About This Role
6 to 10 years of experience
Skills: Azure DevOps, CI/CD Pipelines, Terraform, Azure Cloud, Kubernetes (AKS), Docker, ARM Templates / Bicep, PowerShell / Bash, Git, Helm, Azure Monitor, Agile, Release Management, Infrastructure-as-Code, YAML Pipelines
About the Role
We are looking for a Senior Azure DevOps Engineer with 6+ years of experience to design, build, and operate enterprise-grade CI/CD pipelines, Azure cloud infrastructure, and automation workflows that enable engineering teams to deliver software reliably, securely, and at pace. You will take ownership of the end-to-end DevOps toolchain — from source control and pipeline automation through to infrastructure provisioning, container orchestration, and production observability. You will be a key enabler across delivery teams — embedding DevOps best practices, driving automation, and continuously improving the speed and quality of the software delivery lifecycle.
Key Responsibilities
CI/CD & Pipeline Engineering
- Design, build, and maintain multi-stage Azure DevOps YAML pipelines for build, test, security scanning, and deployment automation across Dev, Test, and Production environments.
- Develop reusable pipeline templates, task groups, and shared components to standardise and accelerate CI/CD delivery across multiple engineering teams.
- Define and enforce branch strategies, pull request policies, and code review gates within Azure Repos to maintain code quality and release governance.
- Manage Azure Artifacts for package management — maintaining NuGet, npm, Maven, and Docker image feeds across the organisation.
- Migrate legacy Classic pipelines to modern YAML-based pipelines — improving maintainability, reusability, and version control of pipeline definitions.
- Configure and manage self-hosted and Microsoft-hosted pipeline agents — scaling agent pools to meet delivery team capacity demands.
- Integrate security scanning tools (SAST, DAST, SCA, container scanning) as automated quality and security gates within CI/CD pipelines.
Azure Infrastructure & IaC
- Design, provision, and manage Azure cloud infrastructure using Terraform and / or Bicep / ARM Templates — following IaC best practices including modular design, remote state, and version control.
- Manage Azure networking — VNets, subnets, NSGs, Private Endpoints, VNet Peering, DNS, and Load Balancers — ensuring secure, reliable connectivity across environments.
- Configure and administer Azure Active Directory — RBAC, Managed Identities, Service Principals, and Conditional Access policies — enforcing least privilege across all platforms.
- Manage Azure Key Vault for secrets, certificates, and key lifecycle management — integrating securely with pipelines and application workloads.
- Implement and enforce Azure Policy and Blueprints to maintain governance, compliance, and cost controls across subscriptions and resource groups.
- Conduct infrastructure drift detection and remediation — ensuring deployed environments consistently match IaC definitions.
Kubernetes & Container Orchestration
- Deploy, manage, and optimise Azure Kubernetes Service (AKS) clusters — configuring RBAC, Network Policies, node pools, auto-scaling, and cluster upgrades.
- Develop and maintain Helm charts for consistent, parameterised application deployment across AKS environments.
- Manage Azure Container Registry (ACR) — image builds, vulnerability scanning, replication, and access control.
- Implement GitOps workflows using ArgoCD or Flux for declarative, Git-driven Kubernetes configuration and application delivery.
- Monitor AKS workload health and performance — integrating Container Insights, Prometheus, and Grafana for comprehensive observability.
Monitoring, Observability & Reliability
- Implement and maintain comprehensive observability across Azure environments — Azure Monitor, Log Analytics, Application Insights, and custom dashboards in Grafana.
- Define and configure alerting rules, action groups, and escalation workflows to ensure rapid detection and response to production incidents.
- Support SRE practices — defining SLOs, SLAs, and error budgets for critical platform services and contributing to incident post-mortems and reliability improvements.
- Develop and maintain operational runbooks, playbooks, and escalation procedures for common platform failure scenarios.
Automation & Scripting
- Write and maintain PowerShell and Bash scripts to automate cloud operations, infrastructure management, compliance checks, and reporting tasks.
- Develop Azure CLI and REST API automation for resource management, pipeline triggering, and platform tooling integration.
- Build self-service automation workflows to reduce manual operational toil and empower engineering teams to manage their own environments safely.
Collaboration & Enablement
- Act as a DevOps enabler — providing tooling, documentation, and hands-on support to help engineering teams adopt CI/CD and cloud best practices effectively.
- Collaborate with application developers, architects, security, and infrastructure teams to define and implement DevOps standards across the organisation.
- Contribute to Agile delivery ceremonies — sprint planning, backlog refinement, and retrospectives — as an embedded DevOps team member.
- Mentor and guide junior DevOps engineers — sharing knowledge, conducting code reviews of IaC and pipeline definitions, and promoting engineering excellence.
- Produce and maintain high-quality technical documentation — architecture diagrams, runbooks, onboarding guides, and pipeline documentation.
What We're Looking For
- 6+ years of experience in DevOps or Platform Engineering with deep, hands-on expertise in Azure DevOps and the broader Microsoft Azure ecosystem.
- Strong Azure DevOps proficiency — YAML pipeline design, multi-stage orchestration, branch policies, artifact management, and self-hosted agent configuration.
- Advanced Terraform skills — modular IaC design, remote state, workspaces, and automated drift detection across multi-environment Azure deployments.
- Solid Azure cloud expertise — AKS, App Services, Functions, Azure SQL, Service Bus, Key Vault, Azure AD, Monitor, and networking services in production environments.
- Strong Kubernetes skills — AKS administration, Helm chart development, RBAC, Network Policies, and cluster lifecycle management.
- Proficiency in PowerShell and Bash scripting for cloud automation, operational tooling, and infrastructure management.
- Experience integrating DevSecOps practices into pipelines — SAST, DAST, container scanning, and secrets management using Azure Key Vault.
- Hands-on experience with Docker — multi-stage image builds, ACR management, and container security best practices.
- Solid understanding of Azure networking, security, governance, and cost management — including Azure Policy, RBAC, and Managed Identities.
- Strong communication skills — able to engage confidently with engineering teams, architects, and senior stakeholders, and document platform decisions clearly.
Nice to Have
- Experience with GitOps tooling — ArgoCD or Flux — for declarative Kubernetes application delivery.
- Familiarity with GitHub Actions as an alternative CI/CD platform alongside Azure DevOps.
- Exposure to Azure Landing Zone design and enterprise-scale architecture patterns.
- Knowledge of FinOps practices — Azure Cost Management, tagging strategies, and cloud spend optimisation.
- Experience with service mesh technologies — Istio or Linkerd — for AKS workload security and observability.
- Familiarity with chaos engineering and resilience testing practices.
- Microsoft Certified: DevOps Engineer Expert (AZ-400).
- Microsoft Certified: Azure Administrator Associate (AZ-104).
- Microsoft Certified: Azure Solutions Architect Expert (AZ-305).
- Certified Kubernetes Administrator (CKA) or Kubernetes Application Developer (CKAD).
- HashiCorp Certified: Terraform Associate.