Senior DevSecOps Engineer

AGAPI

Dubai

On-site

AED 240,000 - 420,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

AGAPI is seeking an experienced DevSecOps engineer to build the shared automation backbone for security operations and the software development lifecycle. You will automate security workflows and embed security into modern DevOps practices through scalable tooling and platforms.

You will integrate SAST/DAST/SCA, manage security data formats like SARIF/JSON, and work across Terraform, CloudFormation, Dockerfiles and cloud infrastructure to improve pipeline reliability and security operations.

Qualifications

  • Minimum 6 years of hands-on DevSecOps experience.
  • Strong automation, APIs and internal tooling experience.
  • Experience with GitOps principles and modern DevOps practices.
  • Practical experience with security testing automation and vulnerability management.

Responsibilities

  • Build and maintain CI/CD security automation across multiple platforms (GitHub, GitLab, Jenkins, Azure DevOps).
  • Integrate SAST, DAST, SCA and security testing tools (Semgrep, ZAP, Nuclei, Burp).
  • Process and normalize findings (SARIF/JSON) and route to DefectDojo/Jira.
  • Implement security checks for Terraform, CloudFormation, Dockerfiles and cloud infra.

Skills

Python/Go
CI/CD automation
DevSecOps tooling
Security testing tools
Docker/Kubernetes
Cloud platforms
IaC tooling
Telemetry & logging
SBOMs & CycloneDX
Cross-team collaboration

Tools

GitHub Actions
GitLab CI
Jenkins
Azure DevOps
Semgrep
ZAP
Nuclei
Burp
SARIF/JSON
DefectDojo

Job description

Job Summary:

This is a hands-on engineering role focused on building the shared automation backbone for security operations and the software development lifecycle.

You’ll help eliminate operational toil, automate security workflows, and embed security into modern DevOps practices through scalable, reliable DevSecOps tooling and platforms.

Responsibilities:
  • Build and maintain CI/CD security automation across GitHub, GitLab, Jenkins, or Azure DevOps.
  • Integrate SAST, DAST, SCA and security testing tools such as Semgrep, ZAP, Nuclei and Burp.
  • Process and normalize security findings in SARIF/JSON and route results into platforms such as DefectDojo and Jira.
  • Implement security checks for Terraform, CloudFormation, Dockerfiles, container images and cloud infrastructure.
  • Develop security telemetry ingestion, enrichment, schema mapping and quality controls for AWS, Azure, Windows and M365 sources.
  • Build and maintain reusable security artefacts, rules, templates and notebooks for red, blue and purple team activities.
  • Create disposable Active Directory, cloud and containerized lab environments using Terraform and Ansible.
  • Develop automation and self-healing capabilities to improve pipeline reliability and security operations.
  • Establish security metrics, SLIs/SLOs and build-stage security gates to provide engineering visibility.
  • Identify manual inefficiencies and continuously improve security workflows and practitioner experience.
  • Work closely with software engineering teams and security operations to turn requirements into intuitive, scalable tooling.
Job Requirements:
Years of experience:
  • Minimum 6yrs
Programming
  • Advanced proficiency in Python or Go.
  • Strong experience building automation, APIs and internal tooling.
CI/CD & DevOps
  • Hands-on experience with Jenkins, GitHub Actions, GitLab CI or Azure DevOps.
  • Familiarity with GitOps principles and modern DevOps practices.
Security Engineering
  • Practical experience with ZAP, Semgrep, Nuclei, SARIF, JSON, CycloneDX and SBOMs.
  • Understanding of vulnerability management and security testing automation.
Cloud & Containers
  • Experience with Docker and Kubernetes.
  • Practical experience with AWS and/or Azure.
  • Understanding of container image hardening and runtime security controls.
Data & Telemetry
  • Experience with log parsing, schema mapping, enrichment and streaming technologies such as Kafka, Kinesis or equivalent.
Infrastructure as Code
  • Experience with Terraform, CloudFormation, Ansible or similar technologies.
Collaboration
  • Proven ability to work across both software engineering and security operations teams.
  • Strong ability to translate technical security requirements into practical, developer-friendly solutions.
Nice to Have:
  • Experience implementing OWASP DSOMM.
  • GIAC Cloud Security Automation (GCSA).
  • HashiCorp Certified: Terraform Associate.
  • Certified Kubernetes Administrator (CKA).
  • DevSecOps/DevOps certifications such as DSOE or CDP.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Engineer
Security Engineer

Dicetek LLC • United Arab Emirates

On-site
AED 140,000 - 210,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Epergne Solutions • United Arab Emirates

On-site
AED 300,000 - 520,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Epergne Solutions • Abu Dhabi

On-site
AED 293,793 - 440,690
Devsecops Engineer
Devsecops Engineer

Acesoft Labs (India) Pvt Ltd • Dubai

On-site
AED 223,000 - 558,000
None
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Epergne Solutions • United Arab Emirates

On-site
AED 201,000 - 312,000
Security Engineer
Security Engineer

Dicetek LLC • Dubai

On-site
AED 350,000 - 600,000
DevSecOps Manager
DevSecOps Manager

Qureos • Sharjah

On-site
AED 367,242 - 514,138
Senior DevSecOps Engineer: Build Security Automation
Senior DevSecOps Engineer: Build Security Automation

AGAPI • Dubai

On-site
AED 240,000 - 420,000
Senior DevOps / Site Reliability Engineer
Senior DevOps / Site Reliability Engineer

Client of Salt • Abu Dhabi

On-site
AED 320,000 - 520,000
Senior DevOps / SRE Engineer
Senior DevOps / SRE Engineer

GSSTech Group • Dubai

On-site
AED 441,000 - 698,000