Consultant –GRC
Job Fit Check
Base Career helps you apply smarter for this job.
Key skills for this role
Role Overview
Support delivery, implementation and monitoring of GRC and Information Security initiatives for a government regulatory entity and its regulated sector.
The role operates in a healthcare regulatory environment aligned with ADHICS and applicable UAE requirements.
Key Skills for This Role
Full Job Posting
Role Overview
Support delivery, implementation and monitoring of GRC and Information Security initiatives for a government regulatory entity and its regulated sector.
The role operates in a healthcare regulatory environment aligned with ADHICS and applicable UAE requirements.
Policy and Compliance
- Support Information Security policies, standards, procedures, guidelines and templates aligned with ADHICS, ISO/IEC 27001 and applicable requirements.
- Execute compliance assessments, gather evidence and document operational capability and control effectiveness.
Risk and Audit
- Conduct risk assessments, maintain risk registers and track treatment actions under senior guidance.
- Support internal and external Information Security audits by preparing evidence and tracking findings to closure.
Stakeholder and Reporting
- Coordinate with business functions, sector stakeholders and regulatory bodies on security matters, deviations, exemptions and incidents.
- Support awareness and training activities and maintain GRC documentation, trackers and reports.
Experience and Education
- Minimum of 5 years in GRC and Information Security, including cybersecurity, technology risk, regulatory compliance or audit support.
- A demonstrable portion of experience must be in the UAE healthcare sector or a healthcare regulatory environment.
- Hands-on exposure to implementing, assessing or supporting compliance against ADHICS is required.
- Bachelor’s degree in IT, Cybersecurity, Computer Science, Risk Management, Business Administration or a related field.
Skills and Certifications
- Working understanding of GRC processes, control frameworks, risk assessment methods and compliance monitoring.
- ADHICS knowledge and familiarity with UAE healthcare regulatory and Information Security requirements are required.
- Preferred certifications include ISO/IEC 27001 Lead Implementer or Lead Auditor, CRISC, CISA, CISSP or equivalent.
- Foundational certifications such as ISO/IEC 27001 Foundation and CompTIA Security+ are advantageous.
- Important competencies include analytical skills, stakeholder communication, collaboration, attention to detail, integrity and confidentiality.
Apply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
More jobs at CPX
Lead Consultant- GRC
, UAE
The employer is seeking a Lead Consultant to own end-to-end GRC and Information Security workstreams for a healthcare regulatory entity and its regulated sector. The role sets technical direction, leads risk and complian
Manager - GRC
, UAE
CPX is seeking a Manager to lead hands-on cyber consulting delivery across GRC advisory, eGRC/IRM platform implementation, and GRC transformation engagements. The role requires UAE healthcare regulatory experience, ADHIC
Specialist – Endpoint Security
, UAE
CPX is seeking an Endpoint Security Specialist to monitor and investigate EDR/XDR detections, operate endpoint security controls, and support cyber-threat containment and remediation. The role requires at least five year
Lead Consultant - Incident Response (CPX)
Abu Dhabi, UAE
CPX is seeking a Lead Incident Responder to coordinate cyber incident response engagements and lead digital forensics, threat hunting, reporting, and quality assurance. The role requires strong English communication, pri
Senior Consultant - Incident Response (CPX)
Abu Dhabi, UAE
The employer is seeking a Senior Incident Responder for a blue-team incident response and digital forensics environment. The role leads investigations, threat hunting, host and network forensics, customer reporting, and
Lead SOC Engineer (SIEM) (CPX)
Abu Dhabi, UAE
CPX is seeking a Lead SOC Engineer specializing in SIEM operations, architecture, technical leadership, and pre-sales support. The role requires extensive SIEM and SOC experience, strong knowledge of Splunk and related p
Senior Manager - Incident Response (CPX)
Abu Dhabi, UAE
CPX is seeking a Senior Manager to lead incident response and digital forensics operations for a critical onsite customer. The role combines hands-on cyber incident coordination, threat hunting, forensic investigations,
Lead Consultant- GRC
, UAE
Manager - GRC
, UAE
Lead Consultant - Incident Response (CPX)
Abu Dhabi, UAE
Specialist – Endpoint Security
, UAE
Lead Consultant - Incident Response (CPX)
Abu Dhabi, UAE
Senior Consultant - Incident Response (CPX)
Abu Dhabi, UAE
Lead SOC Engineer (SIEM) (CPX)
Abu Dhabi, UAE
Senior Manager - Incident Response (CPX)
Abu Dhabi, UAE