Xebia is a global AI-first, digital transformation, and engineering partner. With over 25 years of experience and a team of 5,000 professionals across 16 countries, we help organizations design and build scalable products, platforms, and data-driven solutions.
We specialize in Artificial Intelligence, Data and Cloud, Intelligent Automation, and Digital Products, combining deep technical expertise with a strong focus on engineering excellence and a people-first culture.
In the CEE region, we’re a team of nearly 1,000 experts delivering modern applications, data platforms, and AI solutions for clients such as Millennium, ING, Play, Edenred, Arabian Drilling, FedEx, Leroy Merlin, Truecaller, Volotea, Schmitz Cargobull, and many, many more.
You will be:
- designing, implementing, and operating secure and scalable Azure platform capabilities,
- designing and implementing Azure Landing Zones, including Platform and Application Landing Zones,
- leading Azure networking, including VNets, peering, Virtual WAN, ExpressRoute, NSGs, Azure Firewall, and Application Gateway,
- collaborating with Network Engineering on routing, segmentation, and hybrid connectivity,
- owning Azure security and governance, including Microsoft Entra ID, Azure Policy, Microsoft Defender for Cloud, and Azure Key Vault,
- building and managing infrastructure using Terraform and Infrastructure as Code,
- designing and maintaining CI/CD and GitOps processes for infrastructure, automation, and observability,
- building developer-facing platform capabilities, reusable templates, and self-service solutions,
- applying the Azure Well-Architected Framework and Generative AI tools to platform design, automation, diagnostics, and continuous improvement,
- collaborating with technical teams, mentoring engineers, and supporting the adoption of platform engineering practices.
Your profile:
- 7+ years of experience in cloud infrastructure, cloud networking, and platform engineering, with demonstrable Azure delivery at scale,
- hands-on experience designing and implementing Azure Landing Zones, including Platform Landing Zone and Application Landing Zone concepts,
- strong hands-on experience leading Azure networking, including VNets, peering, Virtual WAN, ExpressRoute, NSGs, Azure Firewall, and Application Gateway, with experience collaborating with Network Engineering on routing, segmentation, and hybrid connectivity,
- strong working knowledge and ownership of Azure security tooling, including Microsoft Entra ID, Azure Policy, Microsoft Defender for Cloud, and Azure Key Vault,
- deep hands-on experience with Terraform, including module design and state management; knowledge of ARM/Bicep is a plus,
- experience with infrastructure CI/CD and GitOps, automation, scripting, and Azure observability,
- experience building developer-facing platforms, reusable templates, onboarding flows, or self-service capabilities,
- strong understanding of the Azure Well-Architected Framework and its application across security, reliability, cost optimization, operational excellence, and performance efficiency,
- strong ownership, communication, and collaboration skills, with the ability to influence across technical teams and mentor others,
- experience working in Agile environments and across Windows and Linux,
- practical experience applying Generative AI tools to development, diagnostics, automation, or infrastructure tasks,
- good command of English (min. B2).
Work from the European Union region and a work permit are required.
Nice to have:
- experience applying GenAI in a more structured way within the SDLC, including defined workflows, prompt patterns, or tool integrations embedded into daily work,
- iInterest in and familiarity with emerging AI-driven practices (e.g. agent-based workflows, automation patterns, AI-augmented development), with a willingness to explore and experiment beyond standard approaches.
Recruitment Process:
CV review – HR call – Technical Interview – Client Interview – Decision