Apply Edge Start your job search

Senior Manager - Cyber Security Risk

Hays · Dubai, United Arab Emirates

Apply & track with Apply Edge
Location: Dubai, UAEPosition Level: Senior Manager / Head of FunctionReporting Line: Executive Director, Infrastructure & CybersecurityRole SummaryWe are seeking an experienced cybersecurity leader to oversee the ongoing strategy, design, and execution of our global information security risk framework. In this role, you will act as the core authority on cyber risk across the organization, embedding a proactive risk-aware culture and driving first-line operational ownership.A primary objective of this role is to elevate organizational risk maturity by transitioning our assessment models from qualitative evaluations to data-driven, quantitative risk analyses (including calibrated loss modeling and probabilistic simulations). You will regularly interface with executive leadership and board-level risk committees to provide clear visibility into our security posture, regulatory compliance, and priority remediation initiatives.Primary ResponsibilitiesEnterprise Risk Framework: Architect and scale a principles-based Information Security Risk Management Framework that aligns with overall corporate objectives, ensuring consistent risk-based decision-making across all business units and international subsidiaries.First-Line Risk Ownership: Establish a clear risk ownership model across business and IT units. Guide operational teams in adopting structured risk methodologies and integrating security controls directly into day-to-day operations.Quantitative Risk Modeling: Shift organizational practices toward advanced quantitative assessment methods, leveraging risk simulations, probabilistic impact analysis, and data analytics to evaluate exposure accurately.Governance & Executive Reporting: Lead internal information risk governance boards and act as the principal liaison to executive risk committees. Prepare and deliver concise, board-ready reporting on aggregated exposure, emerging threat trends, and treatment strategies.Targeted Assessments & Emerging Threats: Oversee risk reviews across core operational systems, enterprise software, and third-party ecosystems. Assess complex and emerging threat vectors, including AI-driven automated systems and novel social engineering techniques.Cross-Functional Collaboration: Partner closely with enterprise risk, internal audit, safety, and compliance teams to ensure alignment across control frameworks and regulatory mandates.Security Culture & Awareness: Lead targeted, data-informed security awareness campaigns designed to drive measurable behavioral change across the global workforce.Mandatory Qualifications & ExperienceEducation: Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related technical discipline.Required Certification: CRISC (Certified in Risk and Information Systems Control) is strictly required.Professional Tenure: Minimum 10 years of progressive experience in IT, cybersecurity, and information risk management, including a track record of leading enterprise-wide risk initiatives within a complex, global organization.Team Leadership: Demonstrated success in coaching, structuring, and elevating high-performing risk management teams.Technical Skills & KnowledgeDeep familiarity with quantitative risk calculation methodologies, data analytics, and established frameworks such as the ISF Standard of Good Practice, NIST, or ISO 27005.Proven ability to translate complex technical risk data into meaningful commercial and operational insights for C-suite and Board-level executives.Comprehensive understanding of global cybersecurity regulations, data privacy mandates, and cross-border regulatory frameworks.Strong change management capability, with a focus on shifting organizational culture from passive compliance to proactive risk ownership.Preferred CredentialsAdditional certifications such as CISM or CISA are highly desirable.Professional working fluency in Arabic or other major languages alongside English is an advantage.If you meet the above criteria and would like to explore this opportunity, please apply directly through this posting and attach your CV.