Employer Active
Job Alert
You will be updated with latest job alerts via emailJob Alert
You will be updated with latest job alerts via email1. Position Overview:
We are seeking a motivated and skilled Information Security Risk Manager with Bachelors or Masters degree in IT ECE Computer Science or related field and a strong background of 69 Years Experience in information security risk management to join our team IMMEDIATELY
The role demands an understanding of regulatory requirements (e.g. UAE Information Assurance) and industry standards (e.g. NIST Risk Management Framework (RMF) ISO 31000 ISO 27001) along with practical experience in information security and risk management.
Role Description:
2. Key Responsibilities:
Risk Management:
1. Identify assess and prioritize information security risks across the organization.
2. Develop and maintain Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs) to monitor and measure risk levels and the effectiveness of risk management efforts.
3. Recommend and track the implementation of risk mitigation strategies and controls.
4. Conduct frequent risk assessments and reviews to ensure the effectiveness of controls.
5. Monitor and report on the status of risk management activities and initiatives.
6. Recommend enhancements to risk assessment methodology.
7. Maintain the risk register within the GRC platform ensuring it is updated with highquality relevant content.
Governance:
1. Assist in enforcing information security policies procedures and standards.
2. Contribute to the maintenance of a governance framework for managing
information security risks.
Collaboration:
1. Provide expertise and guidance on information security matters to key
stakeholders fostering strong working relationships across departments.
2. Serve as a liaison and advisor to customer IT project management vendors and consultants.
Continuous Improvement:
1. Stay informed on emerging trends threats and technologies in information security.
2. Recommend and implement improvements to the risk management framework tools and methodologies.
Compliance & Risk Assessments:
1. Conduct independent security risk assessments to support informed decision making aligned with business objectives.
2. Review the security aspects of business cases IT applications infrastructure changes project proposals requirements solution designs and system architectures.
3. Conduct ISO 27001 PCIDSS and other compliance assessments as neededespecially for banking information security audits.
Security Awareness:
1. Design and conduct innovative information security awareness programs to educate employees and management about current threats and security best practices.
2. Train and mentor the internal team and clients on GRC risk assessment and information security frameworks.
Project & Delivery Management:
1. Oversee project management and delivery for assigned teams ensuring
alignment with client requirements and quality standards.
Required Technical Skills:
Certifications:
Experience:
Behavioural Skills:
a) Strong analytical and strategic mindset in Cyber security governance.
b) Skilled to work with minimalsupervision.
c) Excellent Presentation & Internal as well as External Customer Facing skills.
d) Strong acumen to communicate complex ideas concisely and in a business context.
e) Project Management skills and experience.
f) Exceptional interpersonal relationship management and influencing skills.
g) Ability to collaborate with a broad range of business and technology stakeholders including top management representatives.
h) Positive attitude problem solving skills and attention to detail.
i) Should be resultsoriented and able to deliver within preset deadlines.
j) Should value quality and client satisfaction.
k) Should possess very good communication skills (strong written/spoken English language skills & presentation skills).
OTHER DETAILS :
Full Time