SQL and app modernization.
  • Enforce Zero Trust, identity governance, and PCI DSS compliance across Azure.
  • Collaborate with Security, Networking, and Application Development teams on hybrid cloud initiatives.

Skills

Azure IaaS
Azure Virtual Desktop (AVD)
CI/CD
IaC/Automation
Azure DevOps
Zero Trust
PCI DSS
Security & Compliance
SQL Server/Azure SQL
Kubernetes/AKS

Education

Bachelor's degree in IT/CS/Engineering

Tools

Terraform
Bicep
ARM templates
PowerShell
Azure CLI
YAML
Docker
Kubernetes

Job description

Company Name

ARS-Rescue Rooter

Overview

The Azure Cloud Engineer designs, implements, secures, automates, and supports enterprise Microsoft Azure environments, including cloud infrastructure, Azure Virtual Desktop (AVD), cloud migrations, and DevOps automation using CI/CD and Infrastructure-as-Code (IaC). The role delivers secure, scalable, resilient hybrid-cloud solutions and partners across Infrastructure, Security, Networking, Database, and Application Development teams on Zero Trust, PCI DSS compliance, SQL/data-platform migrations, and application modernization.

Key Responsibilities
  • Cloud Architecture & Azure Virtual Desktop Design, deploy, maintain, and optimize secure, highly available Azure IaaS environments, including VMs, storage, backup, monitoring, recovery, landing zones, governance, and operational baselines. Design and administer AVD environments, including host pools, session hosts, images, application delivery, scaling, user experience, and FSLogix. Secure and automate AVD using Entra ID, Conditional Access, MFA, RBAC, Zero Trust, Terraform, PowerShell, Azure CLI, and Azure DevOps.
  • Cloud Migration, DevOps & Automation Plan and execute on-premises infrastructure and application migrations to Azure, including readiness assessments, modernization, re-platforming, remediation, and hybrid transition support. Design and maintain Azure DevOps CI/CD pipelines and IaC using Terraform, Bicep, ARM templates, PowerShell, Azure CLI, and YAML. Establish version control, release management, automated validation, repeatable deployment standards, and technical/operational documentation. Partner with database teams on Azure infrastructure for SQL Server Always On to Azure SQL Managed Instance and SQL Server to Cosmos DB migrations, including networking, sizing/capacity, backup/recovery, monitoring, and cutover support. Support modernization of IIS-hosted applications through containerization, CI/CD, and deployment to Kubernetes/AKS in partnership with application development teams.
  • Identity, Networking & Security Administer Entra ID, Conditional Access, Identity Governance, PIM, RBAC, MFA, access reviews, service identities, and segregation-of-duties controls. Design and enforce Zero Trust, least-privilege access, segmentation, and micro segmentation across Azure environments. Design and support hybrid connectivity and application delivery using ExpressRoute, VPN Gateway, Virtual WAN, VNets, routing, DNS, Azure Firewall, Front Door, Application Gateway, load balancing, NSGs, ASGs, and private endpoints. Partner with network teams to integrate Azure with datacenter, branch, and third-party connectivity.
  • Compliance, Governance & Operations Support Microsoft Defender for Cloud, Microsoft Sentinel, logging, alerting, threat detection, vulnerability remediation, and cloud security monitoring. Design and maintain solutions supporting PCI DSS and enterprise security requirements, including access control, encryption, segmentation, monitoring, vulnerability management, and audit evidence. Partner with Security, Compliance, and Audit teams on PCI assessments, remediation, evidence collection, and control validation; align practices with PCI DSS, NIST, CIS Controls, and CIS Azure Benchmarks. Monitor and optimize Azure performance, availability, resiliency, cost, and security posture. Develop platform standards, operational procedures, runbooks, implementation plans, and support documentation. Participate in incident response, problem management, root cause analysis, maintenance, and change management while providing technical guidance across technology teams.
Work Details

Regular business hours with occasional after-hours maintenance, migrations, incidents, or production changes. Participation in change management, operational support, and on-call activities as required. Occasional travel for meetings, datacenter activities, vendor engagements, or project work.

