Infrastructure Cloud Engineer

Arch Capital Group•Farmington, CT

About The Position

A mid-level Infrastructure Cloud Engineer responsible for designing, operating, and evolving our Azure environment. This role focuses on architecture, hands-on operations, and translating business/technical requirements into sound Azure designs that Corporate then implements. This role will be responsible for automation of operations for infrastructure and financial operations to maintain predictable cost.

Requirements

  • 3–5 years in infrastructure, systems administration, or cloud engineering
  • At least 3 years hands-on experience with Azure native services (compute, storage, networking, Entra ID)
  • AZ-104 or AZ-305 required
  • Solid networking fundamentals (TCP/IP, DNS, VPN, load balancing, hybrid connectivity)
  • Demonstrated 2 years’ experience writing and troubleshooting Infrastructure as Code (IaC) (Terraform or Bicep)
  • Github in use for infrastructure scripting and IaC
  • Scripting proficiency (PowerShell or Python) for diagnostics and reporting
  • Experience with Windows/Linux server administration

Nice To Haves

  • Experience in a regulated industry (insurance, financial services)
  • Familiarity with Azure AD/Entra ID governance, conditional access, and PIM
  • Exposure to architecture frameworks (Azure Well-Architected Framework)
  • AZ-305 (Azure Solutions Architect) certification
  • Ability to design solutions independently while working within a shared build-automation model
  • Strong documentation skills — designs must be handed off cleanly to a separate build team
  • Strong communications skills – ability to interface directly with stakeholders in group meetings and one-on-one via email.
  • Comfortable operating at the design/implementation boundary
  • Strong sense of accountability and ownership. Able to take an incident or project to closure.

Responsibilities

  • Design Azure infrastructure architecture for new projects (networking topology, resource organization, subscription/resource group structure)
  • Evaluate Azure services against business requirements and recommend solutions
  • Produce and maintain architecture diagrams, design documents, and decision records for review with stakeholders
  • Assess proposed changes for scalability, resilience, and cost impact before build
  • Participate in architecture review sessions with Arch Re Enterprise Architecture team and Service Delivery management.
  • Monitor resource health, utilization, and cost; flag optimization opportunities
  • Design and build dashboards, scripts, tools and other assets to be used by the Infrastructure Operations team.
  • Develop thresholds, alerting and supporting processes for incident routing.
  • Troubleshoot infrastructure issues and produce root-cause analysis and remediation specs for Corporate to execute as a member of the level 3 Infrastructure support team
  • Design and maintain in collaboration with Network Engineer specifications for VNets, subnets, peering, ExpressRoute/VPN, load balancers, and firewalls
  • Design and maintain DNS and hybrid connectivity between on-prem and Arch cloud environments in Azure and AWS
  • Design IAM/RBAC models and least-privilege access structures in Azure AD/Entra ID
  • Review conditional access policies set by Corporate for segment requirements and access review processes and how they impact users and services delivered by Reinsurance IT
  • Partner with security/compliance on identity governance given regulatory obligations (insurance/financial services)
  • Ensure architecture designs meet compliance requirements (SOC 2, applicable insurance/financial regulations)
  • Review security posture of existing cloud resources and recommend remediation
  • Assist product teams with DevSecOps processes and remediations of findings where applicable.
  • Support audits with architecture documentation and evidence
  • Translate architecture designs into specifications and runbooks Corporate's build teams can execute (Terraform/ARM/Bicep requirements, pipeline requests)
  • Review Corporate's IaC output against intended design for correctness

Benefits

  • Multiple medical plans plus dental, vision and prescription drug coverage
  • Competitive 401k with generous matching
  • PTO beginning at 20 days per year
  • Up to 12 paid company holidays per year
  • 2 paid days of Volunteer Time Offer
  • Basic Life and AD&D Insurance
  • Short and Long-Term Disability
  • Paid Parental Leave of up to 10 weeks
  • Student Loan Assistance
  • Tuition Reimbursement
  • Backup Child and Elder Care
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service