- Location
- Dubai, Dubai, United Arab Emirates · Dubai
- Workplace
- Remote, Onsite
- Department
- Engineering
Description
About Gruve
Gruve is an innovative software services startup dedicated to transforming enterprises to AI powerhouses. We specialize in cybersecurity, customer experience, cloud infrastructure, and advanced technologies such as Large Language Models (LLMs). Our mission is to assist our customers in their business strategies utilizing their data to make more intelligent decisions. As a well-funded early-stage startup, Gruve offers a dynamic environment with strong customer and partner networks.
Position Summary
Senior engineer who both leads the service and performs hands-on remediation on the most complex and security-critical systems. Owns KPI/SLA governance, prioritisation and risk sign-off, CAB representation, quality assurance, and mentoring of Engineers 1 and 2 — while personally fixing and patching network and security infrastructure (firewalls, NAC, IPS/IDS) and leading complex server, virtualization, and cloud remediation. Acts as the technical escalation point for both the onsite and offsite engineers and safeguards the integrity of the Customer-aligned KPIs.
Key Responsibilities
- Own the Customer-aligned KPI framework (Patch Time, Coverage, Availability); validate KPI calculation and monthly reporting accuracy.
- Provide prioritisation sign-off and risk classification for high-impact and critical findings; advise remediation approaches to system owners.
- Personally fix and patch security and network infrastructure — next-gen firewalls, NAC, IPS/IDS, routers/switches — and lead complex server, virtualization, and cloud remediation.
- Represent the service at the client's Change Advisory Board; enforce change governance, rollback rigour, and audit-ready evidence.
- Run aging and exception governance — surface stale findings weekly; document owner-side delays and risk acceptances per the SLA/service-credit model.
- Lead root-cause analysis of recurring vulnerabilities and drive continuous-improvement actions.
- Direct the daily work allocation between the onsite and offsite engineers and act as their technical escalation point.
- Quality-assure change records, re-scan evidence, and the weekly/monthly reporting pack before client submission.
- Mentor and develop the two engineers; maintain runbooks and cross-training so onsite and offsite coverage is interchangeable.
Basic Qualifications
- 6–10 years in network/security engineering with a strong vulnerability management background.
- Deep hands-on patching and upgrades of security infrastructure — next-gen firewalls (Palo Alto / Fortinet), NAC (Cisco ISE), IPS/IDS and network devices — plus servers, virtualization, and cloud.
- Familiar with Qualys to run scans and obtain vulnerability details and reports.
- Strong networking (routing/switching, segmentation), Windows/Linux, virtualization, and cloud (Azure) awareness.
- Solid grasp of vulnerability management, threat/exploitability context, CVSS, and remediation strategy.
- ITIL change management and CAB processes; SLA/KPI governance and reporting to enterprise/government stakeholders.
- Experience leading a small delivery team across mixed onsite and remote coverage models.
- Excellent communication, leadership, mentoring, and documentation skills.
Preferred Qualifications
- Preferred the certifications in CCNP Security or CCIE Security; PCNSE (Palo Alto) or Fortinet NSE; Cisco ISE; Qualys VMDR; CISSP or CISM; ITIL.
- Leadership and ownership mindset; comfortable owning KPIs and audits for a government client; strong mentor.
Why Gruve
At Gruve, we foster a culture of innovation, collaboration, and continuous learning. We are committed to building a diverse and inclusive workplace where everyone can thrive and contribute their best work. If you’re passionate about technology and eager to make an impact, we’d love to hear from you.
Gruve is an equal opportunity employer. We welcome applicants from all backgrounds and thank all who apply; however, only those selected for an interview will be contacted.