- Experience
- 10+ yrs
- Salary
- —
- Openings
- 1
- Posted
- 4 hours ago
- Work mode
- Work from home
- Education
- Bachelor's degree
- Eligibility
- Professionals with a bachelor’s degree in a relevant field and substantial senior-level experience in cybersecurity operations, security engineering, and team leadership are suitable for this role. Candidates should also bring recognized security certifications and experience with enterprise securi…
- Resume
- Required to apply
Job description
About the Role
Miral is looking for a senior cybersecurity leader to head technical security operations for a large, complex enterprise environment. In this position, you will report to the Vice President of Digital & Technology and oversee the design, deployment, and daily operation of security controls across infrastructure, networks, applications, endpoints, privileged access, and security operations.
You will guide a multi-disciplinary team covering Security Operations, Network Security, Identity & Access Management, and Cyber Incident Response. The role is central to keeping the organization secure, resilient, and able to support growth and innovation at scale.
Strategy, Operating Model & Governance Interface
Turn the organization’s cybersecurity strategy into a practical roadmap for technical operations, aligned with NIST CSF 2.0, ISO 27001, the UAE Information Assurance Standards, and ADHICS. Put in place and run the security policies, standards, and controls established by the independent Information Security Governance function, while keeping governance and operations clearly separated. Serve as the primary technical authority for cyber risk and provide assurance to the VP Digital & Technology and the governance team on the design and effectiveness of controls.
Network & Infrastructure Security
Own the architecture, deployment, and day-to-day management of network and infrastructure security controls, including firewalls, core switches, segmentation, NAC, VPN, secure remote access, IDS/IPS, web and email gateways, and DDoS protection. Lead the network security function that has been transitioned from IT Infrastructure & Operations, with a strong focus on secure-by-design design and zero-trust principles. Ensure hardening, baseline configuration, and continuous compliance across servers, endpoints, cloud systems, and OT/IoT environments that support Miral’s destinations.
Security Operations & Threat Management
Direct 24/7 monitoring, threat detection, and triage through the Security Operations Centre using SIEM, EDR/XDR, SOAR, and threat intelligence capabilities. Oversee detection engineering, use-case creation, and continuous tuning to reduce false positives and improve mean time to detect and mean time to respond. Lead threat hunting and adversary emulation activities to verify the strength of the environment.
Identity, Privileged Access & Application Security
Manage and continuously strengthen privileged access management, identity and access controls, and joiner-mover-leaver enforcement in partnership with IT. Build security into application delivery across the SDLC through secure code review, SAST/DAST, API security, and DevSecOps practices.
Vulnerability, Patch & Configuration Management
Run the full enterprise vulnerability management cycle, from discovery and prioritization through remediation tracking and reporting, covering infrastructure, applications, and endpoints. Coordinate patching and configuration management with IT operations so exposures are closed within agreed service levels.
Incident Response & Cyber Resilience
Own the technical cyber incident response capability, including preparation, detection, containment, eradication, recovery, and post-incident review. Keep response playbooks current, run tabletop exercises, and make sure escalations and regulatory notifications happen on time in coordination with the governance function. Contribute security requirements to business continuity and disaster recovery planning.
Compliance, Audit & Reporting
Be responsible for the operational effectiveness of technical security controls and for proving compliance during internal and external audits and regulatory reviews. Create and present security operations KPIs, KRIs, and dashboards to leadership and governance stakeholders. Ensure all incidents, exceptions, and risks are properly recorded, escalated, and remediated through closure.
People Leadership
Lead, coach, and retain a diverse team across network security, security operations, and identity & access, while supporting a strong Emiratisation-aligned talent pipeline. Set goals, manage performance, and promote a culture of security awareness and continuous improvement.
Financial Accountability, Vendor Management & Continuous Improvement
Support cybersecurity operations budgeting and ensure security tooling and services are used cost-effectively and in line with procurement rules. Manage security vendors, managed service providers, and technology partners against clear SLAs and expected outcomes. Stay current on emerging threats and technologies to continuously strengthen the security posture.
Qualifications and Experience
The ideal candidate is a cybersecurity leader with strong technical depth, business awareness, and proven people-management capability.
- A bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related discipline.
- A recognized security certification such as CISSP or CISM, or an equivalent credential.
- Additional certifications in IT security such as CCSP, GIAC, CEH, OSCP, or vendor-specific certifications from Cisco, Fortinet, or Palo Alto.
- At least 10 years of experience in IT security engineering and operations.
- At least 5 years of experience leading the IT operations-security function.
- Strong hands-on knowledge of network and infrastructure security, including firewalls, segmentation, NAC, VPN, IDS/IPS, and SOC tooling such as SIEM, EDR/XDR, and SOAR.
- Practical understanding of security frameworks and regulatory requirements, including NIST CSF, ISO 27001, UAE Information Assurance Standards, and ADHICS.
- Experience with privileged access management, cloud security across Azure and AWS, and application/DevSecOps security.
- Knowledge of OT/IoT security in hospitality, leisure, or similarly large-scale operational environments.
Why Join Miral?
You will have the opportunity to contribute to high-impact, large-scale projects that shape entertainment, leisure, and destination experiences in the UAE. The role offers collaboration with skilled professionals, influence over strategic technology decisions, and a workplace that values innovation, excellence, and continuous growth.
If you are ready to lead enterprise-scale cybersecurity operations and make a meaningful impact, this role offers a unique opportunity to do so.