Own the platform's CI/CD, infrastructure as code and observability on Google Cloud day to day, and help carry the migration from VM-based deploys onto Kubernetes and GitOps while keeping every environment safe, automated and aligned with regulatory controls.
What you'll do
- Build and maintain the CI/CD pipelines (Cloud Build / GitHub Actions) for safe, incremental, zero-downtime deploys.
- Run and extend the GitOps delivery path: Kustomize overlays, image promotion and automated reconciliation.
- Help complete the platform's migration onto Kubernetes, keeping both deployment paths healthy while they run side by side.
- Implement and maintain infrastructure as code across all environments, with reviewed plans and shared modules.
- Operate containerized workloads day to day: ingress, resource limits, autoscaling, and troubleshooting failed rollouts.
- Extend observability: structured logging, metrics, dashboards and alerting, building on Sentry and lograge today toward full Cloud Monitoring and Cloud Logging coverage.
- Implement platform hardening to the defined control set: secret management with rotation, workload identity, and least-privilege IAM.
- Operate the KSA cloud-region footprint (GCP me-central2): backups, backup verification, and execution of disaster-recovery drills to the documented plan.
- Own supply-chain and pipeline security: container-image and dependency scanning, SBOM and provenance generation, secret scanning, and extending this coverage consistently across every pipeline.
- Maintain the alpha, QA, staging, staging-QA and production environments, including data anonymisation for all non-production environments.
- Support the on-call rotation, maintain the runbook library with the support team, and manage per-environment cost budgets and alerting.
- And all responsibilities given by the direct manager.
What we look for
- 3–5 years in DevOps, SRE or platform engineering, including production ownership of infrastructure other engineers rely on daily.
- Strong, hands-on Google Cloud Platform experience: IAM, GKE, Artifact Registry and Compute Engine.
- Kubernetes in production: deployments, ingress, resource management, and troubleshooting failed rollouts.
- GitOps delivery with Kustomize and Argo CD or Flux.
- Infrastructure as code (Terraform or equivalent) in a team context: remote state, consuming and extending shared modules, reviewed plans.
- Docker, and CI/CD pipeline design (Cloud Build / GitHub Actions) with Bash or Python scripting.
- Solid Linux troubleshooting at container level, and participation in production incidents.
- Experience in, or genuine comfort working in, a fast-paced startup environment: self-managed time, adapting to changing priorities, following tasks through, and delivering on short timelines when needed.
- Comfortable working with AI tools and able to use them effectively to lift your productivity and the quality of your work — Claude Code and other relevant AI-powered tools.
- Preferred — GCP Professional certification (Cloud DevOps Engineer or Cloud Engineer).
- Preferred — Experience with KSA cloud regions (me-central2) and data-residency-constrained environments.
- Preferred — Familiarity with Saudi cybersecurity controls (NCA ECC-1, CCC-2) and PDPL.
- Preferred — OpenTelemetry, or experience migrating production workloads from VMs onto Kubernetes.
- Preferred — Professional Arabic alongside English.
- Saudi nationals are strongly encouraged to apply.