• Share :

INSPIRE | EXHILARATE | DELIGHT

For over six decades, Chalhoub Group has been a partner and creator of luxury experiences in the Middle East. The Group, in its endeavour to excel as a hybrid retailer, has reinforced its distribution and marketing services with a portfolio of eight owned brands and over 300 international brands in the luxury, beauty, fashion, and art de vivre categories. More recently, the Group expanded its expertise into new categories of luxury watches, jewellery, and eyewear.
Every step at Chalhoub Group is taken with the customer at heart. Be it constantly reinventing itself or focusing on innovation to provide luxury experiences at over 750+ experiential retail stores, online and through mobile apps, each touch point leads to delighting the customer.

What You'll Be Doing

The Information Security Governance, Risk, and Compliance (IS GRC) Senior Manager will be responsible for building, developing, and managing the Group's Information Security GRC function. This critical function will deliver and maintain key governance, risk, and compliance activities, including the management of ISO27001, PCI DSS, Supplier Assurance, and associated risk management initiatives. The ISMS supports a diverse set of complex IT environments and business processes.

Reporting to the Director of Information Security, the IS GRC Senior Manager will collaborate closely with key stakeholders across the business, suppliers, and Technology teams to implement industry best practices, maintain certifications, and assure controls that protect critical information assets. The role requires a proven leader with expertise in designing and embedding effective governance, risk management, and compliance programs across a global organization.

Key Responsibilities:

Governance

  • Develop and Lead the IS GRC Function
    • Build and manage a Group-wide Information Security GRC function to establish and enforce governance practices that align with organizational goals and regulatory requirements.
    • Lead the development and ongoing maintenance of an Information Security Management System (ISMS) compliant with ISO27001:2022, PCI DSS, and other frameworks.
  • Policy Development and Implementation
    • Create and maintain robust information security policies, standards, and procedures, ensuring alignment with the organization's operational and compliance requirements.
    • Oversee the enforcement and periodic review of these policies to ensure they remain effective and up to date.
  • Steering Committee and Governance Reporting
    • Provide regular updates on Information Security risks, compliance, and control effectiveness to the Risk and Crisis Committee, Information Security Board, and other relevant governance bodies.
    • Chair the Information Security Risk Committee and Information Security Working Group, ensuring the effective communication and management of security risks.

Risk Management

  • Information Security Risk Management Framework
    • Develop, implement, and continuously improve the Information Security Risk Management Framework to ensure alignment with the Group's corporate risk management processes.
    • Identify, assess, and manage information security risks across the Group, incorporating findings from risk assessments, audits, and external testing.
    • Disseminate risk information appropriately across organizational levels.
  • Supplier Assurance and Third-Party Risk Management
    • Ensure key 3rd-party suppliers are assessed against the ISO27001 control framework, with identified risks managed within the Group's risk appetite.
    • Maintain oversight of supplier assurance programs, ensuring continuous alignment with Group security standards and requirements.
  • Threat Intelligence and Monitoring
    • Monitor the evolving threat landscape and integrate threat intelligence into the risk assessment process.
    • Use intelligence-led approaches to proactively mitigate risks and adjust security strategies accordingly.

Assurance and Audit

  • Lead internal and external assurance, including certification and compliance audits.
  • Conduct control gap analysis, ensure effectiveness reviews, and prioritize remediation actions with business owners.
  • Act as a key liaison with auditors and certification bodies to maintain ISO27001 certification and other compliance requirements.

Collaboration and Stakeholder Engagement

  • Partner with Technology teams to embed ISMS controls across the business and ensure compliance with security standards.
  • Collaborate with internal and external stakeholders to enhance the Group's Information Security posture continually.

Education and Awareness

  • Develop and manage a Group-wide Information Security Education and Awareness Program to foster a culture of security awareness and compliance among employees and technical teams.
  • Track program effectiveness through metrics such as participation rates and phishing simulation results.

Advisory and Operational Excellence

  • Provide subject matter expertise on the implementation and assurance of information security policies, standards, and controls in alignment with Group objectives.
  • Offer day-to-day guidance for business and Technology teams on security-related change activities.
What You'll Need To Succeed:
  • Proven experience in a multi-national retail organisation.
  • Proven track record of building and leading an Information Security GRC centre of excellence.
  • Significant knowledge and 5+ years' experience of ISO27001, NIST CSF, Data Privacy Law, PCI DSS and ITIL.
  • Awareness of regulatory requirements of the sector (e. g. UNC, GDPR; NIS Directive etc).
  • A solid understanding of Information Security Governance, Risk and Compliance policies, controls and best practice.
  • Previous experience developing, implementing and maintaining an Information Security Management System (ISMS), certification/re-certification to ISO27001.
  • Subject Matter Expert in enterprise Risk Management - Information Security
  • Experience in developing and embedding Risk Management Frameworks and associated processes and procedures.
  • Proven people management and leadership skills including performance management and improvement, measurement of KRIs, situational leadership, issue resolution, negotiation and motivating others.
  • Excellent senior leadership communication skills and demonstrable experience in a customer facing role.
  • Ability to lead, manage and prioritise across multiple work streams simultaneously.
  • Professional Certifications, including:
    • Certified Information Security Manager (CISM) or equivalent.
    • CISSP.
    • Certified ISO27001 implementer and or auditor.
    • Certified Information Security Auditor (CISA) is an advantage.

