UAE National_IT Security Specialist | Corporate Services | Group Tech & Digital Platforms
Overview of the role The role supports the day-to-day operations of the Information Security function within the CISO office, combining operational security activities with Governance, Risk, and Compliance (iGRC) responsibilities.
Skills
About This Role
Overview
of the role
The role supports the day-to-day operations of the Information Security function within the CISO office, combining operational security activities with Governance, Risk, and Compliance (iGRC)
responsibilities
. As a key member of the Information Governance, Risk, and Compliance (iGRC) subfunction, the role supports the development, implementation, and oversight of risk management practices to safeguard the organization’s digital assets and mitigate cybersecurity threats in alignment with Al-Futtaim Group Digital Risk Management and Enterprise Risk Management processes and standards.
The position acts as a central coordination point for digital risk activities across aligned enterprise business lines and supports collaboration across departments to strengthen security, risk management, and compliance outcomes.
This role offers an opportunity to build hands-on experience across information security operations and digital risk management while contributing to the organization’s overall security posture.
What you will do
- Support the implementation and ongoing operation of digital risk management activities to identify, assess, and mitigate cybersecurity risks. Maintain and apply the established digital risk management framework aligned with recognized industry standards such as NIST, COBIT, and ISO/IEC 27001, and support periodic risk reviews and updates.
- Monitor and support compliance with applicable cybersecurity and privacy regulations and standards, including ADHICS, CBUAE-IA, PCI-DSS, ISO/IEC 27001, ISO/IEC 27701, ISO 22301, and ISO 28000.
- Assist in conducting gap assessments, tracking compliance requirements, documenting gaps, and supporting remediation actions to reduce regulatory, financial, and legal risk.
- Work closely with IT, compliance, legal, and business teams to support regular security assessments and compliance reviews. Coordinate inputs, follow up on actions, and support the execution of agreed remediation plans.
- Support the execution of security awareness initiatives through emails, posters, newsletters, and intranet communications to reinforce information security practices and promote a culture of security awareness across the organization.
- Assist with the planning, execution, and monitoring of simulated phishing exercises. Support analysis of results and dissemination of targeted awareness or follow-up training to improve employee awareness and response to phishing threats.
- Prepare and maintain operational documentation and reports related to security risk assessments, compliance reviews, and control effectiveness. Ensure findings, recommendations, and remediation actions are accurately documented and tracked to closure.
- Provide operational support for internal and external audits and regulatory inspections by coordinating evidence collection, tracking audit actions, and supporting closure of audit findings. Engage with internal and external auditors and internal stakeholders to support compliance with applicable standards and regulatory requirements, particularly within healthcare, insurance and automotive business lines.
- Support third-party risk assessments by applying defined risk scoring criteria based on inherent risk factors such as data sensitivity, system access, and business criticality. Maintain assessment records and support follow-up on remediation actions with vendors and internal stakeholders.
Skills
- Required Skills to be successful
- Strong communication, analytical/problem solving skills.
- Ability to handle multiple complex tasks, highly organized, and detail oriented.
- Ability to maintain confidentiality of records and information.
- Strong documentation, reporting, and evidence management skills to maintain audit-ready risk registers, compliance trackers, and assessment reports.
- Resilient and has multi-tasking experience in a fast-paced environment, completing work with pace with quality discipline.
- What equips you for the role
- Bachelor's degree in IT, computer applications or similar.
- Minimum 4 - 5 years of experience in Security Risk and Governance in a customer-facing capacity.
- Practical experience in information security governance, risk, and compliance (iGRC), including operational support for risk assessments, compliance reviews, gap assessments, and remediation tracking.
- Working knowledge of cybersecurity frameworks and standards, such as ISO/IEC 27001, NIST, COBIT, PCI-DSS, with hands-on experience supporting their implementation or assessment.
- Familiarity with regulatory requirements in the UAE and region, including ADHICS, CBUAE-IA, and experience supporting regulatory compliance activities and audits.
- Experience supporting third-party risk assessments, including inherent risk evaluation, risk scoring, documentation of findings, and follow-up on remediation actions.
- Professional certifications such as ISO 27001 Lead Implementer/Lead Auditor, CRISC, CISM or equivalent are preferred.
Your resume, rewritten
for this exact role.
Sign up free — Base Career tailors your CV to this job description in 60 seconds.
01 / 05
Resume Tailored to This Job

Your keywords, structure, and story — rewritten to match this exact role and pass ATS filters.
Free · No card · 60 seconds
02 / 05
Cover Letter for This Role, Done

Job-specific cover letters written in Gulf professional tone — ready in seconds, not hours.
Free · No card · 60 seconds
03 / 05
See How Well You Fit This Role

AI match score with clear reasons — know your fit before investing time in the application.
Free · No card · 60 seconds
04 / 05
Use Autofill When You Apply

Autofill any application form on Workday, LinkedIn, Bayt, Greenhouse — with your tailored content.
Free · No card · 60 seconds
05 / 05
Track It. Follow Up at the Right Time.

Visual pipeline for every application with AI-timed follow-up reminders so nothing slips.
Free · No card · 60 seconds
Similar Jobs
UAE National_IT Security Specialist | Corporate Services
Al Futtaim Private Company (LLC) · Dubai
Support information security operations and digital risk management, ensuring compliance with cybersecurity regulations while enhancing security awareness and risk assessment pr...
Skills
6 days ago
Tailor Resume↗Tailor Resume ↗2.2K+
Cover Letters & Follow-ups
1.8K+
Resumes Tailored
190.5K+
Jobs Tracked
Trusted by professionals at
Stop applying blindly.
Start getting hired.
Base Career automates the hardest parts of job searching — apply smarter, not harder.
AI Resume in 60s
Your resume rewritten for this exact role using the job description as the brief.
ATS-Optimized
Get past automated screening filters with the right keywords matched to each job.
Application Tracker
Track every job, follow-up, and interview in one visual kanban board.
Free plan · No credit card required
