Step into a high-impact leadership role. Drive enterprise-wide security initiative and influence key stakeholders.
About Our Client
This organization serves as the data science and AI arm of a diversified business group, focused on enabling data-driven transformation across key industries such as energy, finance, and infrastructure. Its mandate is to operationalize data as a strategic asset-leveraging advanced analytics, artificial intelligence, and machine learning to support improved decision-making, enhance operational efficiency, and unlock new sources of value across the enterprise.
Job Description
Key Responsibilities:
- Lead the organization's information and cyber security governance processes and represent local interests in the group-level Cybersecurity Steering Committee.
- Design, develop, and maintain a company-wide information security program that integrates business priorities and operational needs.
- Collaborate with IT and compliance teams to ensure appropriate security controls are embedded in systems and operations, and that Risk Control Matrices (RCMs) and other compliance mechanisms are maintained.
- Establish and enforce policies and procedures to protect sensitive data, ensuring compliance with legal, regulatory, and contractual obligations.
- Maintain and enhance the organization's information security framework and documentation, including risk assessments, test results, process flows, and remediation plans.
- Act as the primary escalation point during critical security incidents; lead incident investigations and convene the Security Incident Response Team (SIRT) when necessary.
- Oversee periodic audits, vulnerability assessments, and security testing to ensure controls are working as intended.
- Conduct Business Impact Assessments (BIAs) and Privacy Impact Assessments (PIAs) to identify potential risks and guide mitigation strategies.
- Develop and deliver security awareness programs to promote a strong culture of security and accountability across the organization.
The Successful Applicant
Qualifications & Experience:
- Bachelor's degree in Information Technology, Computer Science, Engineering, or a related discipline (or equivalent industry experience).
- Minimum of 5 years of experience in Information Security, Cybersecurity, or IT Risk Management roles.
- Proven experience in developing, implementing, and managing security programs aligned with frameworks such as NIST, ISO 27001, and COBIT.
- Hands-on experience with Governance, Risk, and Compliance (GRC) tools, vulnerability management solutions, and security operations.
- Strong knowledge of regulatory requirements related to data protection, privacy, and information security.
- Excellent communication, analytical thinking, and stakeholder management skills.
- Professional certifications highly preferred, such as:
- CISSP (Certified Information Systems Security Professional)
- CISM (Certified Information Security Manager)
- ISO/IEC 27001 Lead Implementer or Lead Auditor
- CRISC (Certified in Risk and Information Systems Control)
- CEH (Certified Ethical Hacker) or CompTIA Security+ (for technical security exposure)
What's on Offer
- Competitive salary & bonuses
- Comprehensive health benefits
- Opportunity to work with a leading organization in data analytics and artificial intelligence
- Professional development and career advancement opportunities
If you are passionate about information security and ready to take on a leadership role, we encourage you to apply today!