Descrição da vaga
<p>We are looking for an experienced Platforms/Infrastructure Engineer to join a global technology environment and take responsibility for the design, operation, security, and continuous improvement of Microsoft Azure and hybrid infrastructure platforms. The role combines strong Microsoft Azure, Entra ID, Windows/Linux Server, Infrastructure as Code, automation, security, observability, and platform operations expertise. The engineer will help design and maintain secure Azure landing zones, support global infrastructure services and business-critical environments, and act as an escalation point for complex platform issues.</p>
<h4><strong>Key Responsibilities:</strong></h4>
<div>
<ul>
<li>Design, build, maintain, and optimise Microsoft Azure infrastructure and hybrid cloud environments.</li>
<li>Design and maintain secure Azure landing zones, platform guardrails, policies, subscription structures, naming standards, and access controls.</li>
<li> Manage and improve Microsoft Entra ID services, including RBAC, PIM, Conditional Access, MFA, SSO, SCIM, administrative units, and identity governance.</li>
<li>Build, harden, patch, maintain, and decommission Windows Server and Linux workloads across Azure, VMware/ESXi, Azure Local/HCI, colocation, and on-premises environments.</li>
<li>Support patching and lifecycle management, including virtual patching approaches for legacy operating systems where standard patching is not possible.</li>
<li>Design and deploy infrastructure using Infrastructure as Code, primarily Terraform and Bicep, as well as ARMtemplates.</li>
<li>Develop and maintain infrastructure automation using PowerShell, Azure Automation Runbooks, JSON, andYAML.</li>
<li>Support Azure Automation Runbooks across cloud and hybrid environments, including Hybrid Worker configurations.</li>
<li>Monitor platform health, capacity, availability, and performance using Azure Monitor, Log Analytics, Azure Managed Grafana, and related observability solutions.</li>
<li>Ensure platform security and compliance through security hardening, CIS baselines, vulnerability remediation, identity controls, and certificate lifecycle management.</li>
<li>Manage patching, upgrades, and infrastructure lifecycle activities using Azure Update Manager and automation.</li>
<li>Participate in incident and problem management, including troubleshooting, root cause analysis, and implementation of long-term solutions.</li>
<li>Act as an escalation point and subject-matter expert for Azure, Entra ID, and server infrastructure.</li>
<li>Support highly available and resilient platforms using SRE principles, including HA, load balancing, resilience engineering, and continuous improvement.</li>
<li>Participate in an on-call rotation and occasional out-of-hours support for critical global services.</li>
</ul>
</div>
<p><br><strong>Must-Have Technical Skills:</strong></p>
<ul>
<li>Microsoft Azure</li>
<li>Microsoft Entra ID / Azure AD</li>
<li>Conditional Access, MFA, PIM, RBAC, SSO, SCIM, and identity governance</li>
<li>Windows Server 2016-2025</li>
<li>Linux - RHEL / Ubuntu</li>
<li>Terraform and Bicep</li>
<li>ARM templates</li>
<li>PowerShell</li>
<li>Azure Automation Runbooks and Hybrid Worker environments</li>
<li>Azure governance, secure landing zones, and platform security</li>
<li>Azure Monitor, Log Analytics, and Azure Managed Grafana</li>
<li>Server and cloud security hardening</li>
<li>Patch and lifecycle management, including legacy OS / virtual patching scenarios</li>
<li>Hybrid cloud / on-premises infrastructure</li>
</ul>
<p><br><strong>Experience Requirements:</strong></p>
<ul>
<li>5+ years of professional IT experience.</li>
<li>3+ years of hands-on cloud and infrastructure engineering experience, particularly with Microsoft Azure and hybrid environments.</li>
<li> Proven experience supporting large and complex enterprise environments.</li>
<li>Experience working across distributed/global teams.</li>
<li>Experience with ITIL-aligned operations, including Incident, Problem, Change, Request Fulfilment, and Service Transition.</li>
<li>Strong troubleshooting and root cause analysis capabilities.</li>
<li>Ability to work independently in a remote environment and manage priorities with minimal supervision.</li>
<li>Strong written and verbal English communication skills.</li>
<li>Experience in financial services, insurance, or a similarly complex enterprise environment is preferred.</li>
<li>Relevant Microsoft Azure certification(s) are required.</li>
</ul>
<p><strong>Nice to Have:</strong></p>
<ul>
<li>Azure networking: VNets, NSGs, firewalls, private endpoints, and routing.</li>
<li>VMware / ESXi and Azure Local / HCI.</li>
<li>Azure DevOps and GitHub Enterprise.CI/CD pipelines for infrastructure deployment.</li>
<li>Jira and Confluence.</li>
<li>Experience with cloud cost optimisation, forecasting, and consumption management.</li>
</ul><div class="content-conclusion"><p><strong>We offer*:</strong></p>
<ul>
<li>Flexible working format - remote, office-based or flexible</li>
<li>A competitive salary and good compensation package</li>
<li>Personalized career growth</li>
<li>Professional development tools (mentorship program, tech talks and trainings, centers of excellence, and more)</li>
<li>Active tech communities with regular knowledge sharing</li>
<li>Education reimbursement</li>
<li>Memorable anniversary presents</li>
<li>Corporate events and team buildings</li>
<li>Other location-specific benefits</li>
</ul>
<p>*not applicable for freelancers</p></div>