01 Sep
|
Davidson
|
Geelong
About the Company
A leading enterprise is investing in strengthening its cloud capabilities through a broader hybrid and multi-cloud strategy. This role will play a critical part in establishing secure, scalable, and governed AWS foundations that enable delivery teams to consume cloud services safely and efficiently.
The Role
As the Cloud Architect, you will own the target AWS architecture and provide hands-on technical leadership across design, implementation, governance, security, networking, automation, and operational transition. You will lead the establishment of an enterprise AWS landing zone and cloud operating model while ensuring compliance, security, resilience, and cost governance.
Key Responsibilities
- Define and own the AWS target architecture, standards, principles, and implementation roadmap.
- Design and implement AWS landing zone capabilities using:
- AWS Organizations
- AWS Control Tower
- IAM Identity Center
- Account Factory / Account Factory for Terraform
- Design multi-account architectures, organisational units, delegated administration, and Service Control Policies (SCPs).
- Develop Infrastructure as Code standards using Terraform, Git, testing frameworks, and CI/CD pipelines.
- Design enterprise networking including:
- Direct Connect
- Transit Gateway
- VPC architecture
- DNS and IPAM
- PrivateLink
- Routing and network security
- Design identity and security controls covering:
- Federation
- Privileged access
- Secrets management
- Least-privilege access
- Workload identities
- Establish security, logging, and monitoring capabilities using:
- CloudTrail
- AWS Config
- GuardDuty
- Security Hub
- KMS
- CloudWatch
- Implement standards for backup, disaster recovery, encryption, vulnerability management, patching, and incident response.
- Define cloud governance frameworks, policy-as-code controls, workload onboarding standards, and FinOps practices.
- Lead stakeholder engagement, technical assurance,
vendor management, and operational transition activities.
Required
- 7+ years' experience in Cloud Architecture, Platform Engineering, Infrastructure, or related senior technical roles.
- Proven experience delivering at least two enterprise AWS multi-account landing zone implementations end-to-end.
- Strong hands-on experience with:
- AWS Organizations
- AWS Control Tower
- SCPs
- Delegated Administration
- Account Vending
- Advanced Terraform expertise including reusable modules, Git workflows, testing, and CI/CD pipelines.
- Strong AWS networking knowledge covering hybrid connectivity, routing, DNS, security, and traffic inspection.
- Deep cloud security architecture experience across:
- Identity & Access Management
- Encryption & KMS
- Threat Detection
- Security Monitoring
- Audit & Compliance
- Experience defining cloud operating models, onboarding processes, governance controls, and FinOps frameworks.
- Excellent stakeholder engagement and communication skills.
Desirable
- AWS Certified Solutions Architect - Professional.
- Experience with Microsoft Entra ID integration.
- Experience with enterprise SIEM and ITSM platforms.
- Experience with AWS Account Factory for Terraform (AFT).
- Experience customising AWS Control Tower and automated policy deployment.
- Knowledge of ISM, Essential Eight, VPDSF, ISO 27001, and NIST CSF frameworks.
- Experience operating within regulated industries such as Government, Financial Services, Insurance, or Healthcare.
Advantages
- Opportunity to lead enterprise-scale AWS transformation initiatives.
- Exposure to hybrid and multi-cloud environments.
- Healthy day rates
- 6-month initial contract with view to extend
Please apply with current resume in Microsoft Word format only (.doc or .docx). If you would like to have a confidential discussion, please contact Krunal Patel on ••••@davidsonwp.com, quoting reference JN -092026-44172. Want to know more about Davidson? Visit us at www.davidsonwp.com
📌 Cloud Architect (Geelong)
🏢 Davidson
📍 Geelong