Cloud Security Platform

Required Skills

azure
aws
hybrid cloud
cloud security
network security
zero trust architecture
firewalls
waf (web application firewall)
load balancers
api gateways
ddos protection
vpn
sd-wan
expressroute
direct connect
vnet peering
vpc peering
dns
infrastructure-as-code
terraform
bicep
arm templates
ansible
cspm (cloud security posture management)
cnapp (cloud native application protection platform)
cwpp (cloud workload protection platform)
casb (cloud access security broker)
endpoint protection
edr
xdr
siem
soar
network segmentation
incident response
patch management
cloud governance
threat protection
multi-cloud networking
gcp
sase (secure access service edge)
service mesh
micro-segmentation
architecture collaboration
problem-solving
team collaboration

Job Description

Job Title: Engineer – Cloud Security Platforms


Job Type: Full-time


Location: On-site Dubai, Dubai Festival City, United Arab Emirates


Job Summary:

Join our team at Group Technology & Digital Platforms (GTDP) as an Engineer – Cloud Security Platforms, driving the creation and maintenance of industry-leading cloud and network security solutions. You will design, implement, and optimize robust security architectures that empower the digital transformation across the Al-Futtaim Group, ensuring secure, scalable, and compliant cloud operations.


Key Responsibilities:

• Design, implement, and maintain secure Cloud and Network Security architectures across Azure, AWS, and hybrid environments aligned to Zero Trust and enterprise frameworks.

• Deploy, monitor, and enhance cloud and on-premises network security controls including Firewalls, WAFs, Load Balancers, API Gateways, and DDoS protection.

• Implement secure connectivity patterns such as VPNs, SD-WAN, ExpressRoute/Direct Connect, VNet/VPC Peering, and hybrid DNS strategies.

• Provide Level 3 operational support for advanced network security platforms, managing incident response and lifecycle patching.

• Utilize Infrastructure-as-Code practices (Terraform, Bicep, ARM Templates) for repeatable, compliant network deployments.

• Operate, tune, and automate cloud security platforms (CSPM, CNAPP, CWPP, CASB) to enforce policy, detect drift, and remediate misconfigurations.

• Collaborate closely with architecture, security, and cloud platform teams to approve and enhance cloud network designs, ensuring adherence to strict governance and segmentation requirements.


Required Skills and Qualifications:

• Degree or diploma in Computer Science, Information Security, or related field.

• Hands-on experience with Azure networking and security, including deployment and management.

• Solid grasp of networking fundamentals (TCP/IP, routing, DNS, VPNs, load balancing, segmentation).

• Experience with major firewall and WAF platforms (Palo Alto, Fortinet, Check Point, F5, Cloudflare, Akamai).

• Familiarity with endpoint protection and EDR/XDR solutions, integrating with SIEM/SOAR workflows.

• Proficiency in cloud security governance and threat protection tools (CSPM/CNAPP such as Prisma Cloud, Wiz, Azure Defender).

• Competency in Infrastructure-as-Code tools and practices (Terraform, Bicep, ARM, Ansible).


Preferred Qualifications:

• Exposure to multi-cloud networking (AWS, GCP) and hybrid network models.

• Understanding of SASE and Zero Trust Network Access architectures.

• Experience with hub-spoke, service mesh, or micro-segmentation design patterns.