Cloud Platform Engineer

Kubota Tractor Corporation

Grapevine (TX)

On-site

USD 150,000 - 230,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Kubota Tractor Corporation seeks a Principal Cloud Platform Engineer to lead enterprise Azure architecture and Landing Zone delivery. You will drive automation, governance, and security alignment across identity, networking, data platforms, and application workloads.

You will mentor teams, establish standards, and shape platform modernization using Terraform, Azure DevOps, and integrated observability. This role is on-site in Texas with cross-functional impact.

Qualifications

  • Bachelor’s degree in Computer Science, Information Systems, Engineering, or related discipline; 8+ years cloud platform engineering experience.
  • Experience architecting and implementing Azure Landing Zones following Microsoft CAF.
  • Enterprise-scale Terraform module development and state management.
  • Deep knowledge of Azure networking (VNETs, Firewall, ExpressRoute, Private Link).
  • Experience with Azure Policy, governance at scale, and CIS benchmarks.
  • CI/CD pipelines in Azure DevOps with YAML and secure deployment patterns.
  • Strong security, identity management, and RBAC design experience.

Responsibilities

  • Architect and maintain Azure Landing Zone implementations with governance and policy control.
  • Design hub-and-spoke networks with hybrid connectivity and ExpressRoute integration.
  • Lead IaC standards, Terraform modules, state management, and drift detection.
  • Design multi-region DR using Azure Site Recovery and geo-redundant storage.
  • Implement Azure Policy, governance, and CIS Benchmark compliance.
  • Architect identity management across landing zones using Entra ID and PIM.
  • Design CI/CD pipelines in Azure DevOps with security gates and automated tests.
  • Lead observability: Log Analytics, Azure Monitor, and centralized logging.
  • Collaborate with data teams on Data Platform Landing Zone with Microsoft Fabric.
  • Mentor cloud engineering teams and establish coding standards.
  • Evaluate new Azure services for modernization and optimization.
  • Partner with security to address vulnerabilities and incident response.

Skills

Cloud architecture
Azure platform
Infrastructure as Code
CI/CD
Security framework knowledge
Networking
Monitoring & observability
Data platform design
Identity & access management
Leadership & mentoring
Automation scripting

Education

Bachelor’s degree in Computer Science or related

Tools

Terraform
Azure DevOps
GitHub Actions
PowerShell
Bash
Python
ARM Templates
Bicep
Docker
Kubernetes

Job description

The Principal Cloud Platform Engineer will serve as the technical authority for enterprise cloud platform architecture and implementation across the organization's Azure environment.

This role is responsible for establishing and maintaining the Azure Landing Zone architecture, driving infrastructure automation strategy, and ensuring alignment with security frameworks including CIS Azure Foundations Benchmark and Zero Trust principles.

The Principal Engineer will lead cross-functional initiatives spanning network connectivity, identity management, data platforms, and application landing zones while mentoring engineering teams and establishing technical standards that scale with organizational growth.

KEY RESPONSIBILITIES

This position does the following in accordance with all applicable Federal, State and local laws / regulations and the Company’s policies, procedures and guidelines:

Architect and maintain enterprise Azure Landing Zone implementations including management groups, policy governance, and subscription vending strategies

