Overview
Client is seeking a Cloud Engineer to design, implement, and maintain secure, scalable, and reliable Microsoft Azure cloud solutions. This role will support enterprise and research applications by optimizing cloud infrastructure, automating deployments, and ensuring compliance with security, performance, availability, and cost-efficiency standards.
Core Responsibilities
- Design and deploy cloud architectures on Microsoft Azure that meet performance, security, availability, and cost-efficiency requirements.
- Architect and implement cloud networking, compute, storage, and identity constructs with security built in from the outset.
- Apply least-privilege access, network segmentation, encryption, and defense-in-depth principles across cloud environments.
- Evaluate and recommend cloud services, architectural patterns, and infrastructure approaches.
- Build adoption cases that account for engineering capability, operational cost, and long-term platform sustainability.
- Implement and maintain infrastructure-as-code frameworks using Terraform, Ansible, Bicep, ARM templates, or equivalent tools.
- Build and maintain CI/CD pipelines for cloud infrastructure and application deployments.
- Ensure cloud changes are tested, validated, deployed safely, and supported by automated rollback capability.
- Automate operational tasks including patching, scaling, monitoring, alerting, and cost optimization.
- Implement and maintain controls for identity management, secrets management, audit logging, and encryption at rest and in transit.
- Monitor cloud security posture and remediate misconfigurations, drift, and policy violations.
- Integrate CSPM tooling into operational workflows for proactive compliance management.
- Partner with cybersecurity teams to align cloud platform security with enterprise threat models and applicable regulatory frameworks.
- Monitor cloud environments for performance, availability, and cost efficiency.
- Identify cloud waste, right-size resources, and drive FinOps practices.
- Contribute to platform engineering standards, reference architectures, and guardrails.
- Troubleshoot and resolve cloud infrastructure issues.
- Contribute to post-incident analysis and implement preventive improvements.
Essential Qualifications, Skills, and Technologies
- Bachelor's degree in Computer Science, Information Technology, or a related field, or equivalent professional experience.
- 3 years of hands-on cloud engineering experience in a production enterprise environment.
- Microsoft Azure experience.
- Demonstrated proficiency with infrastructure-as-code tools such as Terraform, Ansible, Bicep, ARM templates, or equivalent.
- Experience with version control using Git.
- Proficiency with scripting languages such as Python, Bash, or equivalent for automation and tooling development.
- Strong understanding of cloud networking, virtualization, containerization, and cloud security principles.
- Experience with Docker and Kubernetes.
- Experience with CI/CD pipelines and DevOps practices in a cloud-native environment.
Preferred Skills or Experience
- Microsoft Azure certification such as Azure Solutions Architect Expert, Azure Administrator Associate, or Azure DevOps Engineer Expert.
- Experience with FinOps practices and cloud cost optimization at enterprise scale.
- Familiarity with monitoring and observability platforms such as Prometheus, Grafana, Datadog, Azure Monitor, Application Insights, or equivalent.
- Experience in pharmaceutical, healthcare, life sciences, or other regulated industries.
- Experience with GxP, 21 CFR Part 11, or HIPAA cloud compliance requirements.
- Experience with Kubernetes in production, including Azure Kubernetes Service, cluster operations, and workload management.
- Background in cloud security architecture, including IAM design, secrets management, network security groups, and cloud-native security tooling.
Work Details
- Onsite role.
Nesco Resource is an equal employment opportunity employer and does not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, disability, age, or veteran status, or any other legally protected characteristics with respect to employment opportunities.




