Metito Utilities has an exciting opportunity for an experienced Information Security Administrator / Officer to join our Information Technology Security team. Reporting to the Senior Manager – IT, this role will help safeguard our organisation’s systems, data and information assets while strengthening our overall security resilience. This is a broad, hands‑on role combining technical security operations with governance, compliance, policy implementation and employee awareness.
Key responsibilities include:
- Leading and coordinating responses to cybersecurity incidents
- Maintaining incident response plans and security playbooks
- Managing security awareness programmes and phishing simulations
- Coordinating vulnerability assessments and penetration testing
- Overseeing vulnerability remediation and patch compliance
- Supporting the implementation and continual improvement of our ISO 27001 Information Security Management System
- Assessing security risks associated with technology and business changes
- Monitoring email and web security controls and investigating threats
- Managing DMARC, DKIM and SPF configurations
- Administering PKI and the certificate lifecycle
- Managing MDM/MAM platforms and mobile‑device compliance
- Administering digital rights management controls
- Supporting internal and external security audits and tracking findings through to closure
- Maintaining security documentation, risk registers and management reports
What we’re looking for:
- Bachelor’s degree in Information Security, Computer Science, Information Technology or a related discipline, or equivalent professional experience
- 5–9 years of progressive information security experience
- Hands‑on experience with email security, endpoint protection, PKI and MDM/MAM platforms
- Experience supporting or leading ISO 27001 or comparable ISMS programmes
- Strong understanding of ISO 27001, the NIST Cybersecurity Framework and relevant data‑protection legislation, including GDPR and the UAE PDPL
- Experience with SIEM and log‑management tools, vulnerability scanners, web security gateways and Web Application Firewalls
- Strong analytical, organisational, communication and stakeholder‑management skills
Certification requirements:
- Comp TIA Security+ or an equivalent foundational security certification is required
- CISSP or CISM is preferred
- ISO 27001 Lead Implementer or Lead Auditor, CEH, OSCP or GSEC would be an advantage
If you are a practical, collaborative information security professional who can combine technical expertise with strong governance and communication skills, we would be pleased to hear from you.
#Hiring #Information Security #Cyber Security #Info Sec #ISO27001 #Security Administrator #Security Officer #ITJobs