Senior Cyber GRC Manager at Careem

Careem logo
Careem

Senior Cyber GRC Manager

Hybrid

Full Time

#Information Security

#GRC

#Cloud Security

#Risk Management

#SDLC

#DevSecOps

#AWS

#PCI DSS

#ISO27001

#NIST CSF

Careem is looking for a Senior Cyber GRC Manager

Sign up to unlock quick summaries and profile fit assessments

Careem is building the Everything App for the greater Middle East, making it easier than ever to move around, order food and groceries, manage payments, and more. Careem is led by a powerful purpose to simplify and improve the lives of people and build an awesome organisation that inspires. Since 2012, Careem has created earnings for over 2.5 million Captains, simplified the lives of over 50 million customers, and built a platform for the region’s best talent to thrive and for entrepreneurs to scale their businesses. Careem operates in over 70 cities across 10 countries, from Morocco to Pakistan.

Careem is looking for a Senior GRC Manager who will work with the Engineering and other technical teams and business stakeholders across the global organization to execute the Information Security, Governance, Risk, and Compliance strategy, extending processes as necessary to help business partners identify information security risks and manage risks to an acceptable level.

Roles and Responsibilities:

  • Support the influence and socialization of Information Security controls, standards, policies, procedures, and communications across the organization.
  • Define and support the development of Information Security strategy within Careem.
  • Drive the implementation of overall Information Security and GRC strategy.
  • Communicate Information Security requirements to leadership to gather support and sponsorship for information security projects.
  • Lead a team of experienced GRC Analysts and support their activities and professional development.
  • Lead and support wider teams in defining plans for programs and projects and become a quality gate for all deliverables within the GRC department.
  • Collaborate with DevOps and DevSecOps teams: Foster collaboration and understanding between GRC and DevOps teams, promoting a "security as code" mentality throughout the software development lifecycle (SDLC), embed GRC controls within the DevOps pipeline, automating compliance checks and risk assessments.
  • Be a Cloud Security Champion: Deep dive into cloud security best practices and ensure cloud deployments adhere to strict security standards and compliance regulations, including IAM, Encryption and Key Management, Logging and Monitoring, and attack surface management.
  • Support and Lead External Audit Activities: Prepare for and actively participate in external audits, ensuring all necessary documentation and evidence is readily available.
  • Support external due diligence by collecting and archiving the needed security artifacts.
  • Lead and work with the GRC analysts and advise process owners globally on Information Security controls needed for the mitigation of risks in accordance with the Information Security Process, Risk & Controls framework, and compliance with regulatory requirements and industry standards as appropriate.
  • Act as a guiding force in brainstorming sessions with GRC analysts and support teams in making key program decisions.
  • Reviewing and aligning deliverables from GRC analysts to ensure that they are aligned with management expectations.
  • Ensure adequate information security contractual protections are included in third party vendor contracts by working with the Procurement, Compliance and the Legal teams.
  • Support the coordination of Information Security awareness and training efforts across the global business units and subsidiaries.

Skills Required

  • A degree in Computer Science, Computer Engineering or Electrical Engineering or obtained relevant security certifications.
  • Certification preferred e.g., CISSP, CISM, CISA, CCSP, AWS Security Speciality.
  • 10+ years of experience in Information Security Governance, Risk and Compliance.
  • 5+ years of experience in managing multiple security-related projects simultaneously.
  • Excellent understanding of regulatory and industry standards, including NIST Cybersecurity Framework (CSF), Payment Card Industry Data Security Standard (PCI DSS), ISO27001 framework and Cloud Security Alliance CSM.
  • Proven experience in Security Management, Audit, Governance & Risk Management.
  • Excellent understanding of Information Security risk registers to ensure that all Information Security risks are accurately represented and actively managed.
  • Solid knowledge of cloud security principles and their implementation, especially on AWS.
  • Good understanding of virtualization, containerization, and SDN.
  • Solid knowledge of SDLC, CI/CD, and DevSecOps and how GRC can be integrated at every phase.
  • Ability to lead and perform third-party risk assessments and manage the risk resulting from the supply chain.
  • Proven understanding of how to create comprehensive and various levels of Information Security metrics and reporting (reporting and slide decks) for leadership.
  • Solid technical and conceptual knowledge and experience of cyber security across a wide range of infrastructures and application systems.
  • Experience in creating detailed Information Security policies and standards.
  • Experience in working with multiple stakeholders in a variety of functions at multiple levels, including executive management.
  • Experience in leading teams of GRC analysts.
  • Excellent verbal & written communication skills.
  • Proven stakeholder management skills.
  • Excellent leadership and mentorship skills.

