freiberufler Senior Architect for Cloud & Data auf freelance.de

Senior Architect for Cloud & Data

zuletzt online vor 10 Tagen
  • auf Anfrage
  • 8041 Graz
  • DACH-Region
  • de  |  en
  • 25.05.2026
  • Contract ready

Kurzvorstellung

I am a seasoned IT architect and engineer, specialising on building & managing secure, governed cloud environments on Azure as well as building solutions in there – from small to very large globally distributed ones.

Geschäftsdaten

 Freiberuflich
 Steuernummer bekannt
 Berufshaftpflichtversicherung aktiv

Qualifikationen

  • Amazon Web Services (AWS)
  • Cloud Computing9 J.
  • Cloud governance & security
  • Cloud native application design
  • Cloud Spezialist3 J.
  • Cyber Security3 J.
  • Enterprise cloud architecture
  • Iaas8 J.
  • IaaS and PaaS on Azure
  • Infrastructure as code / cloud automation
  • Infrastrukturarchitektur8 J.
  • It-Governance5 J.
  • Microsoft Azure8 J.
  • Paas9 J.
  • Server-Monitoring1 J.
  • Solution Architektur13 J.

Projekt‐ & Berufserfahrung

Senior Cloud Security Architect
Kundenname anonymisiert, Hannover
10/2025 – offen (9 Monate)
Automobilindustrie
Tätigkeitszeitraum

10/2025 – offen

Tätigkeitsbeschreibung

Cloud Governance / Security
• Design and implementation of an Azure / AWS Policy security framework to continuously monitor and remediate compliance to meet the internal Cybersecurity framework based on NIS2 and ISO 27001 for 20 Azure and 20 AWS cloud services.
• Design and implementation of reusable Terraform modules for the Azure and AWS cloud services to implement the cloud security framework
• Technology focus: Tenable Cloud Security, Azure Policies, AWS Config Rules, AWS Service Control Policies, Terraform

Eingesetzte Qualifikationen

Cloud Spezialist, Cyber Security, It-Governance, Microsoft Azure, Amazon Web Services (AWS)

Senior Cloud Security Architect
Kundenname anonymisiert, Esslingen
11/2024 – 4/2025 (6 Monate)
Automobilindustrie
Tätigkeitszeitraum

11/2024 – 4/2025

Tätigkeitsbeschreibung

Cloud Governance / Security
• Designed and implemented an Azure Policy framework to continuously monitor and remediate compliance to meet Center for Internet Security (CIS) Level 1 and Level 2 requirements.
• Technology focus: Azure Policies

Eingesetzte Qualifikationen

Cloud-Services, Cloud Spezialist, Cyber Security, Microsoft Azure

Senior Cloud/IT Architect
Kundenname anonymisiert, Mühlheim
11/2024 – offen (1 Jahr, 8 Monate)
Handel
Tätigkeitszeitraum

11/2024 – offen

Tätigkeitsbeschreibung

(1) Corporate Patch Management Consolidation
• Revisited and evaluated the corporate patch management, software distribution and configuration management solution for a strategic tool consolidation strategy to reduce complexity and costs
• Technology focus: Ivanti, SCCM, Foreman, Ansible, Chocolatey

(2) Corporate Monitoring Consolidation
• Revisited and evaluated all corporate IT monitoring tools for a strategic tool consolidation strategy to reduce complexity and costs

(3) Cloud Monitoring
• Revisited and designed new proposals for a new enterprise grade global Azure cloud monitoring solution for all corporate workloads (virtual machines, PaaS, containers, security, etc.) integrating with existing solutions in place
• Technology focus: Azure Monitor, Sentinel, Checkmk, Elastic, Grafana, Dynatrace

Eingesetzte Qualifikationen

Cloud Spezialist, Infrastrukturarchitektur, Microsoft Azure, Server-Monitoring

Senior Cloud Architect / Engineer
Kundenname anonymisiert, Tübingen
4/2023 – offen (3 Jahre, 3 Monate)
Life Sciences
Tätigkeitszeitraum

4/2023 – offen

Tätigkeitsbeschreibung

(1) Azure Enterprise Cloud Setup
Assessed the newly built “beta version” of the enterprise Azure environment to extend / improve it to
become truly enterprise ready and scalable to fit all new cloud native application needs and to
migrate off all workloads from on-premise data centers.
• Based on Microsoft Cloud Adoption Framework (CAF): revisited / redesigned / reengineered:
◦ Management Groups and Landing Zone design
◦ Infrastructure as code / cloud automation stack & reusability across the organization
◦ Central logging solution incl. SIEM (Sentinel)
◦ Role Based Access Control (RBAC) model incl. Privileged Identity Management (PIM)
◦ Cloud Security Posture Management using Azure Defender
◦ Hub & spoke networking & on-prem connectivity
◦ High availability / Disaster Recovery capabilities
• Technology focus: Azure, Azure networking, Log Analytics,Sentinel, Azure Defender, Azure Privileged Identity Management, various Azure IaaS and PaaS, GitHub Enterprise

