Job PurposeAt Emirates, we believe in connecting the world, to and through, our global hub in Dubai; and in constantly innovating to ensure our customers ‘Fly Better’. Emirates Group IT thrives on the dynamic nature of technology. Being pioneers in aviation innovation, were always at the forefront, pushing boundaries. Were on the lookout for exceptional IT professionals to fortify our position as leaders in the industry. Embark on a journey with the world’s largest international airline and become a vital part of our cutting-edge information and technology team as Senior Cybsersecurity Governance Analyst.
Join our CyberSecurity team where we ensure a world class CyberSecurity organisation based on the key principles of People, Process and Technology underpinned with executive endorsement of a multi-year strategy to continuously improve and develop. The team protects our digital assets by monitoring for threats, responding to incidents, managing vulnerabilities, and ensuring compliance with security policies and regulations. If you are passionate about CyberSecurity, we invite you to apply to play a crucial role in shaping the future of our technology initiatives at Emirates Group.
As a Senior Cybsersecurity Governance Analyst, you’ll lead the strategic direction, oversight, and continuous improvement of the Emirates Group’s cybersecurity portfolio assurance program. Ensure the consistent implementation and optimization of security controls across all IT portfolios and product lines, safeguarding information assets in compliance with corporate policies, regulatory requirements, and industry best practices. Drive accountability, foster cross-functional collaboration, and champion innovation to enhance assurance outcomes, process efficiency, and a culture of risk-aware decision-making and continuous improvement.
In the role, you will:
- Lead the planning, development, and continuous improvement of integrated cybersecurity governance frameworks, information security policies, assurance programs, and IT service continuity plans. Set clear objectives, ensure alignment with Emirates Group’s risk appetite and regulatory requirements, and drive the evolution of these frameworks to proactively address emerging threats, business priorities, and industry best practices.
- Drive and facilitate cross-functional collaboration by engaging with IT, business, assurance, and continuity teams to embed robust security policies, standards, and IT continuity controls into all relevant organizational workflows and processes. Promote a culture of compliance, accountability, and operational resilience through effective communication, stakeholder engagement, and knowledge sharing.
- Govern the implementation, validation, and lifecycle management of security controls and continuity measures by working closely with technical and business teams. Ensure that all solutions, processes, and recovery strategies are compliant with approved policies, standards, and industry frameworks, and that they are regularly reviewed, tested, and updated to remain effective and relevant.
- Champion risk identification, mitigation, and escalation by conducting regular compliance reviews, audits, and IT continuity testing. Analyse findings, leverage data-driven insights, and collaborate with process owners to drive the development and execution of corrective and preventive action plans. Ensure that significant risks and non-compliance issues are promptly escalated and addressed at the appropriate organizational level.
- Enable and support teams and stakeholders across policy assurance and IT continuity domains by providing expert guidance and ensuring access to up-to-date resources and best practices. Foster a culture of excellence, innovation, and continuous improvement by empowering staff to uphold high standards of security governance and operational resilience.
- Develop, review, and maintain enterprise-wide information security policies and standards by conducting thorough research, benchspaning against industry frameworks such as ISO 27001 and NIST, and engaging with stakeholders to ensure policies address regulatory requirements and organizational needs. Regularly update policies to reflect emerging threats, new technologies, and evolving business objectives.
- Manage the communication, adoption, and monitoring of policies and standards across all business units and IT portfolios. Ensure that policies are clearly articulated, easily accessible, and consistently implemented, and that all stakeholders understand their responsibilities for compliance and risk management.
- Coordinate and govern compliance assessments and audits by planning and executing regular reviews of policy adherence, analysing results, identifying areas of non-conformance, and developing actionable recommendations for remediation.
- Drive a cycle of continuous improvement in governance practices through lessons learned and best practice sharing.
QualificationTo be considered for this role, you must meet the below requirements:
- Degree or Honours (12+3 or equivalent) in Cybersecurity, Information Technology or Computer Science.
- Experience and understanding of applying ISO/IEC 27001, ISO/IEC 2000 or CBCI, CBCM, Qualification on frameworks such as ITIL.
- In-depth knowledge of information security frameworks (ISO 27001, NIST, CIS Controls) and policy lifecycle management.
- Experience developing, implementing, and auditing security policies, standards, and control frameworks in large organizations.
- Strong analytical skills to assess compliance gaps, interpret audit results, and recommend remediation strategies.
- Hands-on experience designing, testing, and maintaining continuity plans for complex IT environments (cloud, on-prem, hybrid).
- Skills in coordinating cross-functional teams for disaster recovery drills and operational verification.
- Stakeholder engagement and communication skills to articulate technical requirements to both technical and executive audiences.
- Ability to lead teams, manage resources, and drive accountability across policy, assurance, and continuity initiatives.
- Proven ability to mentor teams, resolve conflicts, and foster a culture of continuous improvement, whilst staying current with evolving threats, regulatory changes, and resilience trends.
Leadership Role: Yes
Salary & benefitsJoin us in Dubai and enjoy an attractive tax-free salary and travel benefits that are exclusive to our industry, including discounts on flights and hotels stays around the world. Find out what it’s like to live and work in our fast-paced, cosmopolitan home city in the Dubai Lifestyle section of our website www.emirates.com/careers