GRC Specialist - UAE Nationals Only
Etihad
Date: 2 weeks ago
City: Abu Dhabi
Contract type: Contractor
Synopsis
As part of the Governance, Risk and Compliance team, this role is responsible for Supporting the implementation of the security risk management process, procedures and guidelines - identifying, assessing and controlling risks. They will also manage compliance assessments and supporting activities in audits and certification audits against various standards and track/report compliance implementation. This role is part of the wider Governance, Risk and Compliance team and will require cooperation with corporate compliance functions on the harmonization of security law enforcement activities and conduct IT compliance research and requirement applicability analysis.
Accountabilities
Etihad Airways, the national airline of the UAE, was formed in 2003 and quickly went on to become one of the world’s leading airlines. From its home in Abu Dhabi, Etihad flies to passenger and cargo destinations in the Middle East, Africa, Europe, Asia, Australia and North America. Together with Etihad’s codeshare partners, Etihad’s network offers access to hundreds of international destinations. In recent years, Etihad has received numerous awards for its superior service and products, cargo offering, loyalty programme and more. All this ties into Etihad’s ambitious Journey 2030 strategy. The airline plans to double its fleet size and triple the number of customers over the next six years as it sets out to be the airline everyone wants to fly!
To learn more, visit etihad.com
Recruitment Fraud Alert
Beware of fraudulent job offers from individuals or organizations claiming to represent the Etihad group. We will never ask for personal information, bank details, or payment during the recruitment process. Interviews are conducted face-to-face or via video/telephone before any formal offer. If you are asked for money, please treat it as fraudulent.
As part of the Governance, Risk and Compliance team, this role is responsible for Supporting the implementation of the security risk management process, procedures and guidelines - identifying, assessing and controlling risks. They will also manage compliance assessments and supporting activities in audits and certification audits against various standards and track/report compliance implementation. This role is part of the wider Governance, Risk and Compliance team and will require cooperation with corporate compliance functions on the harmonization of security law enforcement activities and conduct IT compliance research and requirement applicability analysis.
Accountabilities
- Proactively seek opportunities to improve the efficiency / effectiveness of the IT security compliance program.
- Develop, review and revise information security policies and supporting standards aligned with applicable industry best practices and regulations.
- Assist the Implementation of the security governance, risk and compliance program as directed with a focus on industry regulations and standards, data privacy and internal policies and standards compliance.
- Operate the enterprise-owned tools that support governance, risk and compliance activities and support service providers in delivering contractual security requirements.
- Identify and evaluate IT security risk factors and ensure adequate & effective IT security controls exists that mitigate these risks and meet current and future compliance requirements.
- Demonstrate knowledge of IT security regulatory requirements like NESA, ISO 27001, PCI DSS, GDPR, ADHICS, etc.
- Provide assurance that IT security risks are effectively identified and addressed in relation to with deployment of new or enhancements in existing information systems and processes.
- Provide support in coordination activities as required for the IT security component of both internal and external audits.
- Support in the development, review and publishing of content for security awareness theme and conduct security awareness trainings & simulation exercises.
- Support the vulnerability detection & remediation program with a focus on vulnerability prioritization and remediation with creation of timely reports & dashboards.
- Knowledge of industry best practice standards pertaining to Information Security, risk management and data privacy
- Knowledge of and experience with Information Security and GRC tools required.
- Understanding of international and local regulations pertaining to Aviation, Information Security and data privacy
- Ability to manage execution of projects by security services providers and internal teams.
- Ability to learn and adapt quickly to new cybersecurity technologies and skills
- Very good written and oral communication skills required.
- A minimum of 5+ years of experience in Cybersecurity.
- Graduate degree in Computer Science, Management Information Systems or equivalent industry experience.
Etihad Airways, the national airline of the UAE, was formed in 2003 and quickly went on to become one of the world’s leading airlines. From its home in Abu Dhabi, Etihad flies to passenger and cargo destinations in the Middle East, Africa, Europe, Asia, Australia and North America. Together with Etihad’s codeshare partners, Etihad’s network offers access to hundreds of international destinations. In recent years, Etihad has received numerous awards for its superior service and products, cargo offering, loyalty programme and more. All this ties into Etihad’s ambitious Journey 2030 strategy. The airline plans to double its fleet size and triple the number of customers over the next six years as it sets out to be the airline everyone wants to fly!
To learn more, visit etihad.com
Recruitment Fraud Alert
Beware of fraudulent job offers from individuals or organizations claiming to represent the Etihad group. We will never ask for personal information, bank details, or payment during the recruitment process. Interviews are conducted face-to-face or via video/telephone before any formal offer. If you are asked for money, please treat it as fraudulent.
How to apply
To apply for this job you need to authorize on our website. If you don't have an account yet, please register.
Post a resumeSimilar jobs
Engineer, Electrical ( Engineering Services - Electrical (P&T))
Energy Job Search,
Abu Dhabi
1 day ago
Job PurposeMonitor, coordinate, provide technical expertise and perform the activities of the Electrical Maintenance at ADNOC owned properties including Residential and VIP villas and other owned, leased properties within Abu Dhabi City and Ruwais City in order to achieve highest operational efficiency and long functional life. This includes design, plan, installation, operation, maintenance, expansion and up gradations of a variety...
Regional Head of GCC, International Banking - Arabic Speaker
First Abu Dhabi Bank (FAB),
Abu Dhabi
5 days ago
Company DescriptionJoin the UAE’s largest bank and one of the world’s largest and safest financial institutions. Our focus is to create value for our employees, customers, shareholders and communities to grow through differentiation, agility and innovation.We are looking for top talent and your success is our success. Accelerate your growth as you help us reach our goals and advance your...
T24 Islamic Solution Architect- C2
Capgemini,
Abu Dhabi
6 days ago
Job DescriptionWorks in the area of Software Engineering, which encompasses the development, maintenance and optimization of software solutions/applications. Applies scientific methods to analyse and solve software engineering problems. He/she is responsible for the development and application of software engineering practice and knowledge, in research, design, development and maintenance. His/her work requires the exercise of original thought and judgement and the...