NBCUniversal
Principal DevOps Engineer
New York, NEW YORK, United States · Principal
Sponsorship not specified$180k-$230kDetected 21 days ago
GoBashNode.jsGitPostgreSQLSQLiteAWSCloud PlatformsKubernetesHelmCI/CDGitHub ActionsPrometheusGrafanaDevOpsRESTOAuthSystems EngineeringDNSEpicLeadershipCommunicationCollaborationProblem Solving
About the role
- NBCUniversal is one of the world's leading media and entertainment companies.
- NBCUniversal is a subsidiary of Comcast Corporation.
- Visit www.nbcuniversal.com for more information.
Responsibilities
- Systems Engineering & Integrations: Design, build, and maintain production-grade Kubernetes operators, controllers, and internal platform APIs in Go.
- You will actively develop custom Crossplane providers to deeply integrate external enterprise platforms (such as NRCS, Venafi, and Infoblox) into our control plane, managing resource lifecycles and approval workflows.
- Cross-Discipline Collaboration: Partner closely with broadcast systems engineers, system integrators, and external vendors to bridge the gap between broadcast hardware and automated infrastructure.
- You will lead efforts to "Puppet-ize" bare-metal compute configurations and integrate proprietary vendor solutions into our configuration-as-code ecosystem.
- Technical Leadership: Serve as a technical authority for the team. Write RFCs, drive architectural decisions, mentor engineers, and establish high-confidence CI/CD pipelines, testing strategies, and GitHub Actions automation.
- Access & Security Strategy: Own the platform's authorization model, designing hierarchical RBAC systems, resource identifier schemes, and identity integrations that enforce fine-grained access control.
- Operational Excellence: Drive GitOps-based continuous delivery (Flux, Kustomize, Helm) and manage configuration-as-code for compute fleets using Puppet. Ensure deep operational visibility by designing comprehensive observability and alerting stacks.
- Databases: Working knowledge of PostgreSQL, SQLite or similar relational databases, encompassing schema design, migrations, and query optimization.
- Design, build, and maintain production-grade Kubernetes operators, controllers, and internal platform APIs in Go.
- Write RFCs, drive architectural decisions, mentor engineers, and establish high-confidence CI/CD pipelines, testing strategies, and GitHub Actions automation.
Requirements
- 10+ years of experience designing, building, and operating production infrastructure and cloud-native platforms at enterprise scale.
- Strong proficiency in Go (systems-level programming, API servers) and deep experience building Kubernetes controllers/operators using patterns like controller-runtime and kubebuilder.
- Expert-level knowledge of the Kubernetes ecosystem, including CRD/XRD generation, operators, informers, admission webhooks, and RBAC.
- Deep production experience with Crossplane, including composite resources, composition functions, and specifically developing custom Crossplane providers in Go to integrate external enterprise platforms.
- Extensive production experience with AWS multi-account architectures, cross-account networking patterns, and identity federation.
- Production experience with GitOps tooling, specifically Flux (HelmRelease, Kustomization) or ArgoCD for continuous delivery on Kubernetes.
- Hands-on experience with Puppet, including module development, PuppetDB, Hiera, and r10k.
- Excellent problem-solving skills with a proven ability to present architectural decisions to executives, engage with vendors, and write clear technical documentation.
- Familiarity with advanced testing frameworks (k6, KUTTL, etc), SOPS for encrypted GitOps configurations, and local development workflows (Air, kind/colima).
- Ability to script routine tasks in Bash and PowerShell.
Nice to have
- Familiarity with broadcast/media production workflows and the strict operational constraints of live production environments.
- Experience with the Crossplane function SDK for building custom composition functions in Go, and operating in Kubernetes disaster recovery situations (Velero cluster restoration, backups).
- Familiarity with VDI Solutions (NICE DCV, Leostream, PCoIP, etc), machine identity workflows, and PKI certificate management (Venafi or similar).
- Ecosystem Tooling: Familiarity with advanced testing frameworks (k6, KUTTL, etc), SOPS for encrypted GitOps configurations, and local development workflows (Air, kind/colima).
- Scripting: Ability to script routine tasks in Bash and PowerShell.
- Open Source: Active contributions to open-source projects, particularly within the CNCF / Kubernetes ecosystem.
Compensation
- $180,000 - $230,000 (bonus eligible)
- As part of our selection process, external candidates may be required to attend an in-person interview with an NBCUniversal employee at one of our locations prior to a hiring decision.
- You can request reasonable accommodations by emailing AccessibilitySupport@nbcuni.com.
Company info
- Our impact is rooted in improving the communities where our employees, customers, and audiences live and work.
- We are looking for a Principal DevOps Engineer to architect and evolve the platform that powers NBC's broadcast production environments.
Visa & Work Authorization
- ithout regard to race, color, religion, creed, gender, gender identity or expression, age, national origin or ancestry, citizenship, disability, sexual orientation, marital status, pregnancy, veteran status, membership i
Apply directly at NBCUniversal →Create a free account for alerts like thisView NBCUniversal immigration profile
This listing is sourced directly from NBCUniversal's careers page and normalized into a canonical job model.