.
IT Infrastructure Engineer (Azure Focus)
  • Bolesławiec
IT Infrastructure Engineer (Azure Focus)
Bolesławiec, Bolesławiec, Lower Silesian Voivodeship, Polska
Zehnder Group Bolesławiec Sp. z o.o.
14. 2. 2026
Informacje o stanowisku

technologies-expected :


  • Azure SQL
  • Azure DevOps
  • Azure Cosmos DB

about-project :


  • This role is dedicated to the administration, engineering, and continuous development of Zehnder’s Azure environment at enterprise scale. The position focuses on Azure governance and platform management, networking and connectivity, hybrid identity and security, cloud operations, monitoring, automation, and cost optimization.
  • The Azure platform is deeply integrated with on-premises infrastructure and hybrid services. Therefore, a strong background in traditional IT infrastructure (server platforms, virtualization, hybrid architectures) is essential.
  • This is a hands-on, mid-to-senior technical role requiring a minimum of 5 years of experience in IT infrastructure, with proven responsibility for operating and improving complex Azure environments

responsibilities :


  • Azure Platform Administration:
  • Operate and manage Azure subscriptions, resource groups, and core platform services in a multi-subscription, enterprise-scale environment.
  • Design, implement and maintain Azure governance frameworks including management groups, RBAC, Azure Policies, tagging standards, compliance tracking.
  • Develop, maintain and evolve Azure Landing Zone components aligned with enterprise and security requirements.
  • Manage Azure networking including VNets, NSGs, routing, VPN gateways, ExpressRoute/VPN hybrid connectivity, private endpoints.
  • Maintain high operational hygiene across the Azure platform: monitoring, alerting, baselines, lifecycle management.
  • Infrastructure as Code & Automation:
  • Design, deploy, and maintain Azure infrastructure using Infrastructure as Code (IaC) principles.
  • Implement and operate IaC solutions using Terraform and/or Bicep (ARM templates).
  • Ensure repeatable, version-controlled, and secure deployments across environments.
  • Support integration of IaC with CI/CD pipelines and operational workflows.
  • Use PowerShell and automation tools to reduce manual effort and improve reliability.
  • Hybrid Identity & Cloud Security:
  • Manage and maintain Entra ID (Azure AD) tenant configurations relevant to infrastructure and security.
  • Support and operate the hybrid identity environment, including Azure AD Connect and synchronization health.
  • Implement and maintain Conditional Access policies, MFA, identity security baselines, and access governance controls.
  • Operate and support Azure Privileged Identity Management (PIM) for administrative access.
  • Configure and maintain Microsoft Defender for Cloud and related security controls, in collaboration with the Security team.
  • Apply Zero Trust principles and security-by-design practices across Azure services and integrations.
  • Cloud Operations, Monitoring & Resilience:
  • Design and operate Azure monitoring and logging using Azure Monitor, Log Analytics, and related services.
  • Ensure visibility, alerting, and operational readiness for Azure workloads and platform services.
  • Integrate Azure logs and signals with centralized monitoring and SIEM/SOC solutions where applicable.
  • Proactively improve platform availability, resilience, and operational stability.
  • Support incident analysis, troubleshooting, and post-incident improvement activities related to Azure services.
  • Cost Management & Optimization (FinOps):
  • Actively manage and optimize Azure costs using Azure Cost Management, budgets, alerts, and usage analysis.
  • Identify cost optimization opportunities through architectural improvements, right-sizing, and lifecycle management.
  • Promote cost transparency and accountability across Azure subscriptions and services.
  • Balance technical design, security, and performance with cost efficiency.
  • Collaboration, Support & Documentation:
  • Provide 2nd / 3rd-level support for Azure-related topics.
  • Maintain clear documentation, diagrams, standards, and operational procedures for the Azure platform.
  • Collaborate closely with workplace, networking, and security teams.

requirements-expected :


  • Minimum 5 years of experience in IT infrastructure roles, including hands-on Azure administration.
  • Proven experience operating complex, enterprise-scale Azure environments (multi-subscription, hybrid).
  • Strong hands-on experience with Azure governance, networking, monitoring, and identity services.
  • Solid experience with Infrastructure as Code using Terraform and/or Bicep (ARM templates).
  • Strong understanding of hybrid identity (Entra ID / Azure AD, Azure AD Connect).
  • Hands-on experience with Azure security controls, including Defender for Cloud, PIM, Conditional Access, and MFA.
  • Practical experience with PowerShell and automation in Azure environments.
  • Background in Windows Server and/or Linux server administration and virtualization (Hyper-V, VMware).
  • Understanding of cloud security principles, Zero Trust concepts, and enterprise governance models.
  • Strong English communication skills, written and spoken.
  • Preferred certifications: Azure Administrator (AZ104), Azure Security Engineer (AZ500), Windows Server Hybrid Administrator, Terraform Associate or equivalent cloud infrastructure certifications.

offered :


  • Competetive salary structure;
  • Development opportunities and real impact on the job;
  • Small teams of experts, eager to share knowledge
  • Package of benefits:

benefits :


  • sharing the costs of sports activities
  • private medical care
  • sharing the costs of professional training & courses
  • flexible working time
  • fruits
  • corporate products and services at discounted prices
  • holiday funds
  • christmas gifts

  • Praca Bolesławiec
  • Bolesławiec - Oferty pracy w okolicznych lokalizacjach


    114 272
    18 394