Ict Information Security Lead

4 months ago


UAE, United Arab Emirates du Full time

**Job purpose**

This position has to participate in building ISRM ICT Security framework along with ISRM, other ICT stakeholders, other EITC stakeholders etc and ensure to comply with new and existing NBI project to go through proper ISRM compliance, based on multiple security standards. It considers a single point-of-contact for security and technical risks with customer’s security team, and lead all customer security governance, compliance processes & security risk.

The job holder needs to ensure a ISRM security risk assessment in practice for all operational changes and incidents. Also, direct security specialist to perform periodic risk assessments for the entire customer environment. Moreover, he needs to develop new policies as per need while maintain existing security policies such as ISO 27001, ISO 27017 and other standards provided by local authorities. This position includes working with Enterprise customer/Business team to contribute to the development and implementation of other components of an effective compliance program. This work is managerial in nature and needs to coordinate with ISRM, other units and require discussions, negotiations skills.

**Key Accountabilities**:
Operational risk management
- Review of operational request for fulfillment and provide security approval or rejection
- Review of operational change requests and provide security approval or rejection
- Review critical security incidents and recommend appropriate response
- Review and approve major change as part of CAB
- Identification and communication of risks to management
- Perform operational risk assessment of new systems, and ensure critical risks are mitigated.
- Develop, maintain and own the organizational risk register.
- Drive the periodic review of user access permissions
- Ensure DevOps workflows, pipelines and processes are compliant with SDP security policies and ISO 27001 standard
- Review security exception requests and approve or reject.
- Ensure identified risks are mitigated as per the organization's risk appetite.

Security governance
- Lead Information Security Governance Group (ISGG) monthly meetings and drive information security across internal teams.
- Lead Information Security Task Force (ISTF) monthly meetings and drive information security across internal teams.
- Setting up of yearly security objectives in alignment with business objectives, and ensuring objectives are achieved.
- Escalation of unhandled security risks to SDP, SDG managements and ICT management.
- Develop, monitor and achieve KPI's for the continual improvement of information security across the organization.
- Ownership of the annual security calendar and ensure planned activities, tasks and processes are completed on time.
- Review and maintenance of 37 security policies
- Review and maintenance of processes, registers, forms and standards
- Compile the monthly security governance report
- Ensure operational changes are compliant with SDP security policies
- Ensure business continuity processes and adequate documentation are in place.
- Ensure the periodic conducting of DR drill to achieve RTO and RPO targets.
- Develop policies to address emerging areas of risk or compliance.
- Drive bi-annual Management Review Meeting (MRM) with senior management from SDP and SDG.

Compliance
- Ensure all operational changes and requests across NBI environment are compliant with DESC/ ISO 27001/ SDG security requirements
- Conduct mandatory security awareness training to internal and external team members during onboarding process.
- Ensure the employees assigned to customer comply with customer security policies.

Security Certifications
- Ensure Information Security Management System (ISMS) based on ISO 27001 is operating robustly.
- Ensure that the security controls implemented as part ISO 27001 are effective and operating as intended.
- Implement ISO 27017 cloud security certification security controls
- Co-ordinate with multiple team members to fulfill requirements of ISO 27017 certification.
- Represent the organization during internal and external ISO 27001 audits
- Ensure mitigation of findings identified during internal and external audits of ISO 27001.
- Ensure all other certification like PCIDSS, CSA Star etc. to be compliant for renewal.

**Key Qualifications, experience, skills and competencies**:

- Bachelor Degree in Computer Science or Information security.
- Proven experience gathering requirements, analyzing needs and providing technical solutions to meet client needs.
- Highly specialized skills such as experience in lead roles in security, privacy, risk, or compliance (ISO, CISO, privacy, risk or compliance officer, etc.).
- Industry certifications, such as CISSP, CIPP or CISM, an asset.
- 10+ years’ experience designing and supporting security-based solutions, such as administrating and/or engineering Identity Life cycle Management, SIEM and other security-based technologies.
- Demonstrated understanding of secu



  • UAE, United Arab Emirates DP World Full time

    **JOB PURPOSE**: As part of DP World’s strategy of making global trade flow, and providing end to end logistics solutions to BCOs, we are investing substantially in various technology products and solutions to digitize, optimize, automate and grow our business. These products and solutions are expected to help grow DP World revenue in new logistics...


  • UAE, United Arab Emirates Majid Al Futtaim Full time

    **ROLE SUMMARY** The Information Security Operations Manager is responsible for leading a broad range of operational activities to protect systems and information assets of Majid Al Futtaim. The role holder will manage the operational activities, promote information security awareness within the organization, as well as operate and implement information...

  • Ict Teacher

    2 weeks ago


    UAE, United Arab Emirates Bright Learners Private SchoolUnited Arab Emirates Full time

    **Bright Learners Private School** United Arab Emirates Quick apply **Salary**: Health Insurance provided + Visa **Job type**: Full Time, Fixed Term **Start date**: August 2024 30 September 2024 **Job overview**: Bright Learners Private School is seeking a passionate and dedicated ICT Teacher to join our dynamic team. We are committed to providing an...


  • UAE, United Arab Emirates Majid Al Futtaim Full time

    Majid Al Futtaim invites you to join us in our quest to create great moments for everyone, everyday! We are the leading shopping mall, residential communities, retail and leisure pioneer across the Middle East, Africa and Asia, serving over 560 million visitors a year. For the past two decades, we have shaped the consumer landscape across the region,...


  • UAE, United Arab Emirates Majid al Futtaim Properties Full time

    Majid Al Futtaim invites you to join us in our quest to create great moments for everyone, everyday! We are the leading shopping mall, residential communities, retail and leisure pioneer across the Middle East, Africa and Asia, serving over 560 million visitors a year. For the past two decades, we have shaped the consumer landscape across the region,...

