Senior Architect for Cloud & Data
- Verfügbarkeit einsehen
- 0 Referenzen
- auf Anfrage
- 8041 Graz
- DACH-Region
- de | en
- 25.05.2026
- Contract ready
Kurzvorstellung
Geschäftsdaten
Qualifikationen
Projekt‐ & Berufserfahrung
10/2025 – offen
Tätigkeitsbeschreibung
Cloud Governance / Security
• Design and implementation of an Azure / AWS Policy security framework to continuously monitor and remediate compliance to meet the internal Cybersecurity framework based on NIS2 and ISO 27001 for 20 Azure and 20 AWS cloud services.
• Design and implementation of reusable Terraform modules for the Azure and AWS cloud services to implement the cloud security framework
• Technology focus: Tenable Cloud Security, Azure Policies, AWS Config Rules, AWS Service Control Policies, Terraform
Cloud Spezialist, Cyber Security, It-Governance, Microsoft Azure, Amazon Web Services (AWS)
11/2024 – 4/2025
Tätigkeitsbeschreibung
Cloud Governance / Security
• Designed and implemented an Azure Policy framework to continuously monitor and remediate compliance to meet Center for Internet Security (CIS) Level 1 and Level 2 requirements.
• Technology focus: Azure Policies
Cloud-Services, Cloud Spezialist, Cyber Security, Microsoft Azure
11/2024 – offen
Tätigkeitsbeschreibung
(1) Corporate Patch Management Consolidation
• Revisited and evaluated the corporate patch management, software distribution and configuration management solution for a strategic tool consolidation strategy to reduce complexity and costs
• Technology focus: Ivanti, SCCM, Foreman, Ansible, Chocolatey
(2) Corporate Monitoring Consolidation
• Revisited and evaluated all corporate IT monitoring tools for a strategic tool consolidation strategy to reduce complexity and costs
(3) Cloud Monitoring
• Revisited and designed new proposals for a new enterprise grade global Azure cloud monitoring solution for all corporate workloads (virtual machines, PaaS, containers, security, etc.) integrating with existing solutions in place
• Technology focus: Azure Monitor, Sentinel, Checkmk, Elastic, Grafana, Dynatrace
Cloud Spezialist, Infrastrukturarchitektur, Microsoft Azure, Server-Monitoring
4/2023 – offen
Tätigkeitsbeschreibung
(1) Azure Enterprise Cloud Setup
Assessed the newly built “beta version” of the enterprise Azure environment to extend / improve it to
become truly enterprise ready and scalable to fit all new cloud native application needs and to
migrate off all workloads from on-premise data centers.
• Based on Microsoft Cloud Adoption Framework (CAF): revisited / redesigned / reengineered:
◦ Management Groups and Landing Zone design
◦ Infrastructure as code / cloud automation stack & reusability across the organization
◦ Central logging solution incl. SIEM (Sentinel)
◦ Role Based Access Control (RBAC) model incl. Privileged Identity Management (PIM)
◦ Cloud Security Posture Management using Azure Defender
◦ Hub & spoke networking & on-prem connectivity
◦ High availability / Disaster Recovery capabilities
• Technology focus: Azure, Azure networking, Log Analytics,Sentinel, Azure Defender, Azure Privileged Identity Management, various Azure IaaS and PaaS, GitHub Enterprise
(2) Cloud Governance / Security
• Designed and implemented an Azure Policy framework to continuously monitor and remediate compliance to meet ISO 27001 requirements for virtual machines and various PaaS offerings.
• Designed / defined guidelines and guardrails to use Azure PaaS / IaaS offerings to meet GxP infrastructure qualification requirements
(3) Cloud Cost Management
• Established cloud cost transparency via reporting and advised conc. cloud cost management tactics (right-scaling, reserved instances, auto-scaling, auto-shutdown, ephermal computing, etc.)
