
Information Security Director
Posted 6 days ago

Posted 6 days ago
This is a fully remote position, open to applicants in United Arab Emirates (UAE).
• Take charge of the organization's overall security posture, encompassing threat detection, incident response, vulnerability management, and endpoint/identity protection.
• Oversee security monitoring and incident investigations, including EDR/SIEM alert triage, threat hunting, and formal incident reporting.
• Lead the response to active threats and significant security incidents and breaches.
• Define and uphold security architecture standards across Azure and GCP cloud environments.
• Develop and enforce security policies in areas such as access control, data protection, endpoint management, and acceptable use.
• Build, lead, and nurture the information security team, focusing on hiring, coaching, performance management, and succession planning.
• Establish priorities, objectives, and accountability structures for security architects, analysts, IAM/GRC leads, and other direct reports.
• Manage the team's workload and resources for monitoring, incident response, and project delivery.
• Define and own the organization's security architecture and strategy.
• Direct the design and implementation of security controls for networks, endpoints, applications, and cloud workloads.
• Conduct secure-by-design assessments for new projects and technologies.
• Establish technical standards for the selection, deployment, and integration of security tools.
• Assess emerging threats and technologies, adjusting the security roadmap as necessary.
• Own the security incident response program from detection through to post-incident review.
• Develop and maintain incident response plans, playbooks, and escalation procedures.
• Collaborate with legal, communications, and executive leadership on breach notification and external disclosure obligations.
• Promote continuous improvement through lessons learned, tabletop exercises, and threat intelligence.
• Create, maintain, and enforce information security policies, standards, and procedures.
• Align policies with regulatory and contractual obligations while establishing governance frameworks.
• Represent security in client, partner, and regulatory due diligence engagements.
• Serve as the primary liaison with internal and external auditors, coordinating audit scope, evidence collection, and remediation efforts.
• Manage the security risk management program, including the risk register, treatment plans, and executive reporting.
• Report on the security risk posture to executive leadership and the board using relevant business metrics.
• Oversee and manage the security budget, including forecasting, prioritization, and ROI analysis.
• Develop business cases for security investments while balancing risk reduction, cost, and operational impact.
• Senior executive accountability for information security strategy, governance, and program execution.
• Technical expertise in security architecture, identity and access management, data protection, and SIEM/SOC operations.
• Proven experience with threat detection, incident response, vulnerability management, and endpoint/identity protection.
• Familiarity with Azure and GCP cloud security architecture.
• Understanding of network segmentation, firewall/NGFW policies, and Zero Trust Network Access (ZTNA).
• Experience in establishing and enforcing access control, data protection, endpoint management, acceptable use, vendor security, and incident response policies.
• Background in leading, hiring, coaching, and managing information security teams.
• Experience with security controls for networks, endpoints, applications, and cloud workloads.
• Proficient in EDR/SIEM alert triage, threat hunting, incident reporting, and responding to major breaches.
• Knowledge of regulatory and contractual requirements, security audits, risk management, and board-level reporting.
• Experience in managing security budgets, including forecasting, prioritization, and return-on-investment analysis.
• Comprehensive health and wellness programs.
• Opportunities for professional development and training.
• Flexible work arrangements and vacation policies.
• Competitive salary and performance-based incentives.
• Collaborative and inclusive work environment.
Legacy Community Health
NeoGuardian
Fresh Consulting
CrowdStrike
Get handpicked remote jobs straight to your inbox weekly.