What are the responsibilities and job description for the Senior Cloud architect position at Estuate Inc.?
Job Title: Senior Cloud architect
Job Location: Milpitas, CA
Contract: 6 Months
Job Summary
The Cloud Architect will be responsible for designing, implementing, securing, and governing cloud based solutions across multiple cloud platforms, including AWS, Microsoft Azure, and Google Cloud Platform (Google Cloud Platform). This role requires a strong understanding of cloud security architecture, identity and access management (IAM), networking, and secure-by-design architecture principles, in addition to IaaS and PaaS best practices.
Job Responsibilities
- Design and architect scalable, highly available, resilient, and secure cloud solutions leveraging IaaS and PaaS services across AWS, Azure, and Google Cloud Platform (Google Cloud Platform).
- Lead cloud migration initiatives, including re hosting, re platforming, refactoring, and re architecting legacy and on premises workloads with a strong emphasis on security posture improvement and risk reduction.
- Drive application and infrastructure modernization programs to improve scalability, performance, security, and operational efficiency.
- Partner with engineering, platform, and security teams to define cloud native reference architectures, security guardrails, and modernization roadmaps.
- Optimize cloud infrastructure for performance, availability, reliability, security hardening, and cost efficiency.
- Establish and manage cloud security architectures and governance frameworks, aligned with industry standards and internal security policies.
- Design and enforce identity first security, including IAM strategies, least privilege access controls, role based access, identity federation, and secrets management.
- Design and implement secure cloud networking architectures, including VPN, Direct Connect, ExpressRoute, and Cloud Interconnect.
- Configure and enforce network segmentation, micro segmentation, zero trust architectures, and advanced network security controls.
- Secure containers, Kubernetes, serverless, and microservices environments, including image scanning, runtime protection, and policy enforcement.
- Implement Infrastructure as Code (IaC) using Terraform, AWS CloudFormation, and Azure ARM/Bicep templates with built in security, policy, and compliance controls.
- Design and evolve DevSecOps CI/CD pipelines, integrating security scanning, policy enforcement, and automated compliance validation.
- Define and implement cloud security observability, including logging, monitoring, alerting, and incident response integration.