الوصف الوظيفي
Mawarid Holding is looking to hire a Senior IT Cyber Security Projects, Governance & Risk Specialist for the Information Technology department with the main goal to drive the information security governance and compliance across our organization and enable us to exploit the potential of secure and compliant digital capabilities. You will play an important role in supporting the Information Security for the company and oversee information security governance portfolio across the group. You will take delivery of the responsibility for Mawarid Holding’s information security portfolio, risks, compliance, and partner with business units ensuring cyber security-related requirements and controls are included in projects and strategic initiatives.
Your Key Accountabilities:
Leadership:
Implement and lead information security governance and compliance throughout the organization
Articulate implications of security risks and related issues to business unit leadership; assist with security exceptions
Transform and govern information security technology processes with the aim of creating a more compliant, and secure technology operating model.
Work closely with Mawarid Holding Entities to align business strategy with group Information security governance and initiatives, to enable their business and help them to achieve operational excellence.
Coordinate and promote information security awareness activities and implement security awareness concepts customizing communications to be suitable for the Mawarid holding Group
Lead the internal information security audit on applications and infrastructure across the group
Responsible for the relationship and engagement with IT internal and external audits
Strategy:
Drive Information Security risk mitigation strategic initiatives across the group
Oversight of the Information Security Governance Framework, policies and procedures and work towards ensuring attainment and maintenance of quality standards (ISO 27001) in line with the business strategy
Manage and maintain strategic relationship with information security and governance service providers
Ensure risk assessments of information assets and business processes at planned intervals and when significant change is proposed or occurs.
Ensure that all security non-conformity and corrective actions are managed and implemented in a timely manner; and generally, that a pro-active culture of continual improvement is encouraged and evidenced.
Work from different locations to ensure adherence to security policies and compliance of the entities.
Thought leadership:
Identify and assess Mawarid holding and entities IT Security governance and put together a road map to implement & enhance IT Security governance frameworks and best practices in coordination with entities IT teams.
Develop and enable process improvements & champion security standards across the group
Performs other related duties as assigned.
Talent:
Lead the teams through successful talent attraction and succession planning
Develop strategic security governance and portfolio management capabilities with your team and across the group
المهارات
To qualify for the role, you must have:
5+ years of progressive and relevant leadership practice and at least 5 years in Information Security Governance, Risk & Compliance.
Experience as a Senior specialist for Information Security Governance, Risk & Compliance, managing and leading Information Security Governance projects or equivalent position in a big environment.
Significant experience in risk mitigation and assessment in application to business needs.
Experience in developing and launching security governance and compliance IT Security models and standards (e.g. ISO 27001, GDPR, NIST, PCI, COSO).
Experience in a federated structure with matrixed leadership responsibilities.
Solid knowledge in securing emerging technologies, and the ability to apply these in the service of the company’s key business goals.
Experience leading complex, major security change initiatives; demonstrated skills in change management.
Experience in Fusion ERP security and other applications
Education / Professional Certifications
Bachelor’s degree in computer science or engineering, CISA, ISO27001 ISMS Lead Implementer.
Technical Competencies must have:
Information Security leadership for high profile complex organisations.
Understand how to build engagement through diverse teams and working collaboratively.
Robust analytical and strategic planning and execution skills.
Preferred Information security & governance background.
Behavioral Competencies must have:
Creative decision making and problem-solving skills.
Talent to manage multiple high-profile security projects accounts and deadlines simultaneously.
Competitive drive, strong desire to win.
Ability to consistently demonstrate success; be trustworthy; commit to your team; listen to & understand your customer; prepare and plan and deliver results.
Strong self and social confidence and tenacity; polished & persuasive communicator and presenter.
تفاصيل الوظيفة
منطقة الوظيفة العين, الإمارات العربية المتحدة
قطاع الشركة خدمات تكنولوجيا المعلومات; أمن المعلومات و الشبكات
طبيعة عمل الشركة صاحب عمل (القطاع الخاص)
الدور الوظيفي التمويل والإستثمار
نوع التوظيف دوام كامل
الراتب الشهري غير محدد
عدد الوظائف الشاغرة 1
المرشح المفضل
المستوى المهني إدارة
عدد سنوات الخبرة الحد الأدنى: 5 الحد الأقصى: 10
منطقة الإقامة الإمارات العربية المتحدة
الشهادة بكالوريوس/ دبلوم عالي
https://www.bayt.com/ar/uae/jobs/senior-it-cyber-security-projects-governance-risk-specialist-4546051/?from_job_search=/ar/jobs/?filters%5Bjb_location_country_iso%5D%5B0%5D=ae&filters%5Bjb_location_country_iso%5D%5B1%5D=kw&filters%5Bjb_location_country_iso%5D%5B2%5D=qa&filters%5Bjb_location_country_iso%5D%5B3%5D=sa&jobId=4259849&options%5Bjb_is_external_job%5D%5B0%5D=1&page=12