Information Security Professional / Information Security Expert
On-siteAbu Dhabi, Abu Dhabi, United Arab Emirates
Job Summary
Develop and maintain information security policies, standards, and procedures aligned with ISO 27001, NIST CSF, and CIS Controls. Conduct enterprise-wide risk assessments across IT and OT environments, document security risks, and manage the cybersecurity risk register. Support governance structures, internal/external audits, and compliance reviews while preparing management reports. Perform technical advisory on secure architecture, zero-trust principles, and vulnerability management, including penetration testing and remediation guidance. Collaborate with the SOC team on monitoring, detection, incident investigations, and root cause analysis. Optimize SIEM alerts and participate in disaster recovery drills. Maintain relevant certifications such as CISSP, CISM, or CEH. Requires 8+ years of enterprise security experience and strong stakeholder management skills.
Required Qualifications
- Bachelor's degree in Information Security, Computer Science, IT, or related field
- 8+ years of experience in Information Security or Cybersecurity roles within enterprise environments
- Professional certifications such as CISSP, CISM, CEH, ISO 27001 Lead Implementer/Auditor, or equivalent
- Strong understanding of security frameworks (ISO 27001, NIST, CIS Controls)
- Experience in risk management, compliance, vulnerability management, and security operations
- Experience working with SIEM, EDR, firewall, and other enterprise security tools
- Strong communication and stakeholder management skills
Desired Qualifications
- Exposure to cloud security (AWS, Azure, or GCP)
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.