Azure Infrastructure Architect Needed

Job ID: 39958533

Budget: $50 – $0 USD

I need an expert who can take full ownership of our Azure environment and design it properly from the ground up. The immediate focus is infrastructure design, with special attention on Storage Accounts and App Services; these workloads must be laid out for performance, high availability, and airtight security.

The scope covers:
• Crafting the overall landing-zone: resource groups, VNets, subnets, NSGs, route tables, and peering built through IaC (ARM/Bicep or Terraform) and staged by Azure DevOps or GitHub Actions.
• Hardening identity: Azure AD / Entra ID configuration, RBAC, conditional access, and managed identities so nothing runs with broad privileges.
• Protecting data and secrets: Key Vault integration, TLS/SSL certificates, private endpoints, and secure API Management gateways.
• Building the application layer: resilient App Services, well-structured Storage Accounts (tiering, lifecycle policies, replication), and automated deployment slots.
• Databases: Azure SQL and Cosmos DB provisioning, connection security, automated backups, and tuning.
• Day-two operations: logging, Application Insights, Log Analytics, cost management, patch orchestration, and incident playbooks.

Deliverables I expect:
1. Architecture diagram and design document that ties every service together.
2. Infrastructure-as-code repository ready for CI/CD.
3. Security baseline report covering identity, network, and data.
4. Runbook for monitoring, cost optimisation, and routine maintenance.

I value clear documentation, repeatable automation, and proven experience working at an architecture level rather than simple administration. If your background lines up, let’s discuss timelines and milestones.