CareerAddict

473965 - Senior Azure Consultant

Experis IT

Posted on Jun 4, 2026 by Experis IT
Bristol, Somerset, United Kingdom
IT
Immediate Start
Annual Salary
Contract/Project

This senior role is responsible for leading the end-to-end design and delivery of the migration of existing FortiGate virtual Firewalls to Azure Firewall across multiple global Azure regions. The Senior Azure Consultant acts as technical design authority, owning the target-state architecture, security and routing patterns, policy governance model, and migration approach. The role will lead discovery, rule and routing translation, Infrastructure-as-Code delivery, cutover/rollback execution, and operational handover ensuring alignment with security governance, SOC/logging requirements, and dependent services such as Azure Virtual WAN, ExpressRoute, Zscaler, Azure Front Door, and Application Gateway.

Key responsibilities:

  • Own technical discovery and solution definition: inventory current FortiGate policies, NAT, routing (UDRs/BGP), traffic flows and dependencies per region; drive requirements workshops and obtain design sign-off.
  • Act as design authority for the target Azure Firewall architecture using Azure Virtual WAN hub/spoke (regional hubs), including cross-region inspection patterns and north-south/east-west segmentation.
  • Define and implement a global base Firewall policy and regional child policies, including governance model, recertification approach, and rule life cycle.
  • Lead translation and rationalisation of FortiGate rules (network, application, DNAT/SNAT, Proxy requirements) into Azure Firewall Policy, managing feature gaps (eg, TLS inspection, threat profiles) through agreed compensating controls.
  • Own routing design and change execution (UDRs, vWAN routing, BGP/ExpressRoute considerations) to steer traffic through regional Firewalls with minimal disruption.
  • Lead public IP planning, SNAT port capacity analysis, and SKU sizing (Standard vs Premium) based on throughput, connection counts, and inspection requirements.
  • Define logging, monitoring, and SOC integration with Log Analytics and Microsoft Sentinel, including retention, alerting, and operational dashboards aligned to incident response requirements.
  • Lead integration design and validation with Zscaler (eg, cloud connectors), Azure Front Door, and Application Gateway, including defined bypass vs inspection flows.
  • Deliver and govern Infrastructure-as-Code (Terraform preferred): reusable modules, environment promotion, and Git-based change control; ensure changes are auditable and repeatable across regions.
  • Develop and drive the migration strategy and runbooks per region, including sequencing, maintenance windows, validation plans, and clearly defined success/fail and rollback criteria.
  • Lead migration execution and hypercare, coordinating application testing/validation and troubleshooting across teams and time zones.
  • Mentor engineers and lead knowledge transfer; produce high-quality documentation (architecture, policy model, operations procedures) and support the transition to BAU operations.
  • Design target Azure Firewall architecture using Azure Virtual WAN hub/spoke (regional hubs), including cross-region inspection patterns and north-south/east-west segmentation.
  • Define and implement a global base Firewall policy and regional child policies, including governance model and rule life cycle.

If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.


Reference: 3117874686

https://jobs.careeraddict.com/post/113352903
Experis IT

473965 - Senior Azure Consultant

Experis IT

Posted on Jun 4, 2026 by Experis IT

Print
Bristol, Somerset, United Kingdom
IT
Immediate Start
Annual Salary
Contract/Project

This senior role is responsible for leading the end-to-end design and delivery of the migration of existing FortiGate virtual Firewalls to Azure Firewall across multiple global Azure regions. The Senior Azure Consultant acts as technical design authority, owning the target-state architecture, security and routing patterns, policy governance model, and migration approach. The role will lead discovery, rule and routing translation, Infrastructure-as-Code delivery, cutover/rollback execution, and operational handover ensuring alignment with security governance, SOC/logging requirements, and dependent services such as Azure Virtual WAN, ExpressRoute, Zscaler, Azure Front Door, and Application Gateway.

Key responsibilities:

  • Own technical discovery and solution definition: inventory current FortiGate policies, NAT, routing (UDRs/BGP), traffic flows and dependencies per region; drive requirements workshops and obtain design sign-off.
  • Act as design authority for the target Azure Firewall architecture using Azure Virtual WAN hub/spoke (regional hubs), including cross-region inspection patterns and north-south/east-west segmentation.
  • Define and implement a global base Firewall policy and regional child policies, including governance model, recertification approach, and rule life cycle.
  • Lead translation and rationalisation of FortiGate rules (network, application, DNAT/SNAT, Proxy requirements) into Azure Firewall Policy, managing feature gaps (eg, TLS inspection, threat profiles) through agreed compensating controls.
  • Own routing design and change execution (UDRs, vWAN routing, BGP/ExpressRoute considerations) to steer traffic through regional Firewalls with minimal disruption.
  • Lead public IP planning, SNAT port capacity analysis, and SKU sizing (Standard vs Premium) based on throughput, connection counts, and inspection requirements.
  • Define logging, monitoring, and SOC integration with Log Analytics and Microsoft Sentinel, including retention, alerting, and operational dashboards aligned to incident response requirements.
  • Lead integration design and validation with Zscaler (eg, cloud connectors), Azure Front Door, and Application Gateway, including defined bypass vs inspection flows.
  • Deliver and govern Infrastructure-as-Code (Terraform preferred): reusable modules, environment promotion, and Git-based change control; ensure changes are auditable and repeatable across regions.
  • Develop and drive the migration strategy and runbooks per region, including sequencing, maintenance windows, validation plans, and clearly defined success/fail and rollback criteria.
  • Lead migration execution and hypercare, coordinating application testing/validation and troubleshooting across teams and time zones.
  • Mentor engineers and lead knowledge transfer; produce high-quality documentation (architecture, policy model, operations procedures) and support the transition to BAU operations.
  • Design target Azure Firewall architecture using Azure Virtual WAN hub/spoke (regional hubs), including cross-region inspection patterns and north-south/east-west segmentation.
  • Define and implement a global base Firewall policy and regional child policies, including governance model and rule life cycle.

If you receive suspicious outreach claiming to be from us, please contact us via the ManpowerGroup website.

Print

Reference: 3117874686

Share this job:
CareerAddict

Alert me to jobs like this:

Amplify your job search:

CV/résumé help

Increase interview chances with our downloads and specialist services.

CV Help

Expert career advice

Increase interview chances with our downloads and specialist services.

Visit Blog

Job compatibility

Increase interview chances with our downloads and specialist services.

Start Test

Similar Jobs

Full Stack Developer

Bristol, Somerset, United Kingdom

Azure Network Consultant - TDA

Bristol, Somerset, United Kingdom

Network Engineer

Bristol, Somerset, United Kingdom