Cloud Platform Architect

Maryland Department of Information Technology

Linthicum (MD)

On-site

USD 140,000 - 190,000

Full time

36 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Limited benefits

Job summary

Maryland Department of Information Technology is seeking a Cloud Infrastructure Architect to design, govern, and optimize the enterprise cloud platform. You will define scalable, secure architectures and reference patterns across compute, storage, networking, and platform services, balancing performance, security, and cost.

Reporting to the Director of Infrastructure and Cloud Services, you will drive migrations from on-prem to cloud, establish guardrails, and mentor engineers in a fast-paced

Qualifications

  • Bachelor's degree or five years of relevant experience may substitute for a degree.
  • 7–10 years of experience in cloud or infrastructure engineering with architecture/senior design exposure.
  • Hands-on with major cloud platforms (AWS/Azure/GCP) and core compute/storage/networking/identity services, plus virtualization and API concepts.
  • Strong networking and security understanding (TCP/IP, DNS, VPNs, firewalls, CDN).
  • Experience with infrastructure-as-code (Terraform, CloudFormation, Pulumi).
  • Knowledge of microservices, containers, and CI/CD pipelines (Docker, Kubernetes).
  • Experience designing for high availability, disaster recovery, and scalability.
  • Excellent troubleshooting and problem-solving skills; strong communication.

Responsibilities

  • Lead design of scalable, secure cloud architectures across compute, storage, networking, and platform services.
  • Translate goals into architectural diagrams, IaC models, and integration plans.
  • Establish reference architectures, standards, and guardrails for consistency.
  • Define IaC strategy and automate provisioning, configuration, and deployment.
  • Design landing zones and multi-cloud/hybrid architectures with on-prem connectivity.
  • Lead cloud migrations from on-prem to public/hybrid environments with risk assessment.
  • Architect security constraints, IAM, encryption, zero-trust, and compliance needs.
  • Ensure high availability, DR, capacity planning, and performance.
  • Monitor health and performance; optimize, troubleshoot, and automate.
  • Forecast costs and guide right-sizing with engineering and finance.
  • Collaborate across DevOps, SREs, and business units; mentor engineers.
  • Document architecture decisions and maintain ADRs.

Skills

Cloud architecture
Kubernetes
Terraform
Security
Cloud platforms
CI/CD
Networking
Problem solving
Communication

Education

Bachelor's degree in CS/IT/Engineering

Tools

Terraform
CloudFormation
Pulumi
Docker
Kubernetes

Job description

Maryland Benefits (MD Benefits) is a dynamic, cloud-based platform. This enterprise-wide digital service allows organizations to build, test, host, operate, and integrate mission-driven applications, data, and emerging technologies. MD Benefits offers cloud-based Platform-as-a-Service (PaaS) capabilities, a shared data architecture, and product development services, all developed by the State of Maryland to help multiple agencies deliver and manage health, human, and social service benefits and programs. On July 1, 2025, the operation of the MD Benefits shared platform and statewide applications transitioned from the Department of Human Services (DHS) to the Department of Information Technology (DoIT).

***This is a contractual position, with limited benefits***

***All hires need to be eligible to work in the U.S., either as a U.S. Citizen or those who have a Permanent Resident or green card, as the state of Maryland does not have the ability to sponsor employees***

***Applicants are required to submit an up-to-date and accurate resume.***

Main Purpose

The Cloud Infrastructure Architect, reporting to the Director of Infrastructure and Cloud Services, is responsible for designing, standardizing, and governing the enterprise's cloud infrastructure architecture. The primary focus of this role is defining scalable, secure, and resilient architectures across compute, storage, networking, and platform services, and establishing the reference architectures, patterns, and guardrails that engineering teams build against. Working at the intersection of engineering implementation and operations, this individual sets the technical direction for the cloud platform, makes sound tradeoffs across performance, reliability, security, and cost, and serves as the senior technical authority for infrastructure design decisions.

