وصف الوظيفة
Role Overview
Information Security Governance Manager for VAM Systems' UAE banking operations.
Role Purpose
Lead information security governance, risk management, and compliance initiatives across the organization's banking operations, ensuring alignment with regulatory requirements, industry standards, and organizational security objectives.
Key Responsibilities
Information Security Governance & Risk Management
- Establish and maintain information security governance frameworks covering policies, standards, risk assessments, risk registers, and risk acceptance/exception processes.
- Lead compliance activities aligned with NESA requirements and banking sector regulatory obligations.
- Develop information security policies in line with NESA requirements.
- Manage audit and regulatory findings through remediation and validated closure.
Regulatory & Compliance Management
- Monitor and ensure compliance with PCI DSS, SWIFT CSP, and other regulatory frameworks specific to banking operations.
- Conduct and oversee regulatory and security assessments.
- Act as the information security lead for major technology, digital, cloud, infrastructure, and application projects.
- Coordinate with IT, Business, Risk, Audit, Compliance, PMO, and external parties on security and regulatory matters.
Implementation & Assessment
- Implement UAE IA/NESA requirements across systems and controls.
- Conduct information security assessments and control alignment activities.
- Manage VAPT (Vulnerability Assessment and Penetration Testing) programs.
Strategic & Operational Leadership
- Apply creative thinking to develop conceptual frameworks for solving complex security problems.
- Manage multiple concurrent security and regulatory projects simultaneously.
- Communicate security requirements and findings to senior non-technical stakeholders in accessible language.
- Stay current with emerging security technologies and adapt to the fast-moving IT landscape.
Qualifications & Experience
- Bachelor's degree.
- 10–12 years of relevant Information and Cyber Security experience, including appropriate Manager-level responsibilities.
- Strong information security experience within the banking and financial sector.
- Hands-on experience with UAE IA/NESA, including implementation, assessments, and policy and control alignment.
- Professional certification: CISM, CRISC, CISA, or CISSP.
Skills & Competencies
- In-depth knowledge and understanding of information security and technology infrastructure.
- In-depth experience implementing NESA requirements.
- In-depth experience developing information security policies aligned with NESA requirements.
- Creative thinking and ability to develop alternative approaches and conceptual frameworks for problem-solving.
- Strong communication skills; ability to convey complex security concepts to senior non-technical audiences without technical language.
- Adaptability to fast-moving IT landscapes and awareness of latest security thinking and technologies.
- Multi-tasking capability to manage several concurrent projects and prioritize competing demands.
Additional Information
- Joining timeframe: 30 days.
الراتبغير مُفصح عنه من صاحب العمل
آخر موعد—