Risk & Quality - Information Security Analyst- Associate - UAE
PwC Middle East
Date: 1 day ago
City: Dubai
Contract type: Full time

Description
At PwC, we measure success by our ability to create the value that our clients and our people are looking for. Our reputation lies in building lasting relationships with our clients and a focus on delivering value in all we do. We’re a network of firms in 158 countries with more than 236,000 people who are committed to delivering world-class capabilities and quality in assurance, tax and advisory services.
Established in the region for 40 years, PwC Middle East employs over 4,200 people across 12 countries. Complementing our depth of industry expertise and breadth of skills is our sound knowledge of local business environments across the Middle East region. Our tailored solutions help our clients meet the challenges and opportunities of doing business in the Middle East market and beyond.
Line of Service
Internal Firm Services
Industry/Sector
Not Applicable
Specialism
IFS - Risk & Quality (R&Q)
Management Level
Associate
Job Description & Summary
PwC is driving major change across information and cyber security by building a centralized model to provide security services across the entire member firm network.
Mandated at the network level, Network Information Security (NIS) operates outside Information Technology (IT) and is responsible for this major program initiative, from definition of the security strategy to the execution of the global Cyber Readiness Program, moving from local to globally-provided services.
Our mission is to identify, control, and reduce the attack surface across the
member firm network while increasing our adversaries’ cost of attack.
In order to deliver the Cyber Readiness Program, the NIS team is structured into the following Pillars:
If you are seeking an exciting career with the scope to grow your cyber security skills through major change on a global scale, then NIS will empower you to do so.
The CISO pillar within NIS is responsible for the following services:
The CISO Services Team is made up of 4 core areas:
Core Skills Within The CISO Services Team Consist Of
Individuals selected for this role are expected to have both extensive knowledge and managerial know-how related to the following aspects of the CISO pillar skills matrix:
Job Objectives and Key Metrics:
Required: High school diploma or G.E.D.
Preferred: Undergraduate Degree (e.g., BA, BS) in Information technology or field of study applicable to the role and/or completed certifications involving cybersecurity
Experience Level
1 - 3 Years’ of progressive professional roles involving information security, IT management and/or major program management.
Other Details
An effective CISO pillar candidate will also possess the following skills:
Education (if blank, degree and/or field of study not specified)
Degrees/Field of Study required:Degrees/Field of Study preferred:
Certifications (if blank, certifications not specified)
Required Skills
Optional Skills
Accepting Feedback, Accepting Feedback, Active Listening, Agile Methodology, Azure Data Factory, Communication, Cybersecurity, Cybersecurity Framework, Cybersecurity Policy, Cybersecurity Requirements, Cybersecurity Strategy, Emotional Regulation, Empathy, Encryption Technologies, Inclusion, Intellectual Curiosity, Managed Services, Optimism, Privacy Compliance, Regulatory Response, Security Architecture, Security Compliance Management, Security Control, Security Incident Management, Security Monitoring {+ 3 more}
Desired Languages (If blank, desired languages not specified)
Travel Requirements
0%
Available for Work Visa Sponsorship?
Yes
Government Clearance Required?
Yes
Job Posting End Date
At PwC, we measure success by our ability to create the value that our clients and our people are looking for. Our reputation lies in building lasting relationships with our clients and a focus on delivering value in all we do. We’re a network of firms in 158 countries with more than 236,000 people who are committed to delivering world-class capabilities and quality in assurance, tax and advisory services.
Established in the region for 40 years, PwC Middle East employs over 4,200 people across 12 countries. Complementing our depth of industry expertise and breadth of skills is our sound knowledge of local business environments across the Middle East region. Our tailored solutions help our clients meet the challenges and opportunities of doing business in the Middle East market and beyond.
Line of Service
Internal Firm Services
Industry/Sector
Not Applicable
Specialism
IFS - Risk & Quality (R&Q)
Management Level
Associate
Job Description & Summary
PwC is driving major change across information and cyber security by building a centralized model to provide security services across the entire member firm network.
Mandated at the network level, Network Information Security (NIS) operates outside Information Technology (IT) and is responsible for this major program initiative, from definition of the security strategy to the execution of the global Cyber Readiness Program, moving from local to globally-provided services.
Our mission is to identify, control, and reduce the attack surface across the
member firm network while increasing our adversaries’ cost of attack.
In order to deliver the Cyber Readiness Program, the NIS team is structured into the following Pillars:
- Information Security Risk and Compliance (ISRC)
- Chief Information Security Office (CISO)
- Security Architecture, Engineering, Innovation and Transformation (SAEIT)
- Cyber Security Services
- Strategy and Alliances
- Chief of Staff
If you are seeking an exciting career with the scope to grow your cyber security skills through major change on a global scale, then NIS will empower you to do so.
The CISO pillar within NIS is responsible for the following services:
- Engagement
- Governance
- Measurement
- Service Interface
The CISO Services Team is made up of 4 core areas:
- CISO Engagement
- NIS Service Interface
- CISO Measurement
- CISO Governance
Core Skills Within The CISO Services Team Consist Of
