Director Information Security
7 days ago
Alexander Ash are seeking a
Director of Information Security
to lead and institutionalise cybersecurity governance, risk management, and regulatory compliance across a large, complex, multi-market organisation.
This is a senior leadership role with end-to-end ownership of the enterprise Information Security GRC framework, partnering closely with Legal, Internal Audit, Data Privacy, Procurement, HR, Retail Operations, and Technology to embed trust, accountability, and regulatory confidence across the business.
Key Responsibilities
- Define and execute the enterprise Information Security GRC strategy aligned to corporate risk, technology transformation, and global growth
- Design the GRC operating model, team structure, and KPIs to ensure scalable and repeatable governance
- Develop and maintain Group-wide security policies, standards, and procedures aligned to ISO 27001, NIST CSF, COBIT, and business needs
- Lead cross-functional governance forums and ensure policy integration across HR, Legal, and ITSM
- Own the Information Security Risk Management Framework, including risk identification, assessment, treatment, and monitoring
- Embed security risk management into projects, change management, and third-party onboarding
- Implement risk dashboards and quantification approaches (e.g. FAIR, GRC platforms)
- Ensure compliance with global and regional regulations including UAE PDPL, KSA PDPL, EU GDPR, PCI-DSS, ISO 27001/22301
- Lead internal and external audits, certifications, customer security reviews, and regulatory inspections
- Drive closure of audit findings in partnership with Internal Audit and Legal
- Own the end-to-end Third-Party Cybersecurity Risk Management programme, including due diligence, contractual controls, and ongoing assessments
- Partner with Procurement and Legal across the vendor lifecycle
- Lead Group-wide security awareness and compliance programmes, including executive training and simulated phishing
- Tailor initiatives by role, function, and geography to drive accountability
- Own and enhance the enterprise GRC platform and integrations with ITSM, risk registers, and incident management
- Drive automation, metrics, and dashboards to improve efficiency and insight
Ideal Profile
- Senior GRC leader with experience operating at enterprise or group level
- Strong background in information security governance, risk, compliance, and audit
- Hands-on experience with global regulatory frameworks and multi-jurisdiction environments
- Proven ability to influence senior stakeholders and lead cross-functional initiatives
- Experience implementing and optimising GRC tools and reporting frameworks
This is a high-impact role for a strategic yet hands-on GRC leader looking to shape cybersecurity governance at scale.
Interested candidates are encouraged to directly reach out to
-
Information Security Officer
2 days ago
Dubai, Dubai, United Arab Emirates Dubai Civil Aviation Authority Full timeJob DescriptionRole PurposeThe overall responsibility to plan and implement policies to protect a DCAA's computer network and data from various forms of security breaches. Also, responsible for identifying vulnerabilities and to resolve them, ensuring that DCAA's network and data remain secure.Key ResponsibilitiesIdentifying vulnerabilities in DCAA...
-
Director of Information Technology
2 weeks ago
Dubai, Dubai, United Arab Emirates Course Full timeWe are seeking an experienced IT Director with a robust background in real estate and construction to lead our technology initiatives. The ideal candidate will be responsible for overseeing all aspects of our IT infrastructure, implementing technology strategies that align with our business objectives, and ensuring that our systems support the unique needs...
-
Information Security Engineer
7 days ago
Dubai, Dubai, United Arab Emirates VaporVM Full timeDate Posted:15 January, 2026Industry:IT Services and IT ConsultingLocation:VAPORVM IT SERVICES DMCCJob Description:Job OverviewWe are seeking a skilled Information Security professional to support and strengthen the organization's security posture across operations, governance, risk, and compliance. The role involves hands-on security operations,...
-
Assistant Security Manager
2 weeks ago
Dubai, Dubai, United Arab Emirates USS - Universal Security Full timeThe Assistant Manager, Security will provide leadership and direction to Security Guards, Surveillance Personnel and Team Leaders in the absence of Managers and Directors. Priority of this role will be the constant support, command and control of emergencies, crises and evacuations, responsible for everyday sites visits and reportsJob Types: Full-time,...
-
Information Security Consultant
4 days ago
Dubai, Dubai, United Arab Emirates SecureCyberGates Full timeConduct comprehensive risk assessments to identify vulnerabilities, threats, and potential impacts on organizational information systems.Develop and implement customized security policies and procedures aligned with industry best practices and regulatory requirements.Perform security audits and assessments to evaluate the effectiveness of existing security...
-
Information Security Manager
7 days ago
Dubai, Dubai, United Arab Emirates MCG Talent Full timeWe are seeking an experienced IT Custody Security Manager to lead our client's efforts in ensuring robust security for digital asset custody and blockchain infrastructure.This role will focus on designing and implementing security controls, supporting client assurance, and ensuring compliance with regulatory standards.The ideal candidate is a strategic...
-
Information Security Consultant
1 week ago
Dubai, Dubai, United Arab Emirates ISHRAQAT AL AMAL TECHNICAL SERVICES L.L.C Full timeInformation Security ConsultantLocation: DubaiJob Type: Full-TimeExperience: 3–8 years in Information Security, Cybersecurity, or related domainsRole OverviewWe are looking for an Information Security Consultant with strong hands-on experience across security governance, cloud security, SOC operations, and vulnerability management. The ideal candidate...
-
Security Manager
2 days ago
Dubai, Dubai, United Arab Emirates Alpha Edge Security Full timeManage and oversee all security personnel, ensuring proper training and adherence to protocols for effective incident response.Monitor security systems and technologies, ensuring they are up-to-date and functioning properly to prevent breaches.Analyze and respond to security incidents, preparing detailed reports to inform senior management and improve future...
-
Information Security Engineer
2 weeks ago
Dubai, Dubai, United Arab Emirates Infra Assure Full timeConfigure, manage, and optimize IBM QRadar SIEM, including log onboarding, correlation rules, and dashboardsManage and respond to alerts from CrowdStrike Falcon, including threat containment and remediationImplement and manage Microsoft Purview for data loss prevention (DLP), information protection, and complianceMonitor security events, investigate...
-
Information Security Consultant
2 weeks ago
Dubai, Dubai, United Arab Emirates Bahwan CyberTek Full timeRequired Skills & Experience5-8 years of experience in Information Security / Cybersecurity.Hands-on experience with PCI DSS v4.0 compliance.Strong understanding of network security, firewalls, IDS/IPS, encryption, and access control.Experience with SIEM tools, vulnerability scanners, and security monitoring tools.Knowledge of risk management and security...