Назад
Company hidden
1 день назад

EMEA Assurance Lead (Cybersecurity)

Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
UK/UAE/Qatar
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

EMEA Assurance Lead (Cybersecurity): Driving regional assurance programs for AI infrastructure and public-sector operations across the GCC, UK, and EU with an accent on controls design, certifications, regulatory alignment, and customer assurance. Focus on mapping sovereign security requirements, coordinating audits and evidence, extending global certifications across EMEA, and resolving complex data residency, AI governance, and defence procurement obligations.

Location: Doha, Qatar; London, UK; or Dubai, UAE. The role supports assurance activities across the GCC, UK, and EU. Qatar-based candidates must obtain the required residency and employment permissions from Qatari authorities; visa support is available for successful candidates.

Company

hirify.global develops reliable AI systems, high-quality data, and full-stack technologies that help enterprises and governments build, deploy, and oversee AI applications.

What you will do

  • Lead assurance programs across the GCC and UK, including Qatar NCSA NIA, KSA NCA ECC, UAE DESC ISR, UK Cyber Essentials Plus, DCC, and NCSC Secure by Design.
  • Own controls mapping, evidence collection, gap analysis, remediation tracking, certification timelines, and submission management.
  • Maintain and renew global certifications including SOC 2, ISO 27001, ISO 42001, and ISO 9001, extending them to EMEA and international operations.
  • Design EMEA-specific controls covering sovereign requirements, data residency, sector regulations, and customer assurance needs.
  • Support public-sector questionnaires, compliance due diligence, assurance discussions, bids, tenders, and procurement gates.
  • Partner with Legal, engineering, infrastructure, product, security, and external assessors on audits, regulatory matters, and contract-driven obligations.

Requirements

  • 7+ years of experience in cybersecurity compliance, GRC, public-sector assurance, IT audit, cloud security, or a related field, with meaningful EMEA exposure.
  • Experience delivering government or public-sector assurance programs in the UK, EU, or GCC and working with certification bodies, government assessors, or authorizing officials.
  • Strong knowledge of UK Cyber Essentials, ISO 27001, ISO 9001, ISO 42001, SOC 2, or equivalent frameworks, plus GCC sovereign security regimes.
  • Familiarity with GDPR, Qatar PDPPL, the EU AI Act, and translating data protection and AI governance requirements into technical and organisational controls.
  • Experience coordinating controls, evidence, remediation, and audits across distributed engineering and infrastructure teams.
  • Cloud compliance assessment experience with AWS, Azure, or GCP, along with strong communication, judgment, and autonomous working skills.

Nice to have

  • Certifications such as CISSP, CISM, CISA, ISO 27001 Lead Auditor, ISO 42001 Internal Auditor, or CCSP.
  • Experience with NATO information assurance standards, defence procurement, or EMEA health-sector and medical-device regulations.
  • Working knowledge of Arabic.
  • UK SC or DV clearance, or eligibility for equivalent EMEA government security clearances.
  • Experience at a Big Four firm or a high-growth technology company.

Culture & Benefits

  • Work within a global GRC function alongside public-sector, enterprise, security, engineering, product, and legal teams.
  • Significant autonomy in a hands-on individual contributor role with ownership of regional programs.
  • Support for Qatar visa and employment-permit applications where applicable.
  • Inclusive equal-opportunity workplace with reasonable accommodations available during the application and recruiting process.
  • Applicants may reapply for the same role after a 90-day waiting period.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →