{bc}
naukri

Chief Information Security Officer (CISO)

myZoi
Dubai, UAE
Executive
Onsite
Discovered 4 weeks ago
Cybersecurity strategyInformation security governanceCyber risk managementNIST CSFCIS ControlsISO 27001
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan

Key skills for this role

Cybersecurity strategyInformation security governanceCyber risk management
Smart Apply

Full Job Posting

Role

Lead the organisation's cybersecurity and information security programme across a regulated financial services environment.

Ensure the confidentiality, integrity, and availability of information assets.

Define security strategy, manage cyber risk within Board-approved appetite, and maintain regulatory compliance for a cloud-native payments and stored value facility operation.

Advise executive management and retain independent authority to escalate unresolved risk to the CTO, CEO, and Board Risk Committee.

Operate within an approved annual security budget, with spend proposals supported by cost-benefit justification.

Security Strategy and Governance

  • Define and maintain a multi-year cybersecurity strategy aligned with business growth, risk appetite, and regulatory obligations.
  • Establish and maintain an information security policy framework reviewed at least annually.
  • Maintain the cyber risk register and security maturity roadmap against NIST CSF, CIS Controls, or ISO 27001.
  • Own the security risk acceptance and exception register.
  • Provide security leadership and advisory support to executive management and regulatory stakeholders.

Threat and Vulnerability Management

  • Direct enterprise vulnerability management, including scanning, risk-based prioritization, and remediation SLA enforcement.
  • Oversee penetration testing and ensure findings are remediated and retested within defined timelines.
  • Maintain threat intelligence relevant to financial services and payments and translate it into detection and control improvements.

Security Operations

  • Oversee security monitoring, detection, and response capabilities, including SIEM, EDR/XDR, and internal or MSSP-managed SOC operations.
  • Own end-to-end incident response, including playbooks, tabletop exercises, containment, recovery, and regulatory notification.
  • Manage identity and access governance, including RBAC, privileged access management, joiner/mover/leaver controls, and periodic access recertification.
  • Define and enforce data loss prevention and data classification standards across all platforms.

Requirements

  • Operate cybersecurity and information security programs within a regulated financial services environment.
  • Apply a recognized security control framework such as NIST CSF, CIS Controls, or ISO 27001.
  • Understand cloud-native payments and stored value facility operations.

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today

More from this employer

More jobs at myZoi