Azure Architect

Cloud & Platform Engineering
Landing Zones / Hybrid Cloud / Governance / Solution Architecture

About the Role

EdgeByte is seeking an Azure Architect to lead the design and technical direction of enterprise Microsoft Azure and hybrid-cloud solutions across commercial, regulated, and public-sector environments.

This role will develop scalable cloud architectures spanning Azure platform services, networking, cybersecurity, identity and access management, application and workload onboarding, governance, resiliency, automation, and operational integration. The architect will translate business, security, application, and infrastructure requirements into comprehensive cloud solutions aligned with enterprise standards and customer objectives.

The Azure Architect will provide technical leadership throughout discovery, design, migration, implementation, and operational transition while working closely with cloud engineers, cybersecurity teams, ICAM engineers, network engineers, application teams, DevOps, program leadership, and customer stakeholders.

Reponsibilities:

  • Lead the architecture and design of enterprise Microsoft Azure and hybrid-cloud environments.
  • Develop Azure landing-zone, subscription, management-group, governance, networking, security, identity, and workload architecture patterns.
  • Translate business, technical, security, compliance, and application requirements into scalable cloud solution architectures.
  • Design architectures spanning Azure compute, storage, networking, databases, identity, security, monitoring, backup, resiliency, and PaaS services.
  • Define hub-and-spoke, Virtual WAN, hybrid connectivity, ExpressRoute, VPN, routing, segmentation, Private Link, DNS, and secure ingress and egress architectures.
  • Develop identity and access architectures incorporating Microsoft Entra ID, RBAC, PIM, managed identities, workload identities, Conditional Access, and Zero Trust principles.
  • Define cloud cybersecurity architectures using Microsoft Defender for Cloud, Microsoft Sentinel, Azure Policy, Key Vault, encryption, logging, vulnerability management, and continuous monitoring.
  • Develop application and workload onboarding patterns for IaaS, PaaS, containerized, and cloud-native solutions.
  • Establish Azure governance standards including management groups, subscriptions, policies, naming, tagging, resource organization, cost controls, and platform guardrails.
  • Architect highly available, resilient, scalable, and disaster-recovery solutions based on workload and business requirements.
  • Define reusable Infrastructure as Code patterns using Terraform, Bicep, ARM, or comparable technologies.
  • Review technical designs, implementation plans, migration strategies, and engineering configurations for architectural alignment.
  • Lead cloud discovery, assessment, migration planning, modernization, and technical design workshops.
  • Identify architectural risks, technical dependencies, security concerns, and design tradeoffs and develop appropriate mitigation strategies.
  • Develop solution architecture diagrams, reference architectures, decision documents, technical standards, roadmaps, and implementation guidance.
  • Provide technical leadership and mentorship to Azure platform, networking, cybersecurity, ICAM, infrastructure, and DevOps engineers.
  • Collaborate with customer stakeholders, application owners, security teams, engineering teams, and program leadership throughout the solution lifecycle.
  • Support technical responses, solution development, estimates, statements of work, and pre-sales architecture efforts when required.
  • Required Qualifications:

  • CompTIA Security+
  • Microsoft Certified: Azure Solutions Architect Expert
  • Microsoft Certified: Azure Administrator Associate (AZ-104)
  • 10+ years of enterprise IT, infrastructure, cloud, systems, networking, cybersecurity, or solution architecture experience.
  • 5+ years of hands-on Microsoft Azure engineering or architecture experience.
  • Demonstrated experience designing enterprise-scale Microsoft Azure and hybrid-cloud solutions.
  • Strong knowledge of Azure landing zones, management groups, subscriptions, governance, resource organization, and enterprise-scale architecture.
  • Strong understanding of Azure compute, storage, networking, databases, identity, security, monitoring, backup, and platform services.
  • Experience designing hub-and-spoke, hybrid connectivity, ExpressRoute, VPN, routing, Private Link, DNS, Azure Firewall, and network segmentation architectures.
  • Experience with Microsoft Entra ID, RBAC, PIM, managed identities, workload identities, Conditional Access, and identity integration.
  • Experience designing cloud security architectures using Defender for Cloud, Azure Policy, Key Vault, encryption, logging, vulnerability management, and Zero Trust principles.
  • Experience developing architectures for application and workload onboarding across IaaS, PaaS, containerized, and cloud-native environments.
  • Strong understanding of high availability, resiliency, scalability, backup, disaster recovery, business continuity, and operational readiness.
  • Experience with Terraform, Bicep, ARM, PowerShell, Azure CLI, APIs, or comparable cloud automation technologies.
  • Ability to evaluate technical requirements and communicate architectural decisions, risks, dependencies, and tradeoffs to technical and non-technical stakeholders.
  • Experience developing architecture diagrams, reference architectures, technical standards, design documents, migration plans, and implementation roadmaps.
  • Strong troubleshooting, leadership, technical communication, and cross-functional collaboration skills.
  • U.S. work authorization and ability to satisfy customer-specific access requirements.
  • Preferred Qualifications:

  • Microsoft Certified: Azure Network Engineer Associate (AZ-700), Azure Security Engineer Associate (AZ-500), Identity and Access Administrator Associate (SC-300), Cybersecurity Architect Expert (SC-100), or comparable advanced certification.
  • Experience designing enterprise Azure Landing Zones using Cloud Adoption Framework and Well-Architected Framework principles.
  • Experience with Azure Virtual WAN, Route Server, ExpressRoute, Azure Firewall, Application Gateway, Front Door, Private Link, and enterprise network virtual appliances.
  • Experience with F5, Palo Alto, Fortinet, Cisco, Versa, or similar enterprise networking and security platforms.
  • Experience designing Microsoft Sentinel, Defender XDR, Defender for Cloud, SIEM/SOAR, CSPM, CNAPP, and continuous-monitoring architectures.
  • Experience with Azure Kubernetes Service, Container Apps, App Service, Functions, API Management, Azure SQL, Cosmos DB, or other Azure PaaS technologies.
  • Experience architecting workload migrations, application modernization, data-center exits, tenant consolidation, or large-scale Azure transformation initiatives.
  • Experience with Azure DevOps, GitHub Actions, CI/CD pipelines, Infrastructure as Code, and automated platform deployment.
  • Experience with FinOps, Azure Cost Management, capacity planning, cloud optimization, and enterprise cloud financial governance.
  • Experience architecting multi-cloud, hybrid-cloud, or Azure-to-AWS integration solutions.
  • Knowledge of NIST 800-53, NIST Zero Trust Architecture, CIS, FedRAMP, CMMC, DISA guidance, ISO 27001, SOC 2, or comparable security and compliance frameworks.
  • Experience supporting commercial, regulated, federal, defense, financial, healthcare, critical-infrastructure, or other enterprise environments.
  • Experience leading customer architecture workshops, technical design reviews, cloud assessments, solution development, or pre-sales engineering efforts.
  • POSITION DETAILS
    Job ID
    CLD-ARC-AZR001
    Department
    Cloud & Platform Engineering
    Job Family
    Cloud Engineering
    Specialty
    Landing Zones / Hybrid Cloud / Governance / Solution Architecture
    Experience Level
    Senior
    Labor Category
    T3
    Position Status
    Pipeline
    Work Arrangement
    Remote
    Location
    Any State
    Salary Range
    $100,000 - $185,000
    Clearance
    Ability to obtain and maintain customer-required security clearance
    Travel Requirement
    Up to 10%
    Posted Date
    August 28, 2026
    Closing Date
    October 30, 2026
    Apply Now