{bc}
linkedin

Lead Consultant- GRC

CPX
Abu Dhabi, UAE
Full-time
Mid-Senior
Onsite
Discovered Today
Governance, Risk and Compliance (GRC)Information SecurityADHICS StandardISO/IEC 27001GRC workstream leadershipInformation Security risk management
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan

Key skills for this role

Governance, Risk and Compliance (GRC)Information SecurityADHICS Standard
Smart Apply

Full Job Posting

Role Overview

Senior individual-contributor and delivery-lead role owning GRC and Information Security initiatives for a government regulatory entity and its regulated sector.

The role operates in a healthcare regulatory environment aligned with ADHICS and applicable UAE requirements.

Workstream Delivery

  • Own end-to-end delivery of assigned GRC and Information Security workstreams and act as senior client and regulatory stakeholder contact.
  • Plan activities, set technical direction and quality standards, manage risks and dependencies and ensure milestones are met.

Policy and Risk

  • Lead development, implementation and continuous improvement of Information Security policies, standards, procedures, guidelines and templates.
  • Lead risk identification, assessment, treatment and monitoring and escalate significant risks with remediation recommendations.

Compliance and Audits

  • Define and execute compliance initiatives and lead Information Security audits.
  • Assess operational capabilities, compliance and control effectiveness and track findings through closure.

Stakeholder and Team Leadership

  • Serve as senior liaison with business functions, sector stakeholders and regulatory bodies on security matters.
  • Guide and quality-assure consultants and junior team members through technical direction, coaching and feedback.
  • Provide expert advisory on agreements and represent Information Security on committees and forums.

Experience and Education

  • Minimum of 9 years in GRC and Information Security, including leadership of GRC workstreams or teams and quality assurance of deliverables.
  • A substantial portion of experience must be in the UAE healthcare sector or a healthcare regulatory environment.
  • Experience must include cybersecurity, technology risk, regulatory compliance or audit management and hands-on ADHICS work.
  • Bachelor’s degree in IT, Cybersecurity, Computer Science, Risk Management, Business Administration or a related field.
  • A Master’s degree or relevant postgraduate qualification is preferable.

Skills and Certifications

  • Advanced GRC, control framework, risk assessment and compliance monitoring knowledge with the ability to lead workstreams.
  • In-depth working knowledge of ADHICS and UAE healthcare regulatory and Information Security requirements is mandatory.
  • Preferred certifications include CISSP, CISM, CISA, CRISC, ISO/IEC 27001 Lead Implementer or Lead Auditor, ISO 31000 Risk Manager or CGEIT.
  • Important competencies include delivery leadership, quality assurance, stakeholder management, mentoring, communication, integrity and confidentiality.

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today

More from this employer

More jobs at CPX