Technology GRC Lead

Share your love

Technology GRC Lead

No. Of Resource :- 01 
Availability :- Immediate
Location :- Dubai
Industry :- Real Estate
Email :- hr@staffconnect.ae
WhatsApp :- +971 529421270

Job Role

  • The Technology GRC (Governance, Risk, and Compliance) Lead is responsible for ensuring that the organization’s IT infrastructure and operations adhere to regulatory requirements, industry standards, and internal policies.
  • This role involves developing, implementing, and managing comprehensive GRC programs to mitigate risks and ensure the integrity, confidentiality, and availability of information systems.
  • The lead will work closely with PMO, Information Security and Technology Operations team to evaluate the risks and compliance

Job Description

  • Identify, assess, and prioritize IT risks, including cybersecurity threats, data breaches, and compliance risks.
  • Develop and implement risk mitigation strategies and controls to reduce the impact and likelihood of adverse events.
  • Conduct regular risk assessments to evaluate the effectiveness of risk management practices.
  • Collaborate with cross-functional teams to ensure risk management practices are integrated into all aspects of IT operations.
  • Ensure compliance with relevant laws, regulations, and industry standards, such as GDPR, UAE PDPL and ISO 27001.
  • Develop and maintain compliance documentation, including policies, procedures, and audit trails.
  • Provide training and awareness programs to educate employees on compliance requirements and best practices.
  • Generate regular reports to senior management on GRC-related issues, risks, and compliance status.
  • Monitor and report on governance performance metrics and key performance indicators (KPIs).
  • Stay updated on emerging technology trends, regulatory changes, and best practices.

Qualification

  • Bachelor’s degree in information technology, Cybersecurity, or a related field.
  • Minimum of 5 years of experience in IT governance, risk management, and compliance.
  • Professional certifications such as MCSE, Security+, CISM, CISSP, CISA, or CRISC are highly desirable.

Experience

  • Strong knowledge of IT governance frameworks (e.g., COBIT, ITIL).
  • Familiarity with regulatory requirements and industry standards (e.g., GDPR, ISO 27001).
  • Proficiency in risk assessment methodologies and tools (e.g., NIST, ISO 31000).
  • Excellent analytical and problem-solving skills.
  • Strong communication and interpersonal skills, with the ability to work collaboratively with cross functional teams.
  • Detail-oriented and highly organized, with the ability to manage multiple priorities and deadlines.
  • Proactive and self-motivated, with a strong commitment to continuous improvement and professional development.