Cloud Engineer
TXM Solutions · Dubai, United Arab Emirates
Apply & track with Apply EdgeCloud & Hybrid Engineer (L2)Azure / AWS & Hybrid Operations - Governance, Security, Identity & FinOpsPosition SnapshotNumber of Positions: 1Level: L2
The role owns operationalmanagement of Azure and AWS environments, hybrid connectivity, identity and privileged access,governance and FinOps, and Infrastructure-as-Code automation within an SLA-driven managed-servicesmodel.Key Responsibilities
- Operate and administer Microsoft Azure (IaaS/PaaS) and AWS workloads, ensuring availability,performance, and compliance with SLAs.
- Design, configure, and troubleshoot cloud networking: VNet / VPC, NSG / ASG, ExpressRoute, and VPN /Direct Connect hybrid connectivity.
- Manage identity and access using Entra ID (Azure AD), Azure AD Connect, IAM, and Privileged IdentityManagement (PIM) / privileged-access controls.
- Provision and maintain compute and storage - Azure / AWS VMs, storage accounts (Disk / Blob / S3) -and endpoint-protection agents.
- Implement governance and FinOps controls: Azure Policy, tagging & naming standards, and cost-management / optimisation.
- Develop and maintain Infrastructure-as-Code and automation using Terraform, ARM / Bicep, andPowerShell.
- Integrate and validate on-premises-to-cloud backup and disaster-recovery solutions.
- Administer and harden Windows Server (2016 / 2019 / 2022) and Linux VMs, including patching andsecurity baselining.
- Monitor cloud security posture, remediate vulnerabilities and misconfigurations, and support audit andcompliance requirements.
- Handle incidents, service requests, and changes through ITIL processes; document architectures,runbooks, and configurations.Technical Skills & Platforms
- Public Cloud: Microsoft Azure (IaaS/PaaS), AWS
- Cloud Networking: VNet / VPC, NSG / ASG, ExpressRoute, VPN / Direct Connect
- Identity & Access: Entra ID (Azure AD), Azure AD Connect, IAM, PIM / privileged access
- Compute & Storage: Azure / AWS VMs, storage accounts (Disk / Blob / S3), endpoint-protection agents
- Governance & FinOps: Azure Policy, tagging & naming standards, cost management / FinOps
- Automation & IaC: Terraform, ARM / Bicep, PowerShell
- Backup & DR: On-premises-to-cloud backup and DR integration
- Operating Systems: Windows Server 2016 / 2019 / 2022, Linux VMs (patching & hardening)Required Qualifications & Experience
- 5+ years of hands-on experience operating Azure and/or AWS and hybrid environments.
- Bachelor's degree in Computer Science, Information Technology, Engineering, or a related field (orequivalent experience).
- Proven expertise in cloud networking, identity & access management, and Infrastructure-as-Code.
- Experience with cloud governance, security hardening, and cost optimisation (FinOps).
- Experience operating within an SLA-driven, ITIL-aligned managed-services environment.CertificationsMandatory
- Microsoft AZ-305 (Azure Solutions Architect Expert) OR AWS Certified Solutions Architect – Associate.Preferred / Nice-to-Have
- Microsoft AZ-500 (Azure Security Engineer Associate).
- Microsoft AZ-104 (Azure Administrator Associate).
- ITIL v4 Foundation.Core Competencies
- Cloud architecture thinking with a security- and cost-conscious mindset.
- Automation-first approach and strong scripting discipline.
- Structured troubleshooting and clear technical documentation.
- Customer focus, SLA ownership, and cross-team collaboration.
- Accountability, governance awareness, and continuous-improvement orientation.Eligibility & Working Conditions
- Must be currently based in the UAE or willing to relocate; valid eligibility to work onsite at the client'sUAE government premises is required.
- Role delivered under an SLA-driven managed-services model; participation in ITIL-aligned incident,change, and problem management processes is mandatory.
- Fluency in English (written and spoken) is required; Arabic language ability is an advantage.