Qualifications
Required Qualifications
  • Bachelor's degree in IT, Computer Science, Engineering, or related field; equivalent professional experience considered. 5+ years of enterprise infrastructure engineering experience, including 3+ years of hands-on Microsoft Azure engineering. Hands-on experience with Azure infrastructure, AVD, cloud migrations, hybrid networking, IaC/automation, identity/access management, and cloud security. Experience supporting regulated environments using PCI DSS, NIST, CIS, or similar frameworks. Working knowledge of SQL Server/Azure SQL Managed Instance, containerization/Kubernetes/AKS, and Azure Cosmos DB.
  • Technical Skills Cloud: Azure IaaS, Landing Zones, VMs, Storage, Backup, Site Recovery, Monitor, AVD, FSLogix, image management, capacity/scaling. Identity: Entra ID, Conditional Access, PIM, Identity Governance, RBAC, MFA, SSO, least privilege. DevOps: Azure DevOps, CI/CD, Terraform, Bicep, ARM, Git/GitHub, PowerShell, Azure CLI, YAML. Network/Security: ExpressRoute, Front Door, Application Gateway, Azure Firewall, Virtual WAN, VPN Gateway, NSGs, ASGs, routing, micro segmentation, Zero Trust. Compliance: PCI DSS, NIST, CIS Controls/Benchmarks, policy management, audit evidence, risk assessment, remediation. Migration & Modernization: SQL Server Always On Availability Groups, Azure SQL Managed Instance, Docker, Kubernetes/AKS, Azure Cosmos DB.
Preferred Qualifications
  • Microsoft Azure Solutions Architect Expert, Azure Security Engineer Associate, Azure Administrator Associate, Azure DevOps Engineer Expert, and/or HashiCorp Terraform Associate certifications preferred.
  • Experience with PCI DSS environments and audit evidence; Defender for Cloud, Sentinel, CrowdStrike or similar security platforms; and multi-site hybrid data center/cloud environments also preferred.
  • Prior exposure to SQL Server or Cosmos DB migrations, or to containerizing legacy .NET/IIS applications, is a plus.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Azure Cloud Engineer
Azure Cloud Engineer

Aksarben Heating, Air Conditioning, Plumbing • Memphis (TN)

On-site
USD 110,000 - 150,000
Systems Engineer Azure Identity
Systems Engineer Azure Identity

Career Listings • Fort Belvoir (VA)

Hybrid
USD 140,000 - 190,000
401(k)
401(k) matching
Dental insurance
+6
DevSecOps Engineer
DevSecOps Engineer

Jobtailor • Columbus (OH)

On-site
USD 120,000 - 170,000
Azure Cloud Architect
Azure Cloud Architect

Bayforce • United States

Hybrid
USD 120,000 - 180,000
Azure Cloud Engineer
Azure Cloud Engineer

IntePros • Fort Washington

On-site
USD 80,000 - 120,000
Azure Cloud Architect
Azure Cloud Architect

EZCORP • United States

On-site
USD 100,000 - 130,000
Competitive salaries
401K with company match
Generous paid time off
+2
Cloud Engineer
Cloud Engineer

Core Specialty Insurance Holdings, Inc. • Cincinnati (OH)

On-site
USD 90,000 - 120,000
Azure DevOps Engineer
Azure DevOps Engineer

Delta Progress Group Inc • Indiana (PA)

On-site
USD 120,000 - 170,000
Senior Azure Infrastructure Engineer
Senior Azure Infrastructure Engineer

Ampcus Inc • Mechanicsville (VA)

Hybrid
USD 120,000 - 180,000
Equal Opportunity Employer
Sr. System Engineer
Sr. System Engineer

Gotham Technology Group • New York (NY)

On-site
USD 140,000 - 190,000