What We Can Offer You

With us,you will turn your aspirations into reality. We will help shape your journey through enriching exper.

Read the full job description and apply online on the recuiter's web-site

Find Jobs Hiring Now Near You!

Get Jobilize Mobile App

Get Jobilize Job Search Mobile App Now

Receive real-time job alerts and never miss the right job again

Get it on Google Play Download on the App Store
Advisor, Energy Management

ADNOC


About The CompanyWe are a global energy maritime logistics leader with a world-class asset base. • We are the dedicated and vital logistics arm for ADNOC Group, providing mission critical and highly specialized services across ADNOC's entire value chain. • We also provide market-leading,...


IT Business Systems Manager

FINTEC recruit Ltd

  • AE - Dubai

  • January 6, 2025


FINTEC recruit is seeking an IT Business Systems Manager which is a permanent position based in Dubai working for an engineering consultancy business. • The company assist with sponsorship, travel and flights etc. • Salary is highly competitive/ negotiable by experience. • You will...


General Manager

HCP Group

  • AE - Dubai

  • December 16, 2024


We are pleased to represent our client, a leading passenger car dealership in Dubai, in their search for an experienced and dynamic General Manager. This prestigious role involves overseeing multiple sites, leading high-performing teams, and ensuring the seamless operation and profitability of the...


Financial Advisor

Antony James Recruitment Ltd

  • AE - Dubai

  • January 7, 2025


Financial Advisor / Financial Planner • This is an outstanding opportunity for an experienced Financial Adviser to join an already established wealth management practice. • A Little About You. • You build client relationships based upon developing strategies focused on achieving the...


Finance Manager Real Estate

Westlakes Recruit


Westlakes Recruit is collaborating with a prominent real estate company in the UAE to hire an experienced Finance Manager. The role involves managing the company's financial operations, including budgeting, forecasting, reporting, and ensuring compliance with UAE financial regulations....


Intern - Procurement Encouraging UAE Nationals to apply

Total Energies


Context & EnvironmentContext: • The position is an important link between company compliance program and ensuring commitment of third party suppliers. • Internal: • Interaction with managers & supervisors from other departments in Dubai Office. • External: • External...


Lead Process Engineer

Wood PLC

  • AE - Dubai

  • January 11, 2025


RESPONSIBILITIESWood Dubai is hiring for a Lead Process Engineer, which would be a secondment role for one of our operating clients to take over the existing asset and maximize the production until the start-up of a new plant at the earliest. • This is a fast-track project and schedule-oriented...


Used Cars & Corporate Sales Manager

HCP Group

  • AE - Dubai

  • December 26, 2024


An exciting opportunity has arisen for an experienced and results-oriented Used Cars & Corporate Sales Manager to join our client, a leading OEM in Dubai. This high-impact role requires strategic leadership to develop and manage corporate sales and used car operations, ensuring sustainable...


Director MEA of Health, Safety & Environment

Emerson

  • AE - Dubai

  • January 11, 2025


Job Summary We are seeking a dedicated professional with a passion for Health, Safety, and Environment (HSE), combined with a strong commitment to Sustainability and Corporate Social Responsibility (CSR). • The key responsibilities of the Health, Safety & Environment Director for the Middle...


Recruiter

Star Services LLC


Qualifications & Requirements1. • Bachelor's degree in human resources, Business Administration, or related field.2. • 1-3 years of experience in recruitment or talent acquisition.3. • Excellent communication skills, both verbal and written.4. • Strong networking abilities to...


Chief Finance Officer CFO

Westlakes Recruit


Westlakes Recruit is working with a prominent real estate company based in Dubai to identify a qualified Chief Finance Officer (CFO). This role is crucial to overseeing the company's financial strategy and operations, ensuring financial health and stability through effective planning, analysis,...


Coordinator, On-Job Training

ADNOC


1. • JOB DETAILS: • Job Title: • Coordinator, OJT (Onshore) Reports to: • Head, On the Job Section J Directorate: • Human Capital & Administration J Department I Section: • Academic Services/ On The Job Training J Location: • Onshore On-Site - Site JOB PURPOSE:...


