All remote jobs
Open role
Remote opportunity atGT

Azure DevOps Engineer | KD Pharma

Review the role, location requirements, compensation details, and application process before deciding whether this opportunity fits your next career move.

Published
16Listing views
0Application actions
30 Sep 2026Apply before
Opportunity details

About this role.

AI Summary

This contract Azure DevOps Engineer will assess and improve KD Pharma's Azure and hybrid infrastructure during an initial six-week discovery engagement. The role owns key infrastructure concerns including networking, identity, security, monitoring, resilience, backup, recovery, and infrastructure automation. It requires hands-on work across Azure, Entra ID, Active Directory, Windows Server, virtualisation, and Bicep or Terraform in a partly undocumented legacy environment. The engineer will partner closely with a Solution Architect, Senior Data Engineer, and client stakeholders to define target architecture, proof-of-concept scope, estimates, and an implementation roadmap. Successful discovery work may lead to a broader platform-modernisation and ongoing infrastructure-support engagement.

Role DNA

A quick view of the complexity, pace, ownership and collaboration implied by the job description.

Job Complexity

5/5
EasyHard

Pace & Pressure

4/5
RelaxedFast-paced

Autonomy Level

5/5
GuidedFull ownership

Communication Load

5/5
IndependentCollaborative
AI insightThis is a senior-level discovery role requiring broad Azure and hybrid-infrastructure expertise, including legacy systems, security, networking, and operational resilience. The engineer must independently assess a low-maturity environment, make architecture recommendations, and communicate practical trade-offs to varied stakeholders.

Salary analysis

Estimated compensation compared with the broader US market for similar roles.

Estimated job medianMarket rate
$145,000
US market range$120k–$175k
AI insightNo actual compensation is disclosed. These are estimated annual USD base-salary market figures for a US-based senior Azure DevOps/Infrastructure Engineer with hybrid-cloud, security, networking, and IaC responsibilities; contract engagements may instead be priced using an hourly or daily rate and can vary materially by scope.

Core skills

Skills and capabilities most closely associated with this opportunity.

Sample interview questions
How would you approach the first two weeks of a discovery engagement for an undocumented Azure and hybrid environment?

I would establish an asset and dependency inventory covering subscriptions, networks, identity, workloads, on-premises connectivity, monitoring, backup, and operational ownership. I would validate the inventory through stakeholder interviews and configuration review, identify immediate security or resilience risks, and produce a prioritized findings register with assumptions, evidence, and recommended next steps.

How would you design secure connectivity between on-premises systems and Azure for a modern data platform?

I would begin with workload flows, latency, availability, and segmentation requirements. A typical design may use redundant site-to-site VPN or ExpressRoute where justified, hub-and-spoke or Virtual WAN connectivity, controlled routing, Azure Firewall policies, private endpoints, DNS integration, and least-privilege network security rules. The final design should include monitoring, documented failover behavior, and operational ownership.

Describe how you would improve identity and privileged access across Entra ID and on-premises Active Directory.

I would review identity synchronization, conditional access, MFA coverage, privileged roles, service accounts, break-glass accounts, and access-review processes. I would recommend least-privilege RBAC, privileged identity management where appropriate, managed identities for Azure workloads, secure secrets storage in Key Vault, and a phased remediation plan that minimizes disruption to legacy dependencies.

What is your approach to introducing Terraform or Bicep into a less mature infrastructure environment?

I would avoid attempting to codify everything immediately. I would first define standards for repositories, modules, naming, tagging, state management, peer review, and environment promotion, then start with a bounded proof of concept such as a new landing-zone component or monitoring configuration. CI/CD validation, policy checks, drift awareness, and clear documentation would be introduced incrementally alongside stakeholder training.

How would you assess and strengthen backup, recovery, and disaster-recovery capabilities for hybrid infrastructure?

I would identify critical services, recovery point and recovery time objectives, backup coverage, retention, immutability, restore permissions, and dependency order across Azure and on-premises systems. I would test representative restores rather than relying solely on backup success reports, document recovery runbooks, identify single points of failure, and prioritize remediation for systems that cannot meet agreed recovery objectives.

This analysis is generated from the job description. Salary estimates, role characteristics and sample answers are guidance, not employer-provided facts.

GT was founded in 2019 by a former Apple, Nest, and Google executive. GT’s mission is to connect the world’s best talent with product careers offered by high-growth companies in the UK, USA, Canada, Germany, and the Netherlands.

On behalf of KD Pharma, GT is looking for an experienced Azure DevOps Engineer to support the infrastructure, security and operational design of a modern Microsoft-based data platform and the wider Azure environment.

**Expected Involvement: The engagement is expected to begin with a 6-week Discovery phase, with approximately 45–60 hours of involvement in total. Following successful completion of Discovery and client approval, there is potential to transition into a larger and potentially full-time implementation engagement, with further opportunities around Azure platform improvement and ongoing infrastructure support.

About the Client

Founded in 1988, KD Pharma is a technology-driven CDMO (Contract Development & Manufacturing Organization) specializing in pharmaceutical and nutraceutical production, including ultra-pure Omega-3 concentrates.

The company operates internationally, with locations across Germany, Norway, the UK, the USA, Canada and Peru, and provides end-to-end solutions from development and custom synthesis through to finished dosage forms.

About the Project

KD Pharma is modernising its data and reporting environment and defining a more scalable, maintainable Microsoft-based platform.

