Tower Lead - Windows Azure IaaS, Terraform
India
Job Description
Tower Lead - Windows Azure IaaS, Terraform
Noida, Uttar Pradesh

Job Summary

We are seeking a highly skilled Windows Subject Matter Expert (SME) with deep hands-on experience migrating Windows-based workloads and applications to Google Cloud Platform (GCP). This is a senior, end-to-end role where the individual will serve as the single point of contact (SPOC) for all Windows-related migration activities within the GCP Migration Programme.

 

The successful candidate will own the full migration lifecycle — from initial discovery and assessment of Windows environments through to architecture design, infrastructure provisioning via Terraform, CI/CD pipeline setup, cutover, and post-migration operational handover. This role requires a rare combination of deep Windows platform expertise, GCP cloud proficiency, Infrastructure as Code skills, and DevOps engineering capability.

Key Responsibilities

Single Point of Contact – Windows Migration Programme Act as the primary technical SPOC for all Windows workload migrations within the GCP Migration Programme. Own and manage end-to-end migration of Windows-based applications, services, and infrastructure to GCP. Serve as the escalation point for Windows-related technical issues throughout the migration lifecycle. Liaise with application owners, business stakeholders, GCP architects, and project managers to ensure alignment and smooth delivery. Provide regular status updates, risk flags, and migration progress reports to programme leadership. Discovery & Assessment Conduct thorough discovery of existing Windows estate: Active Directory, DNS, DHCP, IIS, SQL Server, .NET applications, file servers, print servers, and Windows-based middleware. Use tools such as Migrate for Compute Engine, StratoZone, and custom scripts to assess workload compatibility and migration readiness. Identify dependencies between Windows workloads and produce dependency maps. Define migration groupings (waves), prioritisation, and risk ratings for all Windows workloads. Produce a comprehensive Migration Assessment Report and Wave Plan. Architecture & Design Design target GCP architectures for Windows workloads: Compute Engine (Windows Server VMs), Managed Instance Groups, Cloud SQL for SQL Server, Cloud Filestore, Active Directory on GCP. Produce High-Level Design (HLD) and Low-Level Design (LLD) documents for all Windows migration streams. Design hybrid connectivity between on-premises Windows environments and GCP via Cloud Interconnect or Cloud VPN. Architect Windows-specific security controls: Windows Defender, OS Config, patch management via OS Config or WSUS, Group Policy migration strategy. Design licensing strategy for Windows workloads on GCP (BYOL vs. GCP-provided licences, licence mobility). GCP Migration Execution – Windows Workloads Execute Lift & Shift migrations of Windows VMs using Migrate for Compute Engine (formerly Velostrata). Migrate Microsoft SQL Server databases to GCP using Database Migration Service (DMS) or native backup/restore methods. Migrate Active Directory to GCP: extend on-prem AD to GCP or deploy Managed Microsoft AD. Migrate IIS-based web applications (.NET Framework / .NET Core) to Compute Engine or Cloud Run. Perform application modernisation where feasible: containerise Windows workloads using Windows Containers on GKE. Manage DNS cutover, IP re-addressing, and firewall rule migrations. Execute and validate cutover events, including rollback procedures and post-migration smoke testing. Infrastructure as Code – Terraform Develop and maintain Terraform modules for all Windows-related GCP resources: Compute Engine Windows VMs, Managed Microsoft AD, Cloud SQL for SQL Server, Cloud Filestore, firewall rules, and IAM. Implement remote state management using GCS backend with state locking. Create Terraform variable files and environment-specific configurations for dev, UAT, and production. Enforce IaC code quality standards through automated linting (tflint), security scanning (tfsec/Checkov), and peer review. Maintain Terraform documentation including module READMEs, input/output definitions, and usage examples. CI/CD Pipelines & DevOps Design and implement CI/CD pipelines for Windows application deployments using Cloud Build, GitHub Actions, or

Skill Requirements

Skill Area

Technologies / Tools

Experience Required

Windows Platform

Windows Server 2012–2022, AD, DNS, DHCP, IIS, Group Policy, WSUS, PKI, Print Services

8+ years

GCP Core Services

Compute Engine, GKE, Cloud SQL, Cloud Filestore, VPC, Managed Microsoft AD, Cloud DNS, Cloud Build

