- Company Name
- Experis UK
- Job Title
- Cloud Architect
- Job Description
-
**Job title**
Cloud Architect
**Role Summary**
Design, implement, and govern secure, compliant, and cost‑efficient multi‑cloud (Azure, AWS, GCP) architectures. Lead landing‑zone development, application migration, IaC deployment, and platform engineering to support containerized, serverless, and data workloads.
**Expectations**
- Deliver enterprise‑grade reference architectures and reusable patterns.
- Own end‑to‑end migration and modernization initiatives.
- Drive cost transparency, FinOps practices, and security‑by‑design across all environments.
**Key Responsibilities**
- Design HLD/LLD, ADRs, diagrams, and traceability artifacts.
- Define multi‑cloud connectivity, routing, and identity strategy (SSO, workload identities).
- Standardize Terraform modules; enforce code quality and policy‑as‑code (OPA, Conftest).
- Build and optimize Kubernetes (AKS/EKS/GKE) and container platforms with service mesh, autoscaling, and CI/CD.
- Implement observability stack (logs, metrics, traces, SLOs) and DR/BCP architectures.
- Define security guardrails, posture management, vaulting, KMS, threat modeling, and incident runbooks.
- Design data & integration patterns for streaming/batch, data lakes, warehouses, and API management.
- Mentor engineering teams, run workshops, and collaborate with InfoSec, Network, Data, and App teams.
**Required Skills**
- 8+ years cloud architecture/engineering; 3+ years multi‑cloud (Azure, AWS, GCP).
- Proven delivery of landing zones, Kubernetes, IaC at scale, secure networking, migration, and cost optimization.
- Expertise in Terraform, Terragrunt, Helm, Kustomize, GitHub Actions/Azure DevOps/GitLab CI.
- Deep understanding of networking (VPC, ExpressRoute, Direct Connect, SD‑WAN), compute, serverless, and containers.
- Security knowledge: CIS benchmarks, NIST/ISO/CISSP, SSO, Key Vault/KMS, Defender/Security Hub, GuardDuty, OPA.
- Data & integration: Kafka/MSK, Event Hubs, Pub/Sub, APIM/API Gateway, Data Factory/Glue.
- Observability: Prometheus, Grafana, OpenTelemetry, CloudWatch, Azure Monitor, ELK.
- scripting: Python, Bash, PowerShell; Git, code review.
- Stakeholder management, mentoring, communication skills.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Engineering, or related field.
- Professional cloud certifications preferred:
- Azure: AZ‑305, AZ‑400
- AWS: Solutions Architect Professional, DevOps Engineer
- GCP: Professional Cloud Architect, DevOps Engineer
- Security/Architecture certifications (CISSP, CISM, CCSP) and FinOps Certified Practitioner are a plus.