Haystack
← Back to Jobs
Technology

Senior Cloud architect

Estuate Inc.Milpitas, CA🇺🇸United StatesPosted 1 Aug 2026

Quick Overview

Work Type
Hybrid
Level
Mid Senior

Job Description

Job Title: Senior Cloud architect

Job Location: Milpitas, CA

Contract: 6 Months

Job Summary

The Cloud Architect will be responsible for designing, implementing, securing, and governing cloud based solutions across multiple cloud platforms, including AWS, Microsoft Azure, and Google Cloud Platform (Google Cloud Platform). This role requires a strong understanding of cloud security architecture, identity and access management (IAM), networking, and secure-by-design architecture principles, in addition to IaaS and PaaS best practices.

Job Responsibilities

  • Design and architect scalable, highly available, resilient, and secure cloud solutions leveraging IaaS and PaaS services across AWS, Azure, and Google Cloud Platform (Google Cloud Platform).
  • Lead cloud migration initiatives, including re hosting, re platforming, refactoring, and re architecting legacy and on premises workloads with a strong emphasis on security posture improvement and risk reduction.
  • Drive application and infrastructure modernization programs to improve scalability, performance, security, and operational efficiency.
  • Partner with engineering, platform, and security teams to define cloud native reference architectures, security guardrails, and modernization roadmaps.
  • Optimize cloud infrastructure for performance, availability, reliability, security hardening, and cost efficiency.
  • Establish and manage cloud security architectures and governance frameworks, aligned with industry standards and internal security policies.
  • Design and enforce identity first security, including IAM strategies, least privilege access controls, role based access, identity federation, and secrets management.
  • Design and implement secure cloud networking architectures, including VPN, Direct Connect, ExpressRoute, and Cloud Interconnect.
  • Configure and enforce network segmentation, micro segmentation, zero trust architectures, and advanced network security controls.
  • Secure containers, Kubernetes, serverless, and microservices environments, including image scanning, runtime protection, and policy enforcement.
  • Implement Infrastructure as Code (IaC) using Terraform, AWS CloudFormation, and Azure ARM/Bicep templates with built in security, policy, and compliance controls.
  • Design and evolve DevSecOps CI/CD pipelines, integrating security scanning, policy enforcement, and automated compliance validation.
  • Define and implement cloud security observability, including logging, monitoring, alerting, and incident response integration.

Skills

Microservices
AWS
Azure
CloudFormation
Google Cloud
Kubernetes
Terraform
Zero Trust

Similar jobs