Duration: 4-6 Weeks for Scoping confirmed and strong chance of 6-12 Months for Delivery based on initial plans acceptance.
Location: Remote/Client Site
We are seeking an experienced Azure Infrastructure Architect for a Phased Engagement to assist our client with a crucial scoping project, followed by the delivery phase. This role involves developing a high-level plan for the design and implementation of a secure and efficient network and virtual environment in Azure.
Key Responsibilities:
Phase 1: Scoping (4-6 Weeks)
- Conduct a thorough scoping exercise to understand the client's requirements.
- Develop a high-level design for a secure and efficient network and virtual environment in Azure, including a "Hub and Spoke" network topology.
- Outline an implementation plan based on the design.
- Ensure alignment with best practices and industry standards.
- Connect the Azure virtual infrastructure to the on-premise network via a site-to-site VPN using Palo Alto firewalls.
- Design to support future Express Route connection with the on-premise network.
- Use Palo Alto firewall as the internet gateway for virtual machines in the Azure environment.
- Join 2 new Domain Controllers to the existing internal Windows domain (cosp.internal).
- Set up a Veeam Backup proxy for virtual machine backups to a low-cost Azure storage environment.
- Create an Azure virtual desktop for third-party software client "Forcefield," ensuring restricted server access.
- Configure a pool of virtual desktops running Windows 11 for 3 concurrent users with internal network resource access.
- Discuss, recommend, and demonstrate third-party application deployment to the virtual desktop.
- Recommend best practice security design for the topology.
- Implement initial firewall rules for the Azure-based Palo Alto firewall.
- Install and configure a "base" Azure Palo Alto firewall VM/service.
- Work with the Clients team to set up the site-to-site VPN connection.
- Configure Azure network and security resources.
- Install and configure 2 Domain Controller VMs in the Azure environment.
- Set up a low-cost Azure storage environment for backups.
- Install and configure a Veeam Backup proxy for VM backups.
- Create and configure the virtual desktop environment as described.
- Proven experience as an Azure Infrastructure Architect.
- Strong knowledge of Azure networking and virtual environments.
- Ability to develop high-level design and implementation plans.
- Excellent communication and stakeholder management skills.
- Proficiency with Palo Alto firewalls and Veeam Backup solutions.
- Experience in configuring Azure virtual desktops and implementing security best practices.
- Ability to train and guide ICT teams on Azure environments.