Dubai Careers
Organization: Mada MediaEducational-level Beginning of the main content section.Return to the home pagePrintable Format Job Description - Cybersecurity Consultant (26002526)Job Description Cybersecurity Consultant - (26002526) Job Description To lead and manage the organization’s cybersecurity program by establishing and maintaining effective security governance, controls, risk management, monitoring, and incident response capabilities. The role is responsible for safeguarding information assets, systems, and data; supporting compliance with applicable UAE Personal Data Protection Law (PDPL) and Dubai Electronic Security Center (DESC) requirements; and coordinating the identification, assessment, and remediation of cybersecurity risks and vulnerabilities. Working under the direction of the Head of IT, the role serves as the organization’s day-to-day cybersecurity focal point, providing specialist advice, promoting security awareness, and driving continuous improvement of the organization’s cybersecurity posture. - Lead the design, implementation, maintenance, and continuous improvement of the organization’s cybersecurity program, controls, policies, standards, and procedures in alignment with business priorities and risk appetite.- Develop, maintain, and execute the cybersecurity roadmap, translating organizational risks, technology priorities, and regulatory obligations into defined security initiatives and improvement plans.- Drive cybersecurity and information security activities required to support compliance with applicable UAE Personal Data Protection Law (PDPL) requirements and relevant Dubai Electronic Security Center (DESC) requirements.- Maintain cybersecurity compliance documentation, control evidence, registers, audit trails, and remediation records, and monitor changes in applicable cybersecurity and data protection requirements to identify required actions.- Conduct and coordinate cybersecurity risk assessments across infrastructure, applications, information assets, technology services, projects, and relevant third parties, ensuring identified risks are documented, prioritized, treated, and monitored.- Perform or coordinate vulnerability assessments, scanning, and security reviews; evaluate findings based on risk and business impact; and work with responsible teams to ensure timely remediation.- Monitor and review security alerts, logs, events, and relevant threat information to identify potential incidents, suspicious activity, vulnerabilities, and control weaknesses requiring investigation or remediation.- Coordinate and support cybersecurity incident response activities, including detection, triage, containment, investigation, recovery, root-cause analysis, documentation, escalation, and post-incident review.- Review security configurations and controls across cloud, network, endpoint, infrastructure, and application environments and coordinate implementation of appropriate security-hardening and remediation measures.- Develop, maintain, review, and communicate information security policies, standards, procedures, and guidelines aligned with applicable regulatory requirements and recognized frameworks such as ISO/IEC 27001 and NIST CSF.- Coordinate cybersecurity-related internal and external audits, regulatory assessments, compliance reviews, and certification activities, ensuring findings and corrective actions are appropriately tracked through closure.- Conduct or coordinate cybersecurity due diligence and security assessments of relevant vendors, service providers, and technology partners, and support the review of applicable cybersecurity and data protection requirements.- Develop and deliver cybersecurity awareness activities, employee communications, phishing simulations, and targeted training to strengthen security awareness and promote appropriate cybersecurity behaviors across the organization.- Develop cybersecurity metrics and prepare periodic reports covering risks, incidents, vulnerabilities, compliance status, control effectiveness, audit findings, and remediation progress for the Head of IT and senior management.- Serve as the day-to-day cybersecurity focal point, providing specialist advice and coordinating with IT, development teams, business stakeholders, vendors, auditors, and external assessors while escalating material risks, incidents, strategic decisions, and resource requirements to the Head of IT. Qualifications Qualifications:- Bachelor’s degree in Cybersecurity, Information Security, Information Technology, Computer Science, Information Systems, or a related discipline, with 2–4 years of relevant professional experience in cybersecurity, information security, IT risk, compliance, or a related field.- Postgraduate qualification in Cybersecurity, Information Security, Risk Management, or a related discipline is a
Bachelor’s degree in Cybersecurity, Information Security, Information Technology, Computer Science, Information Systems, or a related discipline, with 2–4 years of relevant professional experience in cybersecurity, information security, IT risk, compliance, or a related field. Postgraduate qualification in Cybersecurity, Information Security, Risk Management, or a related discipline is a
Lead the design, implementation, maintenance, and continuous improvement of the organization’s cybersecurity program, controls, policies, standards, and procedures in alignment with business priorities and risk appetite. Develop, maintain, and execute the cybersecurity roadmap, translating organizational risks, technology priorities, and regulatory obligations into defined security initiatives and improvement plans. Drive cybersecurity and information security activities required to support compliance with applicable UAE Personal Data Protection Law (PDPL) requirements and relevant Dubai Electronic Security Center (DESC) requirements. Maintain cybersecurity compliance documentation, control evidence, registers, audit trails, and remediation records, and monitor changes in applicable cybersecurity and data protection requirements to identify required actions. Conduct and coordinate cybersecurity risk assessments across infrastructure, applications, information assets, technology services, projects, and relevant third parties, ensuring identified risks are documented, prioritized, treated, and monitored. Perform or coordinate vulnerability assessments, scanning, and security reviews; evaluate findings based on risk and business impact; and work with responsible teams to ensure timely remediation. Monitor and review security alerts, logs, events, and relevant threat information to identify potential incidents, suspicious activity, vulnerabilities, and control weaknesses requiring investigation or remediation. Coordinate and support cybersecurity incident response activities, including detection, triage, containment, investigation, recovery, root-cause analysis, documentation, escalation, and post-incident review. Review security configurations and controls across cloud, network, endpoint, infrastructure, and application environments and coordinate implementation of appropriate security-hardening and remediation measures. Develop, maintain, review, and communicate information security policies, standards, procedures, and guidelines aligned with applicable regulatory requirements and recognized frameworks such as ISO/IEC 27001 and NIST CSF. Coordinate cybersecurity-related internal and external audits, regulatory assessments, compliance reviews, and certification activities, ensuring findings and corrective actions are appropriately tracked through closure. Conduct or coordinate cybersecurity due diligence and security assessments of relevant vendors, service providers, and technology partners, and support the review of applicable cybersecurity and data protection requirements. Develop and deliver cybersecurity awareness activities, employee communications, phishing simulations, and targeted training to strengthen security awareness and promote appropriate cybersecurity behaviors across the organization. Develop cybersecurity metrics and prepare periodic reports covering risks, incidents, vulnerabilities, compliance status, control effectiveness, audit findings, and remediation progress for the Head of IT and senior management. Serve as the day-to-day cybersecurity focal point, providing specialist advice and coordinating with IT, development teams, business stakeholders, vendors, auditors, and external assessors while escalating material risks, incidents, strategic decisions, and resource requirements to the Head of IT.
Information Security Engineer
Dubai CareersDubai, UAE
AED 12,000 – 20,000/mo
Senior Architect - Information Security ( UAE National )
Roads and Transport AuthorityDubai, UAE
AED 30,000 – 55,000/mo
Senior Officer, Security & Governance - Digital & Technology Services
MasdarAbu Dhabi, UAE
AED 24,000 – 42,000/mo
Senior Analyst, Information Security and Governance
M42Abu Dhabi, UAE
AED 15,000 – 25,000/mo