Job description
Company Description
CNS is a technology company that powers the future by providing digital solutions essential to support all enterprise and human development. While growing and managing a robust pool of supplier-partners for the benefit of our clients has always been a priority, we are constantly re-inventing ourselves.
Founded in 1987 with more than 30 years of experience, CNS employs over 320 employees including more than 250 certified engineers. We offer in-depth expertise and a range of best-in-class products that support the digital transformation of all major industries. With offices in three countries, we have an extensive reach into, and regional knowledge of the Middle East markets.
A shift into levering our many years of experience to develop pioneering software in-house will add yet another dimension to our highly innovative solutions-portfolio.
Job Description
The Head of Cyber Security is responsible for building and leading CNS’s cybersecurity business, with accountability for strategy, client engagement, managed security services, service delivery and growth. The role will develop secure, scalable and commercially viable cyber capabilities across defensive security, offensive security, GRC, data governance and AI assurance, while strengthening client trust and positioning CNS as a leading regional cybersecurity and digital trust provider.
DUTIES & RESPONSIBILITIES
Managed Security, Cloud Security & Cyber Defense:
· Lead delivery of Managed Security Services, including SOC, SIEM, MDR, threat detection, incident response, vulnerability management, and security monitoring.
· Define and oversee cloud security capabilities across public cloud, private cloud, SaaS, and hybrid environments.
· Ensure SLA/KPI adherence and high-quality service delivery across all client engagements.
· Drive continuous improvement, automation, AI-assisted security operations, and detection engineering.
Cybersecurity, Data Governance & AI Strategy:
· Define and execute CNS strategy across cybersecurity, data governance, cloud security, and AI assurance, aligned with business and client objectives.
· Establish governance frameworks covering ISO 27001, NIST, ISO 42001, privacy, data governance, and relevant regional regulatory requirements.
· Develop integrated governance models covering cyber risk, data ownership, privacy, AI risk, compliance, and assurance.
· Support clients in establishing responsible AI governance, AI risk management, model assurance, and regulatory compliance.
Pre-Sales, Solution Development & Go-to-Market:
· Support Sales and Pre-Sales in solution design, proposals, bids, and executive client presentations.
· Develop and position CNS offerings across managed security, cloud security, offensive security, GRC, data governance, privacy, and AI assurance.
· Standardize solution architectures, delivery models, pricing, and service propositions.
· Identify strategic technology partners and develop differentiated, scalable offerings aligned with market demand.
Risk Management, Security Architecture & Cloud Security:
· Own cyber risk management, vulnerability management, and security architecture strategy.
· Oversee secure architecture across cloud, on-premises, hybrid, application, network, and data environments.
· Ensure cloud security controls are embedded across IAM, configuration management, workload protection, data protection, logging, and monitoring.
· Support secure-by-design principles across infrastructure, applications, data platforms, and AI systems.
Data Governance, Privacy & AI Assurance:
· Develop CNS capabilities across data governance, data quality, ownership, stewardship, lineage, classification, and lifecycle management.
· Establish privacy and data-protection services covering ROPA, DPIA, DSAR, data discovery, and regulatory compliance.
· Develop AI governance and assurance services covering AI inventories, risk classification, model governance, security testing, AI red teaming, explainability, and human oversight.
· Integrate cyber, data, privacy, and AI governance into a unified digital-trust proposition.
Revenue Growth & Business Enablement:
· Drive revenue growth across cybersecurity, managed services, cloud security, data governance, and AI assurance offerings.
· Identify upsell and cross-sell opportunities within existing CNS and Group client accounts.
· Build new recurring-revenue services and managed offerings.
· Collaborate with Sales and Group leadership to strengthen CNS’s regional market positioning and strategic partnerships.
Team Leadership & Capability Development:
· Build and lead high-performing teams across cyber defense, offensive security, cloud security, GRC, data governance, & AI assurance.
· Define the target organisation structure and recruit critical leadership, technical, and delivery roles.
· Drive professional certifications, training, career development, and succession planning.
· Align team capacity and capability with pipeline, service delivery, and commercial growth.
Performance Management, Governance & Operating Model:
· Define KPIs, SLAs, utilisation, margin, service-quality, and customer-satisfaction measures.
· Establish governance and reporting across Sales, Delivery, IT, Compliance, Data, AI, and Managed Services.
· Monitor operational and financial performance against agreed business objectives.
· Continuously enhance the operating model, delivery quality, automation, scalability, and customer experience.
Qualifications
Education
- Bachelor’s degree in cyber security, IT, or related field
- Master’s degree in cyber security / information security is Desired
Experience
- 15+ years in cyber security with at least 5 years in leadership roles
- Experience in MSSP / System Integrator (CNS-type environment) is Desired
Additional Information
Skills & Abilities
- • Strong expertise in SOC, SIEM, EDR, cloud security, and GRC frameworks
• Certifications: CISSP, CISM, CISA, CEH, ISO 27001 Lead Implementer
Compliance with policies and procedures based on the ISO standards adopted by CNS.
الوصف الوظيفي
وصف الشركة
CNS هي شركة تكنولوجيا تُمكّن المستقبل من خلال تقديم حلول رقمية أساسية لدعم جميع التطوّر المؤسسي والبشري. بينما نعمل على نمو وإدارة قاعدة مزودي خدمات قوية لصالح عملائنا كان دائمًا أولوية، نحن نجدد أنفسنا باستمرار.
