Cyber Governance, Risk & Compliance Manager (UAE National)

Dubai Permanent View Job Description
This role will take technical ownership of cyber risk assessments and regulatory certification, ensuring risks are based on verified technical evidence and compliance requirements are demonstrably met.Working across enterprise and industrial environments, you will assess systems, changes and third parties while supporting regulatory obligations and internationally recognised certifications
  • Own cyber risk assessment and regulatory certification activities
  • High-impact GRC role across enterprise and industrial environments

About Our Client

Our client is a major UAE-based industrial organisation with a sophisticated and evolving digital landscape. The business is investing significantly in cybersecurity, digital capabilities and robust governance to protect critical operations.

Job Description

  • Lead technical cyber risk assessments across systems, architectures, changes and third parties, translating exposure into clear, actionable risk positions.
  • Map technical controls against UAE Information Assurance Standards and other applicable regulatory requirements, identifying gaps and driving remediation.
  • Own and maintain robust evidence for certifications including ISO/IEC 27001, supporting internal and external audits and regulatory assessments.
  • Design and execute control testing through configuration reviews, sampling and technical validation to ensure controls operate effectively.
  • Maintain an accurate cyber risk register and communicate risk and compliance positions clearly to key stakeholders.

The Successful Applicant

  • Bachelor's degree in Computer Science, Information Security or a related technical discipline.
  • Minimum 6 years' experience across cyber risk, compliance or security assurance, including hands-on technical assessment.
  • Direct experience with UAE Information Assurance Standards or a comparable national framework, alongside experience supporting external certification audits.
  • Strong knowledge of ISO/IEC 27001, NIST Cybersecurity Framework and technical security controls spanning identity, network, endpoint, cloud, applications and data.
  • CRISC, CISA, CISM, ISO/IEC 27001 Lead Auditor or Lead Implementer certification would be highly advantageous.

What's on Offer

High-impact role with ownership across cyber risk and regulatory compliance

Exposure to complex enterprise and industrial technology environments

Opportunity to influence security assurance within a major UAE organisation

Contact
Ross Mathias
Quote job ref
JN-102026-7117578

Job summary

Sector
Technology
Subsector
Senior IT Management
Industry
Technology & Telecoms
Where
Dubai
Contract type
Permanent
Consultant name
Ross Mathias
Job reference
JN-102026-7117578