Infrastructure Engineer – L3
$88,800–$103,600 year
On-site · Vancouver, British Columbia, Canada
Job Summary
Senior Infrastructure Engineer to design, deploy, and optimize cloud-based solutions across Azure and hybrid on-prem environments. Responsibilities include designing and implementing cloud infrastructure across Azure and hybrid environments; developing and maintaining Infrastructure-as-Code templates and automation scripts (PowerShell, ARM, Bicep, Terraform); enforcing security practices (RBAC, PKI); configuring Azure Policy; deploying and managing Azure Landing Zones; integrating on-prem workloads with cloud services; monitoring for high availability and performance; configuring SSO and identity management using SAML, OIDC and Enterprise Applications; collaborating with network engineers for secure connectivity (VPNs, ExpressRoute, Private Link); supporting DevOps with CI/CD pipeline integration; troubleshooting cloud incidents and performing root cause analysis; maintaining documentation; staying current with cloud technologies and compliance frameworks (ISO 27001, NIST, CSF); Subject Matter Expert for design of on-premises and cloud-based Microsoft technologies (Active Directory, Exchange hybrid, Azure, SQL); escalation for DNS, GPOs, DHCP, File Services & Federation Services; designing new processes to reduce technical debt; contributing to roadmaps; 10+ years in infrastructure with 5+ years MS technologies; Azure and security-focused.
Required Qualifications
- 10+ years experience in infrastructure Operations/Engineering
- 5+ years design/implementation of on-premises and cloud Microsoft technologies
- Hands-on experience with Microsoft Azure services (VMs, Storage, Networking, Identity, Automation)
- Advanced scripting skills in PowerShell and Infrastructure-as-Code tools (Terraform, ARM, Bicep)
- Understanding of hybrid cloud architectures and secure mail transport using Exchange Hybrid setups
- Knowledge of authentication protocols (SAML & OpenID Connect)
- Ability to troubleshoot complex issues across networking, certificates, authentication, and compliance
- Security-first mindset with Zero Trust exposure
- Experience with Azure networking (Azure Firewall, Front Door, DNS management)
- Experience with containerization (AKS, Helm) and CI/CD integration
- Experience with monitoring and logging tools (Azure Monitor, Log Analytics)
- Demonstrated ability to work collaboratively and independently in a complex environment
- Excellent interpersonal and communication skills
- Bachelor’s degree in computer science or related field, or equivalent work experience
- Nice to have: Azure Solutions Architect AZ-305 and/or Cybersecurity Architect SC-100
Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.