Dubai Careers
Organization: Department of Economy and TourismEducational-level Beginning of the main content section.Return to the home pagePrintable Format Job Description - Senior Manager Information Security Operations & Support (26001940)Job Description Senior Manager Information Security Operations & Support - (26001940) Job Description The Senior Manager, Operations and Support is responsible for monitoring processes and conducting access reviews and authorizations for the different systems and databases, in line with DET’s information security policies and procedures.You will also govern the DR testing process, in order to mitigate potential information-security risks, reporting to the regulator and DET management, reporting to the regulator and DET management. Be responsible for managing third-party interactions to ensure that third-party applications, systems, and software are aligned with DET’s information security policies. Ensure that all testing activities are conducted on applications and systems developed by third-party vendors and is responsible for managing all incidents related to information security.Core Functional Responsibilities & Subject Matter Expertise· Provide subject matter expertise and advisory services, as needed, to ensure the compliance of the adopted tools.· Liaise with the Technology Department for the implementation of vulnerability management systems on all premise and cloud systems, in order to mitigate potential risks.· Ensure that systems and networks are secured properly within secure physical facilities through efficient coordination with the Technology Department.· Liaise with relevant business owners in order to manage third party interactions, and ensure consistent responses are provided to third parties i.e., provide validation of cyber readiness, audit requirements, queries, incident reports and work to protect the group from excessive contractual agreement clauses.· Coordinate with third party IT vendors and the Technology Department, in order to check the testing of developed DET applications and systems across the full development lifecycle.· Provide support, as needed, during the implementation phase of DET’s applications, systems, and software· Ensure the provision of support to manage ongoing incidents pertaining to information security, and provide guidance as needed.· Maintain and report records of all authorized and third parties that have access to DET data, or that can transfer, maintain, or process DET Group’s data.· Ensure security monitoring process is effectively implemented, reviews periodic reports received from SOC service provider or relevant technical team.· Ensure Dubai Cyber index score of DET is maintained, any deviations shall be reported to direct line manager for appropriate actions.· Manage and streamline the periodic review process of user and privileged account access within the DET. This includes ensuring that all access permissions are accurately aligned with current role requirements and security policies, identifying and revoking any unnecessary or outdated permissions, and maintaining compliance with industry standards and regulatory requirements. Qualifications ● Bachelor's degree in Information Security, Information Management Systems, Information Technology, Cybersecurity, or any related discipline.● Master's degree in Information Management Systems, Information Technology, Cybersecurity (preferred).● Professional certifications such as Project Management Professional (PMP), CISSP, CISM, CCSP/CCSK; are advantageous.● Certified ISO 27001 lead implementer or lead auditor.● Training or certification in security monitoring tools such as SIEM.● A minimum of 11 years of experience in information security, with 5+ years leading operations/support or SOC/IAM/vulnerability functions.● Extensive experience in conducting risk assessments, developing risk mitigation strategies, and managing incident response for security breaches and attacks.● Extensive experience in leading the implementation and management of access controls and authorizations for various systems and databases to ensure compliance with organizational security policies.● Experience ensuring compliance with these standards and regulations in all operations and third-party engagements.● Robust experience in managing all aspects of information security incidents, including identification, analysis, containment, eradication, and recovery.● Proven competence in overseeing testing and compliance checks on applications and systems developed by third-party vendors.● Strong background in developing and implementing disaster recovery plans that address potential risks and ensure continuity of operations in the event of security breaches or disasters.● Proven track record of effectively managing an information security operations center (SOC), cyber threat intelli
Bachelor's degree in Information Security, Information Management Systems, Information Technology, Cybersecurity, or related discipline. Master’s degree preferred. Professional certifications such as Project Management Professional (PMP), CISSP, CISM, CCSP/CCSK advantageous. Certified ISO 27001 lead implementer or lead auditor. Training or certification in security monitoring tools such as SIEM. A minimum of 11 years of experience in information security, with 5+ years leading operations/support or SOC/IAM/vulnerability functions. Extensive experience in risk assessments, incident response, access controls, regulatory compliance, and managing third-party engagements. Experience managing information security incidents end-to-end and overseeing testing/compliance checks on third-party developed applications and systems. Proven track record of managing an information security operations center (SOC) and disaster recovery planning.
Provide subject matter expertise and advisory services to ensure tool compliance. Collaborate with the Technology Department to implement vulnerability management across on-premise and cloud systems. Ensure secure configurations and physical facility security in coordination with Technology. Manage third-party interactions and ensure responses for cyber readiness, audits, incident reports, and contractual considerations. Coordinate with third-party IT vendors and Technology Department to test DET applications throughout the development lifecycle. Provide support during implementation phases of DET applications and systems. Manage ongoing information security incidents and provide guidance. Maintain and report records of authorized third parties with access to DET data. Ensure security monitoring processes are effectively implemented and review periodic SOC or technical team reports. Maintain Dubai Cyber Index score and report deviations. Manage periodic reviews of user and privileged access to DET, ensuring permissions align with roles and security policies, and revoke unnecessary permissions.
What does a Senior Manager Information Security Operations & Support earn in the UAE?
See the full Michael Page salary benchmark — ranges, skills, and career progression.
Senior Manager Information Security Operations & Support (National Talent)
Dubai Department of Economy and TourismDubai, UAE
AED 48,000 – 100,000/mo
Senior Manager Information Security Governance
Dubai CareersDubai, UAE
AED 48,000 – 100,000/mo
Senior Officer - information Security
Dubai CareersDubai, UAE
AED 60,000 – 120,000/mo
Head of Information Technology Section
Dubai CareersDubai, UAE
AED 40,001 – 50,000/mo