Senior Cybersecurity Certification & QMS Specialist (Common Criteria)
Job Fit Check
Base Career helps you apply smarter for this job.
Key skills for this role
Role Overview
Manage and continuously improve the QMS governing cybersecurity certification schemes.
Ensure certification processes comply with international standards, regulations, and evolving industry frameworks.
Combine cybersecurity certification expertise with quality assurance, auditing, documentation, and corrective-action responsibilities.
Key Skills for This Role
Full Job Posting
Role Overview
Manage and continuously improve the QMS governing cybersecurity certification schemes.
Ensure certification processes comply with international standards, regulations, and evolving industry frameworks.
Combine cybersecurity certification expertise with quality assurance, auditing, documentation, and corrective-action responsibilities.
Key Responsibilities
- Plan, implement, monitor, improve, and maintain the QMS for different NISCF schemes.
- Review technical content and scheme documents, including manuals, policies, procedures, forms, and templates.
- Assess certification-process efficiency and effectiveness and drive continuous improvement.
- Oversee documentation and records to ensure they are accurate, complete, accessible, and up to date.
- Plan and conduct internal audits and certification-process reviews.
- Plan and organize scheme management review meetings.
- Implement corrective and preventive actions for identified non-conformities.
- Monitor changes to international and national standards, including ISO 17021, 17024, 17065, 17025, 27006, and 9001.
- Develop policies, standards, procedures, guidance, and recommendations based on audit findings.
- Maintain competence, impartiality, and consistency across evaluation and certification activities.
- Guide and mentor certifiers and evaluators through complex Common Criteria evaluations.
- Make recommendations regarding certification at specific Evaluation Assurance Levels and remain current on security developments.
Education and Experience
- Master’s-level university qualification in IT, information security, or a related security-focused field.
- At least 10 years of professional experience.
- At least 5 years as a senior IT, information security, or cybersecurity auditor, risk management professional, or information security manager.
- Certification from a recognized Common Criteria certification body and prior certifier experience are desired.
- Common Criteria for IT Security Evaluation training and certification.
- Proficiency in Arabic and English is preferred.
Required Qualifications
- Proven experience in IT and information security assessment, audit, and quality management systems.
- Hands-on information security and cybersecurity experience.
- Experience in risk assessment, risk management, audit methodologies, and gap analysis.
- Understanding of ISO 27001 certification audit requirements.
- Ability to interpret ISO/IEC 17021, 17024, 27006, and 17065 certification criteria.
- Knowledge of ISA, ITAF, ISO 17021, and ISO 19011 auditing and assurance standards.
- Knowledge of ISO 27001, NIA, and CSF Q2022 security frameworks and standards.
- Strong analytical, assessment, communication, documentation, and technical report-writing skills.
- Experience planning and delivering training and workshops across government and private-sector audiences.
- Ability to multitask, work autonomously, meet deadlines, work under pressure, and collaborate with project teams and customers.
Compensation
- Pay is QAR 19,000 to QAR 20,000 per month.
Workplace
- Work location is in person.
Apply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career