Skip to content
Skip to content
Sysadmin Jobs
Security Risk Advisors

Cloud Infrastructure Engineer

Security Risk Advisors

Location
Hybrid (Philadelphia, Pennsylvania)
Employment
Full-time
Level
Mid Level
Posted 1 day ago

About the Role

Security Risk Advisors (SRA) is dedicated to leveling up daily to protect clients and their customers, fostering a culture of support and belonging. This role is responsible for designing, building, and operating secure, scalable, and resilient cloud infrastructure, primarily on Microsoft Azure.

Skills

Microsoft Azure Terraform Bicep ARM Templates Azure Networking Azure Kubernetes Service (AKS) Entra ID Azure Monitor CI/CD Pipelines Python PowerShell Bash Infrastructure as Code Azure Governance Cost Optimization Disaster Recovery

Benefits

  • Medical Insurance
  • Dental Insurance
  • Vision Insurance
  • Disability Insurance
  • Life Insurance
  • 401(k) Plan
  • Parental Leave
  • Sick Leave
  • Vacation Policies

Perks

  • Internal Training
  • External Training
  • Mental Health Support
  • Patient Advocacy
  • Financial Advising
  • Company Cell Phone
  • Charitable Giving

Full job details

JOB DESCRIPTION 

SRA’s mission is to level up every day to protect our clients and their customers. This begins with our team members and their experience. SRA prides itself on maintaining a culture where team members have a shared sense of support and belonging, consistent with our It’s Personal company value. At SRA, we prioritize transparent career pathing, varied DEI programming and community groups, competitive benefits including mental health support, and an emphasis on a sustainable, healthy, and engaging work culture. SRA has twice been named a Best Place to Work by the Philadelphia Business Journal. 

 

These Essential Functions, Requirements, and Skills are guidelines. If you are a candidate who does not meet this exact job description but can demonstrate excellent organization, attention to detail, professionalism, flexibility, and self-direction in your professional background, we hope you apply. SRA values a diverse workplace and strongly encourages women, people of color, LGBTQ+ individuals, people with disabilities, members of ethnic minorities, and veterans to apply.  

 

Summary/Objective 

 

Security Risk Advisors Intl., LLC (SRA) is offering a Cloud Infrastructure Engineer position with a focus on Microsoft Azure. This role is responsible for designing, building, and operating secure, scalable, and resilient cloud infrastructure, including networking, identity integrations, compute, storage, and platform services. The Cloud Infrastructure Engineer partners with internal IT, security, and engineering teams to standardize Azure landing zones, automate deployments using infrastructure-as-code, and ensure environments meet reliability, performance, and cost objectives. 

 

Essential Functions 

  • Design, build, and maintain Azure infrastructure using best practices for reliability, scalability, and operational excellence. 
  • Implement and operate Azure landing zones, subscriptions, management groups, and governance controls (RBAC, Azure Policy, tagging, resource organization). 
  • Engineer Azure networking solutions (VNets, subnets, NSGs, route tables, Private Link/private endpoints, VPN/ExpressRoute, Azure Firewall) to meet connectivity and segmentation requirements. 
  • Automate provisioning and configuration using infrastructure-as-code (Terraform and/or Bicep/ARM) and integrate into CI/CD pipelines. 
  • Operate Azure compute and platform services (VMs, VMSS, AKS, App Service, Functions) including scaling, patching, upgrades, and lifecycle management. 
  • Design and manage Azure storage and data platform components (Storage Accounts, Azure Files, managed disks, backup targets) with appropriate performance and resiliency. 
  • Implement monitoring, logging, and alerting using Azure Monitor, Log Analytics, and Application Insights; improve observability and reduce mean time to recover. 
  • Partner with security teams to implement identity, key management, and baseline controls (Entra ID, PIM, Key Vault, Defender for Cloud) as part of the infrastructure standard. 
  • Support incident response and problem management for Azure services, including root cause analysis and implementation of corrective and preventative actions. 
  • Create and maintain technical documentation, diagrams, and runbooks for Azure architectures, operational procedures, and standards. 
  • Drive cost optimization and capacity planning efforts (e.g., right-sizing, reservations/savings plans, storage tiering) and provide clear recommendations to stakeholders. 
  • Plan and test business continuity and disaster recovery capabilities for Azure workloads (backup, restore, replication, failover) and validate RTO/RPO requirements. 

