IT Architect, Microsoft Infrastructure
Work Location: Chicago
Due to the highly interactive and team-based nature of this role, in-person attendance for most of the workweek (i.e., 3 days or more) is essential for: effective communication including during in-person meetings, strong supervision, real-time problem-solving, and participation in cross-functional initiatives.
Want to make an impact?
Technology powers Ferrara’s transformation of iconic brands into a world-class global business. Following a successful S/4HANA go-live, our IT organization is leading the next phase of digital evolution—scaling platforms, advancing data and analytics, and partnering closely with the business to deliver measurable impact. This is a chance to join a highly innovative IT team with strong executive sponsorship and influence across the enterprise.
The IT Microsoft Architect is responsible for designing, implementing, and overseeing Microsoft-based infrastructure solutions across the enterprise. This role ensures that core Microsoft platforms – such as Active Directory, Windows Server, Infrastructure applications like Microsoft Exchange, Azure, Microsoft365, and associated tools – are stable, secure, scalable, and aligned with the organization’s long-term IT strategy. The architect provides technical leadership, sets architectural standards, and drives modernization initiatives within the Microsoft ecosystem.
Ways you will make a difference
Architecture & Solution Design
- Design and develop enterprise infrastructure architectures focused on Microsoft technologies, including:
- Azure Infrastructure Services (IaaS, PaaS, Virtual Networks, Azure AD)
- Microsoft 365 (Exchange Online, SharePoint Online, Teams, Security & Compliance)
- Windows Server platforms
- Active Directory (on-prem, Azure AD, hybrid identity)
- Endpoint management (Intune, Group Policy, Autopilot)
- SQL Server environments
- Develop high-level and detailed architecture diagrams, reference models, and design documentation.
- Define standardized configurations, patterns, and best practices for Microsoft-based solutions.
Infrastructure Strategy & Modernization
- Contribute to Microsoft-focused infrastructure strategies, including cloud transitions, hybrid identity, Zero Trust, and workspace modernization.
- Evaluate emerging Microsoft technologies and guide adoption.
- Assess existing infrastructure and lead modernization of legacy systems to cloud or hybrid architectures.
Cybersecurity, Compliance & Governance
- Implement security-by-design principles across Microsoft infrastructure, including identity, access control, encryption, endpoint security, and data retention.
- Support governance for Windows Server, Infrastructure applications, Azure resources, Microsoft 365 policies, and privileged access models (PIM, PAM).
- Ensure compliance with regulatory, audit, and enterprise standards for identity, access, and data protection.
Technical Leadership & Project Delivery
- Provide architectural leadership for projects involving Microsoft infrastructure, cloud migrations, device management improvements, and enterprise security uplifts.
- Review infrastructure designs, configurations, scripts, and automation to ensure alignment with enterprise architecture.
- Serve as the escalation point for complex technical issues and cross-domain architectural decisions.
- Lead workshops, technical discovery sessions, and participate in architecture review boards.
Automation, Standardization & Optimization
- Define infrastructure automation standards using PowerShell, Azure Automation, ARM/Bicep, or Terraform.
- Improve operational efficiency through automation, standardized build processes, and configuration management.
- Work closely with Platform, Networking, and Cybersecurity teams to optimize performance, reliability, and cost across Microsoft environments.
Cross-Functional Collaboration & Stakeholder Engagement
- Collaborate with business units to understand technology requirements and translate them into Microsoft-based architectural solutions.
- Communicate architecture decisions, trade-offs, and risks to both technical and non-technical audiences.
- Partner with vendors, Microsoft representatives, and systems integrators for solution validation and support.
Skills that will make you successful
- Microsoft Technology Expertise – Deep knowledge of Microsoft ecosystem technologies (Windows Server, SQL Server, Active Directory, Azure, Microsoft 365).
- Solution Architecture & Design – Ability to design scalable, secure, and high-performing Microsoft-based solutions aligned with business goals.
- Security & Compliance Awareness – Ensures solutions meet security standards, governance policies, and regulatory requirements.
- Strategic Vision & Business Alignment – Aligns Microsoft technology initiatives with enterprise strategy and long-term business objectives.
- Collaboration & Communication – Works effectively with IT teams, stakeholders, and business leaders, clearly conveying technical concepts.
Experiences that will support your success
Required Qualifications
- Bachelor’s degree in IT, Computer Science, Engineering, or equivalent experience.
- 5-10+ years of experience in IT infrastructure, with significant experience in Microsoft technologies.
- Deep technical expertise in:
- Active Directory & Entra ID (identity, federation, hybrid identity)
- Windows Server (AD DS, DNS, DHCP, File Services)
- Microsoft365 & Exchange Online
- Endpoint lifecycle management
- PowerShell scripting and automation
- Strong understanding of networking concepts (VPNs, DNS, routing, firewalls) as they apply to Microsoft environments.
- Experience designing secure, scalable Microsoft infrastructures in enterprise or hybrid-cloud environments.
Preferred Qualifications
- Deep technical experience with:
- Server virtualization
- Enterprise Storage
- Data Protection
- Azure IaaS and PaaS infrastructure
- Relevant Microsoft certifications such as:
- Microsoft Certified: Azure Solutions Architect Expert
- Microsoft 365 Certified: Enterprise Administrator Expert
- Microsoft Certified: Identity and Access Administrator Associate
- MCSE (legacy) or equivalent experience
- Experience supporting Zero Trust security implementations.
- Familiarity with SQL Server architecture, HA/DR, and performance optimization.
- Experience integrating Microsoft infrastructure with third-party platforms and enterprise applications.
What We Offer
At Ferrara, we’re proud to support our employees by providing comprehensive benefits such as health insurance, dental insurance, a 401(k), and paid time off (PTO). Eligible employees may also receive an annual bonus based on company performance. Learn more about our benefits at https://flimp.live/Ferrara-Candy-2025-OE-QR
Compensation
The salary range for this role is $112,278 - $157,189 annually.
Nearest Major Market: Chicago