Job Purpose
The Head of Cyber Security will provide strategic leadership for the organization’s enterprise cybersecurity program across both Information Technology (IT) and Operational Technology (OT) environments. The role is responsible for developing and maintaining cybersecurity governance, risk management, compliance frameworks, security operations, policies, standards, and controls to protect critical digital assets and industrial systems.
The position will lead cybersecurity initiatives designed to prevent cyberattacks, data breaches, unauthorized access, exploitation, and internal security threats. The role will also oversee cybersecurity awareness, regulatory compliance, data privacy, security technologies, risk assessments, and the continuous improvement of the organization’s cyber defense capabilities.
Key Responsibilities
Cybersecurity Strategy and Governance
- Develop and lead the organization-wide cybersecurity strategy covering corporate IT, industrial OT, cloud infrastructure, applications, networks, and critical systems.
- Establish, maintain, and continuously improve cybersecurity policies, standards, procedures, frameworks, and security controls.
- Provide strategic direction on information security, cyber risk, technology protection, and regulatory compliance.
- Identify, assess, prioritize, and report cybersecurity and information risks to senior management and leadership.
- Ensure cybersecurity controls are aligned with business objectives, industry standards, regulatory requirements, and emerging cyber threats.
- Act as a key point of contact for cybersecurity initiatives, communications, incidents, audits, and external engagements.
- Work with internal teams, external consultants, technology vendors, government agencies, and cybersecurity organizations to strengthen the organization’s security posture.
IT and OT Cybersecurity
- Lead cybersecurity protection across both IT and industrial OT environments.
- Develop security strategies for industrial automation, control systems, plant networks, and critical operational infrastructure.
- Work closely with plant managers, control system engineers, instrumentation teams, automation specialists, and OT cybersecurity teams.
- Establish appropriate security controls for OT environments while maintaining system availability, reliability, safety, and production continuity.
- Strengthen IT/OT network segmentation and security architecture to reduce the risk of lateral movement toward critical industrial systems.
- Assess emerging cybersecurity threats affecting industrial control systems and recommend appropriate mitigation measures.
- Ensure cybersecurity initiatives do not negatively affect plant safety, operational performance, or production activities.
Cyber Risk, Compliance and Security Operations
- Oversee cybersecurity risk management, security assessments, audits, vulnerability management, and remediation activities.
- Ensure compliance with applicable cybersecurity regulations, standards, policies, and organizational requirements.
- Work with first-line and third-line assurance teams to align cybersecurity operations, risk management, and audit activities.
- Monitor the effectiveness of cybersecurity controls and recommend improvements where required.
- Support the organization in identifying, prioritizing, and addressing security vulnerabilities across systems, applications, networks, and infrastructure.
- Provide leadership and guidance during significant cybersecurity incidents and security-related risks.
Cloud and Technology Security
- Provide cybersecurity leadership for cloud and hybrid infrastructure environments.
- Oversee security considerations for Microsoft Azure, Microsoft 365, ServiceNow, DataBricks, and other enterprise cloud services.
- Support secure architecture across on-premises infrastructure, cloud platforms, networks, servers, applications, databases, and IoT environments.
- Provide guidance on identity and access management, encryption, certificates, firewalls, intrusion detection, network security, application security, and security monitoring.
- Evaluate cybersecurity technologies, vendors, and solutions to support the organization’s long-term security strategy.
Budget and Financial Management
- Develop and consolidate cybersecurity budgets covering both IT and OT security requirements.
- Monitor expenditure and financial performance against approved cybersecurity budgets.
- Identify opportunities for cost optimization while maintaining appropriate levels of cyber protection.
- Support prioritization of cybersecurity projects based on business risk, regulatory requirements, and strategic objectives.
Cybersecurity Training and Awareness
- Develop and manage cybersecurity awareness and training programs for employees, management, and relevant operational teams.
- Promote awareness of cybersecurity policies, procedures, standards, data protection, and security best practices.
- Provide guidance to employees and management on cybersecurity responsibilities and emerging threats.
- Monitor compliance with security policies and support periodic assessments and audits.
