Azure IoT Cloud Infrastructure Specialist Job at Astreya, Redmond, WA

aFJXQjM5dnd2dENJSnpUMzM3NlM2M2x2
  • Astreya
  • Redmond, WA

Job Description

Azure IoT Cloud Infrastructure Specialist

Role Summary

Serve as a technical advisor and subject matter expert for global smart‑building portfolio, with a focus on secure IoT/OT networking, Azure integration, identity/SSO, and operational resilience. You will not implement changes directly; instead, you will triage issues, guide architecture and security decisions, lead risk‑mitigation strategies, and equip internal teams and partners through documentation, training, and governance.

Key Responsibilities

IoT/OT Network & Security Advisory

  • Technical triage: Rapidly assess questions or incidents to distinguish network vs. device vs. cloud causes; recommend next steps and owners.
  • Advise on segmentation, encryption, and firewall policies for IoT/OT environments; define guardrails that balance safety, availability, and security.
  • Design secure dataflow patterns (edge → gateways → cloud) and certificate/credential handling approaches appropriate for constrained OT devices.
  • Produce risk assessments and mitigation plans for new integrations, vendor connections, and inter‑site traffic; track risks to closure.

Azure Platform & Enterprise Integration (Advisory)

  • Guide solution patterns across Azure IoT Hub, Device Provisioning Service (DPS), IoT Edge, Azure Digital Twins, and related telemetry/analytics services.
  • Advise on identity and SSO using Microsoft Entra ID (Azure AD) and modern auth flows; define least‑privilege controls and conditional access guardrails.
  • Define secure onboarding and offboarding patterns for devices and applications; recommend resilience/failover and rollback strategies.

Smart Building Systems Oversight

  • Provide technical insight into BAS/BMS, Environmental, People Density, occupancy, parking, digital signage and other Commercial & Industrial IoT systems and their integration with Azure IoT platforms.
  • Validate data integrity and performance through telemetry reviews, dashboards, and controlled tests; recommend tuning, buffering, and retry patterns.
  • Deliver stakeholder presentations that explain how building systems map to network and cloud architectures, highlighting operational and security implications.

Troubleshooting, Triage & Escalation

  • Act as a Tier‑3 escalation point for complex IoT/OT connectivity and platform issues; perform deep diagnostics (logs, packet captures, edge/cloud traces).
  • Lead root cause analysis (RCA) and write clear post‑incident reports with preventive actions, ownership, and timelines.
  • Run knowledge‑transfer sessions and post‑incident reviews to build field/vendor capabilities and reduce repeat occurrences.

Lifecycle & Preventative Maintenance

  • Support lifecycle planning for firmware, certificates/keys, controller upgrades, and network segmentation milestones.
  • Partner with field teams and vendors to align preventative maintenance with uptime/SLA and security objectives; recommend proactive risk‑reduction actions.

Standards, Training & Documentation

  • Define onboarding requirements for IoT/OT solutions (compliance checks, service mapping, ops readiness).
  • Own and maintain KBAs, runbooks, RACIs, workflows, and architecture patterns; ensure global applicability and version control.
  • Create and deliver training modules and technical presentations for networking, operations, and app teams, measure adoption.

Global Project Support & Governance

  • Contribute to project scope, risk identification, acceptance criteria, and Key Performance Indicator (KPI) Objective and Key Results (OKR) definitions for global rollouts.
  • Facilitate risk workshops and status readouts; provide executive‑level presentations on readiness, risk posture, and remediation progress.
  • Coordinate across security, networking, facilities, and vendor teams to maintain alignment and accountability.

Onsite Technical Liaison (Hybrid)

  • Attend onsite tests, commissioning events, device reviews, and vendor alignment meetings; provide real‑time triage and decision support.
  • Capture onsite findings and convert them into updated standards, patterns, and training content.

Qualifications

  • IoT/OT networking, firewalls, and encryption: Strong grasp of routing, segmentation, VPNs/proxies, TLS/PKI, and secure edge‑to‑cloud patterns.
  • Azure IoT expertise: Practical advisory experience across IoT Hub, DPS, IoT Edge, Azure Digital Twins, and telemetry/analytics pipelines.
  • Identity & SSO: Hands‑on advisory experience with Microsoft Entra ID (Azure AD), modern auth (OIDC/SAML/OAuth2), and least‑privilege access patterns.
  • Troubleshooting & RCA: Demonstrated ability to lead deep diagnostics and produce clear, actionable RCAs with preventive controls.
  • Smart building Information Gathering systems: Working knowledge Environmental, People Density, Parking and other various experiences.
  • Risk mitigation & governance: Ability to produce risk registers, mitigation plans, acceptance criteria, and track to closure.
  • Enablement skills: Excellent documentation, training, and presentation skills; ability to influence global stakeholders in a hybrid environment.

Job Tags

Similar Jobs

MedQuest Associates LLC

Mammography Technologist, NEW Bluffton Imaging Center Job at MedQuest Associates LLC

Overview: Mammography Technologist NEW Outpatient Imaging Center Opening in Bluffton, SC (Near Hilton Head Island) Start Date: March/April 2026 Schedule: Full-Time (8:00 AM4:30 PM, MondayFriday) with flexible scheduling and potential weekend/evening coverage... 

AppleOne Employment Services

Payroll Administrator Job at AppleOne Employment Services

 ...Job Title: On-Site Admin / Davis Bacon Payroll Administrator Job Type: Contract (Approximately 20 months) Location: 100% onsite - North Port, FL - will be working in trailer at construction site Salary Range: $45,000 $65,000 annually (based on experience) Start... 

Fairmont Pittsburgh

Hotel Manager Job at Fairmont Pittsburgh

 ...Hotel Manager Pittsburgh, PA, USA Full-time Job-Category: Executive & Hotel Management Job Type: Permanent Job Schedule: Full...  ...& Beverage initiatives Assume the responsibilities of the General Manager in his/her absence Qualifications Your Skills... 

FANBASIS

Personal Assistant Job at FANBASIS

Personal Assistant Location :Miami, FL (In-person FanBasis HQ) Type: Full-time Reports to : CEO and CPO About FanBasis FanBasis is a platform that empowers entrepreneurs, experts, and creators to sell, host, and scale digital product/service businesses...

DeepKutz Records

Music Production & Engineering Intern Job at DeepKutz Records

 ...placing high-quality tracks in film, TV, and advertising. Role Description This is a remote internship role for a Production Intern who lives and breathes Ableton. Your primary goal will be ensuring our catalog is "Sync Ready"meeting the high technical standards...