We are seeking a dynamic, consultative **Cloud Architect** to join our team. This role is tailored for an experienced professional who is deeply familiar with the core cloud infrastructure, networking, security, and observability concepts required by large enterprise customers.
In this role, you will bridge the gap between high-level enterprise business strategy and technical execution. You will work closely with enterprise clients to uncover their specific structural or operational pain points, design purpose-fit, well-architected multi-cloud environments across **AWS** and **Google Cloud Platform (GCP)**, and maintain end-to-end technical accountability for the successful outcome of the delivery.
1. Enterprise Networking & Security Architecture
Complex Cloud Networking: Design resilient, enterprise-grade network topologies involving complex routing, Hub-and-Spoke models, VPCs, Shared VPCs, Transit Gateways, AWS Direct Connect, and Google Cloud Interconnect.
Enterprise Security Concepts: Architect robust Identity and Access Management (IAM) strategies, encryption models (KMS/Cloud KMS), and perimeter security controls (WAF, Enterprise Firewalls, DDoS mitigation) tailored for large-scale multi-tenant environments.
SecOps & Compliance Integration: Define the patterns for automated security guardrails, secure landing zone baselines, and continuous compliance scanning within enterprise delivery pipelines.
2. Core Infrastructure & Observability Governance
Well-Architected Framework Alignment: Serve as the custodian of cloud architectural integrity, ensuring all custom designs strictly map back to the AWS Well-Architected Framework and GCP Architecture Framework pillars (with a strong focus on Operational Excellence and Security).
Centralized Logging & Monitoring Architecture: Design enterprise-wide observability strategies. Define patterns for multi-account centralized logging, audit trails, real-time alerting, and telemetry aggregation required for operational visibility and compliance.
IaC Governance: Define the standards and architectural structures for Infrastructure as Code (IaC). Review configurations to ensure modular, secure, and compliant environments across client workloads.
3. Consulting, Discovery & Delivery Accountability
Pain Point Identification: Engage directly with enterprise stakeholders and technical teams to diagnose existing infrastructure bottlenecks, operational inefficiencies, visibility gaps, and architectural pain points.
Purpose-Fit Solution Design: Translate identified client challenges and strict technical/regulatory requirements into tailored, purpose-fit technical blueprints that solve specific business issues.
Delivery Accountability: Act as the technical lead and owner for assigned client engagements, maintaining full accountability for the successful execution and technical outcome of the final delivery.
Qualifications
Experience:
- 6 to 8 years of experience in cloud architecture, enterprise network engineering, or cloud infrastructure design.
- At least 2 years of active experience in a professional services or IT consulting environment.
Highly Regulated Environments (Plus):
- Strong track record of navigating architecture requirements for regulated industries (e.g., Public Sector, Financial Services) and compliance frameworks like IM8, SOC2, or ISO27001.
- Government Commercial Cloud / GCC (Plus):Experience engineering within the Government Commercial Cloud (GCC / GCC 2.0) framework or equivalent public-sector cloud architectures.
Technical Skills & Best Practices
- Observability & Logging Mastery: Deep understanding of distributed monitoring, logging, and tracing concepts. Strong familiarity with native cloud services including AWS CloudWatch, AWS CloudTrail, Google Cloud Monitoring, and Google Cloud Logging.
- Enterprise Network & Security Familiarity: Deep familiarity with enterprise cloud connectivity, BGP, DNS routing, load balancing topologies, Service Meshes, and multi-tenant isolation techniques.
- Automation & CI/CD Guardrails (Preferred):Strong understanding of best practices surrounding Terraform (or OpenTofu) and GitHub Workflows (GitHub Actions). Ability to define architectural standards, review configurations, design workflow gates, and guide engineering teams on implementation.
- Code & Scripting Comprehension: Ability to read, interpret, and evaluate script logic (Python, Bash, or Go) to ensure automated deployment architectures align with operational blueprints.
Desirable Tooling & Domain Pluses (Good-to-Have)
- Enterprise Security & Proxy Tooling: Familiarity with integrating or architecting alongside third-party enterprise security solutions such as Palo Alto NGFW, Forcepoint, or Zscaler web proxies is a major plus.
Third-Party Observability:
- Familiarity with enterprise-grade monitoring and SIEM platforms like Datadog and Splunk is highly valued.
Enterprise Data Architecture & Governance
- Strong conceptual understanding of modern data topologies (Data Lakes, Lakehouses, Data Mesh). Familiarity with cloud-native data governance, cataloging, and access control tools (e.g., AWS Lake Formation, GCP Dataplex, AWS Glue, Google Cloud Data Catalog).
Platform Engineering Concepts
- Conceptual knowledge of platform engineering practices, including Internal Developer Platforms (IDPs), defining "Golden Paths," or exposure to tools/methodologies like Backstage, GitOps, or Crossplane.
- Emerging Workloads: General exposure to high-level architectural requirements for hosting modern workloads, such as scalable infrastructure concepts for AI/ML pipelines.
Certifications
- AWS: Certified Solutions Architect – Professional (Must Have)
- AWS Certified Advanced Networking – Specialty (Must Have)
- AWS Certified Security – Specialty (Must Have)
- GCP Professional Cloud Architect
- GCP Professional Cloud Network Engineer, or Professional Cloud Security Engineer.
Soft Skills
- Consultative Mindset: Strong empathy and active listening skills required to successfully draw out pain points and align technical solutions with client business goals.
- Ownership & Accountability: A driven, results-oriented attitude with a track record of driving complex technical projects over the finish line.
- Communication: Excellent verbal and written communication skills with the ability to articulate complex networking, security, and architectural concepts to both technical teams and executive stakeholders.