Job Purpose:

The Lead – Information Security is responsible for establishing, implementing, and managing the organization’s information security framework. The role ensures the protection of company data, systems, and infrastructure from internal and external threats, aligning with global security standards, compliance requirements, and best practices.


Key Responsibilities:

  • Develop, implement, and maintain the organization’s information security policies, procedures, and controls.

  • Lead security risk assessments, vulnerability testing, and threat analysis across all IT and business systems.

  • Monitor security alerts, manage incident response, and ensure timely resolution of security breaches.

  • Ensure compliance with local and international security regulations and standards (e.g., ISO 27001, GDPR, NIST).

  • Provide security recommendations during system architecture design and software development lifecycle.

  • Conduct regular internal and third-party security audits, addressing gaps and implementing corrective actions.

  • Lead the security awareness program to educate employees on security best practices and risks.

  • Manage security tools including firewalls, intrusion detection/prevention systems, endpoint protection, and encryption solutions.

  • Work closely with IT, compliance, and senior leadership to align security strategies with business objectives.

  • Stay updated on emerging security threats, technologies, and regulatory changes.


Required Qualifications:

  • Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field.

  • Professional certifications such as CISSP, CISM, CEH, or equivalent.

  • Minimum of 5-7 years of experience in information security roles, including leadership responsibilities.

  • Strong understanding of security frameworks, network security, incident response, and regulatory compliance.

  • Proven ability to manage security projects and lead cross-functional teams.

  • Excellent problem-solving, analytical, and communication skills.

  • Ability to handle sensitive information with a high level of integrity and confidentiality.