(2) Cloud Governance / Security
• Designed and implemented an Azure Policy framework to continuously monitor and remediate compliance to meet ISO 27001 requirements for virtual machines and various PaaS offerings.
• Designed / defined guidelines and guardrails to use Azure PaaS / IaaS offerings to meet GxP infrastructure qualification requirements

(3) Cloud Cost Management
• Established cloud cost transparency via reporting and advised conc. cloud cost management tactics (right-scaling, reserved instances, auto-scaling, auto-shutdown, ephermal computing, etc.)

(4) Cloud Migration
• Consulted, advised and accompanied application teams to design cloud native application architectures and to migrate into the new Azure cloud environment
• Analysed existing on-prem IT infrastructure and applications to establish & drive cloud migration roadmaps
• Migrated on-prem fileshares and Sharepoint sites to Azure based fileshares

(5) Cloud Automation (Infrastructure as Code)
• Designed / engineered dozens of reusable Terraform code modules to deploy the complete cloud platform and to deploy various Azure IaaS and PaaS in application projects to meet compliance/security requirements

(6) Datalake & Analytics on Azure
• Designed and setup the new enterprise datalake / data & analytics environment supporting storage, integration, transformation, data governance, analytics capabilities and productionizing models
• Migrated existing ML/AI use cases from Domino Datalab to the new environment and onboarded/consolidated existing “mini” datalakes into the new environment
• Migrated existing on-premise fileshare and Sharepoint environments to cloud based Azure Fileshares
• Technology focus: Microsoft Fabric, Azure Datalake Storage, Azure Files, Azure ML, Azure Batch, Azure Data Factory, Azure Container Apps, Azure Functions

(7) Personalized Vaccination Solution on Azure
• Designed and setup the cloud solution architecture (micro service based) of a new GMP compliant solution to produce personalized vaccinations
• Consulted/supported teams to integrate their micro services into the overall solution and processes
• Technology focus: Azure Storage, Logic Apps, Azure Functions, Azure Container Apps, Azure Batch, Azure ML

Eingesetzte Qualifikationen

Cloud Spezialist, Cyber Security, Cloud Computing, Iaas, Infrastrukturarchitektur, It-Governance, Microsoft Azure, Paas, Solution Architektur

Senior Cloud Architect
Kundenname anonymisiert, München
1/2023 – 2/2023 (2 Monate)
Finanzdienstleister
Tätigkeitszeitraum

1/2023 – 2/2023

Tätigkeitsbeschreibung

- Designed / defined the binding guidelines and guardrails to integrate Azure PaaS / IaaS offerings into the corporate cloud environment. Focus hereby on Azure Storage, Azure Key Vault, Azure SQL, Azure App Service, Azure Virtual Machine and the topics Backup & Restore, High Availability, Disaster Recovery, Scalability, Networking, Governance via Azure Policies.
- Designed global Cloud Automation Platform and collaboration processes based on Terraform and vRealize to allow decentral DevSecOps Teams and central Managed Service Teams to jointly develop and reuse code and patterns

Eingesetzte Qualifikationen

Cloud Computing, Iaas, It-Governance, Microsoft Azure, Paas, Solution Architektur

Senior Cloud Architect (Festanstellung)
Munich Re, München
10/2020 – 12/2022 (2 Jahre, 3 Monate)
Versicherungen
Tätigkeitszeitraum

10/2020 – 12/2022

Tätigkeitsbeschreibung

- Redesigned and engineered the global enterprise Azure environment for IaaS and PaaS/cloud native workloads based on Microsoft Enterprise Scale Framework
- Designed and engineered infrastructure as code / cloud automation
- Designed and engineered central logging aggregation solution for SIEM integration
- Designed and engineered cloud governance using Azure Policies
- Designed and engineered corporate firewall and network automation for zero-trust hub & spoke networking
- Designed and engineered cloud infrastructure monitoring and alerting
- Consulted, advised and accompanied global application teams in their migration efforts into the new Azure cloud environment
- Worked in the global Architecture Review Board to ensure that applications are built in a cloud first / cloud native manner
- Helped to setup the new global Cloud Centre of Excellence (CCoE) and led the Cloud Architecture Team within the CCoE
- Technology focus: Azure, Powershell, ARM, Terraform, Azure Blueprints, Azure Policies, Azure App Service, Azure SQL, Azure Storage, AKS, Cosmos DB, Azure Service Bus, Azure Event Hub, Azure Monitor, Azure networking, Azure DevOps

