Cybersecurity Risk & Compliance / GRC Manager

TAWANTECH

Posted on 12 Mar

Experience

10 - 15 Years

Education

Bachelor of Science(Computers)

Nationality

Any Nationality

Gender

Not Mentioned

Vacancy

1 Vacancy

Job Description

Roles & Responsibilities

Responsibilities

  • Identify, assess, and manage cybersecurity risks to protect information and technology assets in line with policies, laws, and regulations.
  • Review, update, and develop the Third-Party Risk Management Framework to monitor and mitigate vendor-related cyber risks.
  • Perform vulnerability assessments of systems and networks, identifying deviations from acceptable configurations or policies, and measure defense-in-depth effectiveness.
  • Evaluate, design, implement, fine-tune, and enhance business continuity for digital services with complex interdependencies.
  • Calculate, fine-tune, and align Business Impact Assessment (BIA) outputs, including Priority Tiers, RPOs, and RTOs.
  • Develop and track risk treatment and mitigation plans.
  • Analyze cybersecurity controls and assess effectiveness.
  • Oversee vulnerability scans and implement cybersecurity technical controls.
  • Monitor and test Security Operations Center (SOC) and incident response plans.
  • Maintain cybersecurity aspects of the business continuity plan while tracking risk-related metrics.
  • Perform security control assessments for compliance with company policies, ISO 27001, NIST, NCA, and regulatory requirements.
  • Review and validate security configurations for critical systems (Active Directory, firewalls, servers, network devices).
  • Evaluate and provide actionable recommendations to enhance system security configurations across on-premises and cloud platforms.
  • Assess and improve the quality of security documentation, ensuring periodic technical assessments comply with governance requirements.
  • Review technical and administrative security controls to identify gaps and recommend remediation measures.
  • Collaborate with IT, compliance, and risk management teams to enhance security practices.
  • Assist in preparing management and audit reports and presentations.
  • Perform comprehensive assessments, configuration reviews, and documentation assessments to strengthen the organization s security posture.
  • Configure and manage vulnerability assessment tools and perform technical assessments across systems including Active Directory, firewalls, databases, and cloud platforms.

Desired Candidate Profile

Technical Requirements

  • Bachelor s degree in Cybersecurity, Information Technology, or a related field.
  • Minimum of 10 years of experience in cybersecurity risk management, technical controls, or incident response.
  • Certifications such as:
  • Certified Information Systems Security Professional (CISSP)
  • Certified Ethical Hacker (CEH)
  • Certified Information Security Manager (CISM)
  • GIAC Security Essentials (GSEC)
  • Certified Cloud Security Professional (CCSP)
  • Strong technical expertise in:
  • Vulnerability management
  • SOC operations
  • Incident response

Company Industry

Department / Functional Area

Keywords

  • Cybersecurity Risk & Compliance / GRC Manager

Disclaimer: Naukrigulf.com is only a platform to bring jobseekers & employers together. Applicants are advised to research the bonafides of the prospective employer independently. We do NOT endorse any requests for money payments and strictly advice against sharing personal or bank related information. We also recommend you visit Security Advice for more information. If you suspect any fraud or malpractice, email us at abuse@naukrigulf.com

Similar Jobs

Information Security Officer

Cyber Security Manager

Confidential Company

  • 8 - 15 Years
  • Umm Al Qaiwain - United Arab Emirates (UAE)

Head of Information & Cybersecurity

Innovo Build LLC

  • 10 - 15 Years
  • Dubai - United Arab Emirates (UAE)

Infrastructure & Cybersecurity Lead

Information Security Specialist

View All