(4) Cloud Migration
• Consulted, advised and accompanied application teams to design cloud native application architectures and to migrate into the new Azure cloud environment
• Analysed existing on-prem IT infrastructure and applications to establish & drive cloud migration roadmaps
• Migrated on-prem fileshares and Sharepoint sites to Azure based fileshares
(5) Cloud Automation (Infrastructure as Code)
• Designed / engineered dozens of reusable Terraform code modules to deploy the complete cloud platform and to deploy various Azure IaaS and PaaS in application projects to meet compliance/security requirements
(6) Datalake & Analytics on Azure
• Designed and setup the new enterprise datalake / data & analytics environment supporting storage, integration, transformation, data governance, analytics capabilities and productionizing models
• Migrated existing ML/AI use cases from Domino Datalab to the new environment and onboarded/consolidated existing “mini” datalakes into the new environment
• Migrated existing on-premise fileshare and Sharepoint environments to cloud based Azure Fileshares
• Technology focus: Microsoft Fabric, Azure Datalake Storage, Azure Files, Azure ML, Azure Batch, Azure Data Factory, Azure Container Apps, Azure Functions
(7) Personalized Vaccination Solution on Azure
• Designed and setup the cloud solution architecture (micro service based) of a new GMP compliant solution to produce personalized vaccinations
• Consulted/supported teams to integrate their micro services into the overall solution and processes
• Technology focus: Azure Storage, Logic Apps, Azure Functions, Azure Container Apps, Azure Batch, Azure ML
Cloud Spezialist, Cyber Security, Cloud Computing, Iaas, Infrastrukturarchitektur, It-Governance, Microsoft Azure, Paas, Solution Architektur
1/2023 – 2/2023
Tätigkeitsbeschreibung
- Designed / defined the binding guidelines and guardrails to integrate Azure PaaS / IaaS offerings into the corporate cloud environment. Focus hereby on Azure Storage, Azure Key Vault, Azure SQL, Azure App Service, Azure Virtual Machine and the topics Backup & Restore, High Availability, Disaster Recovery, Scalability, Networking, Governance via Azure Policies.
- Designed global Cloud Automation Platform and collaboration processes based on Terraform and vRealize to allow decentral DevSecOps Teams and central Managed Service Teams to jointly develop and reuse code and patterns
Cloud Computing, Iaas, It-Governance, Microsoft Azure, Paas, Solution Architektur
10/2020 – 12/2022
Tätigkeitsbeschreibung
- Redesigned and engineered the global enterprise Azure environment for IaaS and PaaS/cloud native workloads based on Microsoft Enterprise Scale Framework
- Designed and engineered infrastructure as code / cloud automation
- Designed and engineered central logging aggregation solution for SIEM integration
- Designed and engineered cloud governance using Azure Policies
- Designed and engineered corporate firewall and network automation for zero-trust hub & spoke networking
- Designed and engineered cloud infrastructure monitoring and alerting
- Consulted, advised and accompanied global application teams in their migration efforts into the new Azure cloud environment
- Worked in the global Architecture Review Board to ensure that applications are built in a cloud first / cloud native manner
- Helped to setup the new global Cloud Centre of Excellence (CCoE) and led the Cloud Architecture Team within the CCoE
- Technology focus: Azure, Powershell, ARM, Terraform, Azure Blueprints, Azure Policies, Azure App Service, Azure SQL, Azure Storage, AKS, Cosmos DB, Azure Service Bus, Azure Event Hub, Azure Monitor, Azure networking, Azure DevOps
Cloud Computing, Iaas, Infrastrukturarchitektur, It-Governance, Microsoft Azure, Paas, Solution Architektur
1/2018 – 12/2020
Tätigkeitsbeschreibung
- Worked as Lead Architect and designed the new Azure cloud based corporate Data Lake / Big Data & Analytics platform to make it truly globally distributed and scalable to meet local data residency and regulatory compliance needs
- Designed the infrastructure as code / cloud automation
- Designed the migration of the existing on-premises big data environment to the new cloud platform
- Managed a Scrum team of DevSecOps team with 15 engineers on a daily basis as Tech Lead to build the cloud platform
- Optimized cloud costs
- Mentored and coached several junior colleagues
- Technology focus: Azure, Powershell, ARM, Azure DevOps, ADLS Gen1/Gen2, Databricks, HDInsight, Azure Search, Cosmos DB, Azure SQL, Azure Data Factory and others
Apache Hadoop, Databricks, Big Data, Cloud Computing, ETL, Iaas, Infrastrukturarchitektur, Microsoft Azure, Paas, Solution Architektur
9/2016 – 12/2017
Tätigkeitsbeschreibung
- Designed the corporate data lake
- Engineered the automation of the data lake areas
- Designed and engineered a dockerized Java microservice framework for data intake into the data lake
- Managed a Scrum team of 8 developers on a daily basis as Tech Lead to build the above
- Technology focus: Hadoop ecosystem (HDFS, Hive, Spark) on-prem and HDInsight on Azure, Java Spring, Python, Docker
Apache Hadoop, Big Data, Cloud Computing, Docker, ETL, Java (allg.), Paas
9/2011 – 8/2016
Tätigkeitsbeschreibung
- Designed multiple solutions with a contract volume between EUR 5-10m for German DAX companies in different industries for big data and data warehouse solutions
