Senior Cyber Grc Manager

3 weeks ago


مصر, Egypt Careem Full time

Cairo, Egypt

Careem is building the Everything App for the greater Middle East, making it easier than ever to move around, order food and groceries, manage payments, and more. Careem is led by a powerful purpose to simplify and improve the lives of people and build an awesome organisation that inspires. Since 2012, Careem has created earnings for over 2.5 million Captains, simplified the lives of over 50 million customers, and built a platform for the region’s best talent to thrive and for entrepreneurs to scale their businesses. Careem operates in over 70 cities across 10 countries, from Morocco to Pakistan.

Careem is looking for a Senior GRC Manager who will work with the Engineering and other technical teams and business stakeholders across the global organization to execute the Information Security, Governance, Risk, and Compliance strategy, extending processes as necessary to help business partners identify information security risks and manage risks to an acceptable level.

**Roles and Responsibilities**:

- Support the influence and socialization of Information Security controls, standards, policies, procedures, and communications across the organization.
- Define and support the development of Information Security strategy within Careem.
- Drive the implementation of overall Information Security and GRC strategy.
- Communicate Information Security requirements to leadership to gather support and sponsorship for information security projects.
- Lead a team of experienced GRC Analysts and support their activities and professional development.
- Lead and support wider teams in defining plans for programs and projects and become a quality gate for all deliverables within the GRC department.
- Collaborate with DevOps and DevSecOps teams: Foster collaboration and understanding between GRC and DevOps teams, promoting a "security as code" mentality throughout the software development lifecycle (SDLC), embed GRC controls within the DevOps pipeline, automating compliance checks and risk assessments.
- Be a Cloud Security Champion: Deep dive into cloud security best practices and ensure cloud deployments adhere to strict security standards and compliance regulations, including IAM, Encryption and Key Management, Logging and Monitoring, and attack surface management.
- Support and Lead External Audit Activities: Prepare for and actively participate in external audits, ensuring all necessary documentation and evidence is readily available.
- Support external due diligence by collecting and archiving the needed security artifacts.
- Lead and work with the GRC analysts and advise process owners globally on Information Security controls needed for the mitigation of risks in accordance with the Information Security Process, Risk & Controls framework, and compliance with regulatory requirements and industry standards as appropriate.
- Act as a guiding force in brainstorming sessions with GRC analysts and support teams in making key program decisions.
- Reviewing and aligning deliverables from GRC analysts to ensure that they are aligned with management expectations.
- Ensure adequate information security contractual protections are included in third party vendor contracts by working with the Procurement, Compliance and the Legal teams.
- Support the coordination of Information Security awareness and training efforts across the global business units and subsidiaries.

**Skills Required**:

- A degree in Computer Science, Computer Engineering or Electrical Engineering or obtained relevant security certifications.
- Certification preferred e.g., CISSP, CISM, CISA, CCSP, AWS Security Speciality.
- 10+ years of experience in Information Security Governance, Risk and Compliance.
- 5+ years of experience in managing multiple security-related projects simultaneously.
- Excellent understanding of regulatory and industry standards, including NIST Cybersecurity Framework (CSF), Payment Card Industry Data Security Standard (PCI DSS), ISO27001 framework and Cloud Security Alliance CSM.
- Proven experience in Security Management, Audit, Governance & Risk Management.
- Excellent understanding of Information Security risk registers to ensure that all Information Security risks are accurately represented and actively managed.
- Solid knowledge of cloud security principles and their implementation, especially on AWS.
- Good understanding of virtualization, containerization, and SDN.
- Solid knowledge of SDLC, CI/CD, and DevSecOps and how GRC can be integrated at every phase.
- Ability to lead and perform third-party risk assessments and manage the risk resulting from the supply chain.
- Proven understanding of how to create comprehensive and various levels of Information Security metrics and reporting (reporting and slide decks) for leadership.
- Experience in creating detailed Information Security policies and standards.
- Experience in working with multiple stakeholders in a variety of functions at multiple levels, including exe



  • مصر, Egypt ISEC Full time

    **Senior Information Security GRC is required.** **Key responsibilities**: - Experience in Implementing ISMS, performing internal reviews, drafting and enforcing policies in accordance with Central Bank of Egypt regulation, ISO 27001, and PCI-DSS. - Experience in PCI-DSS remediation and certification audit. - Experience in defining cyber security policies,...

  • Grc Senior Specialist

    4 weeks ago


    مصر, Egypt Giza Systems EG Full time

    Lead/Participate in various IT Risk Management and business continuity initiatives - Ensuring that requirements in IT Audit, Standard, Policy, Compliance, and Risk controls are met. - Provide GRC consultancy and best practices to business teams - Ensure external auditors have the access and information they need to complete their audit successfully. - Design...


  • مصر, Egypt Interact Technology Solutions Full time

    Job Description: - Implementing complicated Network Security and Cyber Security solutions from different vendors. - Planning, coordinating and distributing tasks, priorities and approaches to team members and stakeholders. - Technical support for escalations of customers to achieve their SLAs. - Troubleshoot Network and Cyber security systems issues -...


  • مصر, Egypt AMIT Full time

    Job Role / Function - **Education/Training** - Years of Experience - **Unspecified** - Career Level - **Mid Career / Senior** - Gender - **Unspecified** - Expiry date - **23 Feb 2023** - Job Description - Conducting and delivering direct training sessions for internal and external clients. - Prepare and evaluate diploma assignments, graduation projects, and...


