Azure Infrastructure Engineer
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
About the role
At Corebridge Financial, we believe action is everything. That's why every day we partner with financial professionals and institutions to make it possible for more people to take action in their financial lives, for today and tomorrow. We align to a set of Values that are the core pillars that define our culture and help bring our brand purpose to life: We are stronger as one: We collaborate across the enterprise, scale what works and act decisively for our customers and partners. We deliver on commitments: We are accountable, empower each other and go above and beyond for our stakeholders. We learn, improve and innovate: We get better each day by challenging the status quo and equipping ourselves for the future. We are inclusive: We embrace different perspectives, enabling our colleagues to make an impact and bring their whole selves to work. Who You'll Work With The Information Technology organization is the technological foundation of our business and works in collaboration with our partners from across the company. The team drives technology and digital transformation, partners with business leaders to design and execute new strategies through IT and operations services and ensures the necessary IT risk management and security measures are in place and aligned with enterprise architecture standards and principles. The Azure Infrastructure Engineer will design, build, secure, and automate enterprise‑grade Azure platforms. Resource will own core platform engineering across networking, identity, governance, and automation-partnering with architecture, security, and application teams to deliver resilient, scalable, and cost‑efficient cloud services.
Responsibilities
- Platform Engineering & Architecture Design and implement Azure landing zones aligned to Microsoft Cloud Adoption Framework (CAF), including subscriptions, management groups, policies, RBAC, and cost governance.
- Engineer core services at scale (compute, storage, networking, identity, security, monitoring) with infrastructure-as-code and repeatable patterns.
- Azure Networking Architect and configure vNets, subnets, route tables, private endpoints, network security groups, load balancers, and hybrid connectivity (VPN/ExpressRoute).
- Establish segmentation, ingress/egress controls, and secure connectivity across regions and environments (dev/test/prod).
- Identity & Access Management (IAM) Implement and harden Entra ID (Azure AD), Conditional Access, Privileged Identity Management (PIM), RBAC, managed identities, service principals, and Key Vault integrations.
- Define least‑privilege models, approval workflows, and access reviews across platform services.
- Automation & Scripting Build reusable IaC modules and pipelines using Terraform/ARM, and operational automation with PowerShell and Azure CLI.
- Integrate CI/CD via GitHub/Jenkins for provisioning, configuration drift control, and compliant releases.
- Reliability, Security & Compliance Establish observability with Azure Monitor, Log Analytics, alerts, dashboards; integrate Sentinel/Defender for Cloud for posture management and threat detection.
- Design backup/DR using Azure Backup, ASR; document RTO/RPO; perform failover tests and capacity planning.
- Operations & Continuous Improvement Create runbooks, SRE practices, golden images, and standard operating procedures; drive root‑cause analysis and preventive actions.
- Partner with app teams on networking, identity, and review designs and perform platform readiness checks.
Requirements
- Bachelor's or Master's degree in Information Technology or related field preferred, or equivalent work experience.
- 5+ years in an Azure platform engineering role designing, implementing, and operating enterprise Azure environments.
- Core Technical Skills:
- Azure Platform Architecture: subscriptions, management groups, policy, RBAC, cost management, governance (required).
- Azure Networking: VNets, peering, routing, NSGs, Azure Firewall, Load Balancers, Application Gateway/WAF, VPN/ExpressRoute (required).
- Azure Identity & Access Management: Entra ID, Conditional Access, PIM, Managed Identities, Service Principals, Key Vault (required).
- Strong documentation, change management, and stakeholder communication; ability to lead technical implementation and collaborate across security, architecture, and app teams (required).
- Automation & Scripting: Terraform/ARM, PowerShell, Azure CLI; CI/CD (plus).
- Current Microsoft Azure certification (e.g., AZ‑104 Administrator; AZ‑305 Solutions Architect; AZ‑700 Network Engineer) (plus).
Benefits
Your Match
How well this role fits your profile.
Company Intel
What employees say
Worked at corebridgefinancial? Share your experience