×
Register Here to Apply for Jobs or Post Jobs. X

Cybersecurity Governance, Risk & Compliance; GRC Specialist

Job in Dubai, Dubai, UAE/Dubai
Listing for: Client of ITHR 360° CONSULTING FZE
Full Time position
Listed on 2026-06-19
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security, Data Security, IT Consultant
Salary/Wage Range or Industry Benchmark: 120000 - 200000 AED Yearly AED 120000.00 200000.00 YEAR
Job Description & How to Apply Below
Position: Cybersecurity Governance, Risk & Compliance (GRC) Specialist

Job Title

Cybersecurity Governance Risk & Compliance (GRC) Specialist

Location

Dubai, UAE (Hybrid / Onsite)

Employment Type

Full‑Time

Role Overview

We are seeking an experienced Cybersecurity Governance, Risk & Compliance (GRC) Specialist to lead and support cybersecurity governance initiatives, risk management programs, compliance assessments, and security framework implementation across client environments. The ideal candidate will possess strong knowledge of cybersecurity standards, regulatory requirements, risk assessment methodologies and information security governance practices. This role will work closely with clients, technical teams and business stakeholders to ensure cybersecurity risks are effectively managed and compliance obligations are met.

Key Responsibilities
  • Governance & Security Frameworks – Develop, implement and maintain cybersecurity governance programs; establish and manage Information Security Management Systems (ISMS); support implementation and maturity assessments for frameworks such as ISO
    27001, NIST Cybersecurity Framework (CSF), NIST
    800‑53, CIS Controls, PCIDSS, GDPR, UAE Information Assurance Standards, NIS2 and other regional regulatory requirements where applicable; develop cybersecurity policies, procedures, standards and guidelines.
  • Risk Management – Conduct enterprise cybersecurity risk assessments; perform risk identification, analysis, treatment and reporting; maintain organizational risk registers and risk treatment plans; facilitate business impact assessments and control effectiveness reviews; present risk findings and recommendations to management and clients.
  • Compliance & Audit Management – Conduct compliance gap assessments and readiness reviews; support internal and external audits; coordinate evidence collection and remediation activities; track compliance obligations and regulatory requirements; develop compliance dashboards and executive reports.
  • Third‑Party & Vendor Risk Management – Perform vendor security assessments; review supplier compliance and security controls; manage third‑party risk remediation activities; support procurement and due diligence security reviews.
  • Security Awareness & Advisory – Deliver cybersecurity awareness and governance workshops; provide strategic cybersecurity guidance to clients and stakeholders; assist organizations in developing security roadmaps and compliance strategies; support virtual CISO (vCISO) engagements when required.
  • Reporting & Metrics – Prepare executive‑level risk and compliance reports; develop and track cybersecurity KPIs and KRIs; monitor compliance status across multiple frameworks and client environments.
Education

Bachelor’s degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field.

Experience

4–8 years of experience in Cybersecurity Governance, Risk & Compliance; conducting risk assessments and compliance audits; hands‑on experience implementing security governance frameworks; preference for experience within consulting, MSSP, SOC or cybersecurity service environments.

Technical Knowledge
  • Information Security Governance
  • Enterprise Risk Management
  • Cybersecurity Risk Assessments
  • Compliance Auditing
  • Security Policy Development
  • Third‑Party Risk Management
  • Business Continuity & Disaster Recovery
  • Security Awareness Programs
  • Vulnerability and Risk Reporting
  • Frameworks & Standards: ISO
    27001/ISO
    27002, NIST CSF, NIST
    800‑53, CIS Controls, PCIDSS, GDPR, SOC2, UAE Cybersecurity Regulations, Cloud Security Governance (AWS, Azure, GCP)
Preferred Certifications
  • CISSP
  • CISM
  • CRISC
  • ISO
    27001 Lead Implementer / Lead Auditor
  • CISA
  • PCIDSS ISA/QSA (preferred)
  • CCSK or CCSP
Key Competencies
  • Excellent analytical and problem‑solving skills
  • Strong stakeholder management abilities
  • Executive‑level communication and presentation skills
  • Risk‑based decision‑making mindset
  • Strong documentation and reporting capabilities
  • Ability to manage multiple client engagements simultaneously
  • High attention to detail and compliance requirements
#J-18808-Ljbffr
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary