
Cloud Security Platform
Required Skills
Job Description
Job Title: Engineer – Cloud Security Platforms
Job Type: Full-time
Location: On-site Dubai, Dubai Festival City, United Arab Emirates
Job Summary:
Join our team at Group Technology & Digital Platforms (GTDP) as an Engineer – Cloud Security Platforms, driving the creation and maintenance of industry-leading cloud and network security solutions. You will design, implement, and optimize robust security architectures that empower the digital transformation across the Al-Futtaim Group, ensuring secure, scalable, and compliant cloud operations.
Key Responsibilities:
• Design, implement, and maintain secure Cloud and Network Security architectures across Azure, AWS, and hybrid environments aligned to Zero Trust and enterprise frameworks.
• Deploy, monitor, and enhance cloud and on-premises network security controls including Firewalls, WAFs, Load Balancers, API Gateways, and DDoS protection.
• Implement secure connectivity patterns such as VPNs, SD-WAN, ExpressRoute/Direct Connect, VNet/VPC Peering, and hybrid DNS strategies.
• Provide Level 3 operational support for advanced network security platforms, managing incident response and lifecycle patching.
• Utilize Infrastructure-as-Code practices (Terraform, Bicep, ARM Templates) for repeatable, compliant network deployments.
• Operate, tune, and automate cloud security platforms (CSPM, CNAPP, CWPP, CASB) to enforce policy, detect drift, and remediate misconfigurations.
• Collaborate closely with architecture, security, and cloud platform teams to approve and enhance cloud network designs, ensuring adherence to strict governance and segmentation requirements.
Required Skills and Qualifications:
• Degree or diploma in Computer Science, Information Security, or related field.
• Hands-on experience with Azure networking and security, including deployment and management.
• Solid grasp of networking fundamentals (TCP/IP, routing, DNS, VPNs, load balancing, segmentation).
• Experience with major firewall and WAF platforms (Palo Alto, Fortinet, Check Point, F5, Cloudflare, Akamai).
• Familiarity with endpoint protection and EDR/XDR solutions, integrating with SIEM/SOAR workflows.
• Proficiency in cloud security governance and threat protection tools (CSPM/CNAPP such as Prisma Cloud, Wiz, Azure Defender).
• Competency in Infrastructure-as-Code tools and practices (Terraform, Bicep, ARM, Ansible).
Preferred Qualifications:
• Exposure to multi-cloud networking (AWS, GCP) and hybrid network models.
• Understanding of SASE and Zero Trust Network Access architectures.
• Experience with hub-spoke, service mesh, or micro-segmentation design patterns.