Senior IT Compliance Specialist
Hybrid · Dubai, Dubai, United Arab Emirates
Job Summary
Senior IT Compliance Specialist responsible for leading IT audits, reviews, and regulatory information requests. Own the coordination and delivery of evidence, conduct IT compliance and control gap assessments against regulatory requirements and industry best practices, identify control weaknesses and technology risks, and define and track remediation plans with IT, Security, Risk, and Compliance teams. Develop, implement, and maintain IT, cybersecurity, and information security policies, standards, and procedures aligned with regulatory expectations. Act as a subject-matter expert translating regulatory expectations into practical controls, maintain audit-ready documentation, and support interactions with regulators and external auditors on technology, cybersecurity, and operational resilience topics. Fluent English and Arabic are required.
Required Qualifications
- 4–6+ years of experience in IT compliance, IT audit, technology risk management, or related fields within regulated environments.
- Strong understanding of regulatory expectations applicable to financial institutions in the UAE, particularly in the areas of IT governance and oversight, information security and cybersecurity controls, technology risk management, data protection and data residency, access management, change management, and incident management, business continuity and disaster recovery (BCP/DR).
- Proven hands-on experience conducting IT and cybersecurity gap assessments and defining remediation plans aligned with regulatory and supervisory expectations.
- Solid knowledge of internationally recognized IT and security frameworks (e.g. ISO 27001, NIST, COBIT) and ability to apply them in a regulatory context.
- Experience supporting regulatory inspections, supervisory reviews, or external IT audits, including evidence preparation and issue remediation.
- Ability to work independently on complex compliance topics, manage multiple priorities, and drive remediation activities to completion.
- Strong communication and stakeholder management skills, with the ability to clearly explain technical and regulatory requirements to non-technical audiences.
- Fluent English is required; professional working proficiency in Arabic is mandatory (written and spoken).
- Strong analytical and risk-based mindset with high attention to detail.
Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.