  • Ict Portfolio

    3 months ago


    UAE, United Arab Emirates du Full time

    for a UAE National Only Key Accountabilities - Creation of ICT portfolio annual marketing plan in alignment with the lines of business - Collaborate across business units and departments to deliver 360 marketing campaigns and maximizing effectiveness of marketing budget. - Understand ICT solutions & services portfolio and client base to actively create and...


  • UAE, United Arab Emirates Majid Al Futtaim Full time

    **_Majid Al Futtaim Holding is the leading shopping mall, retail, communities, entertainment developer and operator in the Middle East, North Africa, and Central Asia regions. With over 48,000 people, revenues of over US$ 11 Billion, and operations in 18 countries. Some of the iconic brands we carry include Mall of the Emirates, Carrefour, All Saints, Lego,...


  • UAE, United Arab Emirates Al-Futtaim Full time

    Established in the 1930s as a trading business, Al-Futtaim Group today is one of the most diversified and progressive, privately held regional businesses headquartered in Dubai, United Arab Emirates. Structured into five operating divisions; automotive, financial services, real estate, retail and healthcare; employing more than 35,000 employees across more...

  • Application Developer

    4 months ago


    UAE, United Arab Emirates Talent Pal Full time

    We are Yas Holding, a diverse business development and investment group based in Abu Dhabi. Our strategy is to explore, create and realize new investment initiatives in both local and international markets, creating value for both our shareholders and our customers. Yas Holding was established in 2006, and has since launched many investment initiatives...


  • UAE, United Arab Emirates Khalifa Bin Zayed Al Awal School (KBZA) Full time

    The PowerSchool/Information Systems (IS) Administrator shall be responsible for leading the technical administration of PowerSchool modules (SIS, LMS, Assessment, Insights, etc) as needed, as well as system administration and data integration with other information systems as required. In addition, the PowerSchool/(IS) Administrator shall assist and train...

  • Account Manager

    3 months ago


    UAE, United Arab Emirates Waterfall Security Solutions Full time

    Waterfall Security Solutions is a leading OT (Operational Technology) Cybersecurity Vendor dedicated to providing cutting-edge solutions for securing critical infrastructure. With a proven track record globally, we are expanding our operations to Africa and are seeking a highly motivated and experienced Channel/Partner Sales Manager to lead our partner...


  • UAE, United Arab Emirates World Food Programme Full time

    **.**: **ABOUT WFP**: The United Nations World Food Programme is the world's largest humanitarian agency fighting hunger worldwide. The mission of WFP is to help the world **achieve Zero Hunger** in our lifetimes. Every day, WFP works worldwide to ensure that no child goes to bed hungry and that the poorest and most vulnerable, particularly women and...


  • UAE, United Arab Emirates Damac Properties Full time

    **KEY ACCOUNTABILITIES** **Managerial Accountabilities** - Responsible for managing and assessing performance of the entire security personnel.- Contribute in the ongoing improvement and development of the security department- Create and develop security policies and procedures for the security department, oversee all necessary training modules and...


  • UAE, United Arab Emirates du Full time

    **Key Accountabilities**: - Ensure the stability and scalability of the technology infrastructure. Oversee the deployment and maintenance of servers, databases, and other critical IT infrastructure components. - Implement and monitor measures to ensure high system reliability and availability. - Develop and enforce service-level agreements (SLAs) to meet...


  • UAE, United Arab Emirates Emaar Properties Full time

    **Department**:Security **Role**:The role is responsible for assisting the Security Head of Department to ensure the safety and security of all personnel, customers, and property. This position requires a high level of vigilance and attention to detail to identify and mitigate potential threats. The Assistant Security Manager must possess strong...


  • UAE, United Arab Emirates Google Full time

    Note: Google’s hybrid workplace includes remote roles. **Remote location: United Arab Emirates.** **Minimum qualifications**: - Bachelor's degree in Computer Science, Information Systems, Cybersecurity, related technical field, or equivalent practical experience. - Typically 6 years of experience delivering cyber outcomes, identifying mission risks, and...


  • UAE, United Arab Emirates Google Full time

    Note: Google’s hybrid workplace includes remote roles. **Remote location: United Arab Emirates.** **Minimum qualifications**: - Bachelor's degree in Computer Science, Information Systems, Cybersecurity, related technical field, or equivalent practical experience. - Typically 6 years of experience delivering cyber outcomes, identifying mission risks, and...


  • UAE, United Arab Emirates Talent Pal Full time

    **Description** ISP Finance & Administration Manager Role Profile Purpose of Role The Finance & Administration Manager’s role enhances and improves the financial operations and governance of the school environment. The Finance & Administration Manager position is responsible for the accounting, financial reporting and financial operations of the school,...

  • Information Technology

    3 months ago


    UAE, United Arab Emirates SABIS Network Full time

    The Senior IT Infrastructure & Systems Engineer provides full technical support in terms of IT infrastructure and systems engineering to help build and deliver mission-critical Infrastructure solutions and maintain & troubleshoot existing SABIS® IT Systems and solutions in the various schools. Key Responsibilities: - Supporting virtual and non-virtual...


  • UAE, United Arab Emirates HSBC Full time

    -Job description **Manager, UAE Secured Credit Risk Strategy and Portfolio Management - UAE Nationals.** **Req - 0000JVCS** **GCB 5** **Some careers grow faster than others.** If you’re looking for further opportunities to develop your career, take the next step in fulfilling your potential right here at HSBC. UAE is a key market for WPB and is being...