- Quick Apply
Job Description
Summary (Key Skills & Role): · Authoring and deploying PowerShell DSC configurations for VM baseline enforcement; onboarding target VMs to Azure Automation State Configuration; drift detection, remediation and compliance reporting · Azure Policy: Design and assignment of custom and built-in policy definitions across target subscriptions; remediation task configuration for non-compliant resources; policy exemption governance and documentation. · Stakeholder engagement to map integration points, upstream/downstream dependencies, and any SLA or latency sensitivities that may influence the remediation approach · Terraform: Design and build of Terraform modules for approved Azure resource types; state file management via Azure Storage backend; integration with existing naming conventions, tagging standards, and landing zone patterns · Automation of all remediation changes using Terraform, with deployment orchestrated through Azure DevOps pipelines. · Testing and validation of each remediated service to confirm connectivity, expected behavior, and firewall rule compliance post-change · Documentation of the final-state architecture, DSC changes, design revision and runbooks for ongoing operational support · Handover and knowledge transfer to the AustralianSuper Cloud Services team • Develop standards, engineering patterns, DevOps policies and IaC modules. • Set the standard approach project engineering teams will take in their infrastructure delivery work. • Develop, deploy, and configure workloads to Microsoft Azure using Terraform in a DevOps environment. • Develop solution, detailed and functional design documents, ensuring designs are prepared in accordance with standards and guidelines. • Develop, implement, and maintain monitoring and observability tools for managed environments. • Engage in hands-on development to balance workload or address significant complexity through technical spike: build, test including non-functional areas like security, reliability, and performance. • Review technical detail designs and ensure technical designs meet functional, resilience, security, reuse, and operational needs • Collaborate with project/ BAU teams including architects, delivery squads, principal engineers, and project managers to meet the project technology and delivery objectives • Design technology solutions to automate existing processes using DevOps. • Contribute towards the Fund’s central knowledge repository for design models and patterns. • Provide technical leadership and ensure alignment of cloud solutions to target architecture, standards, and best practices. • Collaborate with other technology teams, assisting with the demands of operations as required, and empowering teams to enable reliability, resilience, and supportability of platforms |
| |
| Essential: |
• 8-10+ years’ experience working in medium to large IT environments.
• 4 years working with Azure Public Cloud services designing and building cloud solutions using IaaS and PaaS services, with in depth understanding of cloud products and offerings.
• Cloud Service Proficiency: In-depth knowledge of Azure cloud platform. Understanding how to leverage different services for computing, storage, database management, and networking is crucial.
• Experience developing and adopting DevSecOps strategy and ways-of-working.
• Hands on deploying applications and building infrastructure in cloud via Azure DevOps CI/CD deployment pipelines.
• Experience in scripting and automation: Skills in Python, PowerShell, Bash or similar.
• Hands on with Infrastructure-as-Code and experience provisioning resources using Terraform OSS.
• Knowledge of container frameworks, Docker and Kubernetes.
• Deep knowledge of running IaaS workloads and design/operation of Azure Backup and Azure Monitor for IaaS workloads.
• In-depth understanding of Azure policies and implementing them to enforce compliance, security, and governance using a policy-as-code deployment model
Requirements
Immediate joiners preferred. Summary (Key Skills & Role): • Authoring and deploying PowerShell DSC configurations for VM baseline enforcement; onboarding target VMs to Azure Automation State Configuration; drift detection, remediation and compliance reporting • Azure Policy: Design and assignment of custom and built-in policy definitions across target subscriptions; remediation task configuration for non-compliant resources; policy exemption governance and documentation. • Stakeholder engagement to map integration points, upstream/downstream dependencies, and any SLA or latency sensitivities that may influence the remediation approach • Terraform: Design and build of Terraform modules for approved Azure resource types; state file management via Azure Storage backend; integration with existing naming conventions, tagging standards, and landing zone patterns • Automation of all remediation changes using Terraform, with deployment orchestrated through Azure DevOps pipelines. • Testing and validation of each remediated service to confirm connectivity, expected behavior, and firewall rule compliance post-change • Documentation of the final-state architecture, DSC changes, design revision and runbooks for ongoing operational support • Handover and knowledge transfer to the AustralianSuper Cloud Services team. • Develop standards, engineering patterns, DevOps policies and IaC modules. • Set the standard approach project engineering teams will take in their infrastructure delivery work. • Develop, deploy, and configure workloads to Microsoft Azure using Terraform in a DevOps environment. • Develop solution, detailed and functional design documents, ensuring designs are prepared in accordance with standards and guidelines. • Develop, implement, and maintain monitoring and observability tools for managed environments. • Engage in hands-on development to balance workload or address significant complexity through technical spike: build, test including non-functional areas like security, reliability, and performance. • Review technical detail designs and ensure technical designs meet functional, resilience, security, reuse, and operational needs • Collaborate with project/ BAU teams including architects, delivery squads, principal engineers, and project managers to meet the project technology and delivery objectives • Design technology solutions to automate existing processes using DevOps. • Contribute towards the Fund’s central knowledge repository for design models and patterns. • Provide technical leadership and ensure alignment of cloud solutions to target architecture, standards, and best practices. • Collaborate with other technology teams, assisting with the demands of operations as required, and empowering teams to enable reliability, resilience, and supportability of platforms Essential: • 8-10+ years’ experience working in medium to large IT environments. • 4 years working with Azure Public Cloud services designing and building cloud solutions using IaaS and PaaS services, with in depth understanding of cloud products and offerings. • Cloud Service Proficiency: In-depth knowledge of Azure cloud platform. Understanding how to leverage different services for computing, storage, database management, and networking is crucial. • Experience developing and adopting DevSecOps strategy and ways-of-working. • Hands on deploying applications and building infrastructure in cloud via Azure DevOps CI/CD deployment pipelines. • Experience in scripting and automation: Skills in Python, PowerShell, Bash or similar. • Hands on with Infrastructure-as-Code and experience provisioning resources using Terraform OSS. • Knowledge of container frameworks, Docker and Kubernetes. • Deep knowledge of running IaaS workloads and design/operation of Azure Backup and Azure Monitor for IaaS workloads. • In-depth understanding of Azure policies and implementing them to enforce compliance, security, and governance using a policy-as-code deployment model.