# # About Minfy
Minfy Technologies is a cloud-native IT services company helping enterprises across India and global markets build, run, and secure mission-critical workloads across hybrid and multi-cloud environments. Our practice spans cloud infrastructure, platform engineering, managed services, DevOps, data engineering, and cybersecurity, underpinned by our Kavach360 security programme (ISO 27001, SOC 2, and DPDP Act alignment).
## The role
The Hybrid Cloud Platform Architect designs and owns the foundational platform that enterprise workloads run on across on-premises, Azure, and a secondary public cloud. You define the landing zones, hybrid connectivity, identity, governance, and self-service tooling that let engineering teams deliver quickly and safely - and you set the standards for reliability, security, and cost that keep the platform healthy at scale. This is a hands-on architecture role: you build reference implementations and Infrastructure-as-Code, not just diagrams, and you mentor the engineers who extend the platform. Azure is the primary environment; you bring working depth in AWS or GCP to design and operate genuinely hybrid, multi-cloud solutions.
## What you'll do
**Platform foundation and landing zones**
- Design and govern enterprise-scale Azure landing zones using the Cloud Adoption Framework and Well-Architected Framework: management-group hierarchy, subscription topology, guardrails, and policy-as-code (Azure Policy).
- Establish the equivalent foundation in the secondary cloud (AWS Control Tower / Organizations or GCP organisation and folder structure) where workloads span providers.
**Hybrid architecture and connectivity* *
- Architect hybrid connectivity and network topology: hub-spoke / virtual WAN, ExpressRoute and VPN, DNS, and segmentation across data centre and cloud.
- Extend cloud control planes to on-premises and edge using Azure Arc (and Azure Stack / VMware integration where relevant), enabling consistent governance across hybrid estate.
** Identity, security, and governance**
- Design identity and access with Microsoft Entra ID (federation, Conditional Access, PIM/PAM), least-privilege RBAC, Key Vault, and secrets management.
- Embed security and data protection by design - encryption, network controls, and Defender for Cloud - and align the platform with DPDP, ISO 27001, and SOC 2 obligations.
- Run architecture review and approval, guardrails, and the technical standards that ensure consistency and operational excellence.
**Automation and platform engineering**
- Build reusable Infrastructure-as-Code (Terraform and/or Bicep) modules, CI/CD pipelines, and golden paths that give product teams safe, self-service provisioning.
- Architect container and orchestration platforms (AKS, with EKS / GKE in the secondary cloud) and the surrounding supply-chain and policy controls.
**Reliability, observability, and cost**
- Define HA, DR, and backup architectures to agreed RTO/RPO targets, and design observability (Azure Monitor, Log Analytics, and equivalents) for actionable platform health.
- Lead FinOps practice for the platform: right-sizing, commitment-based discounts (Reserved Instances / Savings Plans / committed use), tagging, and cost visibility and accountability.
**Leadership and consulting**
- Act as technical authority across engagements, partnering with client architecture and infrastructure teams to shape platform strategy and roadmaps.
- Mentor platform and cloud engineers, and contribute to presales, solution workshops, and effort estimation.
##What you'll bring
**Required* *
- 10+ years in technology, with 5+ years architecting cloud or hybrid platforms.
- Deep, hands-on Microsoft Azure expertise across networking, identity and security, compute, storage, and HA/DR - at Azure Solutions Architect Expert standard.
- Proven design and ownership of Azure landing zones (CAF), governance with Azure Policy, and Entra ID-based identity and access.
- Strong hybrid experience: ExpressRoute / hybrid networking, Azure Arc, and integration with on-premises or VMware environments.
- Infrastructure-as-Code with Terraform and/or Bicep, plus CI/CD; container orchestration with Kubernetes (AKS).
- Working knowledge of either AWS or GCP sufficient to architect and operate multi-cloud solutions.
- Excellent client-facing communication and the ability to set standards and mentor engineers.
**Preferred**
- Certifications in the secondary cloud (AWS Solutions Architect, GCP Professional Cloud Architect).
- Platform engineering / internal developer platform experience (golden paths, self-service, policy-as-code).
- FinOps certification and experience operating cost governance at scale.
- Observability and SRE practices; experience in a regulated or enterprise delivery environment.
**Certifications (expected)**
- Microsoft Certified: Azure Solutions Architect Expert (required or to be achieved within an agreed timeframe)
- AWS Certified Solutions Architect or Google Professional Cloud Architect (advantageous)
## What success looks like
- Within 90 days: a reference Azure landing zone and IaC baseline adopted on at least one engagement, with review standards in use by the team.
- Within 6-12 months: a repeatable, self-service hybrid platform pattern in production across engagements, measurable cost optimization delivered, and a demonstrable uplift in the engineer's you mentor.
## Why Minfy
You will own the platform foundations that enterprise workloads depend on, with the autonomy of a senior architect, the support of a strong practice, and a clear path to shape how we build hybrid cloud at scale.

