Discover your dream Career
For Recruiters

VP & Head of Audit, Information Security

First Abu Dhabi Bank Abu Dhabi, United Arab Emirates
Posted 10 hours ago Permanent Competitive

VP & Head of Audit, Information Security

First Abu Dhabi Bank Abu Dhabi, United Arab Emirates
VP & Head of Audit, Information Security

Job Description




JOB PURPOSE:



A subject matter expert responsible for planning and executing audits covering the activities and processes of Group Security Office (GSO), Business Continuity Management (BCM), Data Domain (Data Governance, Data Privacy, Data Analytics & AI), Group Technology (GT) & System Integration Projects domestically and in all international locations as well as related peripheral activities across the FAB Group. Thorough understanding of IS, IT, BCM, Data & Integration domains, business/ relationship aspects, risk management processes and the regulatory environment, both in UAE and other relevant jurisdictions where FAB operates and apply them to auditable areas to provide assurance to Management by identifying weaknesses; reporting and escalating significant Audit findings in a timely manner; and agreeing action plans to address the issues raised.



Act as the day-to-day contact with Management in GSO, GT and Data Functions and related areas influencing change through providing advice. As part of the GIA Extended Management Team (EMT), provide input to GIA on issues that have impact on the FAB Group as a whole. Conduct special investigations, reviews, additional tasks as and when required by GCAO / EVP / SVP.




KEY ACCOUNTABILITIES:




Strategic Contribution



• Lead audits of FAB Group's Information Security, BCM, Information Technology, Data Domain (Data Governance,



Data Privacy, Data Analytics & AI) & System Integration functions and related activities in the UAE and across the



international network (functional). Furthermore, Group Subsidiaries with Information Security, Technology, BCM,



Data Domain and System Integration presence will be covered.



• Ensure that audits in Information Security, BCM, Data Domain (Data Governance, Data Privacy, Data Analytics &



AI) & System Integration areas are conducted in accordance with the objectives laid down in the Annual Plan and



ensure that the work program is completed in an efficient and effective manner on or ahead of schedule. Inform



Head of Audit of any potential delays and/or changes to the Annual Plan.




People Management



In undertaking audits:



• Provide guidance and on the job training for junior colleagues and conduct knowledge sharing to facilitate



achievement of team objectives and completion of tasks in an efficient manner which is consistent with



operating procedures and policy.



• Promote the organization's values and ethics in all activities within the team to support the establishment of a



value driven culture within the bank.




Budgeting and Financial Performance



• Monitor the financial performance of given areas of activities versus budgets and ensure all activities are carried



out in line with the approved guidelines while promptly reporting on any variances to management.




Policies, Systems, Processes & Procedures



• Execute to established GIA Policies, Guidance Notes, Procedures and Practice Notes in undertaking all tasks.



Provide input to the development of GIA practices as per industry standards and regulatory expectations.



• Review all the activities of the Units within Information Security, Technology, Data Domain and System



Integration related activities in all the jurisdictions in which the groups operate to define and maintain the Audit



Universe. Coordinate with other teams to ensure efficient and effective coverage.



• Prepare and maintain a Risk Assessment of each of the Process Streams within Information Security, Technology,



Data Domain and System Integration related Units and applicable subsidiaries (e.g. international entity) as



identified in the Audit Universe. In this respect, work with the businesses to promote periodic self-assessment of



risks and controls.



• Establish/update and maintain Audit programs in the central audit management tool.



• Conduct audits of the Processes within Information Security, Technology, Data Domain and System Integration



related activities and assess if:



o Divisional/Unit Line management have identified and classified the risks in their activities.



o Governance, risk management and control procedures are adequate, effective and efficient to reduce risks



of errors, omissions and loss to acceptable levels at an acceptable cost.



o Improvements/enhancements to the governance, risk management and internal control structure are



required.



o Data and transaction processing meet the required standards of reliability, integrity and availability.



o The Division's/Unit's assets are being safeguarded.



o The use of resources is efficient and effective.



o Draft audit report submitted by auditors are properly reviewed and finalized.



o Audit report is discussed and finalized with GIA management/client within 6 weeks of completion of



fieldwork. Negotiate with Unit management to agree a documented Management Action Plan to resolve



the issues raised.