Competencies 

 

  • In-depth understanding of: 
  • Microsoft Azure core services and architecture (subscriptions, resource groups, compute, storage, PaaS offerings) and how to design for scale and resiliency 
  • Azure networking concepts and services (VNets, NSGs, load balancing, DNS, Private Link, VPN/ExpressRoute, Azure Firewall) 
  • Azure governance and identity fundamentals (Azure Policy, RBAC, management groups, Entra ID, PIM) and practical application of least privilege 
  • Reliability engineering principles (high availability, fault domains, scaling, observability) and secure-by-default infrastructure patterns 
  • Working knowledge of: 
  • Infrastructure-as-code and configuration management practices, including Terraform and/or Bicep/ARM templates 
  • Azure DevOps/GitHub-based CI/CD for infrastructure and platform deployments (pipelines, approvals, environments, secrets management) 
  • Monitoring, logging, and troubleshooting in Azure using Azure Monitor, Log Analytics, Application Insights, and KQL 
  • Backup, recovery, and resiliency tooling (Azure Backup, Recovery Services Vault, Site Recovery) and practical DR testing 
  • Basic experience with: 
  • Operating production cloud platforms, including on-call/incident response, root cause analysis, and continuous improvement 
  • Container and platform operations experience (AKS and related ecosystem: ingress, certificates, secrets, node pools, upgrades) 
  • Cloud cost management and optimization practices (Azure Cost Management, budgeting, tagging discipline, forecasting) 
  • Moderate experience with: 
  • Scripting and automation using Python, PowerShell, or Bash 
  • Automation using Azure-native services such as Azure Automation, Logic Apps, Functions, and Event Grid 

 

Supervisory Responsibility  

 

None 

 

Work Environment  

  

This job operates in a professional office environment or remotely as needed/required. This role routinely uses standard office equipment.  

  

This job operates in a professional office environment, and all co-ops are expected to work in the office every day. This role routinely uses standard office equipment.  

  

Physical Demands  

  

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. While performing the duties of this job, the employee is regularly required to talk and hear; use hands to finger, handle, or feel; and reach with hands and arms. The employee frequently is required to stand and walk. This is a largely sedentary role.  

 

Candidates with disabilities are encouraged to apply and email [email protected] with any questions. Reasonable accommodations may be made to enable disabled individuals to perform the essential functions of this role.  

  

Position Type/Expected Hours of Work  

  

This is a full-time position and hours of work and days are Monday through Friday 8:30am to 5pm. Occasional evening and weekend work may be required as job duties demand.  

   

Travel  

  

Less than 5%. 

  

Required Education and Experience 

  • Punctuality and timely attendance to external client and internal stakeholder needs. 
  • A bachelor's degree in Information Technology, Computer Science, or a similar field of study, or equivalent experience. 
  • 3+ years of hands-on experience engineering and operating cloud infrastructure, with strong, recent experience in Microsoft Azure (networking, compute, storage, and governance). 
  • Relevant certifications preferred (e.g., AZ-104, AZ-305, AZ-400; HashiCorp Terraform Associate). Security certifications (e.g., AZ-500) are a plus. 
  • A passion for learning about Azure services, cloud infrastructure patterns, automation, and operational best practices. 
  • Excellent verbal and written communication skills. 
  • Strong time management and organizational skills. 

  

 

Other Duties  

 

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice.  

 

EEO Statement 

 

Security Risk Advisors is an Equal Opportunity Employer and prohibits discrimination or harassment of any kind. All employment decisions at SRA are based on business needs, job requirements, and individual qualifications, without regard to race, color, sex, sexual orientation, gender identity or expression, age, religion, national origin, disability, marital or family status, veteran status, medical condition, or any similar category protected under federal, state, or local laws.    

Work with Experts: Robust internal training program, plus Company-paid external training. SRA recognizes the value of professional development for employees. Therefore, we encourage our employees to pursue continuing education and role-specific training. Every SRA employee is eligible to attend one training per year paid for by SRA. 

 

Mental Health Services: SRA has partnered with BetterHelp to provide SRA employees with free mental health support. BetterHelp connects individuals with licensed therapists for chat, video, and phone sessions. 

 

Medical / Dental / Other (regular full-time employees only) 

  • Generous medical, dental, and vision benefits at different price points. 
  • Company-paid disability and life insurance. 
  • Company 401(k) plan including annual 3% safe harbor contribution. 
  • Free patient advocacy service that helps find care providers and resolve insurance queries. 
  • Free financial advising. 
  • Generous parental leave, sick leave, and vacation policies. 
  • Possibility to work remotely or with a flexible schedule when needed and approved. 
  • Company-paid cell phone with discounted accessories. 
  • 1-2-3 Give Program: 1. SRA will give $1,000 to a charity of your choice. 2. If you give an additional amount (up to $1,000), then 3. SRA will match that amount up to $1,000. 
  • Other discounted, employee-paid benefits including pet insurance, legal support, and voluntary life insurance. 

 

(Subject to change) 

Not the right fit?

Browse all IT & Infrastructure roles.

Browse all jobs