وصف الوظيفة
المسمى الوظيفي: مدير DevSecOps
القسم: البنية التحتية الرقمية والأنظمة
تقرير إلى: رئيس البنية التحتية الرقمية والأنظمة
ملخص الوظيفة:
نحن نبحث عن مدير قسم DevSecOps ذو مهارات عالية وخبرة كبيرة لـ
إعداد وقيادة وإدارة ممارسة DevSecOps المؤسسية ضمن قسم البنية التحتية الرقمية والأنظمة.
الدور مسؤول عن بناء وتشغيل منظومة DevSecOps حديثة تدعم الخدمات الرقمية على مستوى الحكومة وبيئات السحابة المختلطة عبر المنصات المحلية والسحابة العامة. يجب أن يجمع المرشح المثالي بين قدرات قيادة قوية وإدارة فرق مع خبرة تقنية عميقة في
Kubernetes/OpenShift، GitLab CI/CD، منصات السحابة، الأتمتة، التكامل الأمني، وحلول الرصد.
سيقود هذا المنصب استراتيجية DevSecOps والحكومة وأطر الأتمتة وخطوط CI/CD ومنصات الحاويات ومبادرات تمكين المطورين مع ضمان الالتزام، والقدرة على التوسع، والأمن، والتميز التشغيلي.
المسؤوليات الأساسية:
القيادة والإدارة
* إنشاء وقيادة قسم DevSecOps، بما في ذلك الهيكل التنظيمي، ونموذج التشغيل، وخارطة الطريق.
* بناء وتوجيه وإدارة فريق هندسة DevSecOps عالي الأداء.
* تعريف KPIs الفريق وSLAs والمعايير الفنية وإجراءات الحوكمة.
* إدارة جداول تسليم المشاريع وتخطيط الموارد وتحديد أولوية الأحمال وتوقعات الأطراف المعنية.
* دفع تبني ثقافة Agile وDevSecOps عبر الفرق الداخلية والجهات الحكومية.
* التنسيق مع فرق البنية التحتية والأمن والعمليات والرقمية والمعمار لضمان تكامل سلس وتقديم الخدمة.
* إجراء إدارة الأداء والتوجيه والتوجيه الفني وتطوير القدرات للمهندسين.
* قيادة التنسيق مع البائعين وورش العمل الفنية والتعريف بالمنصة والمؤسسات.
المسؤوليات الفنية والمنصة
منصات DevSecOps وCI/CD
* تصميم وتنفيذ وإدارة منصات CI/CD المؤسسية باستخدام GitLab وأدوات DevOps المرتبطة.
* بناء مسارات CI/CD آمنة مع فحص أمني مدمج، والتحقق من الامتثال، واختبار آلي.
* تنفيذ منهجيات Infrastructure as Code (IaC) وGitOps.
* توحيد أطر اعتماد DevSecOps للأ applications وفِرق التطوير.
منصات الحاويات وKubernetes
* إدارة بيئات Kubernetes/OpenShift المؤسسية باستخدام Red Hat OpenShift.
* قيادة بنية منصة الحاويات، وعمليات متعددة المجموعات، والحوكمة، وقابلية التوسع، والمرونة، وأمان المنصة.
* دعم أعباء العمل المحوسبة والخدمات الدقيقة ومبادرات هندسة المنصة.
* تنفيذ نسخ احتياطي على مستوى المؤسسة، وتوافر عالي، وتخطيط الطلب والتكامل مع التخزين والمراقبة لمنصات الحاويات.
السحابة والبنية التحتية الهجينة
* إدارة تكامل DevSecOps عبر منصات سحابة هجينة بما في ذلك Microsoft Azure والبنية التحتية السحابية الخاصة.
* تمكين نشر تطبيقات سحابية آمنة.
* تنفيذ الأتمتة والتنسيق عبر السحابة والمنصات المحلية.
* دعم نماذج تشغيل متعددة السحابات ومعايير حوكمة السحابة.
الأمن والامتثال
* دمج ضوابط الأمان ضمن دورة حياة تسليم البرمجيات (نهج DevSecOps).
* دمج SAST وDAST وأمان الحاويات وإدارة الأسرار وقياس الثغرات وأتمتة الامتثال في خطوط CI/CD.
* ضمان التوافق مع معايير الأمن السيبراني والسيادة الرقمية.
* التعاون مع فرق الأمن والتشغيل وGRC في التخفيف من المخاطر ومبادرات الامتثال.
المراقبة والمشاهدة
* قيادة تنفيذ استراتيجية الرصد والمشاهدة المؤسسية.
* تنفيذ تسجيل مركزي وتتبع ومراقبة وتحليلات الأداء للمنصات.
* دمج حلول الرصد عبر Kubernetes والسحابة وطبقات الوسطى والتطبيقات والبنية التحتية.
* دفع المراقبة الاستباقية والتنبيه وتخطيط السعة وممارسات الهندسة الاعتمادية.
