Senior Cybersecurity Assurance Analyst
Responsibilities
As a Senior Cyber Security Assurance Analyst you will lead the coordination, integration, and continuous improvement of security assurance processes within the Product portfolio. You will oversee the implementation and effectiveness of security controls by collaborating with specialist teams and portfolio stakeholders, and drive the management of risk, compliance, and remediation activities, ensuring alignment with industry best practices and Emirates Group objectives.
You will foster a culture of secure‑by‑design and proactive risk management through cross‑functional engagement and strategic leadership. In the role you will coordinate and oversee the execution of security assurance activities within the Product portfolio, ensuring alignment with organizational priorities, compliance requirements, and industry best practices while facilitating seamless collaboration between specialist teams and portfolio stakeholders. You will integrate and synthesize outputs from specialist cybersecurity teams such as compliance, governance, and secure coding, ensuring that identified risks and control gaps are tracked, prioritized, and managed through their lifecycle and that remediation plans are effectively implemented.
You will monitor and review the effectiveness of security controls and assurance processes, escalating significant findings, supporting data‑driven decision‑making, and ensuring continuous improvement in the security posture of the Product portfolio. You will champion the adoption and optimization of formal methodologies, tools, and documentation for security assurance activities, promoting consistency, efficiency, and alignment with industry standards across the portfolio, and engage and collaborate with IT and business stakeholders to promote a culture of security awareness, accountability, and secure‑by‑design, delivering guidance, facilitating knowledge transfer, and supporting the integration of assurance findings into business and technical processes.
To be considered for this role, you must meet the following requirements:
- Degree or Honours (12+3 or equivalent) and an information security related industry recognised certification such as CISSP, CISA, CISM, GIAC certification, CEH etc.
- 5+ years in cybersecurity Assurance, Governance, Risk, or a closely related discipline with a demonstrated track record of leading assurance activities across complex, multi‑stakeholder enterprise environments and managing company‑wide security programmes.
- Advanced working knowledge of information security assurance principles, control frameworks, and regulatory compliance requirements, including ISO/IEC
27001, NISTCSF, CIS Controls, COBIT, and relevant industry‑specific regulations (e.g., GDPR, NCA, SAMA, PCI‑DSS). - Proven ability to coordinate, integrate, and govern outputs from multiple specialist cybersecurity domains, including governance, risk, compliance, secure coding, threat intelligence, and architecture into a cohesive assurance view.
- Control Effectiveness & Assurance Oversight:
Strong expertise in designing, monitoring, and continuously evaluating security control effectiveness, with the ability to identify assurance gaps, elevate material risks to senior leadership, and drive timely and accountable remediation. - Demonstrated success in championing the adoption and continuous improvement of security methodologies, assurance tooling, automation, and standardised documentation practices to mature the organisation's assurance capability.
- Executive Communication & Stakeholder Engagement:
Exceptional communication and influencing skills, with the ability to translate complex cybersecurity assurance findings into clear, business‑relevant insights for C‑suite, board, and technical audiences, while facilitating knowledge transfer and promoting secure‑by‑design principles across the organization. - Advanced analytical and organisational capabilities to manage end‑to‑end risk remediation tracking, measure assurance process performance through meaningful KPIs and metrics, and lead structured continuous improvement initiatives that strengthen the organisation's security posture over time.
- Proven ability to work collaboratively across business, technology, and operational teams to embed assurance findings, lessons learned, and security requirements directly into business processes, project life cycles, and change management activities.
- Demonstrated leadership in building and sustaining a proactive, risk‑aware security culture, including mentoring junior assurance professionals, influencing behavioural change, and driving organisation‑wide accountability for cybersecurity outcomes at all levels.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).