وظيفة مهندس DevOps (مستوى متوسط) شاغرة لدى NovaLexi بمدينة الرياض
تفاصيل الوظيفة
تعلن شركة NovaLexi عن توفر وظيفة مهندس DevOps (مستوى متوسط) في الرياض، السعودية. سيتولى المرشح مسؤولية إدارة CI/CD والبنية التحتية كرمز والمراقبة على Google Cloud، والمساعدة في نقل عمليات النشر من الخوادم الافتراضية إلى Kubernetes وGitOps مع الحفاظ على الأمان والتوافق.
المهام والمسؤوليات
- بناء وصيانة خطوط أنابيب CI/CD (Cloud Build / GitHub Actions) لعمليات نشر آمنة وتدريجية وبدون توقف.
- تشغيل وتوسيع مسار تسليم GitOps: Kustomize overlays، وترقية الصور، والمزامنة التلقائية.
- المساعدة في إكمال نقل المنصة إلى Kubernetes، مع الحفاظ على كلا مساري النشر أثناء تشغيلهما جنبًا إلى جنب.
- تنفيذ وصيانة البنية التحتية كرمز عبر جميع البيئات، مع مراجعة الخطط واستخدام الوحدات المشتركة.
- إدارة أعباء العمل المحوسبة يوميًا: Ingress، حدود الموارد، التوسع التلقائي، واستكشاف أخطاء عمليات النشر الفاشلة.
- توسيع المراقبة: تسجيل منظم، مقاييس، لوحات معلومات، وتنبيهات، بناءً على Sentry و lograge نحو تغطية كاملة لـ Cloud Monitoring و Cloud Logging.
- تنفيذ تعزيز المنصة وفق مجموعة الضوابط المحددة: إدارة الأسرار مع التدوير، هوية أعباء العمل، و IAM بأقل صلاحية.
- تشغيل منطقة السحابة في المملكة العربية السعودية (GCP me-central2): النسخ الاحتياطي والتحقق منه، وتنفيذ تمارين التعافي من الكوارث وفق الخطة الموثقة.
- إدارة أمان سلسلة التوريد وخطوط الأنابيب: فحص الحاويات والتبعيات، توليد SBOM وسجل المصدر، فحص الأسرار، وتوسيع هذه التغطية باستمرار عبر جميع الخطوط.
- صيانة بيئات alpha و QA و staging و staging-QA والإنتاج، بما في ذلك إخفاء هوية البيانات لجميع البيئات غير الإنتاجية.
- دعم نظام المناوبة، وصيانة مكتبة runbooks مع فريق الدعم، وإدارة ميزانيات التكلفة والتنبيهات لكل بيئة.
- جميع المسؤوليات التي تُحدد من قبل المدير المباشر.
الشروط والمتطلبات
- 3-5 سنوات في DevOps أو SRE أو هندسة المنصات، مع خبرة في إدارة بنية تحتية يستخدمها مهندسون آخرون يوميًا.
- خبرة قوية وعملية في Google Cloud Platform: IAM، GKE، Artifact Registry، Compute Engine.
- Kubernetes في بيئة إنتاج: deployments، ingress، إدارة الموارد، وحل مشكلات عمليات النشر الفاشلة.
- تقديم GitOps باستخدام Kustomize و Argo CD أو Flux.
- البنية التحتية كرمز (Terraform أو ما يعادله) في بيئة فريق: state عن بعد، استخدام وتوسيع الوحدات المشتركة، مراجعة الخطط.
- Docker وتصميم خطوط أنابيب CI/CD (Cloud Build / GitHub Actions) مع كتابة نصوص Bash أو Python.
- قدرة قوية على استكشاف أخطاء Linux على مستوى الحاوية، والمشاركة في حوادث الإنتاج.
- خبرة أو ارتياح حقيقي للعمل في بيئة شركة ناشئة سريعة الخطى: إدارة الوقت الذاتية، التكيف مع الأولويات المتغيرة، متابعة المهام، والتسليم في مواعيد قصيرة عند الحاجة.
