We are seeking an experienced GRC Consultant specializing in Cybersecurity and Digital & Technology (D&T) Governance to drive risk management, compliance, and policy development initiatives for Agthia Group. This role is critical for ensuring robust cybersecurity practices aligned with industry standards and regulatory requirements.
Key Responsibilities :
Project Leadership and Delivery :
- Lead the development, implementation, and continuous improvement of D&T governance and cybersecurity frameworks aligned with strategic organizational goals.
- Manage project timelines, deliverables, and resource allocation to ensure successful project execution.
Stakeholder and Audit Management :
Engage with cross-functional teams and stakeholders to capture requirements and feedback for D&T and cybersecurity policies.Facilitate audit findings meetings and drive timely resolution of identified issues.Technical Expertise & Policy Management :
Draft and maintain policies / procedures in compliance with UAEIA, ISO standards (27001, 27002), and industry best practices.Provide technical leadership in the deployment of cybersecurity and D&T governance programs.Maintain up-to-date risk registers and audit findings using the GRC Archer platform.Risk Management :
Conduct comprehensive gap analyses to identify risks within D&T and cybersecurity domains.Develop tailored mitigation strategies to address vulnerabilities and maintain organizational resilience.Regularly update risk registers with current status and action plans.Compliance Assurance :
Ensure alignment with relevant regulations and standards, including UAEIA and ISO frameworks.Collaborate closely with risk and internal audit teams to align deliverables with the organizational risk roadmap.Policy Enforcement and Awareness :
Oversee policy deployment and compliance education across the organization to promote security awareness.Establish clear, measurable objectives to evaluate the effectiveness of policies and governance controls.Required Skills and Qualifications :
Proven experience in D&T governance, cybersecurity risk management, and compliance frameworks.Strong working knowledge of UAEIA, ISO standards (27001, 27002), and relevant regulatory requirements.Demonstrated ability to lead audit findings sessions and communicate effectively at all organizational levels.Proficient in maintaining risk registers and audit findings on the GRC Archer platform.Excellent stakeholder management and cross-functional collaboration skills.Strong written and verbal communication abilities tailored for technical and non-technical audiences.(ref : hirist.tech)