Back to search
Hays Linkedin · Posted 26d ago

Senior Manager - Cyber Security Risk

United Arab Emirates

Linkedin
Continue to application Add your email once, then Caio opens the original posting.

Indexed description

Location: Dubai, UAE

Position Level: Senior Manager / Head of Function

Reporting Line: Executive Director, Infrastructure & Cybersecurity


Role Summary

We are seeking an experienced cybersecurity leader to oversee the ongoing strategy, design, and execution of our global information security risk framework. In this role, you will act as the core authority on cyber risk across the organization, embedding a proactive risk-aware culture and driving first-line operational ownership.


A primary objective of this role is to elevate organizational risk maturity by transitioning our assessment models from qualitative evaluations to data-driven, quantitative risk analyses (including calibrated loss modeling and probabilistic simulations). You will regularly interface with executive leadership and board-level risk committees to provide clear visibility into our security posture, regulatory compliance, and priority remediation initiatives.

Primary Responsibilities


  • Enterprise Risk Framework: Architect and scale a principles-based Information Security Risk Management Framework that aligns with overall corporate objectives, ensuring consistent risk-based decision-making across all business units and international subsidiaries.
  • First-Line Risk Ownership: Establish a clear risk ownership model across business and IT units. Guide operational teams in adopting structured risk methodologies and integrating security controls directly into day-to-day operations.
  • Quantitative Risk Modeling: Shift organizational practices toward advanced quantitative assessment methods, leveraging risk simulations, probabilistic impact analysis, and data analytics to evaluate exposure accurately.
  • Governance & Executive Reporting: Lead internal information risk governance boards and act as the principal liaison to executive risk committees. Prepare and deliver concise, board-ready reporting on aggregated exposure, emerging threat trends, and treatment strategies.
  • Targeted Assessments & Emerging Threats: Oversee risk reviews across core operational systems, enterprise software, and third-party ecosystems. Assess complex and emerging threat vectors, including AI-driven automated systems and novel social engineering techniques.
  • Cross-Functional Collaboration: Partner closely with enterprise risk, internal audit, safety, and compliance teams to ensure alignment across control frameworks and regulatory mandates.
  • Security Culture & Awareness: Lead targeted, data-informed security awareness campaigns designed to drive measurable behavioral change across the global workforce.


Mandatory Qualifications & Experience


  • Education: Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related technical discipline.
  • Required Certification: CRISC (Certified in Risk and Information Systems Control) is strictly required.
  • Professional Tenure: Minimum 10 years of progressive experience in IT, cybersecurity, and information risk management, including a track record of leading enterprise-wide risk initiatives within a complex, global organization.
  • Team Leadership: Demonstrated success in coaching, structuring, and elevating high-performing risk management teams.


Technical Skills & Knowledge


  • Deep familiarity with quantitative risk calculation methodologies, data analytics, and established frameworks such as the ISF Standard of Good Practice, NIST, or ISO 27005.
  • Proven ability to translate complex technical risk data into meaningful commercial and operational insights for C-suite and Board-level executives.
  • Comprehensive understanding of global cybersecurity regulations, data privacy mandates, and cross-border regulatory frameworks.
  • Strong change management capability, with a focus on shifting organizational culture from passive compliance to proactive risk ownership.


Preferred Credentials


  • Additional certifications such as CISM or CISA are highly desirable.
  • Professional working fluency in Arabic or other major languages alongside English is an advantage.


If you meet the above criteria and would like to explore this opportunity, please apply directly through this posting and attach your CV.

Free. 20 seconds. No password. See every match in this search.

Create a free Caio profile to unlock more results and save your role and location preferences.

Unlock free search
Want help applying to roles like this? Search Caio for free. If repetitive applications get heavy, Managed Job Search adds supervised execution for $99/month.
View Managed Job Search