Senior Azure and Microsoft 365 Platform Engineer

Portfolio Bi — United Kingdom · Posted ~3 hours ago

Senior Full-time Hybrid

Skills

Azure Microsoft 365 Cloud infrastructure Identity and Access Management Networking Monitoring

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A senior cloud platform engineering role focused on managing Azure environments, enterprise productivity platforms, security controls, and reliable infrastructure operations.

Highlights

Own and improve cloud platforms with responsibility for architecture alignment, security, reliability, and operational excellence.

Description

PBI's flagship products and services, PBI Axiom, PBI Vector, and PBI Stratus, enable alternative asset managers to address their data challenges in analytics, workflow, governance, and security. We are looking for a Senior Azure & Microsoft 365 Platform Engineer. The successful candidate will act as the technical owner of the Azure platform, working closely with external development and engineering partners. They will ensure that deployed systems align with the intended architecture, support secure and stable operations, and improve ownership across Identity and Access Management, Disaster Recovery, and Monitoring and Observability. Main Responsibilities Oversee Azure subscriptions, landing zones, networking, compute, databases and Microsoft 365 tenant configuration, including dependencies between current and legacy platformsValidate deployed infrastructure against documented architecture and security requirements, including ingress, DNS, certificates and platform access controlsReview Entra ID, Conditional Access, authentication flows, RBAC, PIM, emergency access, service identities and guest/B2B and client-facing identities. Ensure least-privilege access, effective joiner/mover/leaver processes, recurring access reviews and removal of orphaned identitiesReconcile permissions and access dependencies across Microsoft 365, Azure, Azure DevOps and applications; oversee Key Vault, secrets, certificates and rotationAssess and improve disaster recovery, including recovery units, shared dependencies, RTOs/RPOs, backups, database replication, point-in-time restoration and multi-region design. Run restore and failover exercises covering invocation, validation and return to primary, maintaining runbooks, responsibilities and test evidenceImprove service-health monitoring using Azure Monitor, Log Analytics, KQL and Application Insights. Map services to monitoring signals, tune alerts for actionability, routing and ownership, and distinguish customer-facing status from operational diagnosticsTroubleshoot production issues across infrastructure, applications, APIs and integrations, maintaining practical runbooks and technical documentationMaintain Terraform configurations, modules and state; detect configuration drift, support Azure DevOps pipelines and permissions, and develop PowerShell scripts and automationApply Azure Policy and landing-zone guardrails, maintain tagging, naming and subscription standards, and improve cost management, including telemetry retention and accessAct as the internal technical counterpart to external providers, constructively challenge proposed changes and communicate gaps, risks and recommendations clearly to technical and non-technical stakeholders Requirements Essential Strong hands-on experience with both Microsoft Azure and Microsoft 365, including Azure platform engineering, Microsoft 365 tenant administration and security configuration, Active Directory servers, and email security/spam filtering (Mimecast)Experience spanning cloud architecture, engineering and operations in business-critical production environmentsStrong knowledge of Entra ID, Conditional Access, Azure RBAC, PIM, Key Vault and identity and access governance across connected platformsPractical knowledge of Azure networking, ingress, compute and databases, including backup, replication and restorationExperience assessing and validating disaster recovery, including dependency mapping, RTOs/RPOs, recovery procedures, restore testing and regional failoverExperience with Azure Monitor, Log Analytics, KQL and Application Insights, including service-health monitoring, alert tuning and troubleshooting distributed, API-driven servicesPractical Terraform experience covering modules, state management and drift detection, alongside Azure DevOps CI/CD, access controls, PowerShell scripting and Azure PolicyStrong technical documentation and runbook-development skills, with the ability to distinguish verified findings from assumptions and recommendationsAbility to work independently, exercise sound technical judgement, collaborate with and challenge external providers, and communicate clearly with technical and non-technical stakeholders Desirable Familiarity with Bicep or ARM templates and cloud cost optimisation / FinOpsExperience supporting security auditsFamiliarity with AI tools and their practical application in Microsoft 365 or IT operationsExperience working with multiple external technology suppliers Benefits You would be part of an international team of people, working on the latest technology and at the forefront of automation and innovation. We offer: Flexible working - hybrid modeWorking on exciting cutting-edge technology projectsCompetitive salaryMedical insurance packageGenerous paid time offProfessional development and trainingProfessional certification exams sponsored by the company