المؤهلات والخبرة:
التعليم
* درجة البكالوريوس فيعلوم الحاسوب أو تكنولوجيا المعلومات أو الهندسة أو مجال ذي صلة.
* يفضل الماجستير.
* الحد الأدنى 12+ سنة في بنية تحتية IT، سحابة، DevOps، أو هندسة المنصة.
* الحد الأدنى 7+ سنوات في دور قيادي أو إداري لـ DevOps/DevSecOps.
* خبرة قوية في إدارة DevSecOps ومنصات الحاويات على مستوى المؤسسة.
* خبرة مثبتة في بيئات السحابة الهجينة وKubernetes/OpenShift.
يفضَّل الخبرة في الجهات الحكومية والخدمات المشتركة المؤسسية أو البيئات التنظيمية الكبيرة
المفضل
المهارات والكفاءات:
المهارات الأساسية
* خبرة قوية في إدارة Red Hat OpenShift وعمارة النظام.
* خبرة قوية في خطوط أنابيب GitLab CI/CD وممارسات GitOps.
* خبرة مع خدمات Microsoft Azure والدمج بين السحابة الهجينة.
* فهم عميق لـ Kubernetes والحاويات والخدمات المصغرة والهندسة المنصية.
* خبرة عملية مع أتمتة وأدوات IaC مثل Ansible وTerraform وHelm.
* فهم قوي لضوابط أمان DevSecOps وSDLC الآمن.
* خبرة مع منصات الرصد مثل Dynatrace وPrometheus وGrafana وELK أو OpenTelemetry.
* خبرة مع تكامل API وأطر الأتمتة ووسيطات المؤسسات.
* معرفة بأنظمة Linux والشبكات والتخزين والافتراضية والبنى التحتية المؤسسية.
القيادة والمهارات الناعمة
* قدرات قيادة وتواصل وإدارة أصحاب المصلحة قوية.
* مهارات إدارة الفريق والتوجيه والMentoring متميزة.
* قدرات تحليلية وحل المشكلات واتخاذ القرار قوية.
* القدرة على العمل تحت الضغط في بيئات تشغيل مؤسسية.
* مهارات عرض وتقارير قوية للإدارة والقيادة التنفيذية.
* القدرة على قيادة مبادرات التحول والتغيير التنظيمي.
الشهادات المفضلة
DevOps وKubernetes
* Red Hat Certified Specialist in OpenShift Administration
* Red Hat Certified Architect (RHCA)
* Certified Kubernetes Administrator (CKA)
* Certified Kubernetes Security Specialist (CKS)
السحابة
* Microsoft Certified: Azure Solutions Architect Expert
* Microsoft Certified: Azure DevOps Engineer Expert
GitLab والتشغيل الآلي
* GitLab Certified CI/CD Associate or Professional
* Red Hat Ansible Automation Certification
* Terraform Associate Certification
الأمن والحوكمة
* Certified Information Systems Security Professional (CISSP)
* Certified Cloud Security Professional (CCSP)
* DevSecOps Foundation Certification
إدارة خدمات تكنولوجيا المعلومات وأجايل
* ITIL v4 Foundation or Managing Professional
* PMI-PMP or PRINCE2
* Certified Scrum Master (CSM) or SAFe Certification
المرشح المفضل
نحن نبحث عن قائد تقني قوي يمكنه العمل على المستويين الاستراتيجي والعملي عند الحاجة. يجب أن يكون المرشح المثالي قادرًا على بناء وظيفة DevSecOps من الأساس، إدارة المنصات المؤسسية، قيادة ثقافة الأتمتة، وقيادة مبادرات التحول عبر بيئات السحابة الهجينة.
Job description
Job Title: DevSecOps Manager
Department: Digital Infrastructure & Systems
Reports To: Head of Digital Infrastructure & Systems
Job Summary:
We are seeking a highly skilled and experienced DevSecOps Section Manager to
establish, lead, and manage the enterprise DevSecOps practice within our Digital
Infrastructure & Systems Department.
The role is responsible for building and operating a modern DevSecOps ecosystem that
supports government-scale digital services and hybrid multi-cloud environments across on
premises and public cloud platforms. The ideal candidate must combine strong leadership
and people management capabilities with deep hands-on technical expertise in
Kubernetes/OpenShift, GitLab CI/CD, cloud platforms, automation, security integration, and
observability solutions.
This position will lead the DevSecOps strategy, governance, automation frameworks, CI/CD
pipelines, container platforms, and developer enablement initiatives while ensuring
compliance, scalability, security, and operational excellence.
Key Responsibilities:
Leadership & Management
* Establish and lead the DevSecOps Section, including organizational structure,
operating model, and roadmap.
* Build, mentor, and manage a high-performing DevSecOps engineering team.
* Define team KPIs, SLAs, technical standards, and governance processes.
* Manage project delivery timelines, resource planning, workload prioritization, and
stakeholder expectations.
* Drive Agile and DevSecOps culture adoption across internal teams and government
entities.
