Principal Platform Engineer -Infrastructure Automation & Agentic Engineering

ViziRecruiter,LLC.

Salisbury, Northern (NC, KY)

Hybrid

USD 163,000 - 245,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Ahold Delhaize USA is seeking a Principal Platform Engineer within the Technology Infrastructure Hosting team. This senior individual contributor shapes hosting-platform vision, strategy, roadmaps, governance, and delivery of complex initiatives across Windows, Linux, virtualization, storage, and observability systems.

The role includes hands-on coding with IaC, CI/CD, and secure, scalable operations, while working in a гибрид schedule with 3 days in Salisbury, NC and 2 remote days.

Qualifications

  • 12+ years of enterprise infrastructure engineering.
  • Experience across Windows, Linux, virtualization and storage.
  • Strong leadership and collaboration across teams.

Responsibilities

  • Define platform strategy and multi-year roadmaps.
  • Lead governance, standards, and investment decisions.
  • Translate designs into automated, scalable pipelines.
  • Coach engineers and align stakeholders.

Skills

Platform engineering
IaC
CI/CD
PowerShell

Education

Bachelor's degree in CS or related

Tools

Terraform/OpenTofu
Ansible
Python
PowerShell

Job description

Introduction

Ahold Delhaize USA, a division of global food retailer Ahold Delhaize, is part of the U.S. family of brands, which also includes five leading omnichannel grocery brands - Food Lion, Giant Food, The GIANT Company, Hannaford and Stop & Shop. Ahold Delhaize USA associates support the brands with a wide range of services, including Finance, Legal, Sustainability, Commercial, Digital and E-commerce, Technology and more.

Overview

The Principal Platform Engineer is an enterprise-level individual contributor within the Technology Infrastructure Hosting team. The role shapes hosting-platform vision, strategy, roadmaps, governance, priorities, investment recommendations, and delivery outcomes for complex, business-critical initiatives across multiple teams and systems. It develops reusable modules, golden paths, self-service capabilities, engineering standards, evaluation methods, and operational controls across Windows Server, Active Directory and identity integrations; AIX/POWER and Linux; VMware, Nutanix, Hyper-V and related compute; storage, backup, SAN and NAS; middleware; networking and firewalls; Datadog, Nagios and related observability; ServiceNow CMDB, ITSM and workflow integrations; and adjacent infrastructure services. The engineer remains hands-on with code and production systems and converts approved designs, domain standards, runbooks, lifecycle obligations, and recurring work into secure, scalable, reliable, cost-effective, and version-controlled capabilities using IaC, configuration management, CI/CD, deterministic orchestration, and governed AI where it adds value.

Our flexible/hybrid work schedule includes 3 in-person days in our Salisbury, NC office and 2 remote days.

Applicants must be currently authorized to work in the United States on a full-time basis.

  • Reliability and observability. Define SLIs, SLOs, telemetry, traces, dashboards, alerts, run histories, change evidence, and operational health measures for pipelines and agents. Lead troubleshooting and systemic correction for high-impact platform and automation failures.
  • Platform lifecycle and resilience. Set and enforce lifecycle practices for provisioning, configuration, patching, upgrades, currency, backup, restore, high availability, disaster recovery, decommissioning, documentation, and operational reporting. Ensure lifecycle risk and recovery readiness are visible in roadmaps and governance decisions.
  • Basis Engineering and Definition of Done. Translate domain specifications into pipelines, controls, scorecards, reference implementations, and acceptance criteria. A capability is not done until authoritative inventory and ownership are recorded; supported lifecycle and compatibility are verified; security and privileged-access controls pass; testing covers normal, failure, rollback, and recovery paths; monitoring, logging, SLI/SLO and alert routing are operational; ServiceNow CI, dependency, change and knowledge records are complete; runbooks and support handoffs are current; evidence is retained; and exceptions have accountable owners and expiry dates.
  • Technical leadership and organizational capability. Set the technical bar, lead implementation and operational-readiness reviews, coach senior platform leaders and engineers, and strengthen capability across internal and supplier teams. Independently verify completion claims using artifacts, telemetry, CMDB records, test results, monitoring coverage, recovery evidence, financial outcomes, and change results; communicate material risks, trade-offs, and recommendations to senior leadership.
Required Infrastructure Domain Breadth:
Windows and identity

Windows Server lifecycle, Active Directory/GPO, DNS, privileged access, patching, configuration baselines, hybrid identity dependencies, PowerShell/DSC and recovery.

AIX and Linux

AIX/POWER, HMC/PowerVM/NIM, RHEL or equivalent Linux, package and kernel lifecycle, SSH/PAM/sudo, Ansible, filesystem and multipath dependencies, patching and recovery.

Compute and virtualization

VMware vSphere/vCenter/ESXi, Nutanix AOS/Prism, Hyper-V or comparable platforms; capacity, firmware/compatibility, cluster resilience, migration, lifecycle and automation.

Storage, backup and SAN

Block/file/storage services, Fibre Channel zoning and multipath, SAN/NAS lifecycle, backup policy, immutable protection, capacity, replication and tested restore or failover.

