VP - Information Security, Information Technology
GAL · Abu Dhabi Emirate, United Arab Emirates
Apply & track with Apply EdgeAbout the RoleWe are looking for a VP – Information Security to lead the organization’s information security strategy, governance, risk, compliance, and cybersecurity operations.The role will be responsible for protecting the organization’s information assets, strengthening cybersecurity resilience, and advising senior leadership on cyber risk, security posture, regulatory compliance, and emerging security threats.Core ResponsibilitiesLead the enterprise information security strategy, roadmap, policies, and governance framework.Oversee cybersecurity risk management, regulatory compliance, audits, and security controls.Manage security operations, including SOC oversight, incident response, threat monitoring, and vulnerability management.Drive cloud security, data protection, identity and access management, and secure technology adoption.Establish and maintain third-party/vendor security risk management practices.Support business continuity, disaster recovery, and cyber resilience activities.Ensure security is embedded across IT infrastructure, applications, digital transformation, and AI-related initiatives.Provide executive-level reporting on cybersecurity risks, security posture, incidents, and remediation plans.Lead, coach, and develop information security teams and external security partners.Promote cybersecurity awareness and a strong security culture across the organization.RequirementsBachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field.Master’s degree in a relevant field is preferred.Minimum 10-15 years of experience in IT, Information Security, or Cybersecurity.Minimum 5 years in a senior leadership role within Information Security or Cybersecurity.Strong experience in cybersecurity governance, risk management, compliance, SOC operations, and incident response.Experience in regulated or critical sectors such as aviation, defense, government, energy, healthcare, banking, or telecom is preferred.Strong knowledge of frameworks and standards such as ISO 27001, NIST, UAE IA/NESA, PDPL, PCI DSS, or similar.Professional certifications such as CISSP, CISM, CISA, CRISC, CGEIT, CCSP, or ISO 27001 are preferred.Strong leadership, stakeholder management, analytical, and decision-making skills.Fluency in English is required; Arabic is an advantage.Recruitment Fraud AlertPlease be cautious of fraudulent job offers from individuals or organizations falsely claiming to represent GAL. GAL will never request personal financial information, bank account details, or any form of payment as part of the recruitment process. All candidates are interviewed either in person or through video or telephone interviews before a formal employment offer is made. If you are asked to pay money or share sensitive financial information, please consider it a scam.