4+ years

Windows Migration to GCP

Migrate for Compute Engine, DMS, StratoZone, VPN/Interconnect, DNS cutover

3+ years

SQL Server on GCP

Cloud SQL for SQL Server, AlwaysOn AG, DMS, backup/restore, failover clustering

5+ years

Terraform / IaC

Terraform modules, GCS remote state, tflint, tfsec, Checkov, Terragrunt

4+ years

CI/CD & DevOps

Cloud Build, GitHub Actions, Azure DevOps, ArgoCD, GitOps workflows

4+ years

Automation & Scripting

PowerShell, PowerShell DSC, Ansible, Python, Bash, OS Config

6+ years

.NET / IIS Applications

.NET Framework, .NET Core, IIS, Windows Containers, Cloud Run

4+ years

Windows Security

CIS Benchmarks, Windows Defender, PAM, BeyondCorp, patch management

5+ years

Monitoring

Cloud Monitoring, Cloud Logging, Windows Event Logs, Prometheus, Grafana

3+ years

 

Other Requirements

Architecture & Design

  • High-Level Design (HLD) – Windows target architecture on GCP, network topology, AD design, connectivity.
  • Low-Level Design (LLD) – VM specs, IP addressing, firewall rules, AD OU structure, SQL Server configuration.
  • Windows Migration Playbook – Repeatable migration patterns, tooling decisions, and lessons learned.
  • Licensing Strategy Document – BYOL vs. GCP-provided licence analysis and compliance approach.

Migration Documentation

  • Migration Assessment Report – Windows estate discovery findings, readiness scores, and risk register.
  • Wave Plan – Workload groupings, migration sequence, timelines, dependencies, and owners.
  • Cutover Plan – Detailed step-by-step cutover runbook with rollback procedures and communication plan.
  • Post-Migration Validation Report – Test results, performance benchmarks, and sign-off checklist.

Operational Runbooks

  • Windows VM Runbook – Start/stop, snapshot, patching, and scaling procedures.
  • Active Directory Runbook – AD replication, user provisioning, GPO management, and break-glass access.
  • SQL Server Runbook – Backup/restore, failover, AlwaysOn AG management, and DR procedures.
  • Patch Management Runbook – Patching schedule, OS Config policy management, and remediation steps.
  • Incident Response Runbook – Windows-specific incident triage, escalation, and resolution procedures.

IaC & Pipeline Documentation

  • Terraform Module Documentation – Module READMEs, input/output variables, usage examples.
  • CI/CD Pipeline Design Document – Pipeline stages, branching strategy, approvals, and deployment gates.
  • Automation Scripts Library – Documented PowerShell, Ansible, and Python scripts with usage guides.
  • GitOps Workflow Document – Branch policies, PR process, environment promotion strategy.

Security & Compliance

  • Windows Security Hardening Guide – CIS benchmark controls applied to GCP Windows VMs.
  • IAM & Privileged Access Document – Role definitions, service account design, and PAM approach.
  • Compliance Evidence Pack – Control evidence for applicable frameworks (ISO 27001, SOC 2).
Information at a Glance

Why HCLTech?

At HCLTech, you'll supercharge your potential. You'll find your career. And you'll find your spark. All at a place that knows that helping its customers stay on top starts by putting its people first.

HCLTech is a global technology company, home to more than 226,300 people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud and AI, powered by a broad portfolio of technology services and products. We work with clients across all major verticals, providing industry solutions for Financial Services, Manufacturing, Life Sciences and Healthcare, Technology and Services, Telecom and Media, Retail and CPG, and Public Services. Consolidated revenues as of 12 months ending December 2025 totaled $14.5 billion.

23 Benefits At HCLTech, we believe in empowering our employees with comprehensive benefits that support their professional growth and enhance their well-being. When you sign up for a career with us, you gain access to: https://rmkcdn.successfactors.com/147eb21f/a701dca9-f32d-4fc9-9447-6.svg Industry-benchmarked compensation https://rmkcdn.successfactors.com/147eb21f/b0c54381-ddcc-4a33-9b35-9.svg Best-in-class healthcare benefits https://rmkcdn.successfactors.com/147eb21f/b73027be-7aae-4d36-a090-4.svg Personal time off https://rmkcdn.successfactors.com/147eb21f/d5b4fdfd-2e99-4e26-9878-9.svg Maternity and paternity benefits https://rmkcdn.successfactors.com/147eb21f/3d42b0fc-4652-435a-9ece-c.svg Access to skills / higher education programs/resources https://rmkcdn.successfactors.com/147eb21f/aeddeaf2-9e25-4584-ad11-d.svg Discounts on products and services via Benefit Box https://rmkcdn.successfactors.com/147eb21f/a9609a3b-2700-4b3c-9d90-a.svg Participate in CSR programs and live life with a purpose https://rmkcdn.successfactors.com/147eb21f/c6e33851-710f-4634-bd69-f.svg Opportunities to grow and advance your career Note: The benefits listed above vary depending on the nature of your employment and the country where you work. Some benefits may be available in some countries but not in all.