وصف الوظيفة
الغرض من الدور: يتحمل مهندس Cloud DevSecOps تصميم وتنفيذ وتأمين البنية التحتية السحابية وخطوط CI/CD.
يضمن الدور أتمتة سلسة وتكامل أمني قوي ورصد فعال للأنظمة عبر بيئات OCI وGCP لتمكين تطبيقات آمنة وقابلة للتوسع وعالية الأداء.
المسؤوليات الأساسية: 1.
تصميم وبناء وتأمين خطوط CI/CD وDevSecOps باستخدام GitHub Actions .
دمج اختبارات أمنية تلقائية (SAST/DAST) باستخدام SonarQube والأدوات المرتبطة.
تنفيذ وإدارة سير عمل GitOps للتسليم المستمر باستخدام ArgoCD .
2. البنية التحتية السحابية والأتمتة تصميم وبناء وتأمين البنية التحتية السحابية على OCI وGCP باستخدام Terraform .
أتمتة مهام التكوين وتثبيت الأمان باستخدام Ansible .
تطوير وصيانة نصوص الأتمتة وأداء إدارة النظام باستخدام Bash .
تأمين وإدارة منصات تنظيم الحاويات بما في ذلك Oracle Kubernetes Engine (OKE) و Google Kubernetes Engine (GKE) .
3. تمكين أتمتة QA التعاون مع فريق QA لدمج مجموعات الاختبار الآلي في خطوط CI/CD.
تمكين التنفيذ الآلي لاختبارات QA لتكون بوابات جودة قبل النشر.
4. الرصد والمراقبة بناء وإدارة منظومة الرصد المؤسسي والاتصالات باستخدام Splunk و Grafana و Prometheus .
تطوير لوحات معلومات وتنبيهات وكتيبات استجابة للحوادث لأداء المراقبة والأمان.
التفاعلات الأساسية: داخليًا: البنية التحتية والمطورين فرق الأمن خارجياً: مورّدو التكنولوجيا وشركاء الحلول (حسب الحاجة) التعليم: درجة البكالوريوس في الهندسة الحاسوبية أو تكنولوجيا المعلومات أو مجال ذي صلة (مفضل).
الخبرة: 3+ سنوات من الخبرة العملية في DevOps أو الهندسة السحابية .
إثبات الخبرة في مبادئ DevSecOps ودورة حياة تطوير البرمجيات (SDLC) .
كفاءة عالية في كتابة Bash وأتمتة باستخدام Ansible .
فهم عميق لهندسة أمان السحابة وخدمات الأمان الأصلية على OCI وGCP .
خبرة موسّعة مع Infrastructure as Code (Terraform) .
مهارات متقدمة في تصميم CI/CD باستخدام GitHub Actions وأدوات GitOps مثل ArgoCD .
خبرة عملية في إعداد Kubernetes (OKE/GKE) والأمان.
خبرة عملية مع أدوات فحص الأمان (SonarQube, SAST, DAST).
معرفة قوية بمنصات الرصد (Splunk, Grafana, Prometheus).
الإلمام بإطارات الاختبار الوظيفي الآلي ودمجها في خطوط DevOps.
الكفاءات الأساسية: مهارات تحليلية وحل مشكلات قوية.
الاهتمام بالتفاصيل والتركيز على أفضل ممارسات الأمان.
القدرة على التعاون الفعال عبر فرق عابرة للوظائف.
مهارات اتصال وتوثيق ممتازة.
عقلية التعلم المستمر والقدرة على التكيف مع تقنيات جديدة.
Job description
Role Purpose: The Cloud DevSecOps Engineer is responsible for designing, implementing, and securing cloud-based infrastructure and CI/CD pipelines.
The role ensures seamless automation, robust security integration, and efficient monitoring of systems across OCI and GCP environments to enable secure, scalable, and high-performing applications.
Key Responsibilities: 1.
CI/CD Pipeline & DevSecOps Design, build, and secure CI/CD pipelines using GitHub Actions .
Integrate automated security testing (SAST/DAST) using SonarQube and related tools.
Implement and manage GitOps workflows for continuous delivery using ArgoCD .
2. Cloud Infrastructure & Automation Design, build, and secure cloud infrastructure on OCI and GCP using Terraform .
Automate configuration and security hardening tasks using Ansible .
Develop and maintain automation scripts and perform system administration using Bash .
Secure and manage container orchestration platforms including Oracle Kubernetes Engine (OKE) and Google Kubernetes Engine (GKE) .
3. QA Automation Enablement Collaborate with the QA team to integrate automated test suites into CI/CD pipelines.
Enable automated execution of QA tests to act as quality gates before deployment.
4. Observability & Monitoring Build and manage the enterprise observability and monitoring stack using Splunk, Grafana, and Prometheus .
Develop dashboards, alerts, and incident response playbooks for performance and security monitoring.
Key Interactions: Internal: Infrastructure, Developers, Security Teams External: Technology vendors and solution partners (as needed) Education Bachelor’s degree in Computer Engineering , Information Technology , or a related field (preferred).
Experience 3+ years of hands-on experience in DevOps or Cloud Engineering .
Proven expertise in DevSecOps principles and Software Development Lifecycle (SDLC) .
Strong proficiency in Bash scripting and automation with Ansible .
Deep understanding of cloud security architecture and native security services on OCI and GCP .
Extensive experience with Infrastructure as Code (Terraform) .
Advanced skills in CI/CD design using GitHub Actions and GitOps tools like ArgoCD .
Hands-on experience in Kubernetes (OKE/GKE) setup and security.
Practical experience with security scanning tools (SonarQube, SAST, DAST).
Strong knowledge of observability platforms (Splunk, Grafana, Prometheus).
Familiarity with automated functional testing frameworks and integration into DevOps pipelines.
Core Competencies: Strong analytical and problem-solving skills.
Attention to detail and focus on security best practices.
Ability to collaborate effectively across cross-functional teams.
Excellent communication and documentation skills.
Continuous learning mindset and adaptability to new technologies.