Design, implement, and manage high-level access model for users and systems including architecture diagram, narratives, etc., for accessing new Azure Tenant and Google Cloud Platform tenant.
Implement systematic provisioning of user access accounting for joiner, mover, and leaver actions using SailPoint and Okta.
Implement processes for meeting IAM controls including periodic reporting capabilities on access, reconciliation between SailPoint and Azure and Google Cloud Platform tenants.
Define and develop customer RBAC roles for meeting the above controls.
Define Azure policies to enforce IAM controls.
Define and implement roles, policies, and IAM controls through CI/CD pipeline.
Develop documentation, train operational team members, and transition the support work to operations team.
Qualifications and Skills:
Bachelor's Degree in Computer Science or a related field, with relevant Azure, Google Cloud Platform, and AWS experience.
Minimum of 5 years of professional experience in cloud computing and practical experience working with cloud-based services.
Deep understanding of Azure services, particularly in the context of landing zones, encompassing computing, storage, networking, security, databases, and analytics.
Proficiency in scripting and programming languages such as Cloud Formation, Python, Terraform, and C# for automation and Azure solution development.
Demonstrated expertise in DevOps practices, including CI/CD pipelines, and adeptness in implementing modern cloud solutions.
Comprehensive understanding of security practices and compliance standards relevant to Azure.
Subject matter expertise in constructing Azure landing zones, coupled with a background in designing cloud infrastructure and providing assistance in migrating application workloads to the cloud.