The posting
Aspire Software is looking for a DevOps Engineer to join our team in Lebanon.
Here is a little window into our company: Aspire Software operates and manages wholly owned software companies, providing mission-critical solutions across multiple verticals. By implementing industry best practices, Aspire delivers a time sensitive integration process, and the operation of a decentralized model has allowed it to become a hub for creating rapid growth by reinvesting in its portfolio.
About the Role
The DevOps Engineer – Azure owns the infrastructure-as-code and CI/CD foundation for our SaaS platform. This is a hands on role focused on defining, deploying, and evolving our Azure environment through code and GitHub Actions, across multi-region production in Canada and the United States as well as our development, QA, and staging environments.
You will work closely with Developers, QA, and Product to make infrastructure changes safe, repeatable, and fast. You will own the Infrastructure-as-Code codebase and deployment workflows, keep environments consistent, and handle occasional database tasks as they come up. Priority will be given to AI-enabled DevOps engineers who leverage agentic workflows in their day-to-day work.
What “good” looks like in this role: infrastructure changes go through pull requests, plan / whatif reviews, and GitHub Actions, not the portal; environments are reproducible and consistent across regions; deployments are repeatable, observable, and easy to roll back; configuration drift is caught and corrected before it causes an incident.
Infrastructure You Will Manage
This role is responsible for the Azure infrastructure that runs the Bids & Tenders platform, including:
Application Hosting & Compute
- Azure App Service (web apps, App Service plans, and WebJobs) hosting the buyer, supplier, and partner-facing tiers.
- Azure Functions and Logic Apps for event-driven, scheduled, and integration workloads.
- Azure Kubernetes Service (AKS) clusters, with images built and stored in Azure Container Registry.
- Azure Virtual Machines for supporting services such as Elasticsearch, email relay, and network security appliances.
Edge, Networking & Security
- Azure Front Door with Web Application Firewall (WAF) policies, and public DNS zones for the domains.
- Virtual Networks, Network Security Groups, Private Endpoints, Private DNS zones, DNS Private Resolver, load balancers, NAT Gateway, and Azure Bastion.
- Azure Key Vault (secrets and TLS certificates) and user-assigned managed identities.
Data, Caching & Messaging
- Azure SQL (including disaster-recovery replicas in paired regions) and Azure Database for PostgreSQL Flexible Server.
- Azure Cache for Redis / Redis Enterprise and Azure Storage accounts.
- Azure Service Bus, Event Grid, and Azure API Management.
Operations & Observability
- Azure Monitor and Azure Managed Grafana, Azure Automation, and Recovery Services vaults.
- GitHub-hosted runners connected to Azure private networking for CI/CD.
Key Accountabilities & Responsibilities
Infrastructure-as-Code (Azure)
- Own the Infrastructure-as-Code codebase for the Azure environment; manual portal changes should be rare and quickly codified.
- Bring existing manually created resources under code management, and detect and resolve configuration drift.
- Build reusable modules and enforce consistent standards for naming, tagging, and resource group structure across regions and environments.
- Apply secure defaults and policy-as-code (Azure Policy, RBAC) so new infrastructure is compliant from the start.
GitHub Actions & CI/CD
- Design, build, and maintain GitHub Actions workflows for infrastructure and application deployments to App Service, Functions, Logic Apps, and AKS.
- Authenticate workflows to Azure using OIDC / workload identity federation rather than long-lived secrets; manage GitHub environments, approvals, and branch protections.
- Maintain private-networked runners and container image pipelines using Azure Container Registry.
- Build safety gates into pipelines: plan / what-if output on pull requests, linting and security scanning, automated tests, and clear rollback paths.
- Partner with QA to keep development, QA, and staging environments stable, reproducible, and production-like.
Azure Platform Operations
- Operate and evolve the platform across Canadian and US regions, including multi-region and disaster-recovery configuration.
- Manage networking and edge security: Front Door, WAF, DNS, private networking, and
Network Security Groups.
- Manage secrets, certificates, and identity using Azure Key Vault, managed identities, and Microsoft Entra ID.
- Monitor platform health and alerting with Azure Monitor, Log Analytics, and Managed Grafana; respond to incidents and drive lasting fixes.
Database Support
- Handle occasional database tasks on Azure SQL and PostgreSQL Flexible Server, such as provisioning through code, configuration changes, backup and geo-replication checks, and supporting engineering teams on performance issues.
Automation & AI-Assisted Engineering
- Build automation in PowerShell, Bash, and Azure CLI, including Azure Automation runbooks, to remove repetitive operational work.
- Use AI-assisted tooling and agentic workflows to accelerate infrastructure changes, investigations, and routine operations, with sound review practices in place.
- Collaboration, Incident Response & Communication
- Partner with Developers, Product Managers, and QA to resolve issues and improve reliability outcomes.
- Lead or join incident triage and root-cause discussions; write clear, blameless post-incident reviews.
- Communicate risks, changes, and release impacts in plain language with evidence attached.
- Share knowledge: keep runbooks, architecture notes, and operational how-tos current for the team.
Other Duties
- Perform related duties as assigned to support platform reliability and team delivery.
Requirements
- Bachelor’s degree or diploma in Computer Science, Software Engineering, Information
- Technology, or a related field. Equivalent combination of education and relevant experience will be considered.
- 3+ years in a DevOps, platform, or cloud infrastructure role, with a primary focus on Microsoft Azure.
- Strong hands-on Infrastructure-as-Code experience in production Azure environments including reusable modules, deployment / state management, and drift remediation.
- Hands-on experience building and maintaining GitHub Actions workflows, including reusable workflows, environments and approvals, and OIDC authentication to Azure.
- Production experience with Azure App Service, Azure Functions, and AKS.
- Solid understanding of Azure networking and security fundamentals.
- Scripting proficiency in PowerShell and Bash, along with Azure CLI.
- Demonstrated use of AI-assisted tooling or agentic workflows in day-to-day engineering work.
Azure & Platform
- Experience with Virtual Networks, Network Security Groups, Private Endpoints, Private DNS, Microsoft Entra ID, RBAC, managed identities, and Key Vault.
- Experience with Azure Front Door, WAF, DNS management, and TLS certificate lifecycle.
- Experience with containers and Kubernetes: Docker, Helm, Azure Container Registry, and AKS upgrades.
- Familiarity with Azure Service Bus, Event Grid, Logic Apps, and API Management.
- Observability experience with Azure Monitor, Log Analytics (KQL), and Grafana.
- Working knowledge of Azure SQL and PostgreSQL (backups, geo-replication, basic performance tuning) sufficient for occasional database tasks as well as experience with Elastic Search.
- Microsoft Azure certifications (e.g., AZ-104, AZ-400) are an asset.
Tech Stack
- Microsoft Azure (App Service, Functions, Logic Apps, AKS, Front Door)
- Bicep / Terraform / Other
- GitHub and GitHub Actions
- Docker, Helm, Azure Container Registry
- PowerShell, Bash, Azure CLI
- Azure SQL, PostgreSQL Flexible Server, Redis
- Azure Monitor, Log Analytics, Managed Grafan
- AI-assisted tooling and agentic workflows



