Specialist- Information Security GRC

apartmentflydubai placeDubai calendar_month 

Job Description

MAIN OBJECTIVE OF ROLE

To support the organizations cybersecurity governance, risk management, and compliance activities by coordinating and executing Governance, Risk, and Compliance (GRC) processes to ensure alignment with regulatory requirements, industry standards, and internal policies, ultimately strengthening the organization&aposs security posture.

Key Responsibilities
  • Develops, implements, and maintains information security governance frameworks, policies, and procedures.
  • Conducts risk assessments and facilitate risk management activities, including identification, evaluation, and mitigation of security risks.
  • Supports compliance efforts with relevant regulations and standards such as DESC ISR, ISO 27001, NIST, GDPR, PCI-DSS, and others.
  • Manages and coordinates internal and external audits related to information security and compliance.
  • Maintains the organization&aposs risk register and track remediation plans to closure.
  • Collaborates with IT, legal, and business units to embed GRC best practices across the organization.
  • Prepares and presents risk and compliance reports for senior management and key stakeholders.
  • Facilitates training and awareness programs to promote understanding of information security policies and compliance requirements.
  • Supports the assessment, monitoring, and mitigation of vendor and third-party risks to ensure compliance with organizational policies and regulatory requirements.
  • Monitors emerging regulations, standards, and industry trends related to cybersecurity governance and compliance.
  • Coordinates and documents business impact assessments (BIAs) and support the development of security risk treatment plans.
  • Participates in the design and implementation of security metrics and KPIs to measure compliance and control effectiveness.
  • Assists in the evaluation and implementation of GRC tools and automation solutions.
Qualifications
  • Bachelor&aposs Degree (3+ years)
  • Bachelors degree in Information Security, Cybersecurity, Information Technology, or a related field
  • Fluent in English
  • Minimum of 7 years experience in information security governance, risk management, and compliance, preferably in regulated industries such as aviation or banking. Proven skills in risk assessments, audit support, policy implementation, and hands-on third-party risk management. Familiarity with standards such as DESC ISR, ISO 27001, NIST, and GDPR is essential.
  • Years with qualifications: 7 - 9 years
  • Relevant certifications preferred (e.g., CISM, CRISC, CISA, CISSP)
COMPETENCIES
  • Customer Focus
  • Teamwork
  • Effective Communication
  • Personal Accountability & Commitment to achieve
  • Resilience & Flexibility (Can do attitude)

Isr Requirements

Reads and complies with the ISR policies of the Company and diligently reports any weakness or incidents to the respective Line Manager or the Information Security team. Completes all required ISR awareness sessions and follows associated guidelines in the day-to-day business operations.

apartmentONEXplaceDubai
Job Description Job Purpose To take full ownership of the security operations, governance, and risk management functions across our organization. This role will serve as the single point of contact for all security-related matters, ensuring...
thumb_up_altRecommended

Security Officer

apartmentAccorHotelsplaceDubai
safety and security.  •  Address and manage the presence of trespassers or unauthorized individuals on the property.  •  Carry out security and baggage checks as necessary.  •  Monitor CCTV cameras and take appropriate actions to ensure the safety of guests...
apartmentflydubaiplaceDubai
practices in the information, application, and technology domains and ensure awareness across IT teams.  •  Conducts security architecture design reviews for applications, data and infrastructure (both cloud/on-premises) to identify gaps or discrepancies...