Chief Specialist - Information Security

Roads and Transport Authority

Dubai

On-site

AED 400,000 - 700,000

Full time

6 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Roads and Transport Authority in Dubai seeks an experienced information security leader to develop and implement strategic security programs aligned with UAE regulations and Authority needs. Responsibilities include overseeing SOC operations, risk management, and VAPT planning, while coordinating cross-departmental security initiatives to protect critical infrastructure.

The role requires 9+ years of experience with advanced certifications such as CISSP or CISM, and a strong track record in

Qualifications

  • Bachelor's or Master's degree in CS/IT are required.
  • Certifications such as CISSP or CISM are preferred.
  • ISO/IEC 27001 Lead Implementer/Auditor certification is an asset.

Responsibilities

  • Develop and implement information-security strategies and operating models aligned with laws, regulations, and Authority needs.
  • Define the risk framework with registers, scenarios, and response plans, with escalation paths.
  • Set Authority-wide security programs and technical standards across sectors to embed best practices.
  • Evaluate emerging technologies and threat trends and issue strategic recommendations to improve security systems and infrastructure.
  • Coordinate with departments to align cybersecurity strategies with organizational objectives.
  • Lead in-depth analysis of security incidents and strengthen digital forensics and investigation quality.
  • Plan and coordinate SOC operations and response workflows with internal and external stakeholders.
  • Advise team leads in developing and managing the organization's VAPT plan and building VAPT tools and frameworks.
  • Oversee readiness evaluations and penetration tests; implement corrective actions and track closures.
  • Review architectures for new initiatives; prescribe security controls during design and implementation.
  • Govern access and privileges; monitor activity and report compliance.
  • Conduct risk-based audits of technical systems and projects; drive corrective plans.
  • Assess new technology projects for alignment with cybersecurity strategy and risk profile.
  • Manage security assessments of external suppliers and partners and ensure compliance with security standards.
  • Perform additional information security duties as assigned by leadership.

Education

Bachelor's degree in Computer Science/Information Technology
Master’s degree in Computer Science/Information Technology
Certified Information Systems Security Professional (CISSP)
Certified Information Security Manager (CISM)
ISO/IEC 27001 Lead Implementer/ Lead Auditor

Job description

Strategy
  • Develop and implement information-security strategies and operating models aligned with laws, regulations, and Authority needs.
  • Define the risk framework: maintain registers, scenarios, and response plans with accountable owners and escalation paths.
  • Set Authority-wide security programs and technical standards across sectors to embed best practices consistently.
  • Evaluate emerging technologies and threat trends and issue strategic recommendations to improve security systems and infrastructure.
  • Coordinate with departments to align cybersecurity strategies and work plans with organizational objectives.
Operations
  • Lead in-depth analysis of security incidents, direct incident-response activities, and strengthen digital forensics and investigation quality.
  • Plan and coordinate Security Operations Centre (SOC) operations and response workflows with internal and external stakeholders.
  • Support and advise team leads in the development and management of the organization’s Vulnerability Assessment and Penetration testing (VAPT) plan and building VAPT tools and frameworks.
  • Oversee the conduct of readiness evaluations and penetration tests; recommend preventive and corrective actions and track closure.
  • Review architectures for new initiatives and system changes; prescribe security controls during design and implementation.
  • Govern access and privileges: apply eligibility/approval procedures, review entitlements, monitor network/system activity, and report compliance.
  • Execute risk-based audits of technical systems and projects; evaluate control effectiveness and drive corrective plans.
  • Assess new technology projects for alignment with cybersecurity strategy and risk profile; provide improvement recommendations.
  • Manage security assessments of external suppliers and partners and ensure compliance with required security standards.
  • Execute additional Information Security duties assigned by leadership beyond the defined Section scope.
Product/Process Improvement
  • Maintain risk registers and mitigation plans; analyse performance metrics and report system effectiveness and residual risks.
  • Manage and update cybersecurity documentation, including policies, procedures, contingency plans, and ensure legal and regulatory compliance.
  • Prepare and refine emergency/incident response and recovery plans via exercises and lessons learned.
Job Qualifications & Requirements
Education
  • Bachelor's degree/ Master’s degree in Computer Science/ Information Technology
Experience
  • 9+ Years in case of Master’s degree (11+ years in case of Bachelor’s degree)
Qualification
  • Certifications such as Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM), ISO/IEC 27001 Lead Implementer/ Lead Auditor
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Chief Specialist - Information Security
Chief Specialist - Information Security

Tanqeeb • Abu Dhabi

On-site
AED 300,000 - 600,000
Chief Specialist - information Security (UAE National Only )
Chief Specialist - information Security (UAE National Only )

Roads and Transport Authority • Dubai

On-site
AED 300,000 - 550,000
Senior Architect - information Security
Senior Architect - information Security

Roads and Transport Authority • Dubai

On-site
AED 250,000 - 450,000
Senior Architect - information Security
Senior Architect - information Security

Tanqeeb • Abu Dhabi

On-site
AED 360,000 - 720,000
Senior Information security Analyst
Senior Information security Analyst

K20s Kinetic Technologies Private LImited - India • Dubai Emirate

On-site
AED 240,000 - 360,000
Senior Information security Analyst
Senior Information security Analyst

K20s - Kinetic Technologies Private Limited • Dubai

On-site
AED 360,000 - 560,000
Head of Security
Head of Security

IDCMPS • Abu Dhabi

On-site
AED 279,000 - 446,400
Security Analyst
Security Analyst

Crescent Petroleum Company • Sharjah

On-site
AED 223,200 - 334,800
Information Security Specialist
Information Security Specialist

Client of AIQU • Dubai

On-site
AED 180,000 - 240,000
SOC Specialist- L3
SOC Specialist- L3

Keka Technologies Private Limited • Abu Dhabi

On-site
AED 446,000 - 781,000