DevSecOps Engineer
About This Role
DevSecOps Pipeline Engineer – GitLab Secure
CI/CD Security | DevSecOps | Abu Dhabi | 12-Month Contract | On-Site
We are currently supporting a major enterprise client in Abu Dhabi that is looking to hire an experienced DevSecOps Pipeline Engineer to lead the design, implementation, and continuous improvement of secure CI/CD pipelines across enterprise development environments.
This is a high-impact, hands-on role focused on embedding security directly into software delivery pipelines while maintaining developer productivity, delivery velocity, and operational stability.
The successful candidate will act as the critical bridge between Security and Engineering — ensuring security controls are adopted effectively rather than bypassed.
The Role
You will take ownership of secure CI/CD pipeline engineering across development, testing, staging, and production environments, implementing scalable and audit-ready DevSecOps controls using GitLab Secure, Jenkins, and a range of enterprise security tooling.
This role goes beyond simply integrating scanners into pipelines. You will be responsible for building trusted, developer-friendly security workflows that reduce noise, improve remediation quality, and ensure critical vulnerabilities never reach production unmanaged.
Key Responsibilities
CI/CD Engineering & Pipeline Ownership
- Design, implement, and maintain secure CI/CD pipelines and reusable templates across GitLab (Enterprise & Community editions) and Jenkins
- Define and enforce security gates, policy-as-code controls, and severity thresholds across environments
- Integrate security tooling including Fortify, Trivy, OWASP ZAP, Tenable, dependency scanning, container scanning, and IaC security checks
- Ensure all pipeline outputs are actionable, developer-friendly, and operationally effective
- Continuously optimise pipeline performance and reduce friction introduced by security controls
DevSecOps Integration
- Embed DevSecOps practices throughout the SDLC using a shift-left approach
- Assess existing development pipelines and integrate security controls without disrupting engineering workflows
- Improve overall pipeline maturity, consistency, and governance across environments
Developer Enablement & Collaboration
- Partner directly with development teams to support vulnerability remediation and improve secure coding practices
- Conduct workshops, knowledge-sharing sessions, and developer enablement activities
- Act as first-line support for developers on pipeline security issues and CI/CD security tooling
Vulnerability & Exception Governance
- Review and validate SAST, SCA, container, and infrastructure security findings
- Work closely with Source Code Reviewers to reduce false positives and improve result quality
- Manage security exceptions with full audit traceability, including approvals, expiry periods, and mitigation tracking
- Ensure no critical vulnerabilities are merged into production environments without appropriate governance controls
Reporting & Visibility
- Build and maintain security posture dashboards across development environments
- Provide unified visibility across GitLab Secure, Fortify, Tenable, and related tooling
- Track remediation trends, pipeline efficiency metrics, and exception governance KPIs
What We’re Looking For
Technical Experience
- 3+ years of hands-on DevSecOps and CI/CD security engineering experience
- Strong experience with:
- GitLab Secure
- GitLab CI/CD
- Jenkins
- Docker
- Kubernetes
- Artifactory
- Experience integrating:
- Fortify
- SAST / DAST tools
- IaC security scanning
- Container and dependency scanning tools
- Open-source DevSecOps tooling
- Strong understanding of secure container image building and hardening
- Scripting and automation skills using Python, Bash, or PowerShell
Security & Governance Knowledge
- Understanding of secure software delivery lifecycle practices
- Familiarity with NIST SSDF, ISO 27001 secure development controls, and modern DevSecOps principles
- Experience managing security exceptions and audit-ready governance processes
- Strong knowledge of vulnerability management workflows and remediation lifecycle management
Please apply to be contacted with further information.
Similar Jobs
Cloud DevSecOps Engineer
Dicetek LLC · Dubai
Build and maintain secure CI/CD pipelines, automate deployment, integrate security controls, and support teams with cloud optimization and delivery practices.
Yesterday
Generate Resume ↗Cloud DevSecOps Engineer
Dicetek LLC · Dubai
**Role Purpose** Embed security into cloud delivery pipelines and operational workflows, enabling secure, automated, and scalable cloud deployments under a shared responsibility model. **Key Responsibilities** * Build an
Yesterday
Generate Resume ↗Cloud DevSecOps Engineer
Dicetek LLC · Abu Dhabi
Integrates security into DevOps processes across cloud platforms. Responsible for implementing security controls, secure CI/CD pipelines, vulnerability management, compliance checks, and continuous security monitoring th
4 days ago
Generate Resume ↗DevSecOps Engineer
Hoxton Wealth · Dubai
Position: DevSecOps Engineer (Mid\-Level) Hoxton Wealth is a global financial services firm with offices in key locations, including Cyprus, the United States, the United Kingdom, Dubai, South Africa, Australia \& Asia.
5 days ago
Generate Resume ↗DevSecOps Engineer - FinTech (relocation to Cyprus)
Reluna · Dubai
**This is an onsite role with our team in Nicosia, Cyprus. We offer relocation support to our team members relocating from abroad.** Reluna is redefining the future of Wealth Management and Family Governance with cutting
1 weeks ago
Generate Resume ↗DevSecOps Engineer - FinTech (relocation to Cyprus)
Reluna · Dubai
**This is an onsite role with our team in Nicosia, Cyprus. We offer relocation support to our team members relocating from abroad.** Reluna is redefining the future of Wealth Management and Family Governance with cutting
2 weeks ago
Generate Resume ↗Senior DevSecOps Engineer
Epergne Solutions · Dubai
**Job Description** Years of Experience : 6\+ Years Location : United Arab Emirates **Job Overview** We are looking for an experienced **Senior Cloud DevSecOps Engineer** to join our innovative team. In this role, you wi
2 weeks ago
Generate Resume ↗Senior DevSecOps Engineer
Epergne Solutions · Abu Dhabi
**Job Description** Years of Experience : 6\+ Years Location : United Arab Emirates **Job Overview** We are looking for an experienced **Senior Cloud DevSecOps Engineer** to join our innovative team. In this role, you wi
2 weeks ago
Generate Resume ↗Senior Cloud DevSecOps Engineer with Mobile Apps Pipeline - Banking Domain
TAT IT Technolgies · Abu Dhabi
**Urgent requirement for** **Senior Cloud DevSecOps Engineer with Mobile Apps Pipeline experience** **Banking Domain(Preferred) is required for our banking client in Abu Dhabi, UAE** **Strong experience in d** **esign, i
2 weeks ago
Generate Resume ↗Stop applying blindly.
Start getting hired.
Base Career automates the hardest parts of job searching — apply smarter, not harder.
AI Resume in 60s
Your resume rewritten for this exact role using the job description as the brief.
ATS-Optimized
Get past automated screening filters with the right keywords matched to each job.
Application Tracker
Track every job, follow-up, and interview in one visual kanban board.
Free plan · No credit card required