Information Security Manager - 1 Year Contract
Hays · Dubai, United Arab Emirates
Apply & track with Apply EdgeOur client, a leading organization within the Banking sector, is seeking an experienced Information Security Manager – Governance to support and lead Information Security Governance, Risk, Compliance, and Regulatory Security initiatives.Reporting to the Head of Information Security, the successful candidate will be responsible for establishing and maintaining information security governance frameworks, managing security and compliance projects, ensuring alignment with regulatory requirements, and supporting key banking and technology initiatives.Key ResponsibilitiesManage end-to-end Information Security and Compliance projects, including:UAE IA (NESA) AssessmentsPCI DSS ComplianceSWIFT Customer Security Programme (CSP)Vulnerability Assessment & Penetration Testing (VAPT)Regulatory and Security AssessmentsDevelop, maintain, and improve Information Security:PoliciesStandardsProceduresGuidelinesGovernance FrameworksConduct and oversee security risk assessments, risk registers, risk treatment plans, risk acceptance processes, and exception management activities.Act as the Information Security Lead for:Cloud Transformation ProjectsInfrastructure InitiativesApplication ImplementationsDigital Transformation ProgrammesEnterprise Technology ProjectsReview project proposals and business requirements from an Information Security and Risk Management perspective.Ensure Information Security requirements are integrated throughout the project lifecycle, including planning, design, implementation, testing, and go-live phases.Validate and manage remediation activities arising from:Internal AuditsExternal AuditsRegulatory AssessmentsSecurity ReviewsTrack security and compliance findings through to validated closure.Ensure security controls are aligned with regulatory and compliance requirements.Monitor compliance with applicable information security regulations, standards, and contractual obligations.Develop and manage third-party security assessment and due diligence processes.Coordinate with IT, Business, Compliance, Audit, Risk Management, PMO teams, and external stakeholders on security-related initiatives.Support security awareness programs and promote a strong security culture across the organization.Mandatory RequirementsExperience10-12 years of Information Security / Cyber Security experience.Strong Information Security experience within the Banking or Financial Services sector.Experience operating at Manager level with ownership of security governance and compliance initiatives.Technical & Functional ExpertiseStrong Information Security Governance (GRC) experience covering:Policies and StandardsCompliance ManagementRisk AssessmentsRisk RegistersRisk Acceptance & Exception ManagementSecurity Governance FrameworksHands-on experience with UAE IA (NESA) including:ImplementationAssessmentsGap AnalysisPolicy and Control AlignmentDemonstrated experience managing:PCI DSSSWIFT CSPVAPT ProgrammesRegulatory AssessmentsSecurity Compliance InitiativesProven track record managing audit and regulatory findings through remediation and validated closure.Experience serving as the Information Security lead for major:Technology ProjectsDigital Transformation InitiativesCloud ProjectsInfrastructure DeploymentsApplication Delivery ProgrammesAbility to manage multiple security and regulatory projects simultaneously while engaging with cross-functional stakeholders.EducationBachelor's Degree in Information Security, Cyber Security, Computer Science, Information Technology, or a related discipline.Preferred CertificationsOne or more of the following certifications are highly preferred:CISSPCISMCRISCCISAKey SkillsInformation Security GovernanceCyber Security Risk ManagementUAE IA (NESA)PCI DSSSWIFT CSPVulnerability ManagementRegulatory ComplianceInformation Security Policies & StandardsAudit & Assessment ManagementThird-Party Risk ManagementSecurity Framework ImplementationProject & Stakeholder ManagementBanking Security Controls