Group Vice President, Cyber Audit, UAE with regular travel. Relocation offered, $180-200k net pa, neg. Interviewing now.

Permanent, Full Time
Dubai
Posted 2 months ago

Our client is a world leading business operating in many countries, and employing in excess of 100,000 staff.  They are searching for a Group Vice President – Cyber Audit.  Totally negotiable package for the successful candidate, with usual relocation and benefits. For an informal discussion please apply via the link and we will be in touch quickly as long as your CV meets the expectations outlined below.

The role:

  • As the Group Vice President for Cyber Audit, your primary purpose is to lead and oversee the development, implementation, and continuous improvement of a robust global independent cybersecurity assurance program within our organization. Your role is critical in providing independent oversight and assurance to senior management and stakeholders that our cybersecurity measures effectively protect the organization’s digital assets and data. You will:
  •  Lead complex IT and cybersecurity audits, assessments, penetration tests to evaluate effectiveness of security controls, manage external auditors and consultants as necessary.
  • Establish and maintain a Cybersecurity Assurance Programme that includes overall framework, Cyber Assurance strategy, annual assurance plan, procedures, standards, and controls to safeguard our digital infrastructure and sensitive information.
  • Independently assess compliance with relevant regulatory requirements, industry standards, and cybersecurity frameworks.
  • Collaborate with Group Technology teams to align cybersecurity assurance efforts with their cybersecurity operations and technical initiatives. Leverage each team’s distinct roles and expertise for a holistic approach to cybersecurity.
  • Job Accountabilities
    • Establish and maintain a Cybersecurity Assurance Programme that includes overall framework, Cyber Assurance strategy, annual assurance plan, procedures, standards, and controls to safeguard our digital infrastructure and sensitive information.
    • To deliver Cyber Assurance Program which includes complete IT Security and Cyber security related audits independently across all group entities.
    • Lead the Cyber Security Audit team to deliver Cyber Security assurance program, to deliver targeted audits addressing the highest risks and areas that matter the most for our business.
    • Accountable for end-to-end cyber security audit program – from risk identification, audit planning, scoping, execution reporting and following up on closure of items
    • Continuously monitor and assess emerging threats and vulnerabilities, and update Cyber Assurance Program accordingly.
    • Project manage all Cyber Security Assurance work including directing, coordinating, reviewing, and reporting of the work of Security audit teams and providing expertise in all IT and Cyber Security related matters and audits.
    • Conduct Cyber Security Audits using tools and or manual exploitation techniques, document and present conclusions in a clear concise manner to business unit management and group senior management and agree all IT control and process improvements and recommendations which may include operational enhancements or efficiencies, and the preparation of audit reports as well as documenting controls;
    • Manage the Development, execution and maintenance of comprehensive IT security audit work programs including common OS, network & database security, portals and application, internal and external penetration tests, configuration audits etc.
    • Ensure regular IT Issues Follow up, IT Security Awareness campaign, and other Audit initiatives as required are conducted by the IT Security Audit team in line with GIA procedures manual.
    • Promotes and leads identifying and sharing IT security and general IT good practices that can be implemented within the business and external entities. Advise HO, Regional and terminal IT on IT and IT Security trends and emerging risks.
    • Manages non-audit projects (e.g., IT and IT security incident reviews, business process reviews, compliance reviews, fraud investigations, project reviews).
    • Keep self and team up to date and educate team members on IT industry trends and advancements by investing in self-learning and being an active member and contributor at organizations such as ISACA, IS forums, IT Audit groups, Seminars – IT Risks and Controls, IT Security – threats and controls, Emerging IT Risks
    • Develop and maintain professional relationship with auditees’ IT teams, Senior IT management and Technology executive management at Group technology to create an expert network, leverage the global expert network, promote synergy within various company IT departments. Provide regular updates to the Audit Committee on IT and Cyber Security related matters.

The above outlined responsibilities are not exhaustive, and you may be required to carry out other tasks that are appropriate to your role in addition to these.

• Ability to quickly identify signs of control and procedure weaknesses or failures within disparate business functions, and regular travel for the business (typically 50%+) are essential. You will be expected to perform all assigned audit duties in manner that reflects the highest professional standards and complies with the guidelines of the Institute of Internal Auditors.

Essential Elements:

1. Do You Have 10+ years Post Qualification In Cyber Security Implementation And Audit Experience?
2. Have You Established And/Or Managed Cyber Security Assurance Programmes?
3. Do You Have A Computer Science Degree, Preferably With Specialisation Related To Information Security Or Cybersecurity?
4. Do You Have 2 Or More IT Security Related / Audit Qualifications In Good Standing E.G. CISA, CISSP, CISM, CEH, CGEIT, OSCP?
5. Do You Have Hands On IT Security Testing Experience Including Internal Network Vulnerability Assessments And External Penetration Tests?

Interested? As long as you can answer ‘Yes’ to these 5 essential requirements, please apply by uploading a full, detailed and updated CV in total confidence via the link and a Senior Consultant will be in touch to discuss further assuming you meet all specified requirements above. You can also email CV and supporting letter to london@spsexecutivesearch.com .

Job Features

Job CategoryCyber Security, Commercial, Finance Insurance Actuarial

Apply Online

A valid email address is required.
A valid phone number is required.