Information Security and Business Continuity Manager
Ras Al Khaimah Economic Zone (RAKEZ) · Ras el Khaïmah
Job description
About the role
The Information Security and Business Continuity Manager will lead the design, implementation and continuous improvement of RAKEZ’s Information Security Management System (ISMS) and Business Continuity Management (BCM) framework. This senior position safeguards the confidentiality, integrity and availability of information assets while supporting digital transformation and regulatory compliance.
Key responsibilities
- Develop, implement and maintain the ISMS and BCM frameworks in line with ISO 27001, ISO 22301 and other relevant standards.
- Define and execute the organisation’s information security strategy, aligning it with business objectives and risk appetite.
- Establish governance, risk and compliance programmes, including cyber‑risk assessments, risk treatment plans and security policies.
- Lead security audits, compliance assessments, regulatory reviews and certification activities.
- Manage security operations such as vulnerability management, threat monitoring, incident response, identity and access management, privileged account management and data loss prevention.
- Investigate and remediate cybersecurity incidents, ensuring timely containment and root‑cause analysis.
- Oversee data classification, protection, privacy controls and security requirements across on‑premise and cloud environments.
- Conduct third‑party and vendor security risk assessments.
- Develop, test and maintain business continuity and disaster recovery plans, including Business Impact Analyses and crisis management procedures.
- Provide security governance for emerging technologies, including cloud services, application security, DevSecOps and AI solutions.
- Design and deliver security awareness, phishing simulation and culture‑building programmes.
- Prepare and present security, risk, compliance and continuity reports to senior management and governance committees.
Required profile
- Proven experience leading ISMS and BCM initiatives in a complex organisation.
- Strong knowledge of ISO 27001, ISO 22301 and related regulatory requirements.
- Demonstrated ability to manage security operations, incident response and vulnerability management.
- Experience conducting cyber‑risk assessments and managing third‑party security risk.
- Ability to develop and test business continuity and disaster recovery plans.
- Excellent communication skills for reporting to senior leadership and governance bodies.
Required skills
- ISO 27001
- ISO 22301
- Vulnerability management
- Threat monitoring
- Incident response
- Identity and Access Management (IAM)
- Privileged Access Management (PAM)
- Data Loss Prevention (DLP)
- Data classification and protection
- Privacy controls
- Cloud security
- Application security
- DevSecOps practices
- Artificial Intelligence (AI) security considerations
- Business Impact Analysis (BIA)
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in the United Arab Emirates.
Salaries by job title
Apply in 30 seconds
Enter your email to apply. An account will be created automatically.
By continuing, you accept our terms of use.
Already have an account? Login
A question about this job?
Ask it here: you will get the full job summary by e-mail, right away.
4 views · 0 interested
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
Ras Al Khaimah Economic Zone (RAKEZ)
Ras el Khaïmah