Consultant 2 – Cloud Engineer (Azure)
Key Responsibilities
Minimum Requirements
The candidate must be a hands-on Azure IaC/DevOps engineer with practical experience in Terraform, Azure DevOps YAML pipelines, GitHub-based source control, Azure networking, Key Vault/RBAC, and deployment troubleshooting. Exposure to HCP Terraform, MQTT, Ignition, or industrial IoT platforms is preferred
|
Skill |
Minimum Level |
|
Terraform |
Intermediate to Advanced |
|
HCP Terraform / Terraform Cloud |
Basic to Intermediate |
|
Azure DevOps Pipelines |
Intermediate |
|
GitHub |
Intermediate |
|
Azure Infrastructure |
Intermediate |
|
Azure Networking |
Intermediate |
|
Azure Security / RBAC / Key Vault |
Intermediate |
|
PowerShell/Bash |
Basic to Intermediate |
|
MQTT / Ignition / OPC UA |
Basic awareness preferred |
|
Documentation |
Intermediate |
Preferred Qualifications
Experience with HCP Terraform/Terraform Cloud, Azure landing zones, hub-and-spoke networking, private endpoints, Azure PostgreSQL, Key Vault, managed identity, and Azure DevOps YAML pipelines. Exposure to industrial IoT, MQTT/Sparkplug B, OPC UA, Inductive Automation Ignition, Azure IoT Operations, Snowflake, or SAP Integration Suite is preferred. Certifications such as HashiCorp Terraform Associate, AZ-104, AZ-305, or AZ-400 are desirable.
Any additional details (any preferred educational background or softskills)
- Communication (written, verbal)
|
Skill Area |
Required Capability |
Priority |
Proficiency |
|
HCP Terraform / Terraform Cloud |
Workspaces, remote state, variables, runs, policies, environment separation |
Must Have |
Advanced |
|
Terraform for Azure |
Build and maintain reusable Terraform modules for Azure infrastructure |
Must Have |
Advanced |
|
Azure DevOps |
YAML pipelines for Terraform plan/apply, approvals, multi-stage deployments |
Must Have |
Advanced |
|
GitHub |
Repo structure, branching, PR reviews, GitHub integration with Azure DevOps |
Must Have |
Advanced |
|
Azure Cloud Platform |
VNets, subnets, NSGs, route tables, private endpoints, private DNS, storage, Key Vault, managed identities |
Must Have |
Advanced |
|
Azure Networking |
Hub-spoke, factory-to-cloud connectivity, firewall routing, DNS, private access patterns |
Must Have |
Advanced |
|
Azure IoT / MQTT |
Familiarity with MQTT brokers, MQTT TLS, Sparkplug B, Azure IoT Operations concepts |
Must Have |
Intermediate |
|
Ignition Platform Awareness |
Understanding of Ignition gateway/server architecture, edge-to-cloud deployment model, OPC UA/MQTT integrations |
Should Have |
Intermediate |
|
OPC UA / OT Connectivity |
Awareness of plant-floor device connectivity and industrial protocol boundaries |
Should Have |
Basic to Intermediate |
|
Azure Database for PostgreSQL |
Deployment automation, private access, firewall rules, backup/restore awareness |
Should Have |
Intermediate |
|
Security / Identity |
Managed identity, service principals, workload identity, RBAC, Key Vault, secret handling |
Must Have |
Advanced |
|
CI/CD Governance |
Environment promotion, approvals, gated deployments, auditability |
Must Have |
Advanced |
|
Observability |
Azure Monitor, Log Analytics, diagnostic settings, alerting |
Should Have |
Intermediate |
|
Scripting |
PowerShell, Bash, or Python for automation and troubleshooting |
Must Have |
Intermediate |
|
Documentation |
Runbooks, deployment guides, environment diagrams, operational handover |
Must Have |
Advanced |
|
Snowflake/SAP Awareness |
Understanding of integration dependencies, not necessarily deep implementation |
Nice to Have |
Basic |