About the Role
Ready to apply for roles like this?
Unlock the company name and direct application link. Subscribers get instant access to fresh jobs across Dubai, Abu Dhabi and Riyadh, many with visa support.
Unlock employer & apply directly
The onsite engineer plays a crucial role as the day-to-day presence at the customer site, acting as the hands-on owner of the remediation cycle on the client's premises. This position involves working directly within the client's environment to run Qualys VMDR scans, obtain vulnerability details, prioritize findings with system owners in person, and implement fixes and patches on affected end devices. The engineer will also cover physical and locally restricted assets that cannot be addressed remotely and will perform daily client uploads during business hours. Additionally, the engineer will represent the service in the client's operational and change meetings.
Key Responsibilities
- Run Qualys VMDR scans from the client environment and extract vulnerability details, severities, affected assets, and remediation guidance.
- Prioritize findings with the client's infrastructure, application, and security owners in person, aligned to ALKASHIF threat context and asset criticality.
- Fix vulnerabilities and apply patches across in-scope end devices including:
- Windows and Linux servers
- Microsoft Exchange
- Active Directory
- Enterprise applications and databases
- Network devices (routers/switches)
- Security devices (firewalls/NAC/IPS/IDS)
- Cloud workloads
- Virtualization (VMware/Hyper-V)
- Remediate assets requiring onsite or locally-restricted access, including isolated/air-gapped segments and appliances not reachable from outside the client network.
- Raise and execute Change Requests for each patching activity covering impact, risk classification, schedule, and tested rollback; attend the client's CAB and operational meetings onsite.
- Execute patching within approved maintenance windows using staggered rollout, with physical intervention capability if a change fails.
- Perform post-remediation verification re-scans and maintain the vulnerability register and aging report to ensure verified closure.
- Conduct the daily Client upload via the Qualys Splunk Add-on during business hours, monitor upload health, and troubleshoot the Add-on to maintain compliance.
- Coordinate handover to the offsite engineer for after-hours and weekend continuation of open remediation activities.
- Act as the customer-facing point of contact onsite for VM queries, evidence requests, audits, and site walkthroughs.
- Contribute findings, patch time, coverage, and availability data to the weekly and monthly reporting pack.
Basic Qualifications
- 3–6 years in network/systems engineering with hands-on patching and vulnerability remediation experience.
- Familiarity with Qualys (VMDR) to run scans and obtain vulnerability details and reports; strong preference for Qualys Splunk Add-on familiarity.
- Strong hands-on patching skills for Windows Server and Linux environments (WSUS/SCCM, package managers), including Microsoft Exchange and Active Directory.
- Proficient in patching/upgrading network devices (routers/switches), security devices (firewalls/NAC/IPS/IDS), virtualization hosts (VMware/Hyper-V), and cloud workloads.
- Comfortable working in data centre/server-room environments, including access to console, out-of-band, and physical devices.
- Understanding of CVSS/CVE, the vulnerability management lifecycle, and ITIL change management/CR processes with rollback procedures.
- Familiarity with Splunk/SIEM; scripting skills (PowerShell/Bash) are an advantage.
- Strong communication, documentation, coordination, and written English skills, as this role requires daily interaction with clients.
- Must be able to work onsite in Dubai full-time and pass the client's security screening/site access requirements.
Preferred Qualifications
- Preferred certifications in Qualys VMDR; MCSA/RHCSA (Windows/Linux); CompTIA Security+/Network+; CCNA; Azure Administrator; ITIL Foundation.
- Presentable and confident in front of stakeholders.
- Disciplined about daily cadence and SLAs.
- Comfortable performing production changes within maintenance windows with rollback discipline in a governed, audit-ready environment.
Why Join Us
We foster a culture of innovation, collaboration, and continuous learning. We are committed to building a diverse and inclusive workplace where everyone can thrive and contribute their best work. If you’re passionate about technology and eager to make an impact, we’d love to hear from you.