Responsible for developing and maintaining information security policies, processes, projects and operations, managing IT governance and risk, developing and maintaining an effective disaster recovery and business continuity plan to ensure systems recovery and service availability in case of disasters
• Oversee the assessment, development, and implementation of an organisation-wide information security program and for maintaining ongoing activities to preserve the availability, integrity and confidentiality of information resources in compliance with applicable security policies and standards
• Support with IT Governance and Digital Transformation related activities
• Stay abreast of new threats, vulnerabilities and security-focused technologies and incorporate such into the client’s Information Security Program and systems, ensuring the overall security, integrity and availability of the client’s systems and data
• Coordinate and manage the entire IT project life cycle of IT Security systems including management of scope, business requirements, functional and technical specifications, testing, implementation, deployment and phase management; identifying and managing project related issues, risks and mitigating scope creep; ensuring that all project goals are accomplished according to specifications and business objectives
• Facilitate IT security/risk training program
• Manage ISO 27001 and 20000 annual requirements
• Prepare audit plans and conduct regular security audits to enforce security policies, determine any future needs and improvements and develop innovative solutions for information security
• Directly responsible for IS assessments to ensure systems and applications are complying with client’s policies, applicable regulatory and legal requirements, and leading industry practices
• Provide transformational leadership of human capital (employees) by planning for, investing in and developing client’s workforce to accomplish the business mission
• B.Sc. in a technology discipline (Computer Science, Information Management, Computer Engineering, Cyber security or equivalent)
• Minimum 7 years experience working directly in an Information Security and business continuity in Information Technology department with experience in developing or managing Risk Management Programs
• 3+ years experience in administering IT security controls in an organisation
• IT internal audit experience a plus
• Working knowledge of the following frameworks and regulations: ISO 27001/2, 20000, 22301, NESA, GDPR, SANS Top 20 Critical Security Controls, ISF Standard of Good Practice
• Proven ability to manage project financials and ability to estimate or assist in estimation of project cost
Benefits
https://www.naukrigulf.com/it-security-officer-jobs-in-dubai-uae-in-client-of-mackenzie-jones-7-to-8-years-n-cd-10050281-jid-270521500403