Cloud Automation Architect
Overview
Responsible for architecting and implementing enterprise-scale cloud automation solutions across AWS, Azure, and VMware environments. Design automated infrastructure provisioning, configuration management, CI/CD pipelines, and observability-driven self-healing systems. Ensure compliance with security standards and integrate with ITSM workflows.
What You'll Do7
- 1Design and maintain enterprise-grade Ansible playbooks, roles, and collections for automating OS patching, configuration drift correction, security hardening, and compliance enforcement across AWS, Azure, VMware, and REST-integrated environments.
- 2Architect serverless and event-driven automation using AWS Lambda, Step Functions, EventBridge, SNS/SQS, S3 triggers, and Systems Manager, with cross-account automation and IAM boundaries aligned to CIS, NIST, and AWS Well-Architected standards.
- 3Develop and own custom Helm charts for multi-environment Kubernetes deployments, managing the full lifecycle including upgrades, rollbacks, and canary releases, and drive GitOps adoption using ArgoCD or Flux.
- 4Build reusable, versioned Terraform modules covering AWS networking, IAM, EKS, ECS, RDS, and security controls, with CI/CD pipelines for IaC using GitHub Actions or Azure DevOps including automated testing, linting, drift detection, and policy enforcement.
- 5Automate security compliance including CIS benchmark enforcement, vulnerability remediation, infrastructure hardening, certificate lifecycle management, and integration with CyberArk, AWS Secrets Manager, and SSM Parameter Store.
- 6Connect automation workflows to New Relic and LogicMonitor for telemetry-driven triggers and build self-healing routines that detect, diagnose, and resolve incidents automatically to reduce MTTR.
- 7Integrate automation into SymphonyAI-driven ticketing, approval flows, CMDB updates, and change management processes, mapping operational runbooks to ITSM workflows.
Requirements7
- 18+ years of total IT experience with at least 6-7 years of hands-on infrastructure automation in enterprise environments.
- 2Expert-level Ansible engineering including advanced Jinja2 templating, dynamic inventory, custom module development, and enterprise-grade playbooks, roles, and collections across AWS, Azure, VMware, and REST-integrated environments.
- 3Strong Kubernetes and Helm expertise including custom Helm chart authoring, multi-environment lifecycle management, namespace management, RBAC, secrets, network policies, and GitOps adoption via ArgoCD or Flux.
- 4Deep Terraform knowledge including reusable module design for AWS networking, IAM, EKS, ECS, RDS, and security controls, with CI/CD integration (GitHub Actions or Azure DevOps) and automated testing, linting, drift detection, and policy enforcement.
- 5Solid AWS architecture knowledge including serverless and event-driven automation (Lambda, Step Functions, EventBridge, SNS/SQS, S3 triggers, Systems Manager), IAM design, cross-account automation, and multi-account networking aligned with CIS, NIST, and AWS Well-Architected standards.
- 6Experience with security and compliance automation including CIS benchmark enforcement, vulnerability remediation, infrastructure hardening, certificate lifecycle management, and integration with CyberArk, AWS Secrets Manager, and SSM Parameter Store.
- 7Proficiency in Python, Bash, or PowerShell for automation scripting, with proven ability to build production-grade automation frameworks end-to-end.
Who Should Apply
An experienced cloud automation architect with 8+ years in infrastructure automation, expert in Ansible, Terraform, Kubernetes, and AWS. Proven ability to design enterprise-grade automation frameworks, implement CI/CD pipelines, and enforce security compliance. Strong scripting skills and experience with observability and self-healing systems.
Salary Insight
Open to discussion
Required Skills
Application Tip
Highlight your experience with enterprise Ansible and Terraform modules in your resume, and provide concrete examples of automated self-healing implementations and security compliance automation.