- الراحة في استخدام أدوات الذكاء الاصطناعي والقدرة على استخدامها بفعالية لرفع الإنتاجية وجودة العمل - Claude Code وأدوات الذكاء الاصطناعي الأخرى ذات الصلة.
- يفضل - شهادة GCP Professional (Cloud DevOps Engineer أو Cloud Engineer).
- يفضل - خبرة في مناطق السحابة في المملكة العربية السعودية (me-central2) والبيئات المقيدة بسكن البيانات.
- يفضل - الإلمام بضوابط الأمن السيبراني السعودية (NCA ECC-1، CCC-2) وقانون حماية البيانات الشخصية.
- يفضل - OpenTelemetry أو خبرة في نقل أعباء العمل الإنتاجية من الخوادم الافتراضية إلى Kubernetes.
- يفضل - إجادة اللغة العربية بجانب الإنجليزية.
- يُشجع بقوة التقديم من المواطنين السعوديين.
عرض النص الأصلي للإعلان
Own the platform's CI/CD, infrastructure as code and observability on Google Cloud day to day, and help carry the migration from VM-based deploys onto Kubernetes and GitOps while keeping every environment safe, automated and aligned with regulatory controls.
- Build and maintain the CI/CD pipelines (Cloud Build / GitHub Actions) for safe, incremental, zero-downtime deploys.
- Run and extend the GitOps delivery path: Kustomize overlays, image promotion and automated reconciliation.
- Help complete the platform's migration onto Kubernetes, keeping both deployment paths healthy while they run side by side.
- Implement and maintain infrastructure as code across all environments, with reviewed plans and shared modules.
- Operate containerized workloads day to day: ingress, resource limits, autoscaling, and troubleshooting failed rollouts.
- Extend observability: structured logging, metrics, dashboards and alerting, building on Sentry and lograge today toward full Cloud Monitoring and Cloud Logging coverage.
- Implement platform hardening to the defined control set: secret management with rotation, workload identity, and least-privilege IAM.
- Operate the KSA cloud-region footprint (GCP me-central2): backups, backup verification, and execution of disaster-recovery drills to the documented plan.
- Own supply-chain and pipeline security: container-image and dependency scanning, SBOM and provenance generation, secret scanning, and extending this coverage consistently across every pipeline.
- Maintain the alpha, QA, staging, staging-QA and production environments, including data anonymisation for all non-production environments.
- Support the on-call rotation, maintain the runbook library with the support team, and manage per-environment cost budgets and alerting.
- And all responsibilities given by the direct manager.
- 3-5 years in DevOps, SRE or platform engineering, including production ownership of infrastructure other engineers rely on daily.
- Strong, hands-on Google Cloud Platform experience: IAM, GKE, Artifact Registry and Compute Engine.
- Kubernetes in production: deployments, ingress, resource management, and troubleshooting failed rollouts.
- GitOps delivery with Kustomize and Argo CD or Flux.
- Infrastructure as code (Terraform or equivalent) in a team context: remote state, consuming and extending shared modules, reviewed plans.
- Docker, and CI/CD pipeline design (Cloud Build / GitHub Actions) with Bash or Python scripting.
- Solid Linux troubleshooting at container level, and participation in production incidents.
- Experience in, or genuine comfort working in, a fast-paced startup environment: self-managed time, adapting to changing priorities, following tasks through, and delivering on short timelines when needed.
- Comfortable working with AI tools and able to use them effectively to lift your productivity and the quality of your work - Claude Code and other relevant AI-powered tools.
- Preferred - GCP Professional certification (Cloud DevOps Engineer or Cloud Engineer).
- Preferred - Experience with KSA cloud regions (me-central2) and data-residency-constrained environments.
- Preferred - Familiarity with Saudi cybersecurity controls (NCA ECC-1, CCC-2) and PDPL.
- Preferred - OpenTelemetry, or experience migrating production workloads from VMs onto Kubernetes.
- Preferred - Professional Arabic alongside English.
- Saudi nationals are strongly encouraged to apply.
رقم الإعلان لدى المصدر: 4470146418