Azure Infrastructure Engineer
Listed on 2026-06-18
-
IT/Tech
Systems Engineer, Cybersecurity, Cloud Computing: Infrastructure & Operations, Azure
Who We Are
At Corebridge Financial, we believe action is everything. That’s why every day we partner with financial professionals and institutions to make it possible for more people to take action in their financial lives, for today and tomorrow.
Core Values- We are stronger as one:
We collaborate across the enterprise, scale what works and act decisively for our customers and partners. - We deliver on commitments:
We are accountable, empower each other and go above and beyond for our stakeholders. - We learn, improve and innovate:
We get better each day by challenging the status quo and equipping ourselves for the future. - We are inclusive:
We embrace different perspectives, enabling our colleagues to make an impact and bring their whole selves to work.
The Information Technology organization is the technological foundation of our business and works in collaboration with our partners from across the company. The team drives technology and digital transformation, partners with business leaders to design and execute new strategies through IT and operations services and ensures the necessary IT risk management and security measures are in place and aligned with enterprise architecture standards and principles.
AboutThe Role
The Azure Infrastructure Engineer will design, build, secure, and automate enterprise‑grade Azure platforms. Resource will own core platform engineering across networking, identity, governance, and automation—partnering with architecture, security, and application teams to deliver resilient, scalable, and cost‑efficient cloud services.
Responsibilities- Platform Engineering & Architecture
- Design and implement Azure landing zones aligned to Microsoft Cloud Adoption Framework (CAF), including subscriptions, management groups, policies, RBAC, and cost governance.
- Engineer core services at scale (compute, storage, networking, identity, security, monitoring) with infrastructure-as-code and repeatable patterns.
- Azure Networking
- Architect and configure vNets, subnets, route tables, private endpoints, network security groups, load balancers, and hybrid connectivity (VPN/Express Route).
- Establish segmentation, ingress/egress controls, and secure connectivity across regions and environments (dev/test/prod).
- Identity & Access Management (IAM)
- Implement and harden Entra (Azure AD), Conditional Access, Privileged Identity Management (PIM), RBAC, managed identities, service principals, and Key Vault integrations.
- Define least‑privilege models, approval workflows, and access reviews across platform services.
- Automation & Scripting
- Build reusable IaC modules and pipelines using Terraform/ARM, and operational automation with Power Shell and Azure CLI.
- Integrate CI/CD via Git Hub/Jenkins for provisioning, configuration drift control, and compliant releases.
- Reliability, Security & Compliance
- Establish observability with Azure Monitor, Log Analytics, alerts, dashboards; integrate Sentinel/Defender for Cloud for posture management and threat detection.
- Design backup/DR using Azure Backup, ASR; document RTO/RPO; perform failover tests and capacity planning.
- Operations & Continuous Improvement
- Create runbooks, SRE practices, golden images, and standard operating procedures; drive root‑cause analysis and preventive actions.
- Partner with app teams on networking, identity, and review designs and perform platform readiness checks.
- Bachelor's or Master’s degree in Information Technology or related field preferred, or equivalent work experience.
- 5+ years in an Azure platform engineering role designing, implementing, and operating enterprise Azure environments.
- Azure Platform Architecture: subscriptions, management groups, policy, RBAC, cost management, governance (required).
- Azure Networking: VNets, peering, routing, NSGs, Azure Firewall, Load Balancers, Application Gateway/WAF, VPN/Express Route (required).
- Azure Identity & Access Management:
Entra , Conditional Access, PIM, Managed Identities, Service Principals, Key Vault (required). - Strong documentation, change management, and stakeholder communication; ability to lead technical implementation and collaborate across…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).