Cloud DevSecOps Engineer
Abu Dhabi, AE
About us:
Insight is a Fortune 500-ranked global provider of hardware, software, cloud and service solutions, providing clients the guidance and expertise needed to define, architect, implement and manage technology today while transforming for tomorrow.
Project Region: UAE (Middle East)
Travel: Occasional travel to the UAE required
Engagement Type: Contract
Role Overview
We are seeking an experienced Cloud DevSecOps Engineer to support a UAE-based sovereign cloud programme. This is a contractor position, open to candidates based anywhere globally, working remotely with periodic on-site presence in the UAE as project needs require.
You will play a key role in designing, implementing, and operating secure cloud platforms and CI/CD pipelines, ensuring that security, compliance, and automation are embedded throughout the full lifecycle of cloud-native services. The environment is highly regulated, requiring strict adherence to UAE data sovereignty, security, and compliance standards.
Key Responsibilities
Cloud Platform & CI/CD Engineering
- Design, build, and operate secure CI/CD pipelines for cloud-native workloads (e.g. GitLab CI, GitHub Actions, Azure DevOps, Jenkins).
- Develop and maintain infrastructure-as-code solutions using tools such as Terraform, Bicep, Ansible, and Helm.
- Create and manage reusable pipeline templates and automation patterns for multiple product teams.
DevSecOps & Security by Design
- Embed security controls into CI/CD pipelines, including SAST, SCA, DAST, container image scanning, and secrets detection.
- Implement policy-as-code and governance guardrails using tools like OPA, Conftest, or Sentinel.
- Collaborate with security and compliance teams to ensure alignment with UAE sovereign cloud regulations and industry standards (ISO 27001, NIST, local cybersecurity frameworks).
Cloud & Platform Operations
- Operate and optimise Kubernetes and/or VM-based environments within a sovereign or private cloud.
- Support service mesh, API gateways, ingress/egress controls, and zero-trust architectures.
- Define and enforce secure configuration baselines (CIS benchmarks, hardened images, container security standards).
Observability & Reliability
- Implement monitoring, logging, metrics, and tracing solutions (Prometheus, Grafana, ELK/EFK, OpenTelemetry).
- Build dashboards and alerting for platform health, performance, and security events.
- Contribute to SRE practices including SLIs/SLOs, incident response, and post-incident reviews.
Governance, Compliance & Documentation
- Ensure pipelines and automation generate auditable evidence for compliance and regulatory reporting.
- Produce and maintain runbooks, technical documentation, and standard operating procedures.
- Support threat modelling, risk assessments, and security design reviews.
Collaboration & Enablement
- Work closely with development, security, infrastructure, and network teams.
- Coach delivery teams on secure coding, DevSecOps practices, and platform tooling.
- Contribute to the ongoing evolution and roadmap of the sovereign cloud platform.
Required Skills & Experience
Experience
- 5+ years in DevOps, Platform Engineering, or Cloud Engineering roles.
- Proven experience in security-focused DevOps / DevSecOps environments.
- Background working in regulated, sovereign, or data-residency-constrained environments (e.g. government, financial services, defence) is highly desirable.
Technical Skills
- Strong experience with CI/CD tools: GitLab CI, GitHub Actions, Azure DevOps, Jenkins.
- Infrastructure-as-Code expertise, with Terraform strongly preferred.
- Containerisation and orchestration: Docker and Kubernetes.
- Security tooling: SAST/SCA/DAST scanners (SonarQube, Snyk, Checkmarx, Trivy, Aqua, Twistlock).
- Secrets management (HashiCorp Vault, cloud-native secret stores, KMS).
- Solid understanding of networking, IAM, and zero-trust principles.
- Monitoring and logging stacks: Prometheus/Grafana, ELK/EFK, Splunk or similar.
Security & Compliance
- Strong understanding of secure SDLC and DevSecOps principles.
- Familiarity with ISO 27001, NIST, OWASP Top 10.
- Experience with UAE or GCC data sovereignty requirements is a strong advantage.
Programming & Scripting
- Strong scripting skills (Bash, Python, PowerShell, Go or similar).
- Ability to build reusable modules and automation frameworks.
Soft Skills
- Excellent problem-solving and troubleshooting skills.
- Strong communication skills in English (Arabic is beneficial but not required).
- Comfortable working in distributed, multi-vendor, and mission-critical environments.
Education & Certifications (Preferred)
- Bachelor’s degree in Computer Science, Engineering, Information Security, or equivalent experience.
- Certifications are beneficial but not mandatory:
- Cloud: Professional-level cloud certifications
- Security: CISSP, CCSP, CSSLP
- DevOps / Kubernetes: CKA, CKAD, or similar
About Insight:
We believe that by giving you the freedom to think big and empower you to reach your full potential, together we will achieve the best outcomes. Along with excellent benefits and a compelling reward package, we offer the opportunity to work in a supportive environment with a high level of autonomy and creativity - there’s a reason our average employee tenure is over 6 years.
We strive to display our three core values of Hunger, Heart, and Harmony every day. They represent and drive who we are here at Insight and by doing so we are doing amazing things. Insight started in a garage in 1988 and it is through harnessing our three core values that two brothers, Eric and Tim Crown, steered Insight to the Fortune 500 company it is today. We are now a Global IT Services and Solutions business, passionate about helping customers and the real people who sit behind them.
Application Details:
Insight is an equal opportunity employer, and we are committed to achieving diversity and equality within our organisation. We seek out people from diverse backgrounds and encourage you to apply.
We will endeavour to contact you within five business days, should we feel your profile is a good match for this role. If you do not hear from us within this timeframe, please presume that on this occasion, your application was not successful.
A full job description will be provided upon application.