Intern - Customer Service Encouraging UAE Nationals to apply

Total Energies


Context & Environment High content of matrix processes, between supply chain & the customers. • Harmonious relationship with Colleagues from various department i. • e: • Logistics, Finance/Credit Control, Planning teams with regard to related job to be done Conducive working...


Logistics Executive - Local Distribution Encouraging UAE Nationals

Total Energies


Context & Environment Will be the key responsible for the day to day handling of all bulk deliveries with the key objective of "speedy service to sales meeting / exceeding the agreed service levels". • Activities Understand the customer requirements for the various facets of the business -...


Project Lead Engineer

ABB


Project Lead EngineerAt ABB, we are dedicated to addressing global challenges. • Our core values: • care, courage, curiosity, and collaboration - combined with a focus on diversity, inclusion, and equal opportunities - are key drivers in our aim to empower everyone to create sustainable...


Repair & Maintenance Specialist - Drilling Services

Weatherford

  • AE - Dubai

  • January 11, 2025


Job Overview: • The R&M Technician III is responsible for performing Level III Repair and Maintenance activities on LWD, RSS, and BHE assets while leading an R&M service team. • This role includes mentoring team members, coordinating equipment priorities, maintaining safety and quality...


Middle East and Africa Corporate Governance & Compliance - Junior

Total Energies


Context & EnvironmentThe affiliates under the perimeter are still new and procedures and processes have to be implemented. • The employees need to be trained and accompanied in the implementation of the new processes. • Activities CORPORATE GOVERNANCE - Participate to the proper...


Part-time Admin Assistant Emiratized role

Weatherford


We are seeking enthusiastic individuals to join the fast-paced environment of our General Administration team at Weatherford, a leading provider of innovative solutions, technology, and services to the Oil and Energy industry. • Responsibilities: • In this role, you will work closely with...


Applications Engineer Drilling & Completions Emiratization

NOV


JOB DESCRIPTIONNOTE: • Please ONLY apply if you have sufficient experience and skills required as per job description below. • Job SummaryActs as an interface between product engineering, field operations, sales, and supply chain to provide technical support, assistance in troubleshooting...


Senior Process Engineer

MPH Global

  • AE - Dubai

  • January 11, 2025


We are looking for a Senior Process Engineer for one of our clients with the following details: • Location: • Dubai, UAEDuration: • 12 - 24 months renewable contract under MPH.Work Schedule: • Leaves 5 days per week, 45 hours per week.Status: • SingleEducational...


Analyst, Group Strategic Investments

ADNOC


JOB PURPOSE : • Support internal analytics of all the publicly listed entities associated with ADNOC Group (including ADNOC Drilling, ADNOC Distribution, ADNOC Gas, ADNOC L&S, Fertiglobe, Borouge, Presight) and their sectors of presence. • Build relationships with the subsidiary Investor...


Projects & Proposals Engineer Pump Packages - API 674 and 676

NOV

  • AE - Dubai

  • January 11, 2025


JOB DESCRIPTIONNOTE: • Please ONLY apply if you have sufficient experience and skills required as per job description below. • Job Summary. • As a Projects & Proposals engineer, you will be responsible for providing clients with professional Quotations / Bids which are technically...


Senior Manager of Project Systems Delivery - EMEA / Americas

Kent Plc


About you: • Join us. • Unleash your energy within. • If you have world class ambitions to reach the stars while keeping your feet on the ground, we're the team for you. • We've created a new breed of company - future focused with reimagined ambition across all disciplines within...


Offshore Risk Engineer

Kintec Global Recruitment

  • AE - Dubai

  • December 17, 2024


Offshore Risk Engineer £100k - £120k net plus benefits Middle East • Are you an offshore Production engineer working in offshore assets ? • Do you have more than 8- 15 years exp Operational / Troubleshooting / Hands on background ? • Are degree qualified and Chartered ?...


Cyber Security Compliance, Risk and Governance Specialist

Peak Recruitment Solutions Ltd


My client is a leading global consultancy who are working with a key UAE based business undergoing a major IT implementation, as part of the project they are looking to hire a Cyber Security team. • The Cybersecurity Governance Specialist will lead the development, implementation, and...


Operations Buyer/Planner O&G, Scheduling, Purchasing

NOV

  • AE - Dubai

  • January 11, 2025


JOB DESCRIPTIONNOTE: • Please ONLY apply if you have sufficient experience and skills required as per job description below. • JOB SUMMARYPlan, Purchase, schedule, and release machined and purchased parts and assemblies in accordance with operating guidelines while supporting company...


Commercial Lead

Subsea 7

  • AE - Dubai

  • January 11, 2025


What will you be doing? Role Overview The Commercial Lead (Tender Engineer) is responsible for the effective coordination and consolidation of all commercial inputs from internal support functions and relevant consortium/alliance partners to develop the tender commercial proposal. • Key...