Assistant Manager – Information Security Governance
edari · Dubai, United Arab Emirates
Apply & track with Apply EdgeWe are looking to hire an Assistant Manager – Information Security Governance who will be responsible for supporting cyber control assurance, risk assessments, governance, and audit readiness activities across enterprise technology environments for our client based in Dubai, which is one of the largest semi-government companies in the region.This position is a contract role with an initial duration of 12 months and is renewable.We are looking for a passionate cyber security professional with strong experience in cyber risk assurance, information security governance, and control validation. The ideal candidate will have hands-on experience conducting risk assessments, supporting audit activities, tracking remediation actions, and ensuring compliance with recognized cyber security frameworks while collaborating with cross-functional stakeholders.Key responsibilities:Support cyber control assurance activities across applications, infrastructure, cloud services, and third-party environments.Perform cyber risk assessments, control reviews, and gap assessments while documenting findings and recommended remediation actions.Maintain cyber risk registers, issue trackers, remediation plans, and evidence repositories.Track remediation activities with control owners and escalate overdue or high-risk issues through governance channels.Support internal and external audits by coordinating evidence collection, validating closure actions, and maintaining audit-ready documentation.Assist in developing and maintaining Information Security policies, standards, procedures, and governance documentation.Collaborate with IT, Risk, Compliance, Internal Audit, Procurement, Legal, and business stakeholders to drive assurance initiatives.Review technology projects and system changes to ensure appropriate cyber security controls are implemented before production deployment.Prepare dashboards, reports, and management updates on cyber risk posture, control maturity, compliance status, and remediation progress.Contribute to continuous improvement initiatives for cyber risk governance, control assurance, and security compliance processes.Knowledge, skills & experience:Bachelor's degree in Computer Science, Information Technology, Cyber Security, Information Systems, Engineering, or a related discipline.5–7 years of experience in Information Security, Cyber Risk, Cyber Assurance, IT Governance, IT Audit, Compliance, or related technology risk functions.Hands-on experience conducting cyber risk assessments, control reviews, remediation tracking, audit support, and governance reporting.Good understanding of cyber security frameworks including ISO 27001, NIST CSF, CIS Controls, and COBIT.Experience working with GRC platforms, risk registers, audit trackers, and compliance reporting tools.Familiarity with identity and access governance concepts such as privileged access,MFA, SSO, and user access reviews.Proficiency in Microsoft Office applications, particularly Excel, PowerPoint, SharePoint, and reporting tools such as Power BI.Professional certifications such as ISO 27001 (Foundation/Lead Implementer/Lead Auditor), CISA, CISM, CRISC, CISSP, COBIT, or ITIL will be highly preferred.Availability:Preference will be given to candidates who are immediately available or on short notice (30 days or less).