Infrastructure Engineer – L3
Global Relay View all jobs
- Vancouver, BC
- $120,000-140,000 per year
- Permanent
- Full-time
- Design and implement cloud infrastructure solutions across Azure and hybrid on-premises environments
- Develop and maintain Infrastructure-as-Code templates and automation scripts using tools such as PowerShell, ARM, Bicep, or Terraform
- Implement security practices such as identity management, access control (RBAC) and PKI
- Configure settings on Azure using Azure Policy
- Deploy and manage Azure Landing Zones
- Assist in the integration of on-prem workloads with the cloud services using best practices for scalability and security
- Monitor cloud resources and services to ensure high availability and performance
- Configure SSO and set up identity management using SAML, OIDC and Enterprise Applications
- Collaborate with network engineers to configure secure connectivity (VPNs, ExpressRoute, Private Link, etc.)
- Support DevOps teams with CI/CD pipeline implementation and integration with DevOps tools
- Troubleshoot cloud-related incidents and perform root cause analysis
- Maintain documentation of environments, configurations, and standard operating procedures
- Stay up to date with emerging cloud technologies and compliance frameworks (e.g., ISO 27001, NIST, CSF)
- Subject Matter Expert for the design of on-premises and cloud-based Microsoft technologies, primarily Active Directory, Exchange hybrid, Azure and SQL
- Escalation point for complex issues with DNS, GPOs, DHCP, File Services & Federation Services
- Design and implement new processes and procedures to improve the environment and reduce technical debt
- Contribute to roadmaps to ensure clear direction whilst factoring in existing technological investments and the impact of change
- 10+ years' experience infrastructure Operations/Engineering, including 5+ years of direct experience with design and implementation of on-premises and cloud Microsoft technologies
- Hands-on experience with Microsoft Azure services (VMs, Storage, Networking, Identity, Automation)
- Advanced scripting skills in PowerShell and Infrastructure-as-Code tools (Terraform, ARM, Bicep)
- Understanding of hybrid cloud architectures and secure mail transport using Exchange Hybrid setups
- Knowledge of authentication protocols (SAML & OpenID Connect)
- Ability to troubleshoot complex issues across networking, certificates, authentication, and compliance
- Security first mindset: ensure all changes proposed and deployed provide a reasonable level of security based on the requirements and the data involved.
- Exposure to Zero Trust architecture principles
- Experience with Azure networking, Azure Firewall, Front Door, and DNS management
- Experience with containerization (AKS, Helm) and CI/CD integration
- Experience with monitoring and logging tools (Azure Monitor, Log Analytics, Event Viewer)
- Demonstrated ability to work both collaboratively in a team environment as well as independently in an effective and organized manner in a complex and challenging environment
- Comfortable working under pressure in a fast-paced environment
- Excellent interpersonal and communication skills in both verbal and written English
- Strong organization skills and initiatives
- Experienced with troubleshooting & resolving complex technical problems, writing root cause analysis reports and documenting processes and procedures
- Ability to analyze system usage and plan for growth and increases in system capacity
- Ability to assess the need for any system redesign (minor or significant)
- Azure Solutions Architect (AZ-305) and/or Cybersecurity Architect SC-100
- Bachelor's degree in computer science, Information Technology, or related field, or equivalent work experience