Infra & AI Architect

MicrosoftBengaluru, KarnatakaOn-siteFull-timeStaff, 8–12 yearsListed 58 minutes ago

Apply now

About this role

<b>Overview</b><br><p>Microsoft Industry Solutions Delivery is a global organization hosting over 6,000 strategic sellers, industry and security experts, elite engineers, world-class data scientists and architects, consultants, and delivery specialists. Together with our partners, we help Microsoft’s most strategic customers worldwide to address their specific challenges and provide comprehensive and industry-specific solutions that meet their unique needs. <br> <br>Our organization is at the forefront of innovation, driving value across the entirety of the customers’ digital and AI transformation journey through repeatable and customized cutting-edge solutions powered by Microsoft Cloud and AI. We take pride in embodying Microsoft's mission of empowerment, promoting a growth mindset, inspiring excellence, and fostering a culture of inclusivity where everyone is encouraged to share their unique perspectives and be their authentic selves. By joining our team, you'll have the opportunity to contribute to life-changing innovations that impact billions of people worldwide.</p><p><span>The </span><span>Infrastructure &amp; AI Architect</span><span> is responsible for designing secure, scalable, resilient, and AI-ready enterprise platforms on </span><span>Microsoft Azure</span><span>.</span> <br> <br>Microsoft’s mission is to empower every person and every organization on the planet to achieve more. As employees we come together with a growth mindset, innovate to empower others, and collaborate to realize our shared goals. Each day we build on our values of respect, integrity, and accountability to create a culture of inclusion where everyone can thrive at work and beyond.</p><br><br><b>Responsibilities</b><br><div><p><span>The architect works with customers, engineering teams, security teams, and delivery stakeholders to translate business and technical requirements into practical Azure architectures. The role combines strong </span><span>Azure infrastructure architecture</span><span> with modern </span><span>AI platform, security, governance, automation, and operational design</span><span> capabilities.</span><span> </span></p></div><div><p><span>The architect is expected to provide technical leadership from </span><span>discovery and architecture through implementation, governance, and operational readiness</span><span>.</span></p></div><br><br><b>Qualifications</b><br><p>•    Bachelor's Degree in Computer Science, Information Technology, Engineering, or related field AND 14+ years experience in technology solutions, practice development, architecture, consulting, and/or technology domain of Infra &amp; AI.<br>o    OR Master's Degree in Computer Science, Information Technology, Engineering, or related field AND 14+ years experience in technology solutions, practice development, architecture, consulting, and/or technology domain (e.g., Security)</p><div><div><p>Azure Infrastructure Architecture </p></div><div><ul style="list-style-type: disc;"><li><p>Design enterprise-scale Azure architectures using Azure Landing Zones and cloud adoption principles. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Define subscription, management group, resource organization, naming, tagging, and governance models. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Design hub-and-spoke and Virtual WAN architectures. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Architect hybrid connectivity using ExpressRoute, VPN, Azure Virtual WAN, and private connectivity. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Design Azure networking including VNets, subnets, routing, NSGs, Azure Firewall, Application Gateway, load balancers, NAT Gateway, Private Link, and Private Endpoints. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Define scalable DNS and private DNS architecture. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Design resilient solutions across Availability Zones and Azure regions. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Define business continuity, disaster recovery, backup, and high-availability strategies. </p></li></ul></div><div><p>Identity, Security &amp; Governance </p></div><div><ul style="list-style-type: disc;"><li><p>Design identity architectures using Microsoft Entra ID. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Define managed identity, workload identity, role-based access control, privileged access, and least-privilege models. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Implement security architecture using Microsoft Defender for Cloud, Microsoft Sentinel, Azure Policy, Key Vault, encryption, and customer-managed keys. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Design secure administrative and privileged-access patterns. </p></li></ul></div></div><div><div><ul style="list-style-type: disc;"><li><p>Define network segmentation and Zero Trust architecture. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Ensure architecture aligns with enterprise security, regulatory, data sovereignty, and compliance requirements. </p></li></ul></div><div><p>Observability &amp; Operations </p></div><div><ul style="list-style-type: disc;"><li><p>Design centralized and distributed monitoring architectures using Azure Monitor, Log Analytics, Application Insights, and Microsoft Sentinel. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Define logging, monitoring, alerting, operational dashboards, and telemetry strategies. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Design infrastructure that supports SRE and modern cloud operations. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Define operational readiness, service health, capacity management, incident response, and troubleshooting approaches. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Drive infrastructure automation and configuration consistency. </p></li></ul></div><div><p>AI &amp; AI-Ready Infrastructure </p></div><div><ul style="list-style-type: disc;"><li><p>Design secure enterprise AI platforms using Microsoft Foundry/Azure AI services and supporting Azure capabilities. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Define networking, identity, compute, storage, data, security, and monitoring requirements for enterprise AI workloads. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Design private and controlled access patterns for AI environments. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Architect solutions supporting:  </p></li></ul></div><div><ul style="list-style-type: circle;"><li><p>Generative AI </p></li></ul></div><div><ul style="list-style-type: circle;"><li><p>AI agents </p></li></ul></div><div><ul style="list-style-type: circle;"><li><p>Retrieval-Augmented Generation (RAG) </p></li></ul></div><div><ul style="list-style-type: circle;"><li><p>Enterprise search </p></li></ul></div><div><ul style="list-style-type: circle;"><li><p>Vector and semantic search </p></li></ul></div><div><ul style="list-style-type: circle;"><li><p>Embeddings </p></li></ul></div><div><ul style="list-style-type: circle;"><li><p>Model endpoints and AI services </p></li></ul></div></div><div><div><ul style="list-style-type: disc;"><li><p>Define secure connectivity between AI applications, enterprise data sources, APIs, and business systems. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Establish AI platform governance, responsible AI, security, monitoring, and operational controls. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Support integration of AI solutions with the broader Microsoft cloud ecosystem. </p></li></ul></div><div><p>Automation &amp; Platform Engineering </p></div><div><ul style="list-style-type: disc;"><li><p>Drive Infrastructure as Code using Bicep, ARM templates and/or Terraform. