Company logo hidden

Lead – Information Security Risk & Assurance

Unlock employer Dubai, United Arab Emirates Posted: 11 Aug 2025

Financial

  • Estimate: $80k - $120k*
  • Zero income tax location

Accessibility

  • Hybrid
  • Visa Provided

Requirements

  • Experience: Senior
  • English: Professional

Position

About the Job:
INSPIRE | EXHILARATE | DELIGHT
For over seven decades, Chalhoub Group has been a partner and creator of luxury experiences in the Middle East. The Group has curated a portfolio of over 10 owned brands and strengthened its distribution and marketing expertise for over 400 international names across luxury categories. Chalhoub Group is shaping the future of luxury retail through innovation and technology, delivering seamless omnichannel experiences across more than 950 stores and online platforms.

Ready to apply for roles like this?

Unlock the company name and direct application link. Subscribers get instant access to fresh jobs across Dubai, Abu Dhabi and Riyadh, many with visa support.

Unlock employer & apply directly

The Information Security Risk & Assurance Lead is responsible for establishing and leading the enterprise-wide security risk and assurance capabilities at Chalhoub Group. This role drives the development of risk frameworks, control assurance, ISO 27001 and PCI DSS compliance, and IAM governance, while serving as a strategic advisor to executive leadership. Key responsibilities include:

  • Defining and establishing Information Security Risk capabilities, including governance frameworks, policies, and operating models.
  • Partnering with Enterprise Risk and Internal Audit to embed security risk into the Group’s risk management framework.
  • Acting as the principal information security risk advisor to senior executives and business leaders.
  • Delivering quarterly security risk briefings and implementing a metrics-driven security risk management framework.
  • Leading and developing a Group-wide information security risk education and training programme.

Qualifications:

  • Deep expertise in information security and enterprise risk management, with relevant qualifications such as CISA, CRISC, or ISO 27005.
  • Minimum 7 years of experience in Information Security or Technology Risk roles, with at least 5 years in a leadership capacity.
  • Experience with ISO 27001 certification and PCI DSS compliance.
  • Familiarity with frameworks such as NIST RMF, COBIT, and FAIR.

What We Offer:
Chalhoub Group is committed to providing a competitive benefits package that includes healthcare, contributions to child education, remote and flexible working policies, and exclusive employee discounts. We invite all applicants to apply as we value diversity and inclusion in our workforce.

Apply Direct

Jobs you might like   View all jobs

Ready to apply for this role?

Apply Direct