Navigation

Navigation
|
||
![]() | Job posted by Emirates |
|
The Position
Develop, implement and continuously improve the security verification and assurance program consisting of risk assessments, compliance reviews, vulnerability assessments and penetration tests based on industry best practices and ensure the program is executed on an ongoing basis.
Perform investigations relating to suspected breaches of information security policies and standards or security compromise.
Develop, implement and maintain a comprehensive security risk management framework to effectively manage the information security risks to Emirates Group in accordance with the business requirements and approve governance framework.
Define and implement an awareness program for all corporate users through creative and effective channels in line with the approved governance frameworks and organisational security plan. On similar lines, define and implement a comprehensive education programme for Emirates Group IT, to encompass software development, infrastructure technologies, project management, governance and operational personnel.
Research, recommend and implement formal methodologies and tools for conducting information security risk assessments, reviews and investigations, and for performing impact analysis.
Monitor and continuously review the Emirates systems on an on-going basis, for the compliance with the Emirates Groups Information Security Policies, Principles and Standards and initiate corrective actions in the event of any violations.
Plan and schedule regular vulnerability assessments, penetration tests, technical risk assessments and compliance reviews on the Groups Key IT infrastructure components and applications based on the criticality and perceived risk of the applications/services.
Ensure all the identified security weaknesses and risks are managed through their life-cycle from identification to resolution to verification and closure through the Information Security Risk Tracking system and provide appropriate visibility of the same to the Management.
Establish procedures for investigating, reporting and responding to information security incidents to ensure effective incident response and resolution. Perform investigations of the security incidents and policy non-compliance issues using appropriate investigations and forensic analysis and report the findings to senior management.
Keep abreast of new exploits, threats and security risks in the industry, the region and Emirates Group and profile Emirates Groups susceptibility to these. Alert the Monitoring team within IT Operations for ensuring continuous monitoring of Emirates network and systems against these, to Security Awareness team to promote awareness and to Technical Security team to action immediate improvements or containment.
Define security metrics, monitoring parameters and reporting requirements for the Security Monitoring team within IT Operations for monitoring, measurement and reporting of security events and current threat status on an on-going basis.
Provide regular summary reports to senior management on the risk status of Emirates IT and the potential and likely impact on The Emirate Group as gathered from assessments, reviews, investigation and risk mitigation validation.
Salary & Benefits
We offer an attractive tax-free salary, paid in Dirhams, the local currency of the UAE. The Dirham is linked to the Special Drawing Right of the International Monetary Fund. It has been held constant against the US dollar since the end of 1980 at a mid-rate of approximately US$1= Dh3.66. Besides travel benefits normally associated with an airline, more information on employee benefits is available within the 'Working Here' section of this site. By viewing the 'Dubai Lifestyle' section in the site you can also consider the benefits of Dubai as a location to live and work in.
Experience and Qualifications
To Apply
To express your interest in the above vacancy please apply on-line by clicking below, and complete our application form. We will then consider your application and contact you should we wish to shortlist you for an interview. Should you not receive an invitation for an interview within 5 weeks please assume that on this occasion you have been unsuccessful. We will retain your details for 12 months unless advised otherwise and re-consider you for future opportunities as they arise. Please also note that if you are not shortlisted you can also update your application at anytime and apply for other opportunities. Thank you for your interest in a career with the Emirates Group.
Page generated in 0d 0h 00m 00.33s (0.33s), query took 0.031s. Session ID: 9oandlpjc7ehf5blop8menar45