Middleware and runtime

Application servers, web tiers, messaging, integration runtimes or comparable middleware; configuration, certificates, dependencies, patching, HA, logging and performance.

Networking and firewalls

IP/DNS/load-balancing dependencies, routing, segmentation, firewall policy, ports and protocols, network change validation, telemetry and rollback coordination.

Observability

Datadog, Nagios or comparable platforms; coverage, tagging, service checks, metrics/logs/traces, SLI/SLO, actionable alerts, dependency suppression, synthetic health and evidence retention.

Service management

ServiceNow CMDB/Discovery, CI identification and reconciliation, completeness/correctness/compliance, service mapping, catalog/workflow, change, incident, problem and knowledge integration.

Responsibilities
  • Platform strategy and roadmap. Define and execute the enterprise hosting-platform vision, multi-year roadmap, capability priorities, target outcomes, and investment sequencing. Use business analysis, demand, risk, lifecycle, service performance, experience, and cost data to recommend priorities and align senior stakeholders.
  • Governance and portfolio leadership. Establish decision rights, engineering standards, intake and prioritization methods, delivery controls, scorecards, and review forums for consistent platform outcomes. Lead complex initiatives across internal teams and external partners using Lean-Agile and SAFe-aligned planning, user stories, estimation, dependency management, and incremental delivery.
  • Cross-domain platform engineering. Translate approved designs into reusable implementation patterns, automation, and acceptance criteria spanning Windows/AD, AIX/Linux, VMware/Nutanix/Hyper-V, storage/backup/SAN/NAS, middleware, network/firewall, observability, and ServiceNow. Identify upstream and downstream dependencies, raise material design gaps to the accountable design authority, and verify implementation readiness.
  • Platform product and experience management. Treat shared infrastructure capabilities as products with defined users, service levels, adoption targets, roadmaps, documentation, support models, and feedback loops. Enable self-service through service catalogs, APIs, golden paths, and internal developer portal capabilities that reduce friction without weakening controls.
  • Infrastructure as Code and CI/CD. Implement approved designs with domain owners through secure IaC delivery pipelines using version control, peer review, automated validation, policy checks, plan/review/apply controls, secrets handling, artifact traceability, release gates, rollback, and drift detection. Work across Terraform or OpenTofu, Ansible, PowerShell, Python, ARM/Bicep, and applicable platform-native automation.
  • Runbook-to-automation engineering. Identify high-volume, high-risk, and toil-heavy runbooks; decompose procedures into deterministic steps; define prerequisites, approvals, validations, error handling, rollback, evidence capture, and exception paths; then deliver production-ready orchestration.
  • Generative and Agentic AI for operations. Design and implement governed AI-assisted workflows that can interpret approved runbooks, assemble execution plans, invoke tools, preserve state, request approvals, produce evidence, and stop safely when confidence, policy, or environmental conditions are not met.
  • Prompt and context engineering. Create version-controlled system instructions, task prompts, tool descriptions, retrieval/context strategies, structured outputs, and prompt test suites. Manage prompt injection, data-boundary, hallucination, and tool-misuse risks through least privilege, allowlists, approvals, and validation.
  • Agent harnesses and orchestration. Engineer the runtime scaffolding around agents, including tool interfaces, session state, memory, planning, bounded loops, approval policies, observability, error recovery, and human-in-the-loop handoffs. Separate model reasoning from deterministic control logic and privileged execution.
  • Continuous agentic improvement. Establish bounded self-improvement loops in which production telemetry, failed cases, reviewer feedback, and test results propose changes to prompts, policies, tools, or workflows. Require evaluation, versioning, peer review, approval, and controlled rollout before promotion. Do not permit unreviewed self-modification in production.
  • Evaluation and quality engineering. Build offline and pre-production evaluation harnesses for task success, tool choice, policy compliance, grounding, security, latency, cost, failure recovery, and reproducibility. Maintain representative test cases, regression suites, red-team scenarios, and release thresholds.
  • Financial and capacity stewardship. Apply financial analysis and FinOps practices to platform planning and delivery, including demand and capacity forecasting, unit-cost and consumption visibility, cost allocation, vendor and licensing trade-offs, optimization opportunities, and benefit realization. Balance resilience, performance, technical debt, experience, and cost in recommendations.
  • Security, risk, and compliance by design. Coordinate with Security and Governance to embed approved identity, secrets, least privilege, MFA, logging, audit evidence, encryption, policy-as-code, vulnerability controls, and exception-management requirements within automation and agent solutions. Align AI lifecycle controls to approved enterprise risk practices and NIST-aligned governance.
Requirements
  • 12+ years of progressive infrastructure, platform, site reliability, or infrastructure software engineering experience, including principal-level ownership of complex cross-platform outcomes in large enterprise production environments.
  • Demonstrated production experience across at least four hosting-domain groups-Windows/AD; AIX/Linux; VMware/Nutanix/Hyper-V; storage/backup/SAN; middleware; networking/firewalls; observability; and ServiceNow-with deep hands-on expertise in at least two.
  • Hands-on ability to design, code, test, deploy and operate production automation using Python and at least two of PowerShell, Ansible, Terraform/OpenTofu, ARM/Bicep, shell scripting or comparable technologies.
  • Demonstrated experience applying Generative AI to engineering or operational workflows, including prompt engineering, context management, structured outputs, retrieval grounding, tool calling, and evaluation.
  • Direct experience designing or operating agentic workflows or autonomous/semi-autonomous systems with tool integration, state/memory, human approvals, observability, bounded execution, and failure recovery.
  • Experience creating evaluation harnesses, regression suites, test datasets, red-team cases, and measurable release gates for AI-enabled workflows.
  • Expert ability to define platform strategy and roadmaps, establish governance, lead complex multi-team initiatives, and align senior business and technology stakeholders around priorities and measurable outcomes.
  • Working mastery of Lean-Agile or SAFe principles, platform product management, business analysis, experience design, user stories, estimation, planning, dependency management, and incremental delivery.
  • Demonstrated financial analysis and FinOps capability, including demand and capacity forecasting, unit-cost and consumption analysis, cost allocation, licensing and vendor trade-offs, optimization, and benefits realization.
  • Strong knowledge of platform resource provisioning and configuration, CMDB and service mapping, patch and update management, incident/change/problem management, monitoring and logging, lifecycle and capacity management, documentation and reporting, security administration, backup, disaster recovery, high availability, runbook engineering, and production support.
  • Ability to translate ambiguous operational problems and approved direction into reusable engineering products, measurable outcomes, implementation patterns, and clear technical standards.
  • Proven ability to influence senior engineers, suppliers, technical stakeholders, and leaders and to challenge design assumptions through implementation evidence.
  • Bachelor's degree in computer science, engineering, information systems, or a related field, or equivalent demonstrable experience.
  • Able to work in the office a minimum of 3 days per week including every Tuesday, and Wednesday (excluding holidays & paid time off).
Preferred Qualifications
  • Experience engineering and automating hybrid hosting estates spanning enterprise data centers, retail or edge compute, cloud, managed-service delivery, and multiple supplier boundaries.
  • Experience with Microsoft Agent Framework, Azure AI/Foundry agent services, Semantic Kernel, LangGraph, or comparable orchestration frameworks.
  • Experience integrating ServiceNow CMDB, Discovery, service mapping, catalog/workflow, change, incident and knowledge processes with source control, IaC, observability and operational automation.
  • Experience with container platforms, Kubernetes, GitOps, golden paths, platform engineering, software supply-chain security, and artifact provenance.
  • Familiarity with NIST AI RMF and the Generative AI Profile, CIS Benchmarks, NIST Cybersecurity Framework, zero trust, PCI-related controls, and regulated enterprise environments.
  • Experience building self-service infrastructure products used by multiple engineering teams.
  • Published technical writing, implementation guidance, open-source contributions, conference participation, or a sustained technical community presence.
  • Relevant advanced certifications or directly equivalent demonstrated depth in Microsoft Windows, Red Hat or IBM AIX, VMware, Nutanix, storage/SAN, networking/security, ServiceNow, observability, cloud, DevOps, Kubernetes or Terraform.

