Stand out for this role — generate a tailored resume and cover letter in about a minute.
Michael Page is seeking a senior professional to take technical ownership of cyber risk assessments and regulatory certification within UAE-based environments. You will lead across enterprise and industrial settings, ensuring evidence-based risk positions align with UAE Information Assurance Standards and ISO/IEC 27001 requirements.
Responsibilities include maintaining certification evidence, executing control testing, and communicating risk and compliance positions to stakeholders across
This role will take technical ownership of cyber risk assessments and regulatory certification, ensuring risks are based on verified technical evidence and compliance requirements are demonstrably met. Working across enterprise and industrial environments, you will assess systems, changes and third parties while supporting regulatory obligations and internationally recognised certifications.
Our client is a major UAE-based industrial organisation with a sophisticated and evolving digital landscape. The business is investing significantly in cybersecurity, digital capabilities and robust governance to protect critical operations.
Lead technical cyber risk assessments across systems, architectures, changes and third parties, translating exposure into clear, actionable risk positions.
Map technical controls against UAE Information Assurance Standards and other applicable regulatory requirements, identifying gaps and driving remediation.
Own and maintain robust evidence for certifications including ISO/IEC 27001, supporting internal and external audits and regulatory assessments.
Design and execute control testing through configuration reviews, sampling and technical validation to ensure controls operate effectively.
Maintain an accurate cyber risk register and communicate risk and compliance positions clearly to key stakeholders.
Bachelor's degree in Computer Science, Information Security or a related technical discipline.
Minimum 6 years' experience across cyber risk, compliance or security assurance, including hands‑on technical assessment.
Direct experience with UAE Information Assurance Standards or a comparable national framework, alongside experience supporting external certification audits.
Strong knowledge of ISO/IEC 27001, NIST Cybersecurity Framework and technical security controls spanning identity, network, endpoint, cloud, applications and data.
CRISC, CISA, CISM, ISO/IEC 27001 Lead Auditor or Lead Implementer certification would be highly advantageous.
High‑impact role with ownership across cyber risk and regulatory compliance
Exposure to complex enterprise and industrial technology environments
Opportunity to influence security assurance within a major UAE organisation
Cyber Governance, Risk & Compliance Manager (UAE National)