- Conduct analysis of member firm needs in order to make appropriate decisions for the implementation of NIS global security strategy;
- Engage with member firm stakeholders to assess security threats/vulnerabilities and manage business risk;
- Facilitate member firm support from Security Architecture, Engineering, Innovation, and Transformation (SAEIT) and Cyber Security Service Management throughout the NIS service lifecycle;
- Assess service availability, adoption rates, and maturity to manage risk to business programs and processes;
- Govern member firms for compliance with PwC’s Information Security Policy (ISP) and legal/regulatory frameworks; and
- Engage with Global IT and Applications to review security controls against ISP.
Individuals selected for this role are expected to have both extensive knowledge and managerial know-how related to the following aspects of the CISO pillar skills matrix:
- Experience managing multi-function relationships throughout major transformation;
- Understanding of security technology;
- Experience in a role balanced between business stakeholders and a central service organization;
- Navigating a multifaceted, matrix organization; and
- Collaborating with multiple stakeholders across functional and technical skillsets.
- A 1E employee possesses knowledge in a specific subject matter area or technical domain related to the CISO Services function. 1E staff evaluate circumstances and, when appropriate, independently make recommendations to determine the best courses of action to execute strategy, and influence others through interactions with co-workers within the CISO Services team.
- Demonstrates some abilities in managing efforts within business engagement and relationship management space.
- Contribute positively to a working environment by building solid relationships with team members.
- Build and maintain relationships across the network of firms to effectively deliver security activities on behalf of NIS
- Executes tasks aligned to CISO pillar with autonomy.
Job Objectives and Key Metrics:
- Manage relationships across PwC member firms
- Map existing member firm services to NIS service catalogue
- Define roadmap for integration of member firm services into NIS shared services
- Provide consultancy throughout service integration
- Capture metrics aligned to service integration and service adoption
- Drive quality of service to our stakeholders
Required: High school diploma or G.E.D.
Preferred: Undergraduate Degree (e.g., BA, BS) in Information technology or field of study applicable to the role and/or completed certifications involving cybersecurity
Experience Level
1 - 3 Years’ of progressive professional roles involving information security, IT management and/or major program management.
Other Details
An effective CISO pillar candidate will also possess the following skills:
- Analytical: Inquisitive nature and intuition regarding what questions to ask, when, and their relative significance.
- Technical: Broad understanding of security technology.
- Business: High level understanding of PwC’s business model, service offerings, and business operating environment as it pertains to the firm’s threat landscape. Ability to frame threats and exposures in a business context recognized by
- Domain landscape: Knowledge of assurance and technical security principles
- Communication: Ability to leverage business communication skills to inform, persuade, and teach stakeholders across a global network of member firms’ staff and leadership to enable effective information security activities and processes
Education (if blank, degree and/or field of study not specified)
Degrees/Field of Study required:Degrees/Field of Study preferred:
Certifications (if blank, certifications not specified)
Required Skills
Optional Skills
Accepting Feedback, Accepting Feedback, Active Listening, Agile Methodology, Azure Data Factory, Communication, Cybersecurity, Cybersecurity Framework, Cybersecurity Policy, Cybersecurity Requirements, Cybersecurity Strategy, Emotional Regulation, Empathy, Encryption Technologies, Inclusion, Intellectual Curiosity, Managed Services, Optimism, Privacy Compliance, Regulatory Response, Security Architecture, Security Compliance Management, Security Control, Security Incident Management, Security Monitoring {+ 3 more}
Desired Languages (If blank, desired languages not specified)
Travel Requirements
0%
Available for Work Visa Sponsorship?
Yes
Government Clearance Required?
Yes
Job Posting End Date
How to apply
To apply for this job you need to authorize on our website. If you don't have an account yet, please register.
Post a resumeSimilar jobs
Call Center Executive - Emiratized Role
First Abu Dhabi Bank (FAB),
Dubai
5 hours ago
Company DescriptionFirst Abu Dhabi Bank is an inclusive environment where each person values the experiences, perspectives, ideas and beliefs of others. We’re in a unique position to learn from all our colleagues, combining international experience with deep cultural knowledge and local expertise. At FAB, you’ll have the support of your team and a strong relationship with your line manager, who...

Financial Manager (Evergreen)
Procter & Gamble,
Dubai
18 hours ago
Job LocationDUBAI GENERAL OFFICEJob DescriptionJob DescriptionP&G was founded over 180 years ago as a simple soap and candle company. Today, we're the world’s largest consumer goods company and home to iconic, trusted brands that make life a little bit easier in small but meaningful ways. We've spanned three centuries thanks to three simple ideas: leadership, innovation and citizenship. The insight,...

Data Analytics & Product Data
Virtusa,
Dubai
18 hours ago
Define project scope, objectives, and deliverables in collaboration with stakeholders.Develop detailed project plans, allocate resources, and manage project timelines to ensure timely delivery.Lead cross functional teams, including data analysts, engineers, and other stakeholders, to achieve project goals.Maintain clear and consistent communication with all project stakeholders, providing regular updates and managing expectations.Identify potential project risks and develop mitigation strategies to address...