Eingesetzte Qualifikationen

Cloud Computing, Iaas, Infrastrukturarchitektur, It-Governance, Microsoft Azure, Paas, Solution Architektur

Senior Cloud Architect for Data & Analytics (Festanstellung)
Munich Re, München
1/2018 – 12/2020 (3 Jahre)
Versicherungen
Tätigkeitszeitraum

1/2018 – 12/2020

Tätigkeitsbeschreibung

- Worked as Lead Architect and designed the new Azure cloud based corporate Data Lake / Big Data & Analytics platform to make it truly globally distributed and scalable to meet local data residency and regulatory compliance needs
- Designed the infrastructure as code / cloud automation
- Designed the migration of the existing on-premises big data environment to the new cloud platform
- Managed a Scrum team of DevSecOps team with 15 engineers on a daily basis as Tech Lead to build the cloud platform
- Optimized cloud costs
- Mentored and coached several junior colleagues
- Technology focus: Azure, Powershell, ARM, Azure DevOps, ADLS Gen1/Gen2, Databricks, HDInsight, Azure Search, Cosmos DB, Azure SQL, Azure Data Factory and others

Eingesetzte Qualifikationen

Apache Hadoop, Databricks, Big Data, Cloud Computing, ETL, Iaas, Infrastrukturarchitektur, Microsoft Azure, Paas, Solution Architektur

Big Data Engineer (Festanstellung)
Munich Re, München
9/2016 – 12/2017 (1 Jahr, 4 Monate)
Finanzdienstleister
Tätigkeitszeitraum

9/2016 – 12/2017

Tätigkeitsbeschreibung

- Designed the corporate data lake
- Engineered the automation of the data lake areas
- Designed and engineered a dockerized Java microservice framework for data intake into the data lake
- Managed a Scrum team of 8 developers on a daily basis as Tech Lead to build the above
- Technology focus: Hadoop ecosystem (HDFS, Hive, Spark) on-prem and HDInsight on Azure, Java Spring, Python, Docker

Eingesetzte Qualifikationen

Apache Hadoop, Big Data, Cloud Computing, Docker, ETL, Java (allg.), Paas

Senior Consultant for Big Data and Data Warehouse Architectures (Festanstellung)
Teradata Consulting, München
9/2011 – 8/2016 (5 Jahre)
IT & Entwicklung
Tätigkeitszeitraum

9/2011 – 8/2016

Tätigkeitsbeschreibung

- Designed multiple solutions with a contract volume between EUR 5-10m for German DAX companies in different industries for big data and data warehouse solutions
- Designed the technical solution and estimated the effort to build it in numerous sales / pre-sales engagements
- Engineered the designed solutions with teams of 5-15 developers (on-/off-/near-shore) and managed them daily as a Tech Lead
- Mentored and coached several junior colleagues
- Primary industry and subject area focus: Automotive (Supply Chain Analytics), Chemicals (Smart Farming Analytics), Travel and Transportation (IoT, Predictive Maintenance, Customer Loyalty)
- Technology focus: Teradata, Hadoop ecosystem (HDFS, Hive, Spark, Kafka, etc.), AWS

Eingesetzte Qualifikationen

Apache Hadoop, Big Data, Data Warehousing, ETL, Solution Architektur, Teradata Sql

Senior Consultant for Data Warehouse and Business Intelligence Solutions (Festanstellung)
Woodmark Consulting, München
6/2009 – 10/2011 (2 Jahre, 5 Monate)
IT & Entwicklung
Tätigkeitszeitraum

6/2009 – 10/2011

Tätigkeitsbeschreibung

- Designed multiple solutions with a contract volume between EUR 1-5m for German DAX companies and medium sized business in different industries for corporate reporting and ETL architectures
- Designed the technical solution and estimated the effort to build it in numerous sales / pre-sales engagements
- Engineered the designed solutions with teams of 10 developers (on-shore) and managed them daily as Tech Lead
- Primary industry and subject area focus: Automotive (After Sales Optimization), Telecoms (Enterprise Data Warehousing), Public Sector (Federal Budget Planning & Controlling)
- Technology focus: SSIS, Talend, ERWin, Oracle IBM Cognos

Eingesetzte Qualifikationen

ETL, Business Intelligence (BI), Data Warehousing

Consultant for Data Warehouse and Business Intelligence Solutions
Siemens IT Solutions and Services, Wien
12/2005 – 5/2009 (3 Jahre, 6 Monate)
IT & Entwicklung
Tätigkeitszeitraum