* Coordinate with Infrastructure, Security, Operations, Digital, and Architecture teams
to ensure seamless integration and service delivery.
* Conduct performance management, coaching, technical mentoring, and capability
development for engineers.
* Lead vendor coordination, technical workshops, onboarding, and enterprise platform
adoption initiatives.
Technical & Platform Responsibilities
DevSecOps Platforms & CI/CD
* Design, implement, and manage enterprise CI/CD platforms using GitLab and related
DevOps toolchains.
* Build secure CI/CD pipelines with integrated security scanning, compliance
validation, and automated testing.
* Implement Infrastructure as Code (IaC) and GitOps methodologies.
* Standardize DevSecOps onboarding frameworks for applications and development
teams.
Container Platforms & Kubernetes
* Manage enterprise Kubernetes/OpenShift environments using Red Hat OpenShift.
* Lead container platform architecture, multi-cluster operations, governance,
scalability, resiliency, and platform security.
* Support containerized workloads, microservices, and platform engineering initiatives.
* Implement enterprise-grade backup, DR, HA, storage integration, and monitoring for
container platforms.
Cloud & Hybrid Infrastructure
* Manage DevSecOps integration across hybrid cloud platforms including Microsoft
Microsoft Azure and private cloud infrastructure.
* Enable secure cloud-native application deployment pipelines.
* Implement automation and orchestration across cloud and on-premise platforms.
* Support multi-cloud operational models and cloud governance standards.
Security & Compliance
* Embed security controls into the software delivery lifecycle (DevSecOps approach).
* Integrate SAST, DAST, container security, secrets management, vulnerability
management, and compliance automation into CI/CD pipelines.
* Ensure alignment with cybersecurity and digital sovereignty standards.
* Collaborate with Security Operations and GRC teams on risk remediation and
compliance initiatives.
Observability & Monitoring
* Lead enterprise observability and monitoring strategy implementation.
* Implement centralized logging, tracing, monitoring, and performance analytics
platforms.
* Integrate observability solutions across Kubernetes, cloud, middleware, applications,
and infrastructure layers.
* Drive proactive monitoring, alerting, capacity planning, and reliability engineering
practices.
Qualifications & Experience:
Education
* Bachelor's degree in computer science, Information Technology, Engineering, or
related field.
* Master's degree is preferred.
* Minimum 12+ years in IT Infrastructure, Cloud, DevOps, or Platform Engineering.
* Minimum 7+ years in DevOps/DevSecOps leadership or management role.
* Strong experience managing enterprise-scale DevSecOps and container platforms.
* Proven experience in hybrid cloud and Kubernetes/OpenShift environments.
Experience in government, enterprise shared services, or large-scale regulated
environments is highly preferred
Skills & Competencies:
Mandatory Skills
* Strong expertise in Red Hat OpenShift administration and architecture.
* Strong expertise in GitLab CI/CD pipelines and GitOps practices.
* Experience with Microsoft Azure cloud services and hybrid cloud integration.
* Strong understanding of Kubernetes, containers, microservices, and platform
engineering.
* Hands-on experience with automation and IaC tools such as Ansible, Terraform, and
Helm.
* Strong understanding of DevSecOps security controls and secure SDLC.
* Experience with observability and monitoring platforms such as Dynatrace,
Prometheus, Grafana, ELK, or OpenTelemetry.
* Experience with API integration, automation frameworks, and enterprise middleware
integration.
* Knowledge of Linux, networking, storage, virtualization, and enterprise infrastructure
concepts.
Leadership & Soft Skills
* Strong leadership, communication, and stakeholder management capabilities.
* Excellent team management and mentoring skills.
* Strong analytical, troubleshooting, and decision-making abilities.
* Ability to work under pressure in enterprise operational environments.
* Strong presentation and reporting skills for management and executive leadership.
* Ability to drive transformation initiatives and organizational change.
Preferred Certifications
DevOps & Kubernetes
* Red Hat Certified Specialist in OpenShift Administration
* Red Hat Certified Architect (RHCA)
* Certified Kubernetes Administrator (CKA)
* Certified Kubernetes Security Specialist (CKS)
Cloud
* Microsoft Certified: Azure Solutions Architect Expert
* Microsoft Certified: Azure DevOps Engineer Expert
GitLab & Automation
* GitLab Certified CI/CD Associate or Professional
* Red Hat Ansible Automation Certification
* Terraform Associate Certification
Security & Governance
* Certified Information Systems Security Professional (CISSP)
* Certified Cloud Security Professional (CCSP)
* DevSecOps Foundation Certification
IT Service Management & Agile
* ITIL v4 Foundation or Managing Professional
* PMI-PMP or PRINCE2
* Certified Scrum Master (CSM) or SAFe Certification
Preferred Candidate Profile
We are looking for a technically strong leader who can operate strategically and hands-on
when needed. The ideal candidate should be capable of building the DevSecOps function
from the ground up, managing enterprise platforms, driving automation culture, and leading
transformation initiatives across hybrid cloud environments.