Lead Consultant- GRC
Job Fit Check
Base Career helps you apply smarter for this job.
Key skills for this role
Role Overview
Senior individual-contributor and delivery-lead role owning GRC and Information Security initiatives for a government regulatory entity and its regulated sector.
The role operates in a healthcare regulatory environment aligned with ADHICS and applicable UAE requirements.
Key Skills for This Role
Full Job Posting
Role Overview
Senior individual-contributor and delivery-lead role owning GRC and Information Security initiatives for a government regulatory entity and its regulated sector.
The role operates in a healthcare regulatory environment aligned with ADHICS and applicable UAE requirements.
Workstream Delivery
- Own end-to-end delivery of assigned GRC and Information Security workstreams and act as senior client and regulatory stakeholder contact.
- Plan activities, set technical direction and quality standards, manage risks and dependencies and ensure milestones are met.
Policy and Risk
- Lead development, implementation and continuous improvement of Information Security policies, standards, procedures, guidelines and templates.
- Lead risk identification, assessment, treatment and monitoring and escalate significant risks with remediation recommendations.
Compliance and Audits
- Define and execute compliance initiatives and lead Information Security audits.
- Assess operational capabilities, compliance and control effectiveness and track findings through closure.
Stakeholder and Team Leadership
- Serve as senior liaison with business functions, sector stakeholders and regulatory bodies on security matters.
- Guide and quality-assure consultants and junior team members through technical direction, coaching and feedback.
- Provide expert advisory on agreements and represent Information Security on committees and forums.
Experience and Education
- Minimum of 9 years in GRC and Information Security, including leadership of GRC workstreams or teams and quality assurance of deliverables.
- A substantial portion of experience must be in the UAE healthcare sector or a healthcare regulatory environment.
- Experience must include cybersecurity, technology risk, regulatory compliance or audit management and hands-on ADHICS work.
- Bachelor’s degree in IT, Cybersecurity, Computer Science, Risk Management, Business Administration or a related field.
- A Master’s degree or relevant postgraduate qualification is preferable.
Skills and Certifications
- Advanced GRC, control framework, risk assessment and compliance monitoring knowledge with the ability to lead workstreams.
- In-depth working knowledge of ADHICS and UAE healthcare regulatory and Information Security requirements is mandatory.
- Preferred certifications include CISSP, CISM, CISA, CRISC, ISO/IEC 27001 Lead Implementer or Lead Auditor, ISO 31000 Risk Manager or CGEIT.
- Important competencies include delivery leadership, quality assurance, stakeholder management, mentoring, communication, integrity and confidentiality.
Apply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
More jobs at CPX
Consultant –GRC
, UAE
The employer is seeking a Consultant to support Governance, Risk and Compliance and Information Security initiatives for a healthcare regulatory entity and its regulated sector. The role delivers policy, risk, compliance
Manager - GRC
, UAE
CPX is seeking a Manager to lead hands-on cyber consulting delivery across GRC advisory, eGRC/IRM platform implementation, and GRC transformation engagements. The role requires UAE healthcare regulatory experience, ADHIC
Specialist – Endpoint Security
, UAE
CPX is seeking an Endpoint Security Specialist to monitor and investigate EDR/XDR detections, operate endpoint security controls, and support cyber-threat containment and remediation. The role requires at least five year
Lead Consultant - Incident Response (CPX)
Abu Dhabi, UAE
CPX is seeking a Lead Incident Responder to coordinate cyber incident response engagements and lead digital forensics, threat hunting, reporting, and quality assurance. The role requires strong English communication, pri
Senior Consultant - Incident Response (CPX)
Abu Dhabi, UAE
The employer is seeking a Senior Incident Responder for a blue-team incident response and digital forensics environment. The role leads investigations, threat hunting, host and network forensics, customer reporting, and
Lead SOC Engineer (SIEM) (CPX)
Abu Dhabi, UAE
CPX is seeking a Lead SOC Engineer specializing in SIEM operations, architecture, technical leadership, and pre-sales support. The role requires extensive SIEM and SOC experience, strong knowledge of Splunk and related p
Senior Manager - Incident Response (CPX)
Abu Dhabi, UAE
CPX is seeking a Senior Manager to lead incident response and digital forensics operations for a critical onsite customer. The role combines hands-on cyber incident coordination, threat hunting, forensic investigations,
Consultant –GRC
, UAE
Manager - GRC
, UAE
Lead Consultant - Incident Response (CPX)
Abu Dhabi, UAE
Specialist – Endpoint Security
, UAE
Lead Consultant - Incident Response (CPX)
Abu Dhabi, UAE
Senior Consultant - Incident Response (CPX)
Abu Dhabi, UAE
Lead SOC Engineer (SIEM) (CPX)
Abu Dhabi, UAE
Senior Manager - Incident Response (CPX)
Abu Dhabi, UAE