  • Design hub-and-spoke network topologies with Azure Firewall Premium, VPN gateways, ExpressRoute, and Private Link integration for hybrid connectivity
  • Establish Infrastructure as Code standards using Terraform, including module development,state management strategies, and drift detection mechanism
  • Lead the design of multi-region disaster recovery architectures leveraging Azure Site Recovery, geo-redundant storage, and automated failover orchestration
  • Define and implement Azure Policy and Governance frameworks ensuring compliance with CIS Microsoft Azure Foundations Benchmark and regulatory requirements
  • Architect identity and access management solutions using Microsoft Entra ID, Privileged Identity Management (PIM), and RBAC strategies across platform and application landing zones
  • Design and implement CI/CD pipeline architectures using Azure DevOps with security gates, automated testing, and approval workflows
  • Lead platform observability strategy including Log Analytics Workspace design, diagnostic settings, Azure Monitor alerting, and centralized audit logging
  • Collaborate with data engineering teams on Data Platform Landing Zone architecture including Microsoft Fabric integration and analytics infrastructure
  • Facilitate integration of modern identity providers (e.g. Auth0 Customer Identity Cloud, Entra ID) with application workloads
  • Provide technical leadership and mentorship to cloud engineering teams, establishing coding standards, review processes, and knowledge sharing practices
  • Evaluate emerging Azure services and capabilities, providing recommendations for platform modernization and optimization
  • Collaborate with security teams on vulnerability management, security posture assessment, and incident response planning
  • Partner with business stakeholders to translate requirements into scalable, secure cloud architectures.
  • Other duties as assigned.
QUALIFICATIONS
  • High School Diploma or GED required.
  • Bachelor’s degree in Computer Science, Information Systems, Engineering, or related discipline and 8 years of cloud platform engineering experience required.
  • In lieu of a degree, at least 10 years related experience required.
  • Experience architecting and implementing Azure Landing Zones following Microsoft Cloud Adoption Framework
  • Experience with Infrastructure as Code using Terraform at enterprise scale including module development and state management
  • Deep knowledge of Azure networking including Virtual Networks, Azure Firewall, VPN Gateway, ExpressRoute, Private Link, and DNS architecture
  • Experience implementing Azure Policy and Governance at scale across management group hierarchies
  • Experience with Microsoft Entra ID, Privileged Identity Management, Conditional Access, and enterprise RBAC patterns
  • Experience designing CI/CD pipelines in Azure DevOps with YAML templates and secure deployment patterns
  • Strong understanding of security frameworks including CIS Benchmarks, Zero Trust architecture, and defense-in-depth strategies
  • Experience with Azure monitoring and observability including Log Analytics, Azure Monitor, and diagnostic configuration
  • Experience with container technologies including Azure Container Apps, Azure Kubernetes Service, and container registry patterns
  • Technically proficient with Infrastructure as Code: Terraform (primary), ARM Templates, Bicep
  • Technically proficient with CI/CD: Azure DevOps, GitHub Actions
  • Technically proficient with Scripting: PowerShell, Bash, Python
  • Technically proficient with Operating Systems: Linux (Ubuntu, RHEL), Windows Server
  • Technically proficient with Monitoring: Azure Monitor, Log Analytics, Grafana, Application Insights
  • Technically proficient with Version Control: Git, Azure Repos
  • Technically proficient with Collaboration: Confluence, Jira, ServiceNow
  • Technically proficient with Containers: Docker, Azure Container Apps, Kubernetes (preferred)
  • Microsoft certifications such as Azure Solutions Architect Expert (AZ-305), Azure Administrator Associate (AZ-104), or Azure Security Engineer Associate (AZ-500) preferred
  • Experience with Azure Data Platform services including Microsoft Fabric, Azure Data Factory, or Azure Synapse preferred
  • Experience with customer identity platforms such as Auth0, Azure AD B2C, or similar CIAM solutions preferred
  • Experience in financial services, agriculture, or manufacturing industries preferred
  • Technically proficient with Cloud Platforms: Azure (primary), familiarity with AWS or GCP preferred
  • Proficient in the use of MS Office suite.
PHYSICAL REQUIREMENTS

Requires sufficient personal mobility and physical reflexes, to permit the employee to function in a general office environment and accomplish tasks and duties as outlined above.

Kubota is an equal opportunity at will employer and does not discriminate against any employee or applicant for employment because of age, race, religion, color, disability, sex, sexual orientation or national origin.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cloud Engineer
Senior Cloud Engineer

Priority Power • Houston (TX)

On-site
USD 120,000 - 150,000
Principal Azure Platform Architect/Engineer
Principal Azure Platform Architect/Engineer

Request Technology, LLC • Chicago (IL)

Hybrid
USD 180,000 - 230,000
Lead Engineer, Cloud Platform – Azure
Lead Engineer, Cloud Platform – Azure

Jobtailor • Connecticut

On-site
USD 120,000 - 160,000
Senior Azure Cloud Engineer
Senior Azure Cloud Engineer

Newmark • New York (NY)

On-site
USD 150,000 - 190,000
Health insurance
Paid time off
401(k) retirement plan with employer matching
+1
Azure Cloud Engineer
Azure Cloud Engineer

Kloeckner Metals - Americas • Roswell (GA)

On-site
USD 90,000 - 120,000
Senior Azure Cloud Engineer
Senior Azure Cloud Engineer

Career Techniques • Dallas (TX)

Hybrid
USD 120,000 - 150,000
Data Platform Operations Engineer
Data Platform Operations Engineer

TALENT Software Services • BLOOMINGTON (MN)

On-site
USD 90,000 - 120,000
Cloud Infrastructure Engineer
Cloud Infrastructure Engineer

Compunnel, Inc. • Lisle (IL)

On-site
USD 100,000 - 130,000
Cloud Engineer III
Cloud Engineer III

Jobtailor • New York (NY)

On-site
USD 140,000 - 180,000
Principal Cloud Engineer
Principal Cloud Engineer

Insight Global • Richmond (VA)

On-site
USD 100,564 - 104,697