Objectives and Responsibilities of the Public Cloud Operations – Associate director
We are seeking a highly experienced Senior Cloud Architect responsible for enterprise-wide Global Cloud operations, Cloud Network, architecture and cloud infrastructure governance. The role will serve as a key leader within the Cloud and AI Infrastructure function and will work closely with global technology teams, application engineering, cybersecurity, enterprise architecture, finance, procurement, compliance, vendors, and business stakeholders. The leader will own day-to-day operational excellence while also driving strategic initiatives such as cloud modernization, landing zone maturity, automation, AI infrastructure enablement, cloud cost optimization, security posture improvement, platform standardization, and cloud operating model evolution.
Primary and Non-negotiable Skills
1. Cloud Operations Leadership
- Lead cloud administration and operations across AWS and Microsoft Azure environments.
- Own operational stability, availability, performance, reliability, and scalability of public cloud infrastructure.
- Manage cloud infrastructure supporting production, non-production, shared services, development, security, data, and AI workloads.
- Establish and operatex cloud support models, incident response processes, escalation paths, on-call procedures, runbooks, and operational dashboards.
- Ensure adherence to cloud operations best practices, including monitoring, alerting, backup, recovery, patching, capacity management, and lifecycle management.
- Partner with application, database, security, network, and service desk teams to provide end-to-end infrastructure support.
2. Hands-on Cloud Administration and Engineering
- Perform hands-on administration of AWS and Azure services, including compute, storage, networking, identity, monitoring, security, backup, and governance services.
- Design, deploy, troubleshoot, and optimize cloud infrastructure components across AWS and Azure.
- Manage cloud accounts, subscriptions, resource groups, management groups, landing zones, VPCs, VNets, IAM, RBAC, routing, firewalls, private connectivity, load balancing, DNS, and certificates.
- Scaling, VM Scale Sets, containers, AKS, EKS, ECS, and serverless services where applicable.
3. Cloud Architecture and Platform Standardization
- Drive architecture design and governance for AWS and Azure cloud platforms.
- Support the design and evolution of enterprise landing zones, subscription structures, AWS account structures, management groups, organizational units, and shared services architecture.
- Define and enforce cloud architecture standards for networking, identity, security, monitoring, backup, tagging, naming, resilience, and cost governance.
- Design highly available, resilient, secure, and scalable infrastructure patterns for enterprise applications.
- Review cloud solution designs and ensure alignment with enterprise architecture, security, compliance, reliability, and FinOps expectations.
4. Strategic Cloud and AI Engineering Initiatives
- Partner with the Global Head of Cloud and AI Infrastructure to define and execute the strategic roadmap for cloud and AI infrastructure.
- Drive AI-ready infrastructure initiatives across AWS and Azure, including secure, scalable, governed, and cost-controlled environments for AI workloads.
- Enable cloud platforms for AI engineering use cases such as model experimentation, inference workloads, data pipelines, automation, AI-assisted operations, and developer productivity.
5. Cloud Security, Risk and Compliance
- Implement and enforce security controls across AWS and Azure platforms.
- Manage IAM, RBAC, privileged access, conditional access, MFA, service principals, managed identities, key management, secrets management, and least privilege access.
- Collaborate with cybersecurity teams to improve cloud security posture using services such as Microsoft Defender for Cloud, AWS Security Hub, GuardDuty, Inspector, Config, Security Center, Sentinel, or equivalent tools.
- Ensure cloud environments follow Zero Trust principles, network segmentation, private connectivity, encryption, secure configurations, and policy enforcement.
6. FinOps and Cloud Cost Optimization
- Own cloud cost visibility, optimization, governance, and accountability across AWS and Azure.
- Implement cost management practices such as tagging, budgets, alerts, chargeback/showback, reserved instances, savings plans, rightsizing, storage lifecycle policies, and idle resource cleanup.
- Work with finance and business teams to provide accurate cloud consumption reporting and forecasting.
7. Automation, DevOps and Platform Engineering
- Build and lead automation initiatives to improve consistency, speed, quality, and reliability of cloud operations.