Stakeholder and Vendor Management
- Build strong relationships with business leaders, plant management, engineering teams, IT departments, OT specialists, and other internal stakeholders.
- Manage relationships with cybersecurity vendors, contractors, consultants, technology providers, and external partners.
- Coordinate with relevant government, regulatory, security, and law-enforcement organizations when required.
- Communicate complex cybersecurity risks and technical issues clearly to senior executives and non-technical stakeholders.
- Provide expert cybersecurity advice to leadership on emerging risks, technology developments, and security priorities.
Leadership and Team Management
- Lead and develop a high-performing cybersecurity team responsible for IT and OT security.
- Set departmental objectives, establish priorities, allocate resources, and monitor performance.
- Recruit, develop, motivate, and retain cybersecurity professionals with specialized technical expertise.
- Provide coaching, feedback, performance management, and professional development opportunities.
- Lead complex cybersecurity programs and projects involving multiple technical and business teams.
Safety, Quality and Environmental Compliance
- Ensure cybersecurity activities comply with relevant safety, quality, environmental, and organizational policies.
- Implement OT security controls without compromising the safety, availability, reliability, or performance of industrial control systems.
- Ensure cybersecurity improvements support secure and uninterrupted plant and production operations.
Decision-Making and Accountability
- Establish cybersecurity plans, priorities, processes, and controls within the organization’s overall policies and strategic objectives.
- Make recommendations on cybersecurity risks, investments, technologies, projects, and security priorities.
- Provide strategic and technical direction under broad organizational guidelines.
- Coordinate cybersecurity requirements across operational, technical, audit, and management functions.
- Ensure cybersecurity operations and assurance teams remain aligned with the organization’s overall cyber protection objectives.
Qualifications
- Bachelor’s degree in Computer Science, Computer Engineering, Information Technology, Cybersecurity, or a related discipline.
- Professional cybersecurity certifications are highly desirable, such as CISM, CISA, CRISC, PMP, GICSP, ISO 27001 Lead Auditor, or equivalent certifications.
- Strong knowledge of enterprise cybersecurity governance, risk management, compliance, IT security, and OT security.
Experience
- 10–15 years of relevant experience in cybersecurity, IT/OT security, infrastructure security, networking, cloud environments, or information security management.
- At least 4 years of progressive managerial or leadership experience in cybersecurity.
- Experience working within a large industrial, manufacturing, energy, utilities, or similarly complex organization is highly desirable.
- Strong experience managing cybersecurity operations, IT/OT security programs, vendors, contractors, and external service providers.
- Practical experience securing industrial control systems, automation environments, and OT networks is highly desirable.
- Experience with cloud and hybrid infrastructure, particularly Microsoft Azure, is preferred.
Required Skills and Knowledge
The successful candidate should demonstrate strong knowledge of:
- Enterprise cybersecurity strategy and governance
- IT and OT cybersecurity
- Industrial control systems and automation security
- Secure IT/OT integration and network segmentation
- Cybersecurity risk management and compliance
- Cloud and hybrid security architecture
- Microsoft Azure and Microsoft 365 security
- Identity and access management
- Network security, firewalls, intrusion detection, and monitoring
- Application and database security
- Vulnerability assessment and remediation
- Security audits and assessment methodologies
- Data privacy and information protection
- Cybersecurity policies, standards, and procedures
- Security technologies, vendors, and emerging cyber threats
Leadership Competencies
- Strategic thinking and strong business understanding
- Excellent leadership and people-management skills
- Ability to manage complex cybersecurity programs and projects
- Strong analytical and problem-solving abilities
- Excellent communication and stakeholder-management skills
- Ability to explain complex technical risks to senior executives and non-technical audiences
- Strong decision-making and risk-management capabilities
- Ability to work effectively with diverse technical, operational, regulatory, and government stakeholders
- Strong understanding of cybersecurity best practices and industry standards
Cyber Security Jobs in Dubai, UAE
This is a senior cybersecurity leadership opportunity for an experienced professional with strong expertise in IT security, OT cybersecurity, industrial control systems, cloud security, cyber risk management, and enterprise security governance.

