Cloud infrastructure Architect
About the role
Cloud infrastructure Architect
Contract- TCS
Toronto, ON
Role Descriptions
More than 10 years in cloud architecture| infrastructure| or platform engineering.
Deep hands on experience with Azure and AWS services. Strong background in cloud migration| modernization| and transformation programs.
Expertise in networking| security| PaaS| automation| and distributed systems.
Experience in designing a multi-cloud architecture spanning Azure| AWS| and GCP with unified governance and cost management.
Experience in conducting and present Cloud Adoption Framework (CAF/WAF) assessments to C-level stakeholders.
Experience in 6R migration assessment and produce an actionable wave plan for a 500+ server estate. proficiency in producing HLD/LLD reference architectures using cloud-native design patterns.
FinOps practices tagging strategy| chargeback models| and multi-cloud cost analytics.
Experience in design and deploy an Azure Enterprise-Scale Landing Zone with Hub-Spoke / VWAN topology.
proficient with AKS private clusters| AAD integration| ingress| KEDA autoscaling| and GitOps.
Knowledge of Azure Entra ID Conditional Access| PIM| Managed Identities| and B2B/B2C federation.
Experience with Microsoft Sentinel rule authoring| SOAR playbooks| and Defender for Cloud integration.
experience with Azure PaaS services (App Service| Functions| Logic Apps| APIM| Event Hub| Service Bus).
confident in designing Azure OpenAI / AI Foundry solutions with RAG patterns and responsible AI governance. Infrastructure-as-Code maturity using Bicep| Terraform (AzureRM)| and Azure DevOps / GitHub Actions pipelines.
Ability to design multi-account AWS environments with AWS Organizations| SCPs| and Transit Gateway networking.
Proficient with AWS container/serverless workloads EKS| Fargate| Lambda| and event-driven patterns. AWS security posture GuardDuty| Security Hub| Config Rules| KMS| and Secrets Manager. experience in conducting AWS Well-Architected Reviews (all 6 pillars).
AWS automation skills CDK| CloudFormation| Terraform AWS provider| and CodePipeline.
IAM/PAM design expertise least-privilege| CyberArk/BeyondTrust| and federated identity (SAML/OIDC).
experience with CSPM tools (Defender for Cloud| Prisma Cloud| Wiz) and posture remediation