- Azure cloud infrastructure — compute, networking, storage, identity, security
- Kubernetes and containerization — Docker, AKS or equivalent managed Kubernetes
- Infrastructure-as-Code — Bicep, Terraform, or ARM; Bicep preferred
- Linux / shell scripting
- Python programming
- SQL — sufficient for operational queries and platform tooling
- Networking — DNS, HTTP/S, TCP/IP, load balancing, proxies, firewalls
- IAM — Active Directory, LDAP, OAuth 2.0, SAML, certificate management
- 7+ years provisioning and managing cloud infrastructure on Azure, including network and security configuration
- Demonstrated experience building or scaling a shared platform that hosts applications for multiple teams — including tenant isolation, resource governance, and self-service or templated onboarding
- Experience establishing CI/CD pipelines for automated deployment of containerized workloads, using Azure DevOps, Jenkins, GitHub Actions, or equivalent
- Experience embedding automated security controls into deployment pipelines — container image and vulnerability scanning, policy enforcement, compliance gating
- Linux/Unix systems administration with RHEL/CentOS/Ubuntu — systemd, package management, performance tuning
- Advanced shell and Python scripting for automation, monitoring, and operational tasks
- Hands-on IAM experience — Active Directory, LDAP, certificate management, and SSO integration
- Solid networking fundamentals — TCP/IP, DNS, HTTP/S, load balancing, firewall and proxy configuration
- Working knowledge of REST APIs for infrastructure automation and tool integration
- Experience with infrastructure monitoring and observability tooling — Prometheus, Grafana, ELK, Azure Monitor, or equivalent
- Ability to set technical direction and mentor engineers, including documenting standards and transferring knowledge to colleagues newer to modern cloud practice
- Ability to work directly with application teams to translate hosting requirements into platform capabilities, and to communicate technical constraints to non-technical stakeholders
- Education: Bachelor's degree in computer science, information technology, engineering, or a related field; or equivalent professional work experience
PREFERRED
- Experience with GitOps deployment practices — ArgoCD, Flux — and Helm chart authoring
- Experience administering WSO2 platform infrastructure (API Manager, Micro Integrator, streaming components)
- Azure-native security tooling — Azure Policy, Defender for Cloud, private endpoints, network security groups
- Secrets management — HashiCorp Vault, Azure Key Vault
- Configuration management — Ansible, or equivalent
- Familiarity with cloud-native data platform infrastructure — Snowflake, Databricks, Microsoft Fabric, or equivalent
- Higher education environment experience, particularly federated identity — Shibboleth, SAML-based SSO
- Cloud platform certifications — Azure Administrator, Azure Solutions Architect, CKA, or equivalent
- Exposure to FinOps practices and cloud cost optimization
- Experience designing infrastructure documented and standardized for eventual operational handoff
Princeton University is an Equal Opportunity Employer and all qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity or expression, national origin, disability status, protected veteran status, or any other characteristic protected by law.
The University considers factors such as (but not limited to) scope and responsibilities of the position, candidate's qualifications, work experience, education/training, key skills, market, collective bargaining agreements as applicable, and organizational considerations when extending an offer. The posted salary range represents the University's good faith and reasonable estimate for a full-time position; salaries for part-time positions are pro-rated accordingly.
If the salary range on the posted position shows an hourly rate, this is the baseline; the actual hourly rate may be higher, depending on the position and factors listed above.
The University also offers a comprehensive benefit program to eligible employees. Please see this link for more information.