📌 Exp 5+ years
📌Location: Onsite/ Dubai or Abu Dhabi
📌 Notice period- Upto 30 Days.
Job Summary:
The DevOps Engineer owns the AWA platform's deployment, infrastructure-as-code, CI/CD, and operational reliability. You ensure that every AWA component — from AKS namespaces and KEDA autoscalers to ADLS Gen2 lifecycle policies and Azure Firewall allowlists — is deployed consistently, tested automatically, and operated reliably within THE BANK's Azure UAE environment. You are the guardian of the AWA infrastructure: nothing is deployed manually; everything is reproducible from code.
Key Responsibilities
• Infrastructure as code: Own and maintain all AWA Azure infrastructure in Terraform/Bicep: AKS 5-namespace cluster, ADLS Gen2 accounts with WORM policies, Azure AI Foundry APIM configurations, Azure Firewall allowlists, private endpoints, Key Vault, Container Registry, ExpressRoute peering.
• CI/CD pipeline ownership: Design and maintain Azure DevOps pipelines for all AWA components: container image build → ACR push → Notary v2 signing → AKS deployment; Terraform plan → policy check → apply; Agent Regression Testing gate on every PR.
• AKS operations: Manage the 5-namespace AKS cluster — namespace isolation, Network Policies, Pod Disruption Budgets, KEDA autoscaling rules based on Kafka consumer lag, OPA Gatekeeper admission policies, Workload Identity bindings for all agent pods.
• Container governance: Manage ACR, enforce Notary v2 image signing, configure vulnerability scanning, maintain the approved-image ConfigMap used by OPA Gatekeeper admission control.
Required Skills and Experience
Technical — Essential
• 5+ years DevOps/Platform Engineering; 2+ years on Azure
• Terraform or Bicep — production IaC, not just templates
• Kubernetes / AKS: namespaces, RBAC, Network Policies, Helm charts, Kustomize
• Azure DevOps or GitHub Actions — multi-stage pipelines, approvals, environments
• Azure Monitor, Log Analytics, KQL query language
• Container ecosystem: Docker, ACR, image signing, admission control
• Azure networking: VNet, private endpoints, NSGs, Azure Firewall, ExpressRoute concepts
• KEDA (Kubernetes Event-Driven Autoscaling) or equivalent autoscaling experience