Cybersecurity Strategy & Leadership:
- Develop and execute enterprise cybersecurity strategies aligned with business objectives.
- Lead cybersecurity programs covering prevention, detection, response, and recovery.
- Define security roadmaps, policies, standards, and operating procedures.
- Provide cybersecurity guidance to senior leadership and business stakeholders.
- Drive continuous improvement of the organization's security maturity.
Security Operations & Threat Management:
- Lead Security Operations Center (SOC) activities, including monitoring, detection, investigation, and response.
- Manage incident response processes and coordinate resolution of security incidents.
- Oversee threat intelligence, vulnerability management, and security monitoring activities.
- Analyze cyber threats and recommend proactive mitigation measures.
- Coordinate with internal teams and external security vendors during incidents.
Risk Management & Compliance:
- Conduct cybersecurity risk assessments and support risk mitigation initiatives.
- Ensure compliance with UAE cybersecurity regulations and industry standards.
- Implement and maintain security frameworks such as ISO 27001, NIST Cybersecurity Framework, CIS Controls, PCI-DSS, and UAE IA requirements.
- Support internal and external security audits.
- Maintain cybersecurity policies, controls, and governance documentation.
Security Architecture & Technology Management:
- Review and improve security architecture across infrastructure, applications, cloud, and networks.
- Work with IT teams to implement secure design principles.
- Provide security recommendations for cloud environments (AWS/Azure/GCP), network security, IAM, endpoint security, application security, and data protection.
- Evaluate and manage cybersecurity tools and technologies.
Vulnerability & Security Assessment:
- Lead vulnerability assessment and penetration testing activities.
- Track remediation of security weaknesses.
- Manage security findings and risk acceptance processes.
- Ensure timely closure of critical and high-risk vulnerabilities.
Preferred Candidate Profile:
- 8-15 years of experience in cybersecurity, information security, or risk management.
- Proven experience leading cybersecurity programs or security operations teams.
- Experience working in large enterprises, banking, government, telecom, healthcare, energy, or critical infrastructure environments preferred.
- UAE/GCC experience is an advantage.
Education:
- Bachelor's degree in Computer Science, Information Security, Cybersecurity, IT, or related discipline.
- Master's degree or specialized cybersecurity education is an advantage.
Didn’t find the job appropriate? Report this Job