  • مصر, Egypt AMIT Full time

    Job Role / Function - **Education/Training** - Years of Experience - **Unspecified** - Career Level - **Mid Career / Senior** - Gender - **Unspecified** - Expiry date - **23 Feb 2023** - Job Description - Conducting and delivering direct training sessions for internal and external clients. - Prepare and evaluate diploma assignments, graduation projects, and...


  • مصر, Egypt MigrationIT Full time

    **Job Information**: Industry - Financial ServicesWork Experience - 1-3 yearsCity - CairoState/Province - AI QahirahCountry - EgyptZip/Postal Code - 11311- Provide guidance and share best practices for design and implementation of the GRC platforms. - Ensure partnership with different teams for Proactive Compliance Risk Management - identification,...


  • مصر, Egypt MigrationIT Full time

    **Job Information**: Industry - Financial ServicesWork Experience - 4-5 yearsCity - CairoState/Province - AI QahirahCountry - EgyptZip/Postal Code - 11311- Conduct technical risk assessments and collaborate/communicate in a simple, clear, and concise manner to the various communities within our organization. - Develop the required Information Security...


  • مصر, Egypt ISEC Full time

    We are hiring Cyber security engineer (mid-senior) 1-3 years experience **Must have knowledge in**: Network and infrastructure Advanced web penetration testing skills. Experienced in testing web-based APIs (i.e. REST, SOAP, GraphQL) Ability to perform a secure code review and a solid understanding of web app programming languages and frameworks (PHP,...


  • مصر, Egypt Arpu Telecommunication Services Full time

    **Cyber Security Engineer Job Description** We are looking to hire a cyber security engineer with an analytical mind and a detailed understanding of cybersecurity methodologies. Cyber security engineers are expected to have meticulous attention to detail, outstanding problem-solving skills, work comfortably under pressure, and deliver on tight...


  • مصر, Egypt SSC Egypt Full time

    1. Manage the cyber security management resources and ensure proper segregation of functions and capacity management to support different business and technology initiatives/requirements. 2. Lead The information security analysis function to ensure adequate definition and implementation of security controls requirements within the secure software development...

  • Cyber Security Demand

    15 hours ago


    مصر, Egypt Vodafone Full time

    **Role Purpose**: To run and manage the User Access review as mandated in Cyber security policies as well as perform complete health check to VF’s critical assets **Key Accountabilities & Decision Ownership**: - Responsible for cyber health Check for VF EGYPT’s Assets.. Working on reliable and lead findings implementation till closure - Handles all the...


  • مصر, Egypt Talent Pal Full time

    At ABC, we brew the joy of true togetherness to inspire a better world. A big part of that means brewing better people with the heart of our company in our four values: - Passion for consumers and customers - Care for people and planet - Enjoyment of life - Courage to dream and pioneer **Job Purpose** The Cyber Security Officer (CSO) is responsible for...


  • مصر, Egypt Vodafone Full time

    **Role purpose**: We are on a mission to build a world class Cyber Security business that champions customer experience, delivering an innovative, integrated & comprehensive portfolio designed for Enterprise, SME, and mid-market customers. Cyber Security Value Added Services is a key pillar in our strategy to help us in this space. To realise our ambition,...


  • مصر, Egypt Vodafone Full time

    Vodafone Security is a rapidly growing strategic function, that is putting security at the forefront of the Vodafone Business value proposition. In joining the team, you will become a founding member of this exciting function, responsible for executing and delivering the strategic and technology vision, driving market expansion and portfolio extension across...


  • مصر, Egypt MigrationIT Full time

    **Job Information**: Field - Security & GRCField / Area - SecurityIndustry - Financial ServicesJob Category - Information SecurityWork Experience - 5+ yearsCity - CairoState/Province - AI QahirahCountry - EgyptZip/Postal Code - 11311- Developing and implementing security policies, procedures, and protocols to protect the organization's assets, data, and...

  • Senior IT Systems

    4 weeks ago


    مصر, Egypt Transmar Full time

    **Job Purpose**: oversee and support the day-to-day operation of computer systems and networks throughout the organization, ensuring reliable performance and data integrity in local area networks (LANs), wide area networks (WANs), and organization intranets. **Duties & Responsibilities**: **Strategic Planning** - Implement policies and procedures related to...


  • مصر, Egypt Vodafone Full time

    **Role purpose**: We are looking for an experienced Programme Manager to join our Cybersecurity portfolio team within Group Product & Services (solutions across - Digital Apps, Security, Unified Comms, SDWAN, Cloud & Edge). This role will encompass both programme delivery and Go To Market deliveries across a range of products, propositions and launches. You...


  • مصر, Egypt Orange Full time

    Orange Cyberdefense; a leading European Managed Security Services Provider, that supports business globally, is the strategic entity of the Orange Group dedicated to digital security that puts today's most pressing cyber security challenges at the heart of its brand. Our mission is to build a more secure digital society. We support companies of all sizes,...

  • Ip Packet

    7 days ago


    مصر, Egypt Vodafone Full time

    **Role purpose**: To plan, design, optimize Cyber security services and solutions of different technologies through liaising with different business domains to capture business requirements and customer’s needs, the role include leading and managing virtual technology teams during the design and implementation of the new services and solutions, leading...

  • Senior HR Manager

    4 weeks ago


    مصر, Egypt KOMPASS Education Full time

    The Senior HR Manager at KOMPASS is responsible to look after the talent acquisition, policy development, objectives determination, and other human resource processes across KOMPASS Education. The Senior HR Manager is also responsible to develop Human Resources policies. **Language**: - fluent English and Arabic (preferred) Application Deadline:...