The wider technology landscape spans Azure and on-premises infrastructure across multiple international locations, with a mix of modern and legacy business systems including Business Central, NAV, SQL-based applications and reporting solutions. Parts of the environment remain highly manual, with limited documentation, monitoring and infrastructure automation.

The initial 6-week Discovery Phase will focus on understanding the current environment and defining the target architecture and implementation approach.

From an Azure and infrastructure perspective, the team will:

  • Review the existing Azure and hybrid infrastructure, networking and security setup

  • Identify infrastructure, monitoring, resilience and operational gaps

  • Define the target Azure infrastructure, identity and security approach

  • Define appropriate IaC, automation and deployment practices

  • Contribute to PoC design, implementation estimates and the wider technical roadmap

If Discovery is successful and the client approves the next stage, the project is expected to move into a longer-term implementation phase, starting with the agreed PoC and expanding into broader platform and infrastructure improvements.

About the Role

This is a hands-on Azure DevOps Engineer role with architecture exposure.

You will work closely with the Solution Architect, Senior Data Engineer and client stakeholders, taking primary responsibility for the Azure infrastructure, networking, identity, security and operational aspects of the proposed platform.

The role requires someone comfortable working in a lean environment, assessing an existing setup with limited documentation, making practical technical recommendations and then helping implement the agreed solutions.

Responsibilities

  • Review the current Azure and hybrid infrastructure and contribute to target architecture, PoC scope, implementation planning and estimates

  • Design, manage and improve Azure and hybrid infrastructure in line with business and technical requirements

  • Support cloud and hybrid networking, including site-to-site VPN, Azure Virtual WAN / hub-and-spoke architectures, Azure Firewall, Bastion and VNet connectivity

  • Support identity and access management across Entra ID and on-premises Active Directory

  • Contribute to cloud and infrastructure security, including credential and secrets-management practices

  • Improve infrastructure reliability, monitoring and alerting, building on existing Defender and Sentinel tooling

  • Review and strengthen backup, recovery and disaster-recovery practices across Azure and on-premises infrastructure

  • Build and improve infrastructure automation, CI/CD and Infrastructure as Code practices using Bicep and/or Terraform

  • Support legacy Windows Server, SQL Server and on-premises virtualisation environments while contributing to modernisation and migration planning

  • Contribute to cloud architecture, Azure governance, platform standards and technical documentation

  • Collaborate with technical and business stakeholders throughout Discovery and implementation

Essential knowledge, skills & experience

  • 5+ years of experience in cloud, infrastructure or platform engineering

  • Strong hands-on experience with Microsoft Azure and production cloud infrastructure

  • Strong experience with Azure and hybrid networking, including site-to-site VPN, Virtual WAN / hub-and-spoke architectures, Azure Firewall and Bastion

  • Hands-on experience with Entra ID, on-premises Active Directory and hybrid identity/access management

  • Strong understanding of cloud and infrastructure security principles

  • Experience troubleshooting complex cloud and hybrid infrastructure issues

  • Strong understanding of cloud architecture and solution-design principles

  • Hands-on Infrastructure as Code experience with Bicep and/or Terraform

  • Experience with infrastructure automation and CI/CD, ideally including introducing these practices into less mature environments

  • Experience with monitoring, alerting, reliability, backup and recovery across hybrid infrastructure

  • Experience with Windows Server and on-premises virtualisation platforms such as VMware, Hyper-V or similar; experience with legacy infrastructure is highly relevant

  • Ability to assess existing environments, identify technical gaps and translate findings into practical solutions

  • Ability to work independently in environments with limited documentation or established processes

  • Strong English and confidence communicating with technical and non-technical stakeholders

Nice-to-have

  • Azure architecture or security certifications

  • SRE experience

  • Experience supporting Azure-based data platforms or working closely with data engineering teams

  • SQL Server administration or migration experience, including Azure SQL Managed Instance

  • Experience with legacy ERP infrastructure or ERP modernisation programmes

  • Experience working in pharmaceutical, manufacturing or other regulated environments

  • Familiarity with infrastructure compliance requirements such as GDPR, GxP or SOC 2

  • Experience designing Azure management-group / subscription-governance models

  • Multi-cloud experience, particularly GCP

Interview Steps

  1. GT interview with Recruiter

  2. Technical interview

  3. Final interview

  4. Offer

Apply now >

This job listing has been manually reviewed by the Jobicy Trust & Safety Team for compliance with our posting guidelines, including verification of the company's legitimacy, accuracy of job details, clarity of remote work policy, and absence of misleading or fraudulent content.

Next step

Apply now.

Follow the employer’s application method and review Jobicy’s safety guidance before sharing personal information.

Did you apply?Let us know, and we’ll help you track your application.

Continue on the employer website

Protect your personal information and never pay to secure an interview or job offer. View safety guidance.

Log in to save
One quick step before you apply

Create your free account, then apply.

Build a more organized job search on Jobicy and continue to the employer's application when you're ready.

  • Never lose a promising opportunitySave roles and return to them from your dashboard.
  • See your entire search at a glanceTrack applications, stages and next steps in one place.
  • Get matched with relevant remote jobsChoose the alerts and digests that work for you.
Applying is free. The employer's application opens in a new tab.
Add alert
Jobs Talent AI Tools Salaries
Menu