What we’ll provide you

We offer colleagues the opportunity to drive impact in the region while they learn and grow. As a full time Careem colleague, you will be able to:

  • Work and learn from great minds by joining a community of inspiring colleagues.
  • Put your passion to work in a purposeful organisation dedicated to creating impact in a region with a lot of untapped potential.
  • Explore new opportunities to learn and grow every day.
  • Work 4 days a week in office & 1 day from home, and remotely from any country in the world for 30 days a year with unlimited vacation days per year.
  • Access to healthcare benefits and fitness reimbursements for health activities including gym, health club, and training classes.
Careem logo

Careem

1 views

0 applied

Social Media

Visit Careem
Share this job
Copy Permalink
Discover similar jobs
U
UNION

Sales Engineer

Remote

Full Time

#Sales

#Infrastructure

#Machine Learning

#Data Processing

#MLOps

#PyTorch

#TensorFlow

#Spark

#Flink

#AWS

#GCP

#Azure

#Terraform

#Docker

#Kubernetes

C
Candidly

Senior Infrastructure Engineer

Remote

Full Time

#Infrastructure Engineering

#Cloud Computing

#DevOps

#AWS

#Azure

#Kubernetes

#Docker

#IaC

#Python

#Linux

#Monitoring

#Security

PelotonInc logo
PelotonInc

Senior Software Engineer

Remote

Full Time

#Engineering

#Full Stack

#DevOps

#Docker

#Kubernetes

#AWS

#GCP

#Azure

#Flux

#Rancher

#Continuous Delivery

#Infrastructure

#Microservices

Kinsta logo
Kinsta

GTM Engineer Intern

Remote

Internship

#Web

#GTM

#Developer Tools

#Mixpanel

#Intercom

#HubSpot

#Slack

#AWS

#Google Cloud

#Azure

#Kubernetes

#Onboarding

#Analytics

I
Ivanti

Associate Site Reliability Engineer

Remote

Full Time

#Site Reliability

#Cloud Operations

#DevOps

#Linux

#Windows

#Networking

#Kubernetes

#Docker

#Python

#Java

#AWS

#Azure

#Ansible

BioIntelliSense logo
BioIntelliSense

DevOps Engineer

Remote

Full Time

#Cloud

#DevOps

#Healthcare

#Terraform

#AWS

#Datadog

#Bitbucket Pipelines

#CircleCi

#Databricks

#Python

#Flutter

Tarmac Technologies logo
Tarmac Technologies

Python Django Backend Engineer

Remote

Full Time

#Technology

#Backend Development

#Tech

#Python

#Django

#RESTful API

#AWS

#Backend Engineering

N
Northflank.com

Backend Software Engineer

57k - 127k USD

Remote

Full Time

#Backend Engineering

#Cloud

#Microservices

#Go

#Python

#Node.Js

#SQL

#NoSQL

#RESTful APIs

#Docker

#Kubernetes

#AWS

Ramp logo
Ramp

Security Engineer, Cloud

Remote

Full Time

#Cloud Security

#Security Engineering

#Fintech

#AWS

#Terraform

#Python

#Flask

#Infrastructure

#DevOps

DroneDeploy logo
DroneDeploy

Senior DevOps Engineer

Remote

Full Time

#DevOps

#Cloud Infrastructure

#MLOps

#Kubernetes

#Terraform

#Python

#Golang

#AWS

#Linux

#Observability

#GitHub Actions

Blend360 logo
Blend360

Senior Data Engineer

Remote

Full Time

#Data Engineering

#Cloud Platforms

#Snowflake

#AWS

#Data Pipelines

#Data Ingestion

#Data Quality

#Data Governance

#Streamlit

Prosper logo
Prosper

Infrastructure Security Engineer

Remote

Full Time

#Fintech

#Cloud Security

#Information Security

#GCP

#Azure

#Terraform

#Wiz

#SIEM

#Python

Orium logo
Orium

Engagement Manager

Remote

Full Time

#Technology

#Digital

#Project Management

#Agile

#Risk Management

#Client Communication

#Teams

#Scrum

#Stakeholder Management

O
Optain

Senior QA/RA Specialist

85k - 115k USD

Remote

Full Time

#Artificial Intelligence

#Health Care

#Medical Devices

#FDA Compliance

#Management

#Design

#ISO 13485

#ISO

#Risk Management

#Reporting

Everbridge logo
Everbridge

Senior Account Executive

120k - 130k USD

Remote

Full Time

#Event Management

#Risk Management

#Security

#Salesforce

#Access Control

#Pipeline Management

#Sales Methodology

#Enterprise Sales

#Consultative Selling

Neo4j logo
Neo4j

Cloud Operations Engineer

in flag
India

Remote

Full Time

#Cloud Operations

#Database

#DevOps

#Linux

#AWS

#Azure

#Google Cloud

#Ansible

#Terraform

#Kubernetes

#Prometheus

#Nagios

#Neo4j

Heartbeat Health logo
Heartbeat Health

Principal Quality Engineer

Remote

Full Time

#Healthcare Technology

#Quality Engineering

#Test Automation

#Strategy

#Testing

#Risk Management

#Integrations

#FHIR

#HL7

#Kanban

LetsGetChecked logo
LetsGetChecked

Software Engineer

76k - 95k USD

Remote

Full Time

#Software Engineering

#Data Analysis

#Health Tech

#Log Analysis

#Python

#C#

#JavaScript

#Splunk

#Datadog

#AWS

#Azure

#GCP

CKSource logo
CKSource

QA Engineer

54k - 83k USD

Remote

Full Time

#QA Engineering

#Cloud Services

#Developer Tools

#JavaScript

#TypeScript

#Cypress

#Playwright

#API Testing

#Docker

#Node.Js

#AWS

#Testing

Constructive Dialogue Institute logo
Constructive Dialogue Institute

Senior Data Scientist

us flag
United States

135k - 145k USD

Remote

Full Time

#Data Science

#Analytics Engineering

#Nonprofit

#SQL

#Python

#Data Pipelines

#AWS

#Dashboards

#Git

#Data Quality

#BI Tools

Your dream job awaits.

Explore exciting opportunities, connect with top employers, and ignite your career.