Are you a senior Azure Infrastructure Engineer who goes beyond day-to-day cloud management? We are looking for an experienced professional to help improve the security, governance, reliability and automation of a complex enterprise Azure environment.
You will work on business-critical workloads and translate security findings and governance requirements into practical, scalable technical solutions. This is a hands-on role covering Azure infrastructure, Infrastructure as Code, security, networking, identity, governance and automation.
What will you do?
- Analyse and remediate Azure security findings and risks.
- Improve existing Azure workloads in terms of security, stability and performance.
- Develop and maintain Infrastructure as Code using Bicep, ARM or Terraform.
- Implement Azure Policy, governance standards and compliance controls.
- Harden identity, networking, storage, compute, Key Vault and monitoring.
- Automate infrastructure and security controls using Azure DevOps, YAML and PowerShell.
- Work with RBAC, PIM, Managed Identities and Zero Trust.
- Collaborate with Security, Architecture, Platform and Application teams.
- Promote Security-by-Design and continuously improve the Azure platform.
What we’re looking for
- 5+ years of experience with Azure infrastructure in complex or enterprise environments.
- Strong knowledge of Azure networking, compute, storage, identity, monitoring and governance.
- Hands-on experience with Infrastructure as Code, preferably Bicep and/or Terraform.
- Strong experience with Azure Policy and Azure security/governance.
- Experience with Azure DevOps, YAML pipelines and PowerShell.
- Solid understanding of RBAC, PIM, Managed Identities and Zero Trust.
- Experience improving existing production environments without compromising stability.
- Able to work independently while collaborating effectively with Security, Architecture and technical stakeholders.
- Fluent English is required; Dutch is a strong advantage.
Nice to have
Experience with Microsoft Defender for Cloud, Microsoft Cloud Security Benchmark, Azure Landing Zones, vulnerability management, compliance dashboards and cloud workload hardening.
