Chief Information Security Officer
Information Technology
Dubai, UAE
Onsite
Full-time
Director
Minimum 5 years in cybersecurity, CISO/leadership role
Posted Jun 18, 2026
About the role
We are seeking a visionary Chief Information Security Officer (CISO) to lead the cybersecurity strategy for our innovative renewable energy technology company. In this executive role, you will define and execute our enterprise-wide security governance, risk, and compliance programs. You will be responsible for building and mentoring a world-class security team, establishing robust control frameworks, and architecting security for our cloud platforms, applications, and distributed infrastructure. This position requires a strategic leader who can translate complex technical risks into business-centric terms for executive leadership. Your expertise will be critical in maturing our security posture, managing incident response, and ensuring the resilience of the digital assets that power the future of energy. Join us to secure the critical technology at the forefront of the green energy transition.
Requirements
- Minimum of 5 years of experience in a senior cybersecurity leadership role (e.g., Director, Head of Security, CISO).
- Demonstrated expertise in designing and implementing enterprise-wide security governance, including threat modeling, maturity modeling, and control frameworks (NIST, MITRE ATT&CK).
- Deep technical knowledge of cloud security architecture and services, specifically within AWS.
- Strong background in application security (AppSec) and integrating security into the CI/CD pipeline (DevSecOps).
- Proven experience leading compliance and audit programs for frameworks such as SOC 2, ISO 27001, and GDPR.
- Hands-on experience leading incident response for major security events, from detection through remediation and post-mortem.
- Expertise in securing digital assets, cryptographic systems, and distributed infrastructure environments.
- Proven ability to build, mentor, and lead high-performing, multi-disciplinary security teams.
Desirable skills
- Experience in the energy, manufacturing, or critical infrastructure sectors.
- Professional certifications such as CISSP, CISM, or CCSP.
- Direct experience with offensive security, penetration testing, or Capture The Flag (CTF) competitions.
- Familiarity with securing Operational Technology (OT) and IoT systems.
- Experience presenting security strategy and risk posture to a Board of Directors.
Role details
- Department
- Information Technology
- Location
- Dubai, UAE
- Work setup
- Onsite
- Employment type
- Full-time
- Job level
- Director
- Experience
- Minimum 5 years in cybersecurity, CISO/leadership role
- Industry
- Technology, Information & Media
- Sub-industry
- Computer & Network Security Services
- Compensation
- AED 90,000 – AED 120,000
Frequently asked questions
This confidential recruitment process is being managed by byteSpark.ai on behalf of an innovative renewable energy technology company. byteSpark.ai is not the employer for this position. Further information about the organisation, leadership team, and strategic context will be shared with shortlisted candidates at the appropriate stage.
This is an opportunity to secure the technology powering the next generation of renewable energy. The successful candidate will shape enterprise cybersecurity strategy, protect critical digital assets and distributed infrastructure, and ensure that rapid innovation is supported by resilience, trust, and world-class security.
This is a genuine executive leadership mandate. The CISO will define the security roadmap, establish governance and risk appetite, advise senior leadership, influence technology and product decisions, build the security organisation, and present cyber risk, investment priorities, and resilience plans in clear business terms.
The strongest candidates will have substantial senior cybersecurity leadership experience with deep technical credibility across AWS security architecture, application security, DevSecOps, threat modelling, incident response, and distributed infrastructure. Experience leading SOC 2 or ISO 27001 programmes and building high-performing security teams is particularly important.
No. Governance and compliance are important, but this role also requires hands-on understanding of cloud-native security, secure software delivery, cryptographic systems, incident command, and business continuity. Experience protecting energy, manufacturing, critical infrastructure, Operational Technology, or IoT environments would provide an additional advantage.