Continuous Improvement



• Lead the identification of change through continuous improvement of processes and practices considering global



standards and changes in the business environment which demand proactive action plans.




Relationship Management



• Develop and maintain effective business relationships with all relevant external/internal entities and stakeholders



with the highest standards of business ethics, whilst promptly attending to all critical issues in-order to ensure



the services required by the organization are delivered in the most effective manner.



• Act as the Audit Business Partner for Line Managers within Information Security, Technology, Data Domain and



System Integration Functions and actively manage the relationship through regular meetings with Line Managers



to promote this concept and identify emerging risks. Such meetings should also be used to discuss any material



gaps between audit assessment or risks and controls and the businesses' self-assessment.



• Ongoing consultancy/advice is provided to Unit management from a governance, risk management and control



perspective for improvements in their processes to ensure effective and efficient controls, on the basis of market



best practices.



• On an ongoing basis, ensure pending audit issues are followed up with Unit management and that all corrective



actions are fully and properly implemented.



• Conduct any investigations/special reviews assigned by Head of Audit/GCAO.




Reporting



Ensure that all functional reports are prepared timely and accurately and meet Group requirements, policies and



quality standards.




Job Context:




Specific Accountability



• Safeguarding against potential loss and contributing to the Information Security, Technology, Data Domain and



System Integration systems and procedures, by reporting whether Operational/Regulatory controls of FAB



standards are effectively carried out and are efficient in the units/departments audited.



• Reviewing the functions within Information Security, Technology, Data Domain and System Integration of the



bank end to end and identifying areas of correction / improvement.



• Lead and guide team members on applying data analytics/automated/enhanced testing techniques in audit



execution, including continuous monitoring routines across domains of Information Security, Technology, Data



Domain and System Integration systems, to extend assurance beyond sample-based testing and to support



continuous auditing of key controls.



Examine and comment on the process for the early recognition of problems (if any) and their remedial



management to minimize the loss.



• Preparation / Review of Audit MIS/ dashboards including audit committee presentation slides relating to audit



conducted in the GSO, Technology and Data domains.



• Maintain up to date knowledge and understanding of key regulatory developments and banking practices,



including but not limited to Information Security, Cyber Security, Business Continuity and Resilience, Technology,



Data Domain (including Data Privacy) and System Integration, across different jurisdictions relevant to FAB Group;



Interpret those requirements into practical control and evidence expectations, drive necessary changes in Audit



plan & working programs to take into consideration regulatory changes across relevant auditable areas.



• Act as a trusted advisor to the Business, Group Security, Group Technology and Data Domain, in the areas of



Information Security, Cyber Security, Business Continuity and Resilience, Technology Governance & Risk



Management, Technology Portfolio Management, Technology Outsourcing, Data Privacy, Data Governance



Applied and Advanced Analytics and related Regulatory Compliance.



• Contributing towards the enhancement of relationship between GIA and stakeholders.



• Keeping abreast of the local and international economic trends, banking practices and regulatory prescriptions.




QUALIFICATIONS & EXPERIENCE:




Minimum Qualification



• Bachelor's degree.



• Relevant post-graduate qualification and/or relevant professional qualification and/ or certification desirable.



• CISA Certification is essential and any additional relevant certifications such as CISSP, CISM & CSX.




Minimum Experience



• Minimum 10 years' relevant experience with an International Bank or Big 4. Internal Audit experience strongly



preferred (but not mandatory). At least 5 years similar positions of progressively increasing managerial



responsibilities in the Bank Operations, Risk Management and/or Audit function.



• Expert knowledge of operational activities and processes and associated risks within the Information Security,



Cyber Security, BCM, Technology and Data domains, including the control frameworks and standards commonly



used to design and assess controls in those domains.



• Strong working knowledge and demonstrable ability to interpret regulatory expectations across multiple



jurisdictions in the domains of Information security, Technology, BCM and Data Management.



• Strong leadership capability and team-oriented with highly developed problem-solving skills.



