Senior Officer - Compliance And Assurance Outsource
Job Description:
Role : Senior Officer - Compliance & Assurance
Location : Abu Dhabi
Role
Purpose:
The role is part of the Cyber Defense Center within Group Information Security Department (GISD) and is responsible for Data Loss Prevention monitoring, incident validation, governance and assurance activities to support ADIBs overall information security and data protection objectives.
The role supports the Head of Cyber Defense Center in ensuring effective monitoring and analysis of DLP events, performing L2 validation of incidents reviewed by L1 analysts, coordinating investigation and escalation of true-positive incidents, maintaining DLP dashboards and reporting, and continuously identifying opportunities to improve DLP monitoring and control effectiveness.
The role is also responsible for ensuring DLP monitoring processes and activities are performed in accordance with ADIB policies, approved procedures, privacy requirements and applicable regulatory obligations.
Key Accountabilities of the role- Monitor, analyze, and investigate DLP alerts and events across all relevant data transfer channels to identify potential data leakage, unauthorized transfers, policy violations, suspicious user activities, and information security risks, including detailed analysis of user activity, data classifications, transfer methods, destinations, historical behavior, related alerts, and potential business or customer impact.
- Perform L2 review, validation, and quality assurance of DLP incidents handled by L1 analysts, ensuring accurate classification, risk assessment, evidence collection, incident disposition, adherence to procedures, escalation requirements, and investigation standards.
- Review and validate false positives, permitted activities, and non-incidents, ensuring potentially material events are not closed without sufficient investigation, supporting evidence, and documented justification.
- Identify, correlate, and conduct historical reviews of related DLP events involving common users, applications, destinations, files, data types, or activity patterns to detect recurring, linked, or previously unidentified incidents.
- Escalate confirmed or suspected true-positive DLP incidents to relevant stakeholders, management, Security Incident Response Team, Privacy/Data Protection Team, Fraud Investigation Department (FID), and other parties in accordance with approved escalation and incident management procedures.
- Coordinate investigations, containment, remediation, and closure activities with IT, business units, HR, Legal, Privacy, FID, Incident Response, and other stakeholders for DLP incidents and associated security, fraud, or privacy concerns.
- Ensure appropriate containment, corrective, and preventive actions are implemented for confirmed incidents, including policy tuning, access restrictions, endpoint and network controls, data-transfer channel restrictions, compensating controls, and validation of remediation effectiveness.
- Develop, maintain, and enhance DLP dashboards, reports, and management metrics covering alert volumes, incidents, severity trends, SLA performance, true/false positives, repeat violations, aging cases, business unit exposure, and monitoring effectiveness.
- Perform trend, behavioral, and risk analysis to identify recurring violations, high-risk users, emerging data leakage threats, monitoring gaps, commonly abused transfer channels, and opportunities to strengthen preventive and detective controls.
- Continuously improve DLP monitoring capabilities through policy enhancement, rule tuning, threshold optimization, use case development, dashboard improvements, monitoring coverage validation, and assessment of technology limitations and compensating controls.
- Conduct periodic validation and assurance reviews of monitoring filters, alert coverage, queues, workflows, and end-to-end DLP processes to ensure high-risk activities are detected, investigated, escalated, contained, and closed in accordance with defined requirements.
- Capture lessons learned from incidents, audits, and assurance activities and incorporate them into DLP rules, procedures, awareness initiatives, training programs, and control enhancement efforts.
- Provide guidance, coaching, and operational oversight to L1 analysts, identifying recurring quality issues and recommending procedural improvements, additional training, or monitoring enhancements.
- Maintain governance and operational compliance of DLP monitoring activities, ensuring adherence to SOPs, SLAs, escalation matrices, incident classification criteria, investigation methodologies, and approved operating procedures.
- Maintain comprehensive DLP documentation and evidence management practices, including procedures, use cases, escalation matrices, monitoring filters, investigation checklists, known limitations, incident records, audit trails, and supporting evidence throughout the incident lifecycle.
- Support audits, regulatory reviews, assurance activities, and self-assessments, provide required evidence,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).