La Fosse
Dubai, UAEPosted 2 weeks ago
NOT LOOKING FOR SECURITY ENGINEERS / SECURITY SPECIALIST MUST HAVE at least 3-5 years hands-on experience on information security-focused projects / Information Security (Infosec) / Cybersecurity / SecOps specifically Salary: R25 000 - R35 000 per month 12 Months Contract (Renewal - 3 year programme) 🚨 Minimum Requirements ✔ 5+ years' experience as a Business Analyst within large-scale enterprise transformation programmes ✔MUST HAVE at least 3-5 years hands-on experience on cybersecurity-focused projects / Information Security (Infosec) / Cybersecurity / SecOps specifically • If cybersecurity or any security related projects not mentioned in profile or CV - you will automatically be rejected (we need to see mentions of security in CV) ✔ Working knowledge of information security principles, technology risk and security controls, with the ability to understand and translate security requirements into clear delivery requirements. ✔ Familiarity with information security frameworks, standards such as ISO/IEC 27001 and NIST CSF Role Purpose The Security Business Analyst supports the TRANSFORM Security Workstream by translating information security requirements into clear, documented and traceable business and technical requirements across accelerated remediation, hypercare and Release 3. The role maintains traceability between security risks, control requirements, remediation actions, delivery requirements and supporting evidence, working with Group Information Security SMEs, TRANSFORM, business stakeholders and delivery partners throughout the delivery lifecycle. What You'll Be Doing • Gather, analyse and document security requirements. • Translate security requirements into clear business, functional and technical requirements in collaboration with security SMEs. • Facilitate requirements workshops with relevant stakeholders. • Define and maintain acceptance criteria and evidence requirements. • Maintain end-to-end traceability between risks, controls, requirements, remediation actions and evidence. • Maintain accurate action ownership, milestones, dependencies and supporting documentation. • Maintain appropriate decision and requirements records. • Support the Security Delivery Manager in maintaining the integrated security remediation plan. • Identify gaps, inconsistencies and dependencies requiring resolution. • Track evidence submissions and ensure they are mapped to the appropriate requirement/control before assurance. • Support preparation of workstream reporting and governance materials. • Ensure security requirements are identified early in the Release 3 lifecycle. • Maintain requirements traceability through design, build, testing and implementation. • Support security SMEs in confirming that requirements have been addressed by proposed designs and delivered solutions. Show more Show less
5+ years' experience as a Business Analyst within large-scale enterprise transformation programmes. MUST HAVE at least 3-5 years hands-on experience on cybersecurity-focused projects / Information Security (InfoSec) / Cybersecurity / SecOps specifically. If cybersecurity or any security related projects not mentioned in profile or CV - you will automatically be rejected (we need to see mentions of security in CV). Experience translating security, compliance, audit, risk, or governance requirements into business and technical solutions. Experience working within regulated, compliance-driven, or audit-focused environments. Ability to work across business, security, technology, and delivery teams.
Lead the Business Analysis approach across critical security workstreams. Translate security policies, risks, and compliance requirements into practical business solutions. Define and document security requirements, processes, controls, and operating procedures. Ensure traceability from business requirements through to technical implementation. Design end-to-end business processes that embed security by design. Create process maps, data flows, RACI models, governance frameworks, and operational procedures. Identify gaps, risks, dependencies, and opportunities for improvement. Facilitate workshops with senior business and technical stakeholders. Drive alignment across Security, Technology, Compliance, PMO, and Delivery teams. Act as the bridge between business objectives and security requirements. Support audit readiness and compliance initiatives. Contribute to risk reduction and security governance programmes. Help define success measures, benefits realisation, and programme reporting.
Not sure you fit this role?
Upload your CV and see how you score against La Fosse and every other live job. It's free.
Get my free matchesAED 20k–35k a month· Michael Page
What does a InfoSec Business Analyst - Cybersecurity earn in the UAE?
See the full Michael Page salary benchmark — ranges, skills, and career progression.
BAE SystemsDoha, Qatar
AED 30k–50k a month· est.