• Self-directed, able to manage multiple tasks and ability to work under pressure.



• Excellent analytical skills.



• Exceptional verbal and written communication skills, with a strong ability to comprehend, articulate, and translate



complex technology, cybersecurity, and business concepts for diverse stakeholders.




About Us




About Us:



First Abu Dhabi Bank (FAB) is the largest bank in the UAE and one of the world's largest and safest financial institutions. We offer a comprehensive range of personal and private banking services, including credit cards, Islamic banking, investments, loans, and mortgages. Our commitment to excellence and innovation drives us to provide top-tier financial solutions to our clients.




Life at FAB:



Working at FAB means being part of a team of talented and passionate individuals with a shared vision to support the ambitions of our stakeholders to "Grow Stronger." We embrace the needs of our customers across the globe with a sense of responsibility and confidence driven by extensive expertise that can only be delivered by an ambitious world-class organization




Career Development:



FAB offers unique career choices, a chance to innovate, craft solutions for the future, and express yourself in a performance-based culture that will unleash the best in you. Whether you are an experienced professional or just starting your career, FAB provides a range of learning and development initiatives to support all employees through training and skill development.




Our Values:



At FAB, we place our customers at the core of our activities, live our values each day in every way, celebrate achievements, and empower each other to deliver leading solutions. We have structured plans for the recruitment and career progression of Emirati talent to enable them to make a mark in the financial and banking sector both regionally and globaly that rewards your hard work and dedication.



Join our team and be part of a journey to shape the future of banking.

Job ID  300006236029033
More Jobs From First Abu Dhabi Bank
First Abu Dhabi Bank
VP & Head of Operational Risk Advisory & Oversight - Group Technology & Transformation
First Abu Dhabi Bank
Abu Dhabi, United Arab Emirates
1 day ago Full time Competitive
First Abu Dhabi Bank
VP & Senior Audit Manager, Enterprise Risk Management
First Abu Dhabi Bank
Abu Dhabi, United Arab Emirates
8 days ago Full time Competitive
First Abu Dhabi Bank
VP, Head of Marketing & Communication
First Abu Dhabi Bank
Abu Dhabi, United Arab Emirates
3 months ago Full time Competitive
First Abu Dhabi Bank
SVP & Head of Credit, Corporate Core - Dubai - Emiratized role
First Abu Dhabi Bank
Dubai, United Arab Emirates
3 months ago Full time Competitive
First Abu Dhabi Bank
Specialist - Emiratized Role
First Abu Dhabi Bank
Abu Dhabi, United Arab Emirates
1 day ago Full time Competitive
First Abu Dhabi Bank
Principal Analyst, Change Management (Emiratised Role)
First Abu Dhabi Bank
Abu Dhabi, United Arab Emirates
3 days ago Full time Competitive
First Abu Dhabi Bank
Principal Lead, API & AI Enterprise Integration Services
First Abu Dhabi Bank
Abu Dhabi, United Arab Emirates
5 days ago Full time Competitive
First Abu Dhabi Bank
Principal Lead, Business Banking
First Abu Dhabi Bank
Abu Dhabi, United Arab Emirates
10 days ago Full time Competitive
First Abu Dhabi Bank
Specialist, Group Strategy (Emiratized)
First Abu Dhabi Bank
Abu Dhabi, United Arab Emirates
10 days ago Full time Competitive
First Abu Dhabi Bank
Principal Engineer, HR
First Abu Dhabi Bank
Abu Dhabi, United Arab Emirates
12 days ago Full time Competitive

Boost your career

Find thousands of job opportunities by signing up to eFinancialCareers today.
More Jobs Like This
First Abu Dhabi Bank
VP & Senior Audit Manager, Enterprise Risk Management
First Abu Dhabi Bank
Abu Dhabi, United Arab Emirates
First Abu Dhabi Bank
VP, Head of Marketing & Communication
First Abu Dhabi Bank
Abu Dhabi, United Arab Emirates
State Street Corporation
SVP, Head of Corporate Audit for Information Technology
State Street Corporation
Boston, United States