Sr Specialist IDS Risk, DR & Compliance
Job title |
Sr. Specialist IDS Risk, DR & Compliance |
Grade |
|
||||||||||||
Stream |
People & Technology |
Function |
Corporate IDS |
||||||||||||
Location |
Oman – Muscat |
Budget control |
*OPEX and/or CAPEX and/or Revenue amount as relevant* |
||||||||||||
Reporting to |
Manager IDS Governance & Excellence |
Direct reports |
0 |
||||||||||||
Job purpose Provides end-to-end subject matter expertise and execution capabilities across the domains of technology risk management, disaster recovery, and regulatory compliance. The role supports the development and implementation of frameworks, policies, and practices that protect OQ’s digital infrastructure and ensure operational resilience.
The position will act in accordance with the OQ’s Mission, Vision, Values & Strategies, as well as, policies, guidelines, and standards, supported by an IT Technology platform, HSE standards, Omani’s government & other legal justifications, and best international practices in consonance with national objectives. |
|||||||||||||||
Main tasks and responsibilities
|
|||||||||||||||
Key interactions Internal: OQSAOC Streams/AssetsExternal: Technology vendors, auditors, regulators, managed service providers. |
|||||||||||||||
Notable Working Conditions. Office-based role with occasional visits to operational and disaster recovery sites. May require availability outside regular hours during DR tests or incidents. |
|||||||||||||||
Education requirements |
· Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field. · Master's degree or relevant certifications (e.g., CISSP, CISM, CBCP, ISO 27001 Lead Implementer/Auditor) preferred. |
||||||||||||||
Language |
Excellent knowledge of written, read, and spoken English (required) Arabic - Native (desirable) |
Background and experience |
Competencies and skills |
· 6–8 years of experience in cybersecurity, risk management, compliance. · Strong understanding of data protection laws and DR frameworks. · Familiarity with industry standards (e.g., ISO 27001, NIST, CIS Controls). |
Behavioral: Strong analytical and communication skills. · Leadership mindset with stakeholder engagement capabilities. · Ethical, detail-oriented, and adaptable to regulatory changes. · Ability to work across functional teams and influence without authority. · High integrity, ethical conduct, and a sense of accountability. · Problem-solving orientation with the ability to manage ambiguity. · Passion for continuous learning and adapting to change.
Technical: · Proficiency in risk and compliance tools. · Knowledge of IT infrastructure, cloud, and access control mechanisms. · Exposure to legal, regulatory, and audit requirements. · Understanding of privacy-by-design and privacy-by-default principles. · Familiarity with ITSM processes, SIEM/SOC practices, vulnerability management, and asset classification. · Deep understanding of risk management, DR/BCM, compliance frameworks, and regulatory obligations.
|
Muscat, OM