- Create cloud service catalogues, reusable modules, golden templates, baseline configurations, and automated provisioning patterns.
- Reduce toil through scripting, self-healing automation, auto-remediation, and event-driven operational workflows.
8. Multi-Cloud and Hybrid Cloud Connectivity
- Manage and support connectivity between AWS, Azure, on-premises data centers, SaaS platforms, and partner environments.
- Design and troubleshoot VPC, VNet, subnet, route table, NAT, VPN, ExpressRoute, Direct Connect, peering, transit gateway, firewall, DNS, proxy, and private endpoint configurations.
- Partner with network and security teams to maintain secure, performant, and resilient connectivity.
- Ensure centralized inspection, segmentation, secure routing, and traffic visibility across cloud and hybrid environments.
- Support migration and modernization projects involving workload movement between on-premises, AWS, and Azure environments.
9. Team Leadership and Stakeholder Management
- Provide leadership updates on cloud operations, risks, incidents,
cost optimization, modernization status, compliance posture, and strategic initiatives.
- Support talent development through certification roadmaps, technical mentoring, knowledge-sharing sessions, and hands-on enablement.
- Evaluate vendor and partner deliverables and ensure quality execution.
Required Experience
- 12 - 15 years of overall IT infrastructure, cloud, platform engineering, or enterprise technology experience.
- 7+ years of hands-on experience in public cloud administration, engineering, or architecture.
- Robust hands-on experience with both AWS and Microsoft Azure cloud platforms.
- Proven experience leading cloud operations for enterprise-scale, production workloads.
- Experience with cloud landing zones, account/subscription design, cloud governance, IAM, networking, monitoring, backup, security, compliance, automation, and cost management.
- Experience leading teams responsible for operations, engineering, architecture, and service delivery.
- Experience working in global, distributed, enterprise environments with production support responsibilities.
- Experience supporting cloud transformation, migration, modernization, consolidation, or standardization programs.
- Exposure to AI infrastructure, AI engineering platforms, data platforms, GPU/accelerated compute, MLOps, or AI governance will be highly preferred.
Technical Skills
AWS Skills
- AWS Organizations, Control Tower, IAM, SCPs, IAM Identity Center
- EC2, Auto Scaling, AMIs, EBS, EFS
- S3, lifecycle policies, backup and archival
- VPC, Transit Gateway, Direct Connect, VPN, Route 53, NAT Gateway, ELB
- CloudWatch, CloudTrail, Config, GuardDuty, Security Hub, Inspector
- AWS Backup, KMS, Secrets Manager, Systems Manager
- ECS, EKS, Lambda, API Gateway, RDS, where applicable
- Cost Explorer, Budgets, Savings Plans, Reserved Instances and tagging governance
Microsoft Azure Skills
- Azure Management Groups, Subscriptions, Resource Groups and Azure Policy
- Microsoft Entra ID, RBAC, PIM, Conditional Access and Managed Identities
- Azure Virtual Machines, VM Scale Sets and compute lifecycle management
- VNets, peering, VPN Gateway, ExpressRoute, Azure Firewall, Load Balancer and Application Gateway
- Azure Storage, Backup Vaults, Recovery Services Vaults and managed disks
- Azure Monitor, Log Analytics, Application Insights and dashboards
- Microsoft Defender for Cloud, Key Vault and Sentinel integration
- AKS, Azure Container Registry, Azure DevOps and GitHub integration
- Azure Cost Management, budgets, reservations and tagging governance
Certifications Preferred
At least one or more of the following certifications are preferred:
- AWS Certified Solutions Architect, Associate or Professional
- AWS Certified SysOps Administrator
- AWS Certified Advanced Networking
- AWS Certified Security Specialty
- Microsoft Certified: Azure Administrator Associate
- Microsoft Certified: Azure Solutions Architect Expert
- Microsoft Certified: Azure Network Engineer Associate
- FinOps Certified Practitioner
Regards,
Chetan Gurudev
[email protected]
📌 Cloud Architect (Bengaluru)
🏢 Sagility
📍 Bengaluru