- Designed the technical solution and estimated the effort to build it in numerous sales / pre-sales engagements
- Engineered the designed solutions with teams of 5-15 developers (on-/off-/near-shore) and managed them daily as a Tech Lead
- Mentored and coached several junior colleagues
- Primary industry and subject area focus: Automotive (Supply Chain Analytics), Chemicals (Smart Farming Analytics), Travel and Transportation (IoT, Predictive Maintenance, Customer Loyalty)
- Technology focus: Teradata, Hadoop ecosystem (HDFS, Hive, Spark, Kafka, etc.), AWS
Apache Hadoop, Big Data, Data Warehousing, ETL, Solution Architektur, Teradata Sql
6/2009 – 10/2011
Tätigkeitsbeschreibung
- Designed multiple solutions with a contract volume between EUR 1-5m for German DAX companies and medium sized business in different industries for corporate reporting and ETL architectures
- Designed the technical solution and estimated the effort to build it in numerous sales / pre-sales engagements
- Engineered the designed solutions with teams of 10 developers (on-shore) and managed them daily as Tech Lead
- Primary industry and subject area focus: Automotive (After Sales Optimization), Telecoms (Enterprise Data Warehousing), Public Sector (Federal Budget Planning & Controlling)
- Technology focus: SSIS, Talend, ERWin, Oracle IBM Cognos
ETL, Business Intelligence (BI), Data Warehousing
12/2005 – 5/2009
Tätigkeitsbeschreibung
- Designed and engineered ETL processes for populating data warehouses
- Designed and engineered BI reports
- Engineered the designed solutions with teams of 3-5 developers (on-/off-/near-shore) and managed them daily as Tech Lead
- Primary industry and subject area focus: Public Sector (Federal Budget Planning & Controlling, Data Warehouse), Telecoms (Churn prediction, Call Detail Record (CDR) integration)
- Technology focus: SSIS, ERWin, Teradata, Oracle, SQL Server, IBM Cognos
Business Intelligence (BI), Data Warehousing, ETL
Zertifikate
Ausbildung
Graz
Über mich
I have 9+ years full-time experience in building corporate cloud environments and cloud solutions, covering also cloud governance and security in regulated industries (insurance and pharma industry).
While I enjoy doing the design work for cloud solutions, I am also passionate about actively building them „hands-on“ in DevSecOps teams.
Having worked as IT consultant delivering projects to customers for 11 years as well as having held senior inhouse positions in a global player of the insurance industry for more than 6 years, I offer a solid track record and extensive experience to successfully deliver IT solutions at any scale.
Weitere Kenntnisse
- Enterprise cloud architecture – Designing and engineering of enterprise cloud environments incl. Landing Zones in Azure based on Cloud Adoption Framework (CAF) for small to large scale corporations (> 10.000 employees)
- Cloud governance / security – Designing and engineering cloud governance / security frameworks based on CSA CCM/CIS/ISO/NIS2 frameworks using Azure policies, AWS Config Rules, Tenable Cloud Policies and reusable Terraform modules
- Cloud cost management – Designing and engineering cloud cost optimization using right scaling / reserved instances, etc.
- Cloud application solution design – Designing cloud native applications (leveraging PaaS/containerization) in Azure using Microsoft Cloud Adoption Framework
- On-premises application migration to the cloud – Migrating existing IaaS workloads to the cloud and/or rearchitecting the solutions to become cloud native. Replacing on-prem fileshares with cloud based Azure fileshares.
- Infrastructure as code & cloud automation – Designing and engineering idempotent cloud automation using Terraform, Powershell, ARM and Azure Blueprints
- IaaS and PaaS solutions in Azure / AWS – Broad knowledge of Azure and AWS services to design and build cloud native solutions
Data
- Big data / data lake / data warehouse architectures – Designing and engineering data lakes and federated enterprise data warehouse systems using Microsoft Fabric, Azure ML, SQL Server and Terradata
- ETL / data integration – Designing and engineering batch and micro-batch data integration jobs using SQL and ETL tools
- Data modelling – Designing data models based on 3rd normal form, star/snowflake and data vault design principles
- Data quality scorecards – Designing and engineering data quality rules and scorecards to constantly manage and track the state of data quality to improve it
- Relational databases – Developing solutions based on SQL Server and Teradata
Software Engineering
- Agile software development – using Scrum /SAFe Essentials
- CI/CD – Designing and engineering build/release pipelines using GitHub Enterprise, Azure DevOps and GitLab
- Source code management – using Git
- Microservice architectures & containerization – Designing and building dockerized REST based microservices
- Programming languages/frameworks – Terraform, Powershell, ARM, Python, Bash, SQL
- Day-to-day management of engineering teams – Managing engineering teams (on-/near-/offshore) on a daily basis as Tech Lead
- Agentic coding – using GitHub copilot and Cloude code
- Mentoring and coaching – training, mentoring and coaching of junior colleagues/consultants
Persönliche Daten
- Deutsch (Muttersprache)
- Englisch (Fließend)
- Europäische Union
Kontaktdaten
Nur registrierte PREMIUM-Mitglieder von freelance.de können Kontaktdaten einsehen.
Jetzt Mitglied werden
