IT and Cybersecurity Audit Specialist – Government Entity – Dubai, UAE
Position Overview
IT and Cybersecurity Audit Specialist role supports the Internal Audit function within government entities, providing independent assurance and advisory services across information technology and cybersecurity. The role focuses on evaluating technical controls, managing cyber risks, and ensuring compliance with national regulations and international standards to protect information assets and support continuity of government services in Dubai, UAE.
Job Details
- Country: UAE
- City: Dubai
- Industry: Government Administration
- Function: Risk Management‑Compliance
- Salary: 14,000–19,000 monthly (Market estimated)
- Gender: Any
- Candidate Nationality: Any
- Job Type: Full‑time
Role Summary
The IT and Cybersecurity Audit Specialist is responsible for planning and executing risk‑based IT and cybersecurity audits, assessing control effectiveness, reviewing regulatory compliance, and providing actionable recommendations to strengthen cybersecurity maturity and IT governance across government organizations.
Key Responsibilities
- Contribute to risk‑based IT and cybersecurity audit planning
- Perform technology risk assessments across infrastructure, applications, data, cloud, and third parties
- Identify and prioritize risks related to SOC operations, identity and access management, data protection, and business continuity
- Conduct IT and cybersecurity audits in line with approved methodologies and best practices
- Evaluate IT General Controls and application controls
- Review cybersecurity controls including access management, encryption, monitoring, vulnerability management, and incident response
- Assess cloud environments, managed services, and outsourced SOC arrangements
- Verify compliance with national regulations and government policies
- Assess alignment with international standards including ISO IEC 27001, ISO IEC 27035, and ISO 22301
- Review readiness for external audits and certifications
- Audit third‑party and service provider arrangements including SOC as a Service and cloud providers
- Review SLAs, confidentiality obligations, and assurance reports such as SOC 1 and SOC 2
- Evaluate cybersecurity incident management, business continuity, and disaster recovery integration
- Prepare clear audit reports with findings, risk ratings, root cause analysis, and recommendations
- Communicate results with IT teams, cybersecurity teams, senior management, and audit committees
- Track remediation actions and validate effectiveness of corrective measures
- Provide advisory support for digital transformation, cloud adoption, and smart government initiatives
- Maintain independence, confidentiality, and professional conduct
Candidate Requirements
- Degree in Information Technology, Cybersecurity, Computer Science, or a related field
- Experience in IT audit, cybersecurity audit, or technology risk management
- Strong knowledge of IT General Controls, cybersecurity frameworks, and risk management practices
- Experience assessing cloud services, managed services, and third‑party providers
- Familiarity with national regulatory requirements and international standards
- Strong analytical, documentation, and reporting skills
- Ability to communicate effectively with technical teams and senior stakeholders
What We Offer
- Competitive tax‑free monthly salary in UAE Dirhams
- Medical insurance coverage
- Stable government‑sector working environment
- Professional development and continuous learning opportunities
- Exposure to large‑scale digital transformation and smart government initiatives
About the Company
The organization is a government entity in Dubai responsible for delivering secure, reliable, and citizen‑focused services. Through strong governance, compliance, and risk management practices, it supports national digital transformation objectives while safeguarding critical information assets and public services.