BALA MURALI
Platform Engineer — Azure Infrastructure & Cloud Operations
****@******.*** · +91-824******* · Kanyakumari, Tamil Nadu, India · Dubai, UAE linkedin.com/in/balamuralis2004/
PROFESSIONAL SUMMARY
Platform Engineer with hands-on experience in Azure infrastructure operations, IaaS/PaaS/SaaS service deployment, and networking in enterprise environments. Experienced in day-to-day Azure operations, L1/L2 infrastructure support, VNet design, NSG configuration, troubleshooting connectivity issues, IaC with Terraform and Bicep, and maintaining SOPs, runbooks, and monitoring dashboards. Certified Azure Administrator (AZ-104) with practical experience across Azure compute, storage, networking, security, backup, and governance controls. CORE SKILLS
• Azure IaaS / PaaS / SaaS
• Azure VMs, Storage Accounts, VNets, NSGs
• Load Balancers, Application Gateway
• Azure Networking — subnets, routing, VPN, Private Link
• Terraform · Bicep · ARM Templates
• Azure DevOps · Azure CLI · VS Code
• Azure Monitor · Log Analytics · KQL
• Azure Backup · Site Recovery · DR
• Microsoft Entra ID · RBAC · Azure Policy
• Private Endpoints · Private DNS · Azure Firewall
• Hub-and-Spoke · UDRs · VNet Integration
• SOPs · Runbooks · Technical Documentation
PROFESSIONAL EXPERIENCE
Platform Engineer
FutecX Dubai, UAE
• Managed and supported Azure infrastructure operations covering IaaS, PaaS, and SaaS services including VMs, Storage, VNets, NSGs, Load Balancers, and related resources.
• Configured, deployed, and maintained Azure networking components: subnets, route tables (UDRs), VPN, Private Endpoints, Private DNS zones, and Azure Firewall across hub-and-spoke architectures.
• Troubleshot infrastructure, networking, and connectivity issues including DNS resolution failures, Private Endpoint behaviour, subnet delegation conflicts, and application communication breakdowns.
• Developed and maintained Infrastructure as Code using Terraform and Bicep; automated deployments and configuration management to reduce manual effort and enforce consistency.
• Monitored resource health, performance, availability, and capacity using Azure Monitor, Log Analytics, and KQL queries; created dashboards and alerting rules for proactive incident detection.
• Applied security, backup, compliance, and DR best practices: RBAC assignments, Azure Policy enforcement, Azure Backup configuration, and Site Recovery readiness.
• Collaborated with L2/L3 engineers, application teams, and business stakeholders to resolve escalated issues and align infrastructure with workload requirements.
• Maintained SOPs, deployment runbooks, architecture documentation, validation evidence, and handover guides for customer-ready and internal deliverables.
• Replicated customer architectures in lab environments before recommending production patterns, covering resource-group structure, VNet/subnet layout, naming standards, and private access controls. KEY PROJECT HIGHLIGHTS
Private Azure AI Platform Deployment
• Deployed and validated a fully private Microsoft Foundry / Azure AI Foundry environment with public network access disabled across all solution components.
• Configured Private Endpoints, Private DNS zones, VNet integration subnets, and Azure Firewall rules for services including Azure Functions, Storage, Container Registry, AI Search, and Cosmos DB.
• Documented deployment sequencing, DNS resolution checkpoints, private endpoint behaviour, and application connectivity validation — all formatted as production-ready runbooks. AI-Ready Azure Landing Zone & Hub-and-Spoke Networking
• Contributed to an enterprise Azure Landing Zone design covering hub connectivity, controlled egress through Azure Firewall, DNS resolution, identity, RBAC, governance, and cost management.
• Designed dedicated networking boundaries and subnet layouts for AI and Power Platform workloads; implemented route tables, NSGs, and UDR-based traffic control.
• Produced reusable architecture guidance and governance frameworks to enable governed, repeatable business-unit deployments.
Azure Governance, Automation & IaC
• Used Terraform and Bicep for infrastructure automation including VNet provisioning, subnet delegation, resource-group scaffolding, and policy assignment.
• Worked with Azure Policy, RBAC, Log Analytics, and cost management controls as part of a broader platform governance model.
• Prepared Azure DevOps pipeline prerequisites and security-engineering handoff documentation for integrating agentic code security tooling.
TECHNICAL TOOLKIT
Compute & Storage Azure VMs, Azure Storage, Azure Container Registry, Azure Functions, Cosmos DB Networking VNet, Subnets, NSGs, Load Balancers, VPN, Private Endpoint, Private DNS, Azure Firewall, UDR, VNet Integration
IaC & Automation Terraform, Bicep, ARM Templates, Azure CLI, Azure DevOps, VS Code Monitoring & Ops Azure Monitor, Log Analytics, KQL, Azure Backup, Azure Site Recovery Security & Governance Microsoft Entra ID, RBAC, Azure Policy, Key Vault, compliance controls Documentation SOPs, runbooks, architecture diagrams, validation plans, deployment guides CERTIFICATION
Microsoft Certified: Azure Administrator Associate (AZ-104) Pursuing: AZ-700 (Network Expert) · AZ-305 (Solutions Architect)
EDUCATION
B.Tech — Electronics & Communication Engineering
Vellore Institute of Technology