Position Duties
  • Cloud Architecture and Design: Lead the design of scalable, secure, and resilient cloud infrastructure architectures spanning compute, storage, networking, container orchestration, and platform services.
  • Solution Design: Translate business goals and requirements into architectural diagrams, blueprints, and infrastructure-as-code (IaC) models that engineering teams can implement, recommending appropriate cloud service providers, operating models, and integration frameworks.
  • Reference Architectures and Standards: Establish and maintain reference architectures, design patterns, technical standards, and guardrails that engineering teams build against to ensure consistency and quality.
  • Infrastructure as Code and Automation: Define the infrastructure-as-code strategy and drive automation of provisioning, configuration, and deployment across environments.
  • Landing Zones and Multi-Cloud Strategy: Design and govern cloud landing zones, account and subscription structure, and multi-cloud or hybrid architectures, including connectivity to on-premises environments.
  • Cloud Strategy and Migration: Lead efforts to migrate legacy on-premises workloads to public or hybrid cloud environments while minimizing downtime and business disruption, developing migration roadmaps, conducting risk assessments, and using automated tools to streamline the transition.
  • Network and Security Architecture: Treat security as an architectural constraint from the outset, architecting secure network topologies and segmentation, Identity and Access Management (IAM) policies, network boundaries, encryption and key management, zero-trust principles, and defense-in-depth controls that meet enterprise security and compliance requirements.
  • Reliability and Performance: Architect for high availability, disaster recovery, backup, scalability, and performance, defining service-level objectives (SLOs), capacity planning approaches, and designs that accommodate future growth.
  • Monitoring and Optimization: Continuously monitor system health, performance, and usage using monitoring, analytics, and application performance monitoring (APM) tools; predict capacity needs; troubleshoot issues; and identify bottlenecks and opportunities for automation.
  • Cost Optimization: Forecast resource needs, evaluate service pricing models, and implement strategies to prevent over-provisioning, providing guidance on right-sizing, capacity, and optimization in partnership with engineering and finance.
  • Governance and Compliance: Ensure architectures meet security, compliance, and regulatory requirements (such as GDPR or HIPAA where applicable), conduct regular audits of cloud environments for vulnerabilities, participate in architecture review boards, and collaborate with security teams on threat and incident response.
  • Cross-Functional Collaboration: Act as the primary technical liaison between infrastructure and engineering teams (DevOps engineers, SREs), business units, executives, and external vendors, presenting technical concepts to both technical and non-technical audiences and aligning architecture with business needs.
  • Technical Leadership and Mentorship: Serve as the senior technical authority for infrastructure design, review engineering designs, and mentor engineers across teams.
  • Documentation: Create and maintain comprehensive architecture documentation, diagrams, and architecture decision records (ADRs).
Minimum Qualifications
  • Bachelor's degree in Computer Science, Information Technology, Engineering, or a related field. (Five years of relevant professional experience may be substituted for a degree).
  • 7 to 10 years of experience in cloud or infrastructure engineering, including public cloud, DevOps, and modern application deployment, with demonstrated experience in an architecture or senior design role.
  • Deep, hands-on expertise with a major cloud platform (AWS, Azure, GCP) and its core compute, storage, networking, and identity services, along with virtualization and API concepts.
  • Strong understanding of networking and security concepts including TCP/IP, DNS, VPNs, firewalls, load balancing, and content delivery networks (CDNs).
  • Proven experience with infrastructure-as-code such as Terraform, CloudFormation, or Pulumi.
  • Understanding of microservices architecture, containerization, and CI/CD pipelines (e.g., Docker, Kubernetes, and modern delivery pipelines).
  • Experience designing for high availability, disaster recovery, and scalability.
  • Excellent troubleshooting and problem-solving skills including root cause analysis and failover design.
  • Strong communication and interpersonal skills.
  • Ability to work effectively in a fast-paced, high-pressure environment.
Preferred Qualifications:
  • Professional-level cloud architect certification (e.g., AWS Solutions Architect Professional, Microsoft Azure Solutions Architect Expert, or Google Professional Cloud Architect).
  • Experience with multi-cloud or hybrid cloud architectures.
  • Experience operating container platforms at scale (e.g., Kubernetes) and applying platform engineering practices.
  • Working knowledge of distributed systems fundamentals including scalability, availability, latency, and fault tolerance.
  • Experience designing cloud landing zones and governance frameworks.
  • Exposure to security and compliance frameworks (e.g., SOC 2, ISO 27001, FedRAMP).
  • Familiarity with zero-trust security models and identity federation.
  • Experience with configuration management, monitoring, and application performance monitoring (APM) tools.
  • Scripting and automation experience (e.g., Python, PowerShell, Bash, JSON, or Go).
  • Additional cloud, IAM, or networking certifications (e.g., Microsoft Identity and Access Administrator (SC-300), Certified Kubernetes Administrator, Okta Certified Professional, or Cisco CCNA).
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cloud Architect
Cloud Architect

The Amatriot Group • Linthicum (MD)

On-site
USD 100,000 - 170,000
Cloud Architect
Cloud Architect

Motion Recruitment • Wakefield (MA)

On-site
USD 140,000 - 190,000
Medical Insurance
Dental Benefits
Vision Benefits
+4
Senior Cloud Engineer / Architect
Senior Cloud Engineer / Architect

Accord Technologies Inc • Columbia (SC)

Hybrid
USD 120,000 - 180,000
Hybrid work model
Cloud Architect
Cloud Architect

22nd Century Technologies Inc. • Clarksburg (WV)

On-site
USD 110,000 - 170,000
Cloud Architect / Hybrid / Azure / Wakefield, MA
Cloud Architect / Hybrid / Azure / Wakefield, MA

Motion Recruitment Partners LLC • Wakefield (MA), Northern (KY)

Hybrid
USD 120,000 - 155,000
Cloud Architect
Cloud Architect

Angsignal • Washington

Remote
USD 130,000 - 160,000
401(k) matching
Dental insurance
Health insurance
Cloud Solutions Architect 2
Cloud Solutions Architect 2

Digerati Systems Inc. • Austin (TX)

Hybrid
USD 140,000 - 190,000
Cloud Architect
Cloud Architect

Paradigm Nat'l • United States

On-site
USD 120,000 - 160,000
Platform Architect
Platform Architect

MMD Services • Chicago (IL)

On-site
USD 140,000 - 220,000
Cloud Architect
Cloud Architect

The Intersect Group • Arizona

On-site
USD 140,000 - 190,000