To support the organization’s cybersecurity governance, risk management, and compliance activities by coordinating and executing Governance, Risk, and Compliance (GRC) processes to ensure alignment with regulatory requirements, industry standards, and internal policies, ultimately strengthening the organization's security posture.
Key Responsibilities
Develops, implements, and maintains information security governance frameworks, policies, and procedures.
Conducts risk assessments and facilitate risk management activities, including identification, evaluation, and mitigation of security risks.
Supports compliance efforts with relevant regulations and standards such as DESC ISR, ISO 27001, NIST, GDPR, PCI-DSS, and others.
Manages and coordinates internal and external audits related to information security and compliance.
Maintains the organization's risk register and track remediation plans to closure.
Collaborates with IT, legal, and business units to embed GRC best practices across the organization.
Prepares and presents risk and compliance reports for senior management and key stakeholders.
Facilitates training and awareness programs to promote understanding of information security policies and compliance requirements.
Supports the assessment, monitoring, and mitigation of vendor and third-party risks to ensure compliance with organizational policies and regulatory requirements.
Monitors emerging regulations, standards, and industry trends related to cybersecurity governance and compliance.
Coordinates and documents business impact assessments (BIAs) and support the development of security risk treatment plans.
Participates in the design and implementation of security metrics and KPIs to measure compliance and control effectiveness.
Assists in the evaluation and implementation of GRC tools and automation solutions.
Qualifications
Bachelor's Degree (3+ years)
Bachelor’s degree in Information Security, Cybersecurity, Information Technology, or a related field
Fluent in English
Minimum of 7 years experience in information security governance, risk management, and compliance, preferably in regulated industries such as aviation or banking. Proven skills in risk assessments, audit support, policy implementation, and hands-on third-party risk management. Familiarity with standards such as DESC ISR, ISO 27001, NIST, and GDPR is essential.
Reads and complies with the ISR policies of the Company and diligently reports any weakness or incidents to the respective Line Manager or the Information Security team. Completes all required ISR awareness sessions and follows associated guidelines in the day-to-day business operations.
From its home in Dubai, flydubai has created a network of more than 130 destinations served by a fleet of 89 aircraft. Since commencing operations in June 2009, flydubai has been committed to removing barriers to travel, creating free flows of trade and tourism and enhancing connectivity between different cultures across its ever-expanding network.
Disclaimer: talentmate.com is only a platform to bring jobseekers & employers together.
Applicants
are
advised to research the bonafides of the prospective employer independently. We do NOT
endorse any
requests for money payments and strictly advice against sharing personal or bank related
information. We
also recommend you visit Security Advice for more information. If you suspect any fraud
or
malpractice,
email us at abuse@talentmate.com.
You have successfully saved for this job. Please check
saved
jobs
list
Applied
You have successfully applied for this job. Please check
applied
jobs list
Do you want to share the
link?
Please click any of the below options to share the job
details.
Report this job
Success
Successfully updated
Success
Successfully updated
Thank you
Reported Successfully.
Copied
This job link has been copied to clipboard!
Apply Job
Upload your Profile Picture
Accepted Formats: jpg, png
Upto 2MB in size
Your application for Specialist- Information Security GRC
has been successfully submitted!
To increase your chances of getting shortlisted, we recommend completing your profile.
Employers prioritize candidates with full profiles, and a completed profile could set you apart in the
selection process.
Why complete your profile?
Higher Visibility: Complete profiles are more likely to be viewed by employers.
Better Match: Showcase your skills and experience to improve your fit.
Stand Out: Highlight your full potential to make a stronger impression.
Complete your profile now to give your application the best chance!