Source description
About the role
Hybrid Cloud Platform Architect Function: Cloud Engineering & Architecture · Level: Senior / Lead Primary platform: Microsoft Azure · Secondary: AWS or GCP Location: Bengaluru / Hyderabad, India (hybrid) · Type: Full-time · Reports to: Principal Architect of Cloud Platform / Practice
# About Minfy
Minfy Technologies is a cloud-native IT services company helping enterprises across India and global markets build, run, and secure mission-critical workloads across hybrid and multi-cloud environments. Our practice spans cloud infrastructure, platform engineering, managed services, DevOps, data engineering, and cybersecurity, underpinned by our Kavach360 security programme (ISO 27001, SOC 2, and DPDP Act alignment).
The role
The Hybrid Cloud Platform Architect designs and owns the foundational platform that enterprise workloads run on across on-premises, Azure, and a secondary public cloud. You define the landing zones, hybrid connectivity, identity, governance, and self-service tooling that let engineering teams deliver quickly and safely — and you set the standards for reliability, security, and cost that keep the platform healthy at scale. This is a hands-on architecture role: you build reference implementations and Infrastructure-as-Code, not just diagrams, and you mentor the engineers who extend the platform. Azure is the primary environment; you bring working depth in AWS or GCP to design and operate genuinely hybrid, multi-cloud solutions.
# What you'll do
Platform foundation and landing zones - Design and govern enterprise-scale Azure landing zones using the Cloud Adoption Framework and Well-Architected Framework: management-group hierarchy, subscription topology, guardrails, and policy-as-code (Azure Policy). - Establish the equivalent foundation in the secondary cloud (AWS Control Tower / Organizations or GCP organisation and folder structure) where workloads span providers. Hybrid architecture and connectivity * - Architect hybrid connectivity and network topology: hub-spoke / virtual WAN, ExpressRoute and VPN, DNS, and segmentation across data centre and cloud. - Extend cloud control planes to on-premises and edge using Azure Arc (and Azure Stack / VMware integration where relevant), enabling consistent governance across hybrid estate. ** Identity, security, and governance* - Design identity and access with Microsoft Entra ID (federation, Conditional Access, PIM/PAM), least-privilege RBAC, Key Vault, and secrets management. - Embed security and data protection by design — encryption, network controls, and Defender for Cloud — and align the platform with DPDP, ISO 27001, and SOC 2 obligations. - Run architecture review and approval, guardrails, and the technical standards that ensure consistency and operational excellence. Automation and platform engineering - Build reusable Infrastructure-as-Code (Terraform and/or Bicep) modules, CI/CD pipelines, and golden paths that give product teams safe, self-service provisioning. - Architect container and orchestration platforms (AKS, with EKS / GKE in the secondary cloud) and the surrounding supply-chain and policy controls. Reliability, observability, and cost - Define HA, DR, and backup architectures to agreed RTO/RPO targets, and design observability (Azure Monitor, Log Analytics, and equivalents) for actionable platform health. - Lead FinOps practice for the platform: right-sizing, commitment-based discounts (Reserved Instances / Savings Plans / committed use), tagging, and cost visibility and accountability. Leadership and consulting - Act as technical authority across engagements, partnering with client architecture and infrastructure teams to shape platform strategy and roadmaps. - Mentor platform and cloud engineers, and contribute to presales, solution workshops, and effort estimation.
What you'll bring
*Required * - 10+ years in technology, with 5+ years architecting cloud or hybrid platforms. - Deep, hands-on Microsoft Azure expertise across networking, identity and security, compute, storage, and HA/DR — at Azure Solutions Architect Expert standard. - Proven design and ownership of Azure landing zones (CAF), governance with Azure Policy, and Entra ID-based identity and access. - Strong hybrid experience: ExpressRoute / hybrid networking, Azure Arc, and integration with on-premises or VMware environments. - Infrastructure-as-Code with Terraform and/or Bicep, plus CI/CD; container orchestration with Kubernetes (AKS). - Working knowledge of either AWS or GCP sufficient to architect and operate multi-cloud solutions. - Excellent client-facing communication and the ability to set standards and mentor engineers. Preferred - Certifications in the secondary cloud (AWS Solutions Architect, GCP Professional Cloud Architect). - Platform engineering / internal developer platform experience (golden paths, self-service, policy-as-code). - FinOps certification and experience operating cost governance at scale. - Observability and SRE practices; experience in a regulated or enterprise delivery environment. Certifications (expected) - Microsoft Certified: Azure Solutions Architect Expert (required or to be achieved within an agreed timeframe) - AWS Certified Solutions Architect or Google Professional Cloud Architect (advantageous)
What success looks like
- Within 90 days: a reference Azure landing zone and IaC baseline adopted on at least one engagement, with review standards in use by the team. - Within 6–12 months: a repeatable, self-service hybrid platform pattern in production across engagements, measurable cost optimization delivered, and a demonstrable uplift in the engineer's you mentor.
Why Minfy
You will own the platform foundations that enterprise workloads depend on, with the autonomy of a senior architect, the support of a strong practice, and a clear path to shape how we build hybrid cloud at scale.
More at minfy