Sr Information Security Governance & Assurance Manager
Employeur non precise
وصف الوظيفة
About the role
The Senior Information Security Governance & Assurance Manager will lead day‑to‑day security governance, certification and assurance programmes for a fast‑growing financial services organisation operating in the Middle East. This senior individual‑contributor role reports directly to leadership and focuses on building a robust security governance architecture for a cloud‑native business.
Key responsibilities
- Own and continuously improve the Information Security Management System (ISMS), including ISO 27001 certification, surveillance and recertification.
- Lead SOC 2 Type I/II readiness and examination activities, handling control mapping, evidence management and auditor coordination.
- Build and maintain security control frameworks, policies, evidence programmes and remediation processes.
- Work closely with engineering, product and operations teams to implement and enhance security controls in cloud environments.
- Perform control testing, identify deficiencies and drive remediation to verified closure.
- Coordinate external audits, due‑diligence requests, security questionnaires and assurance activities.
- Develop clear reporting on certification status, control effectiveness, findings, exceptions and remediation actions.
- Improve assurance activities through automation, reusable evidence, continuous monitoring and GRC tooling.
Required profile
- Minimum 10 years of experience in information security, security assurance or technology risk, with at least 5 years in security GRC or assurance.
- Hands‑on experience leading ISO 27001 certification and operating an ISMS.
- Proven experience leading SOC 2 Type I/II readiness and examinations.
- Background in fintech, payments, digital banking, investment or other regulated financial services environments.
- Demonstrated ability to implement controls, build evidence programmes and drive audits to successful outcomes.
- Experience collaborating with engineering, cloud and product teams.
- Practical experience supporting external audits, client diligence and customer security assessments.
- Familiarity with AI governance, AI risk management or security assurance.
- Relevant certifications (e.g., ISO 27001 Lead Implementer/Auditor, CISA, CRISC, CISM, CISSP) are advantageous.
Required skills
- ISO 27001
- SOC 2
- ISMS
- GRC tooling
- Cloud security
- AI governance
What we offer
- Senior individual‑contributor role with direct access to senior leadership.
- Opportunity to design and operate security governance and assurance architecture for a cloud‑native fintech business.
Questions fréquentes
لماذا تبلغ عن هذا العرض؟
اكتشف المزيد
الرواتب والأدلة وعمليات البحث في الإمارات العربية المتحدة.
الرواتب حسب المهنة
قدم طلبك في 30 ثانية
أدخل بريدك الإلكتروني للتقديم. سيتم إنشاء حساب تلقائياً.
بالمتابعة، أنت توافق على شروط الاستخدام.
لديك حساب بالفعل؟ تسجيل الدخول
لديك سؤال حول هذا العرض؟
اطرحه هنا: ستصلك تفاصيل العرض كاملة عبر البريد الإلكتروني، فوراً.
عزز فرصك
حمّل سيرتك الذاتية وسنقترح عليك الوظائف التي تناسب ملفك.
جاري تحليل سيرتك الذاتية...
Employeur non precise
عروض عمل ذات صلة
-
IT Assistant – Entry Level Technical Support
Employeur non precise Dubai -
Data Analyst – Operational Excellence Lead
Mediclinic Mediclinic Corporate Office Du -
Data Governance Developer
Mediclinic Mediclinic Corporate Office Du -
Software Engineer (Orchestration)
Callsign Abou Dabi -
Software Engineer (Full Stack)
Callsign Abou Dabi