Salary Range: $163,280 - $244,920

Actual compensation offered to a candidate may vary based on their unique qualifications and experience, internal equity, and market conditions. Final compensation decisions will be made in accordance with company policies and applicable laws.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Azure Platform Reliability Engineer IV
Azure Platform Reliability Engineer IV

ViziRecruiter,LLC. • Quincy (MA)

Hybrid
USD 125,000 - 188,000
Senior Platform Engineer
Senior Platform Engineer

Compunnel, Inc. • Cedar Rapids (IA)

On-site
USD 100,000 - 130,000
Director, Platform Enablement
Director, Platform Enablement

i3 Verticals, LLC • Nashville (TN), Northern (KY)

Hybrid
USD 180,000 - 240,000
Senior Engineer, Infrastructure Engineering (Platform)
Senior Engineer, Infrastructure Engineering (Platform)

InterContinental Hotels Group • Atlanta (GA)

Hybrid
USD 120,000 - 160,000
Hybrid work model
Senior Platform Engineer I
Senior Platform Engineer I

Walgreens • United States

On-site
USD 102,000 - 165,000
Senior DevOps Engineer
Senior DevOps Engineer

Ryan • Plano (TX)

On-site
USD 109,000 - 151,000
Health benefits
Retirement plan
Flexible working hours
Cloud Platform Engineer
Cloud Platform Engineer

PG&E • Oakland (CA)

Hybrid
USD 102,000 - 162,000
Devops Platform Engineer
Devops Platform Engineer

Hallmark Global Solutions Ltd • Agoura Hills (CA)

On-site
USD 100,000 - 130,000
Principal DevOps/Platform Engineer
Principal DevOps/Platform Engineer

Vance Airscoop • Christiansburg (VA)

On-site
USD 146,000 - 182,000
Sr. Hybrid Cloud Engineer
Sr. Hybrid Cloud Engineer

FLOWERS.com Inc. • Jericho (NY)

Hybrid
USD 150,000 - 170,000
Medical insurance
Vision insurance
401(k)
+1