Job Description
KEY ACCOUNTABILITIES
- Maintain central repository of ISMS documentation. Review documentation and procedures, collaborating with internal and external stakeholders on compliance-related issues, and performing compliance reviews/gap assessments.
- Centralized coordination and tracking of corrective actions implementation at 4 entities certified under ISO 27001. Create and manage effective action plans in response to audit discoveries and compliance violations.
- Maintain compliance to other standards such as DFSA, Indian Cyber Security Standard, ISR Dubai, etc. Keep abreast of regulatory changes and developments in the regulatory environment.
- Support business units in achieving ISO certifications (e.g., ISO 27001, ISO 20000, ISO 22301). Assist in upgrading ISO 27001:2013 certification to 2022 version.
- Act as a single point of contact for all the Group Technology locations & ensure compliance with standards’ requirements. Facilitate third party external audits, such as, PCI, SOC1/2/3 and ISO 27001
- Conduct business impact assessment for applications of HO to define RTO/RPO requirements, and ensure the DR plans and backup procedures are aligned.
- Develop the plan, track, monitor, coordinate & execute database restoration tests for non-critical applications & disaster recovery (DR) tests for critical applications of HO and regional Business units.
- Provide training in standards & software compliance practices and procedures. Conduct workshops and train technology teams in business units on DR Management.
- Act as an ambassador for DP World at all times when working; promoting and demonstrating positive behaviours in harmony with DP World’s Principles, values and culture; ensuring the highest level of safety is applied in all activities; understanding and following DP World’s Code of Conduct and Ethics policies.
- Perform other related duties as assigned.
QUALIFICATIONS, EXPERIENCE AND SKILLS
Knowledge and Experience
- Bachelor’s Degree in Computer Science or equivalent.
- Should have 8-10 years of experience in IT governance with at least 5 years’ experience in Standards & Software compliance domain.
- Experience in implementation and sustenance of ISO standards, supporting regulatory compliance requirements related to technology and IS.
- Extensive experience in implementing organisation-wide program of continuity management and disaster recovery planning and processes, including backup, recovery, storage systems and IT security management.
- Experience with BCP and DR Recovery plan testing.
- Working knowledge of ISO 27001, ISO 20000, ISO 23001, ISO 22301, NIST, COBIT 2019, etc.
- Certified implementor of ISO 27001, ISO 20000, ISO 23001. Certifications as CBCI, ISO 22301 Certified Business Continuity Manager, CBCP, C/DRE, EDRP preferable.
- Good understanding in E-commerce, logistics, supply chain & port operations applications will be an added advantage.
- Experience in working with Multinational Companies (MNC) is preferable.
Soft Skill
- Excellent analytical skills.
- Excellent verbal and written communication.
- Program and Project management skills.
- Time management skills.
- Team player and conflict management skills.
- Ability to adapt in a complex environment, loves challenges, with the will and drive to learn new things on his/her own.
- Cultural awareness.
Technical Skills
- In-depth understanding of local and international technology and IS regulations and industry best practices.
- Experience in Disaster Recovery, backup restoration, performance monitoring solutions and products.
- Knowledge of developing policies, procedures related to ISO, disaster recovery & resilience management processes.
- Expertise in Microsoft Word, Excel & PowerPoint.
#LI-AA6