Information Security Consultant
United Al Saqer Group
| Company | United Al Saqer Group |
| Category | Security |
| Location | Rabdan Street |
| Remote | On-site (inferred) |
| Employment | Not stated |
| Level | Not stated |
| Salary | Not stated by the employer |
| First seen | 14 Aug 2026 (the employer did not state a posting date) |
| Last verified | 14 Aug 2026 |
| Source | Employer ATS (recruitee) |
Description
Established more than 40 years ago, the United Al Saqer Group (UASG) is one of the leading multi-sector business groups in the United Arab Emirates. The UASG owns and operates a diverse yet complementary portfolio of six UAE-based companies encompassing several key industry sectors, which includes Abu Dhabi Motors, Dalma Motors, Al Saqer Heavy Equipment, Al Saqer Property Management, Royal International Construction, and Royal Joinery. We are recruiting a Information Security Consultant to join our exceptional ICT Department. The person is responsible for providing expert guidance on information security strategies, assessing risks, developing policies, and implementing solutions to safeguard the organization’s data, systems, and infrastructure. The Information Security Consultant ensures compliance with cybersecurity standards and supports the organization’s efforts in mitigating security threats and vulnerabilities. AREA OF RESPONSIBILITY: Security Operations & Threat Management: Manage and operate security tools including SIEM, EDR, PAM, DLP, and IDS/IPS to detect, analyse, and respond to threats. Lead the response to security incidents and breaches, performing root cause analysis and implementing corrective and preventive actions. Proactively hunt for threats across the IT landscape, ensuring the security of core network assets, email gateways, and cloud services. Conduct regular vulnerability scans and coordinate penetration testing, validate findings, and drive remediation efforts with relevant teams. Monitor and optimize security logs and alerts to ensure effective detection and timely escalation of suspicious activities. Security Architecture & Engineering: Provide expert advice on secure system designs, network defenses, access controls, and encryption standards. Secure cloud configurations in multi-cloud environments, with hands-on expertise in Azure and Microsoft 365, including the implementation of logging, encryption, and secure DevOps practices. Implement and manage Identity & Access Management (IAM) and Privilege Access Management (PAM) solutions, enforcing least privilege access through regular privilege audits and access reviews. Conduct security architecture reviews for new projects, applications, and integrations, ensuring alignment with best practices and compliance standards. Support Zero Trust adoption and embed security into the software development lifecycle (SDLC) by enforcing secure access principles, promoting secure coding practices, and integrating DevSecOps Evaluate, recommend, and deploy security tools and technologies to strengthen the organization’s defensive posture. Governance, Risk & Compliance: Develop, maintain, and implement corporate information security policies, standards, and procedures aligned with organizational processes and industry best practices. Assist in the maintenance and continual improvement of the Information Security Management System (ISMS), ensuring compliance and documentation aligned with key standards and regulations such as ISO 27001, ISO 20000-1, and UAE IA, PDPL., GDPR Conduct risk assessments on internal systems, business processes, and third-party vendors to evaluate security controls and ensure compliance with corporate policies and regulatory requirements. Support internal and external audits by preparing documentation, evidence of controls, and responses to audit findings. Promote a strong security culture by supporting awareness and training programs, ensuring staff understand their compliance responsibilities. Define and track security KPIs and metrics to measure program effectiveness and report on risk posture to management. Reporting & Continuous Improvement: Prepare clear and detailed reports on security incidents, risk assessment findings, audit outcomes, and remediation progress for managemen