Valuesoft Dubai is seeking an experienced Project Manager - Information Security to manage information security and data protection projects for a UAE-based client. The role requires strong project management, cybersecurity, risk management, and stakeholder management experience within the BFSI domain.
- Engineering Degree with 6+ years of experience in Information Security and Data Protection Project Management in the BFSI sector.
- Hands-on experience leading information security and cybersecurity projects.
- Proficiency in application and technology security architecture and design principles.
- Experience in cyber threat assessments, software development life cycle (SDLC), firewalls, data protection, vulnerability scanning, and application security.
- Demonstrated expertise in technology and application risk and control management.
- Expertise in Information Security and Data Protection standards, including ISO 27001, PCI DSS, UAE IAS, SWIFT CSP, GDPR, and UAE Data Protection regulations.
- Strong knowledge of Information Security, Data Protection, Banking systems, and IT systems.
- Ability to facilitate both technical and business discussions.
- Strong analytical and problem-solving skills.
- Excellent verbal and written communication skills.
- Knowledge of Microsoft Office, MS Project, SharePoint, JIRA, Asana, and other project management tools.
- Professional certifications such as CISA, CISM, CISSP, PRINCE2, PMP, RMP, Agile PM, and PMI-ACP are preferred.
Skills
Manage day-to-day information security project requirements using Agile and Waterfall methodologies, including scope, schedule, budget, and resource management.
- Collaborate with IT and PMO stakeholders to define and implement information security requirements in line with organizational security policies.
- Identify, assess, and proactively manage project risks and issues.
- Support EPMO and IT Project Managers in backlog management, requirement gathering, and project prioritization.
- Ensure business applications and technology solutions comply with information security policies and regulatory requirements while maintaining a strong risk and control environment.
- Drive measurable and sustainable control improvements by working closely with Information Security, EPMO, IT, and business teams.
- Provide guidance to business, product, and technology stakeholders on risk management and security controls.
- Promote a proactive culture of risk awareness and continuous control enhancement.
- Coordinate with Contracts, Vendor Management, Compliance, and business teams to ensure third-party agreements meet information security requirements.
- Lead and oversee project budgets, staffing, and contracting activities.
- Manage external vendors and auditors during assessments and review activities.