Job matched to your search
Senior DevSecOps Engineer
LEFTFIELD SOLUTIONS · Abu Dhabi
Free · Join 5,000+ job seekers using Qarera
How well do you match this role?
Tap the skills you already have — then see your real match score, what’s missing, and your resume fixed for this job.
Job description
Location: Abu Dhabi, UAE
Working Model: Hybrid
Employment Type: Full-time - 6 Month Contract
Our client is a leading AI technology company developing enterprise-grade AI and data platform solutions for organisations operating in regulated and mission-critical environments.
The organisation delivers solutions across both managed cloud environments and secure on-premises deployments, including highly restricted and air-gapped environments.
The Role
We are looking for a Senior DevSecOps Engineer to take ownership of security across critical infrastructure and software delivery pipelines.
You will design, implement and automate security controls across application and AI model deployment environments, while also taking ownership of production reliability.
This is a hands-on senior engineering role suited to someone who is comfortable working across DevSecOps, cloud infrastructure, Kubernetes, CI/CD, security automation and production operations .
Key Responsibilities
- Design, implement and maintain security controls within CI/CD pipelines, including SAST, DAST, SCA and secrets scanning .
- Build and manage secure infrastructure supporting AI model deployment and lifecycle management across cloud and on-premises environments.
- Automate security and compliance controls using Infrastructure as Code and policy-as-code.
- Own Docker and Kubernetes security , including image scanning, admission control, runtime threat detection and software supply-chain verification.
- Manage secrets securely at scale and lead initiatives around secrets rotation and least-privilege access .
- Own vulnerability management across infrastructure, containers and dependencies, including tracking, triage and remediation.
- Produce and maintain Software Bills of Materials (SBOMs) .
- Build and maintain security monitoring and alerting using tools such as Prometheus, Grafana, ELK/OpenSearch and Falco .
- Lead security incident response, postmortems and remediation activities.
- Participate in an on-call rotation and take ownership of production security incidents from detection through to resolution.
- Ensure infrastructure and delivery pipelines meet relevant security and compliance standards, including SOC 2 and ISO 27001 .
- Mentor junior engineers and promote secure engineering practices across the team.
Requirements
- 5–8 years' experience in DevOps, SRE, Platform Engineering or a closely related discipline, with demonstrated production ownership.
- Strong scripting and automation experience using Python, Bash or Go .
- Production experience with a major cloud platform such as AWS, Azure or GCP , including IAM, network security and cloud-native security services.
- Deep hands-on experience securing Docker and Kubernetes environments, including RBAC, network policies and pod security standards.
- Strong production experience managing CI/CD platforms such as Jenkins, GitLab CI/CD, CircleCI or Azure DevOps .
- Experience embedding vulnerability scanning and software supply-chain security into CI/CD pipelines using tools such as Trivy, Grype, Syft or equivalent .
- Hands-on experience with policy-as-code and Kubernetes admission control , particularly OPA/Gatekeeper or Kyverno.
- Experience handling security incidents end-to-end, including detection, triage, containment, remediation and postmortems.
- Experience operating security controls across both managed SaaS and disconnected/air-gapped on-premises environments , including offline scanning, patching and update mechanisms.
- Experience automating compliance evidence collection and supporting audit readiness against SOC 2, ISO 27001 or equivalent frameworks .
Strongly Preferred
- Infrastructure as Code experience with Terraform, Ansible or Pulumi .
- Experience embedding security scanning into IaC workflows using Checkov, tfsec or similar .
- Experience with secrets management platforms such as HashiCorp Vault or AWS Secrets Manager .
- Experience with container/image signing and software supply-chain security, including Cosign, Sigstore or SLSA .
- Experience with UAE IA, SOC 2, ISO 27001 or similar compliance frameworks.
- Previous experience working in high-traffic production environments.
- Arabic language skills.
Why Join?
This is an opportunity to join a technically ambitious AI organisation working on mission-critical platforms , where DevSecOps and security engineering are fundamental to how products are built and operated.
You will have significant ownership across cloud infrastructure, Kubernetes, CI/CD, security automation and production reliability, including challenging air-gapped and highly secure deployment environments .
More jobs in Abu Dhabi
Browse related jobs
Don’t just read the job — see if you’ll get it.
Get your match score, a resume tailored to this exact role, and jobs like it — free.
Check my fit for this job