×
Register Here to Apply for Jobs or Post Jobs. X

ISMS And ISO Security Process Specialist

Job in Abu Dhabi, UAE/Dubai
Listing for: Damen
Full Time position
Listed on 2026-09-29
Job specializations:
  • IT/Tech
    Information Security & Data Protection, Cybersecurity, IT Consultant, IT Business Analyst
Salary/Wage Range or Industry Benchmark: 180000 - 280000 AED Yearly AED 180000.00 280000.00 YEAR
Job Description & How to Apply Below
Position: ISMS And ISO 27001 Security Process Specialist

Job Description:

We offer you an Ocean of Possibilities. Join our family.

ISMS & ISO 27001 Security Process Specialist

Location:

DMESS, Abu Dhabi, UAE

Department:
Cyber Security/ Group IT

Employment Type:

Full-Time

Shape the Future of Data & AI at Damen

At Damen Shipyards Group, we are strengthening our Information Security Management System (ISMS) and advancing our journey toward ISO/IEC 27001:2022 certification readiness. To support this strategic objective, we are looking for a hands-on ISMS & Security Process Specialist who will help build, structure, document, and operationalize our security management framework across the organization.

This is not a role focused solely on compliance administration or policy maintenance.

We are looking for someone who can take existing processes, controls, and ways of working and transform them into a structured, auditable, and sustainable Information Security Management System. You will work alongside the Group CISO and key stakeholders to establish the documentation, process architecture, evidence management, and governance foundations required to support ISO/IEC 27001:2022 compliance and certification readiness.

This is a unique opportunity to influence security maturity across a global maritime leader while helping to create a management system that is practical, scalable, and embedded into day-to-day operations.

The Role

As an ISMS & Security Process Specialist, you will act as the operational driver behind Damen's ISO/IEC 27001:2022 implementation efforts. You will identify existing security and IT processes, document them, formalize control activities, establish traceability between risks and controls, and ensure evidence can be consistently produced for audits and certification activities.

You will work closely with Process Owners, Control Owners, IT Service Owners, Quality Management teams, Security stakeholders, and business functions across the organization. Success in this role requires strong process documentation skills, practical ISO 27001 knowledge, attention to detail, and the ability to transform fragmented information into a structured and auditable management system.

Key Responsibilities Build & Maintain the ISMS
  • Develop and maintain the Information Security Management System aligned with ISO/IEC 27001:2022
  • Create policies, procedures, standards, registers, and governance documentation
  • Establish traceability between risks, controls, owners, processes, and evidence
  • Support maintenance of the Information Security Risk Register and Statement of Applicability (SoA)
  • Build sustainable governance structures that support certification readiness
Document & Formalize Processes
  • Identify existing security, IT, and governance processes across the organization
  • Interview stakeholders to understand how controls operate in practice
  • Create process flows, control descriptions, workflows, and supporting documentation
  • Translate operational activities into auditable and repeatable processes
  • Identify and remediate documentation and process gaps
Support ISO/IEC 27001 Compliance
  • Map existing practices against ISO/IEC 27001:2022 clauses and Annex A controls
  • Perform compliance and gap assessments
  • Define actions required to address identified deficiencies
  • Support control owners in documenting controls and evidence requirements
  • Track remediation activities through to completion
Develop the Security Management System
  • Build and maintain security processes within Damen's Mavim platform
  • Structure relationships between controls, risks, evidence, systems, and stakeholders
  • Ensure information security requirements are embedded into business processes
  • Maintain process ownership, version control, and review cycles
  • Support continuous improvement of the management system
Manage Evidence & Audit Readiness
  • Establish and maintain the ISMS evidence repository
  • Coordinate the collection and validation of audit evidence
  • Ensure evidence remains current, complete, and accessible
  • Support internal audits, certification audits, and management reviews
  • Track findings, corrective actions, and improvement initiatives
Drive Continuous Improvement
  • Promote best practices in security governance and process management
  • Support stakeholders in adopting structured and sustainable controls
  • Facilitate workshops and working sessions across the business
  • Translate ISO requirements into practical business guidance
  • Improve ISMS maturity, audit readiness, and process effectiveness
Experience What We're Looking For
  • 4-7 years of experience in Information Security, ISMS, IT…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary