- Company Name
- Janus Henderson Investors
- Job Title
- Cloud Principal Architect
- Job Description
-
**Job title:** Cloud Principal Architect
**Role Summary:**
Senior technical leader responsible for designing, governing, and modernizing enterprise cloud architecture on Microsoft Azure. Sets standards, drives migration initiatives, orchestrates Azure Kubernetes Service deployments, and ensures secure, cost‑optimized, and high‑availability solutions aligned with business strategy.
**Expectations:**
- Own end‑to‑end cloud architecture lifecycle.
- Drive adoption of best practices, governance, and DevSecOps culture.
- Deliver measurable improvements in reliability, performance, and cost efficiency.
- Collaborate closely with leadership, platform engineering, and business units.
**Key Responsibilities:**
- Define and evolve enterprise cloud architecture standards, reference models, and reusable patterns.
- Design and implement Azure Landing Zones with governance, security, and subscription strategy.
- Lead cloud modernization and migration of legacy workloads to Azure.
- Architect Kubernetes‑based microservices on Azure Kubernetes Service (AKS); define service mesh, ingress, autoscaling, observability, and DevSecOps integration.
- Design complex Azure networking (VNets, peering, ExpressRoute, VPN, firewalls, private endpoints) and integrate SD‑WAN/SASE for edge connectivity.
- Architect Cloud Entra ID (Azure AD) solutions, including SSO, RBAC, conditional access, and multi‑tenant models.
- Define and govern enterprise API architecture, security, versioning, throttling, and lifecycle management.
- Lead Infrastructure‑as‑Code strategy using Terraform (preferred) along with Bicep/ARM; integrate IaC into CI/CD pipelines.
- Establish cloud governance frameworks, operational guardrails, observability (Azure Monitor, Log Analytics, Application Insights), and cost‑optimization/FinOps practices.
- Represent the Infrastructure Architecture team on Enterprise Architecture Guild and Tech Architecture Board (TAB).
**Required Skills:**
- In‑depth expertise in Microsoft Azure IaaS, PaaS, AKS, App Services, Functions, Logic Apps, Storage, Networking.
- Strong experience with Azure Landing Zones, governance, tagging, policies, and resource hierarchies.
- Proficiency in Terraform (or Bicep/ARM) and IaC best practices.
- Advanced networking skills: VNets, ExpressRoute, VPN, firewalls, SD‑WAN, SASE, DNS, routing, traffic management.
- Identity & access management expertise with Azure AD, SSO, RBAC, conditional access.
- API design, security, and governance knowledge.
- DevSecOps mindset: CI/CD, container security, automated compliance.
- Observability skills using Azure Monitor, Log Analytics, Application Insights.
- FinOps and cost‑optimization expertise.
- Excellent stakeholder communication and mentoring ability.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Engineering, or related field (or equivalent experience).
- Minimum 8+ years of enterprise cloud architecture experience.
- Microsoft Certified: Azure Solutions Architect Expert (required).
- Microsoft Certified: Azure Advanced Networking (preferred).
- Microsoft Certified: Azure Kubernetes Service (AKS) (preferred).
- Terraform Associate (or equivalent IaC certification) (preferred).
- Additional security certifications (CISSP, TOGAF) are a plus.