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Define reusable architecture patterns, templates, and platform components. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Support CI/CD and DevOps-based infrastructure deployment. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Promote policy-driven governance and automated environment provisioning. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Design self-service platform capabilities where appropriate. </p></li></ul></div><div><p>Architecture Leadership </p></div><div><ul style="list-style-type: disc;"><li><p>Lead customer architecture and technical design workshops. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Gather functional and non-functional requirements. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Develop High-Level Designs and detailed technical designs. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Produce architecture diagrams, decision documents, implementation guidance, and design standards. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Conduct architecture reviews and identify technical risks and dependencies. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Provide technical direction to engineering and implementation teams. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Troubleshoot complex architecture, networking, identity, security, and platform issues. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Conduct design reviews and ensure implementation remains aligned to the approved architecture. </p></li></ul></div><div><p>Customer &amp; Stakeholder Engagement </p></div><div><ul style="list-style-type: disc;"><li><p>Act as a trusted technical advisor to customer architects and technology leadership. </p></li></ul></div></div><div><div><ul style="list-style-type: disc;"><li><p>Explain complex cloud and AI concepts in clear business language. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Present architecture options, trade-offs, risks, costs, and recommendations. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Collaborate with application, security, network, data, AI, governance, and operations teams. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Help customers establish cloud and AI adoption roadmaps. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Support solution estimation, implementation planning, risk management, and technical governance. </p></li></ul></div><div><p>Required Technical Skills </p></div><div><p>Azure Infrastructure </p></div><div><ul style="list-style-type: disc;"><li><p>Azure Landing Zones </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Hub-and-Spoke / Virtual WAN </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Azure networking and routing </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>ExpressRoute and VPN </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Azure Firewall </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Application Gateway / WAF </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Private Link / Private Endpoints </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Azure DNS / Private DNS </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Azure Load Balancer </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Azure compute and storage </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Availability Zones and multi-region architecture </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Backup and disaster recovery </p></li></ul></div><div><p>Identity &amp; Security </p></div></div><div><div><ul style="list-style-type: disc;"><li><p>Microsoft Entra ID </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Azure role-based access control </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Managed identities </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Key Vault </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Customer-managed keys </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Azure Policy </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Defender for Cloud </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Microsoft Sentinel </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Zero Trust security principles </p></li></ul></div><div><p>AI </p></div><div><ul style="list-style-type: disc;"><li><p>Microsoft Foundry / Azure AI </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Generative AI architecture </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>AI agents </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>RAG architecture </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>AI Search </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Vector and semantic search </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Model integration </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Prompt and AI security </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Responsible AI </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>AI monitoring and governance </p></li></ul></div></div><div><div><p>Monitoring &amp; Operations </p></div><div><ul style="list-style-type: disc;"><li><p>Azure Monitor </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Log Analytics </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Application Insights </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Microsoft Sentinel </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Cloud operational models and SRE concepts </p></li></ul></div><div><p>Automation </p></div><div><ul style="list-style-type: disc;"><li><p>Bicep / ARM </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Terraform </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Azure DevOps / GitHub </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>CI/CD </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>PowerShell / Azure CLI </p></li></ul></div><div><p>Architecture Competencies </p></div><div><p>The successful candidate should demonstrate the ability to: </p></div><div><ul style="list-style-type: disc;"><li><p>Convert business requirements into end-to-end Azure architecture. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Make architecture decisions across infrastructure, networking, security, identity, data, operations, and AI. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Evaluate multiple technical approaches and clearly explain trade-offs. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Design for security, reliability, scalability, performance, manageability, and cost. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Lead complex enterprise architecture discussions involving multiple technology domains. </p></li></ul></div><div><ul style="list-style-type: disc;"><li><p>Balance Microsoft platform capabilities with customer constraints and existing enterprise environments. </p></li></ul></div></div><div><div><ul style="list-style-type: disc;"><li><p>Move comfortably between whiteboard architecture, detailed technical design, and implementation troubleshooting. </p></li></ul></div></div> <br><p>This position will be open for a minimum of 5 days, with applications accepted on an ongoing basis until the position is filled.</p><br><hr><br><p>Microsoft is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to age, ancestry, citizenship, color, family or medical care leave, gender identity or expression, genetic information, immigration status, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran or military status, race, ethnicity, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable local laws, regulations and ordinances. If you need assistance with religious accommodations and/or a reasonable accommodation due to a disability during the application process, read more about <a href="https://careers.microsoft.com/v2/global/en/accessibility.html"><b><u>requesting accommodations.</u></b></a></p>