int(13253)
Hyderabad, India

Cloud Platform Architect

Our client is a is a global SaaS provider of investment research publishing and distribution technology used by financial institutions. The company serves investment banks, asset managers and financial services firms worldwide. Technology team is building an enterprise-scale AWS platform supporting global customers across eight AWS regions. The environment includes multi-account AWS Control Tower architecture with Infrastructure-as-Code, cloud migration from on-premises infrastructure and modern DevOps practices.

 

Location: Hyderabad / Remote

 

Experience Range: 12+ Years

 

Key skills: Cloud Architect, AWS, Terraform, Terragrunt, Ansible, Linux, Database Cluster, AWS Landing Zone, Control Tower, Custom Automation, PCI, ISO Compliant, IAM, VPN Architect, Secrets Management, Transit Gateway, Cloud WAN, IPAM, VPC pattern, Enterprise identity architecture, Terraform architecture, Security and compliance architecture, Multi-tenant SaaS architecture, CI/CD, GitHub Enterprise, GitHub Actions.

 

MANDATE: CANDIDATE MUST BE CURRENTLY WORKING IN A BFSI ORGANIZATION.

 

SHARE YOUR UPDATED CV WITH JOB REFERENCE NUMBER – JOB 16741 TO radhika@theedgepartnership.com

 

By submitting your application, you acknowledge that your personal information may be processed using secure recruitment technologies, including AI-assisted tools, for recruitment, assessment, interview documentation, candidate representation, and related business purposes. Further information is available in our Privacy Policy.

 

Please note that due to the high number of applications only shortlisted candidates will be contacted. If you do not hear from us in the next 5 business days, we regret to inform you that your application for this position was unsuccessful.

Apply for this Job

Key responsibilities

  • Design and implement multi-region AWS infrastructure, leveraging Control Tower, custom OU structures, and network segmentation.
  • Architect and build AWS Landing Zones to support multiple entities and workload isolation.
  • Build and manage reusable Terraform and Terragrunt modules to streamline IaC provisioning.
  • Lead the migration of legacy systems (Cassandra, MySQL, RabbitMQ, Airflow, Tomcat) from on-prem to AWS.
  • Guide the design of CI/CD pipelines integrating GitLab, Github and GoCD for application and infrastructure deployments.
  • Enforce security-by-design principles, including IAM hardening, traffic segregation, and logging.
  • Support Linux system architecture and design highly available database clusters.
  • Define and implement best practices to meet PCI DSS, ISO 27001, and internal security policies.
  • Collaborate with cross-functional teams to support operational excellence and compliance goals.

Role requirements

Strong technical skills in:

  • 15+ years of experience in cloud architecture with deep AWS knowledge.
  • Proven experience building multi-region, highly available architectures in AWS.
  • Expertise in Terraform, Terragrunt, and Ansible at scale.
  • Strong Linux systems background and familiarity with database clustering (e.g., MySQL, Cassandra).
  • Experience building AWS Landing Zones using Control Tower or custom automation.
  • Hands-on experience designing PCI and ISO compliant environments.
  • Proficient in secure networking, IAM, VPN architecture, and secrets management.
  • Experience with regulated domains (e.g., FinTech, healthcare) is strongly preferred.
  • Deep AWS networking architecture: Transit Gateway and/or Cloud WAN, IPAM, shared VPC patterns, centralized egress, hybrid connectivity to on-prem.
  • Enterprise identity architecture: IAM Identity Center / SSO federation with Entra ID or Okta, permission-set design, ABAC/RBAC models.
  • Strong Terraform architecture skills: module library design, state strategy, multi-account pipelines (Terragrunt strongly preferred).
  • Datacenter-to-cloud migration experience: migration wave planning, rehost/replatform decisions, coexistence architectures where on-prem and cloud run side by side.
  • Security and compliance architecture in regulated environments (ISO 27001, SOC 2, or financial-services equivalents).
  • Excellent written and verbal communication – ADRs, architecture diagrams, and executive-level narratives.
  • M&A technology integration: consolidating acquired companies’ cloud estates, Git providers, CI systems, or identity stacks.
  • Multi-tenant SaaS architecture: per-customer account isolation, tenant provisioning automation, noisy-neighbor and blast-radius design.
  • CI/CD platform architecture on GitHub Enterprise / GitHub Actions (OIDC to AWS, reusable workflows, org-level governance).
  • Config management architecture (Ansible) bridging heterogeneous estates.
  • Container platform architecture (EKS) and legacy Java/Tomcat-era application estates.
  • FinOps / cloud cost architecture at multi-account scale.
  • Experience designing for or with AI-assisted / agentic engineering workflows.
  • AWS Solutions Architect Professional or equivalent depth.