12/2005 – 5/2009

Tätigkeitsbeschreibung

- Designed and engineered ETL processes for populating data warehouses
- Designed and engineered BI reports
- Engineered the designed solutions with teams of 3-5 developers (on-/off-/near-shore) and managed them daily as Tech Lead
- Primary industry and subject area focus: Public Sector (Federal Budget Planning & Controlling, Data Warehouse), Telecoms (Churn prediction, Call Detail Record (CDR) integration)
- Technology focus: SSIS, ERWin, Teradata, Oracle, SQL Server, IBM Cognos

Eingesetzte Qualifikationen

Business Intelligence (BI), Data Warehousing, ETL

Zertifikate

Microsoft Certified: Azure Solutions Architect Expert (Certification number: I402-5942)
2023
Microsoft Certified: Azure Administrator Associate (Certification number: I612-4240)
2023

Ausbildung

Information Management
Dipl.-Ing. (FH)
2005
Graz

Über mich

I am an experienced IT architect and engineer who has spent his entire professional life designing and delivering IT solutions. My career started in the field of data & analytics in traditional on-premise environments and progressed to enterprise cloud environments in 2017.

I have 9+ years full-time experience in building corporate cloud environments and cloud solutions, covering also cloud governance and security in regulated industries (insurance and pharma industry).

While I enjoy doing the design work for cloud solutions, I am also passionate about actively building them „hands-on“ in DevSecOps teams.

Having worked as IT consultant delivering projects to customers for 11 years as well as having held senior inhouse positions in a global player of the insurance industry for more than 6 years, I offer a solid track record and extensive experience to successfully deliver IT solutions at any scale.

Weitere Kenntnisse

Cloud
- Enterprise cloud architecture – Designing and engineering of enterprise cloud environments incl. Landing Zones in Azure based on Cloud Adoption Framework (CAF) for small to large scale corporations (> 10.000 employees)
- Cloud governance / security – Designing and engineering cloud governance / security frameworks based on CSA CCM/CIS/ISO/NIS2 frameworks using Azure policies, AWS Config Rules, Tenable Cloud Policies and reusable Terraform modules
- Cloud cost management – Designing and engineering cloud cost optimization using right scaling / reserved instances, etc.
- Cloud application solution design – Designing cloud native applications (leveraging PaaS/containerization) in Azure using Microsoft Cloud Adoption Framework
- On-premises application migration to the cloud – Migrating existing IaaS workloads to the cloud and/or rearchitecting the solutions to become cloud native. Replacing on-prem fileshares with cloud based Azure fileshares.
- Infrastructure as code & cloud automation – Designing and engineering idempotent cloud automation using Terraform, Powershell, ARM and Azure Blueprints
- IaaS and PaaS solutions in Azure / AWS – Broad knowledge of Azure and AWS services to design and build cloud native solutions

Data
- Big data / data lake / data warehouse architectures – Designing and engineering data lakes and federated enterprise data warehouse systems using Microsoft Fabric, Azure ML, SQL Server and Terradata
- ETL / data integration – Designing and engineering batch and micro-batch data integration jobs using SQL and ETL tools
- Data modelling – Designing data models based on 3rd normal form, star/snowflake and data vault design principles
- Data quality scorecards – Designing and engineering data quality rules and scorecards to constantly manage and track the state of data quality to improve it
- Relational databases – Developing solutions based on SQL Server and Teradata

Software Engineering
- Agile software development – using Scrum /SAFe Essentials
- CI/CD – Designing and engineering build/release pipelines using GitHub Enterprise, Azure DevOps and GitLab
- Source code management – using Git
- Microservice architectures & containerization – Designing and building dockerized REST based microservices
- Programming languages/frameworks – Terraform, Powershell, ARM, Python, Bash, SQL
- Day-to-day management of engineering teams – Managing engineering teams (on-/near-/offshore) on a daily basis as Tech Lead
- Agentic coding – using GitHub copilot and Cloude code
- Mentoring and coaching – training, mentoring and coaching of junior colleagues/consultants

Persönliche Daten

Sprache
  • Deutsch (Muttersprache)
  • Englisch (Fließend)
Reisebereitschaft
DACH-Region
Arbeitserlaubnis
  • Europäische Union
Home-Office
bevorzugt
Profilaufrufe
910
Alter
44
Berufserfahrung
20 Jahre und 6 Monate (seit 12/2005)
Projektleitung
10 Jahre

Kontaktdaten

Nur registrierte PREMIUM-Mitglieder von freelance.de können Kontaktdaten einsehen.

Jetzt Mitglied werden