Software Engineer
-
Navi Mumbai, Maharashtra, India
Cloud Engineer Position Summary The Cloud Engineer builds, automates, and operates secure, scalable Azure infrastructure using Terraform and Azure DevOps pipelines. Working within established landing zone and IaC standards, this role implements infrastructure changes, supports cost-efficiency efforts, and helps keep environments compliant, resilient, and well-documented. The Cloud Engineer partners closely with senior engineers on larger design decisions.
What You Will Do - Implement and maintain Azure infrastructure (compute, networking, storage, PaaS) using Terraform and existing reusable IaC modules.
- Execute infrastructure provisioning workflows, including Terraform state operations, environment promotion, and running changes through Azure DevOps pipelines.
- Support cloud FinOps efforts: monitor Azure spend, surface cost-optimization opportunities, and implement approved changes via Terraform.
- Deploy and configure resources within established Azure landing zones, following defined subscription, tagging, RBAC, and policy standards.
- Automate deployment, scaling, and configuration of infrastructure, favoring immutable and self-service patterns.
- Participate in incident response for infrastructure issues, help with root-cause analysis, and codify fixes back into Terraform and pipelines.
Azure platform & landing zones - Provision and manage resources within existing Azure landing zones, adhering to subscription topology, tagging standards, and governance controls.
- Apply Azure RBAC, managed identities, and service principals per least-privilege patterns defined by the platform team.
- Use and extend "golden" Terraform modules for common workloads (e.g., AKS, App Service, Functions, databases).
Cloud FinOps & cost optimization - Monitor Azure cost and usage across resource groups and services using native tools (Cost Management, budgets, alerts, tagging).
- Apply cost allocation and tagging standards so spend is correctly attributed to products, teams, and environments.
- Identify and implement cost-optimization changes (rightsizing, autoscaling, storage lifecycle, idle-resource cleanup) under senior guidance.
- Contribute usage data and findings to cost forecasting and reporting.
IaC and Terraform - Write modular, versioned Terraform code following team standards, with clear documentation and examples.
- Maintain environment segregation (dev/test/stage/prod), remote state, and promotion workflows as defined.
- Run validation, linting, and policy checks on Terraform plans as part of the pipeline.
- Follow practices around drift detection, plan/apply approvals, and change management.
Azure DevOps & pipelines - Build and maintain Azure DevOps pipelines for infrastructure provisioning and updates using Terraform.
- Work within Git branching strategies, approvals, and environments for consistent, auditable deployments.
- Apply automated quality gates: Terraform fmt/validate, security scans, policy-as-code checks, and plan review.
- Manage service connections, variable groups, and secure secrets handling using established templates.
Security, compliance, and governance - Apply security best practices in Terraform: encryption, key management, private networking, logging, and monitoring by default.
- Use Azure Policy and policy-as-code to enforce configuration, tagging, allowed SKUs, and region constraints.
- Support periodic reviews of infrastructure and IaC, and remediate findings via code.
Collaboration - Collaborate with senior engineers, SRE/DevOps, and product teams on infrastructure delivery.
- Participate in design reviews and technical discussions on automation and cost initiatives.
- Contribute to code and pipeline reviews to maintain quality standards.
To Be Successful You Will Have - 3-5 years in cloud engineering/DevOps with hands-on Azure experience.
- Solid working experience with Terraform for Azure: module usage, remote state, and day-to-day lifecycle management.
- Hands-on experience with Azure DevOps (or equivalent) building and running infrastructure pipelines.
- Familiarity with Azure landing zone concepts: subscriptions, governance, RBAC, networking, and policy.
- Proficient in scripting (PowerShell, Bash, or Python) for automation and tooling.
- Working understanding of cloud security, compliance, and cost-management practices.
Preferred / "nice to have" - Exposure to Kubernetes/AKS on Azure.
- Familiarity with other CI/CD platforms (GitHub Actions, Jenkins, etc.).
- Experience with Azure Cost Management or FinOps practices.
- Azure certifications (e.g., AZ-104 / AZ-400) or working toward them.
In Return You Can Expect: - Leadership role within a fast-paced, security-conscious global organization
- Competitive compensation and performance-based incentives
- Comprehensive health, dental, and vision benefits; HSA-eligible options
- 401k with company match
- Access to industry-leading tools, threat intelligence, and professional development
- A collaborative environment committed to cybersecurity excellence
Lionbridge partners with brands to break barriers and build bridges all over the world. For over 25 years, we have helped companies connect with their global customers and employees by delivering translation and localization solutions in 350+ languages. Through our world-class platform, we orchestrate a network of passionate experts across the globe who partner with brands to create culturally rich experiences. Relentless in our love of linguistics, we use the best of human and machine intelligence to forge understanding that resonates with our customers' clients. Based in Waltham, Massachusetts, Lionbridge maintains solution centers in 24 countries. Learn more at www.lionbridge.com .