تأسست في 1987 وتضم أكثر من 30 عامًا من الخبرة، توظّف CNS أكثر من 320 موظفًا بما في ذلك أكثر من 250 مهندسًا معتمدًا. نحن نقدم خبرة عميقة ونطاقاً من المنتجات الأفضل في فئتها التي تدعم التحول الرقمي في جميع الصناعات الرئيسية. مع وجود مكاتب في ثلاث دول، لدينا وصول واسع ومعرفة إقليمية بأسواق الشرق الأوسط.
التحول نحو الاستفادة من سنوات خبرتنا الطويلة لتطوير برمجيات مبتكرة داخل الشركة سيضيف بعداً آخر إلى محفظة حلولنا المبتكرة للغاية.
الوصف الوظيفي
رئيس الأمن السيبراني مسؤول عن بناء وقيادة أعمال الأمن السيبراني لـ CNS، مع المساءلة عن الاستراتيجية، وتفاعل العملاء، وخدمات الأمن المُدارة، وتقديم الخدمة والنمو. ستطور هذه الدور قدرات سيبرانية آمنة وقابلة للتوسع ومربحة تجاريًا عبر الدفاع الأمني، والأمن الهجومي، وحوكمة البيانات والالتزام، وضمان الذكاء الاصطناعي، مع تعزيز ثقة العملاء ووضع CNS كمزود أمني سيبراني إقليمي رائد ومزود ثقة رقمية.
المهام والمسؤوليات
الأمن المُدار، أمان السحابة والدفاع السيبراني:
· قيادة تقديم خدمات الأمن المُدار، بما في ذلك SOC وSIEM وMDR واكتشاف التهديدات والاستجابة للحوادث وإدارة الثغرات ومراقبة الأمن.
· تحديد والإشراف على قدرات أمان السحابة عبر السحابة العامة، والسحابة الخاصة، وSaaS، والبيئات الهجينة.
· ضمان الالتزام بمستويات الخدمة/KPIs وتقديم خدمة عالية الجودة عبر جميع ارتباطات العملاء.
· دفع التحسين المستمر، والأتمتة، وعمليات الأمن المدعومة بالذكاء الاصطناعي، وهندسة الاكتشاف.
الأمن السيبراني، حوكمة البيانات وذكاء الاصطناعي الإستراتيجي:
· تعريف وتنفيذ استراتيجية CNS عبر الأمن السيبراني، وحوكمة البيانات، وأمان السحابة، وضمان الذكاء الاصطناعي، متوافقة مع أهداف الأعمال والعملاء.
· إنشاء أطر حوكمة تغطي ISO 27001، وNIST، وISO 42001، والخصوصية، وحوكمة البيانات، والمتطلبات التنظيمية الإقليمية ذات الصلة.
· تطوير نماذج حوكمة متكاملة تغطي مخاطر السيبراني، وملكية البيانات، والخصوصية، ومخاطر الذكاء الاصطناعي، والامتثال، والضمان.
· دعم العملاء في إنشاء حوكمة مسؤولة للذكاء الاصطناعي، وإدارة مخاطر الذكاء الاصطناعي، وضمان النماذج، والامتثال التنظيمي.
ما قبل البيع، تطوير الحلول والتسويق go-to:
· دعم قسم المبيعات وما قبل البيع في تصميم الحلول، والاقتراحات، والعطاءات، وتقديمات العملاء التنفيذية.
· تطوير وتحديد عروض CNS عبر الأمن المُدار، وأمان السحابة، والأمن الهجومي، وGRC، وحوكمة البيانات، والخصوصية، وضمان الذكاء الاصطناعي.
· توحيد معمارية الحلول، ونماذج التنفيذ، والتسعير، ومقترحات الخدمة.
· تحديد شركاء تقنيين استراتيجيين وتطوير عروض مميزة وقابلة للتوسع تتوافق مع الطلب في السوق.
إدارة المخاطر، هندسة الأمن وأمان السحابة:
· امتلاك إدارة مخاطر السيبراني، وإدارة الثغرات، واستراتيجية هندسة الأمن.
· الإشراف على هندسة آمنة عبر السحابة، المقر، الهجين، التطبيقات، الشبكات وبيئات البيانات.
· ضمان تضمين ضوابط أمان السحابة عبر IAM، إدارة التهيئة، حماية أعباء العمل، حماية البيانات، التسجيل والمراقبة.
· دعم مبادئ التصميم الآمن عبر البنية التحتية، التطبيقات، منصات البيانات، وأنظمة AI.
حوكمة البيانات، الخصوصية وضمان الذكاء الاصطناعي:
· تطوير قدرات CNS عبر حوكمة البيانات وجودتها وملكية البيانات وإشرافها وخط سيرها وتصنيفها وإدارة دوراتها.
· إنشاء خدمات الخصوصية وحماية البيانات التي تغطي ROPA وDPIA وDSAR واكتشاف البيانات والامتثال التنظيمي.
· تطوير خدمات حوكمة وضمان الذكاء الاصطناعي تغطي جرد ذكاء اصطناعي، وتصنيف المخاطر، وحوكمة النماذج، واختبار الأمان، وتعاون AI، وشرح واعٍ، والإشراف البشري.
· دمج حوكمة السيبراني والبيانات والخصوصية والذكاء الاصطناعي في عرض ثقة رقمية موحد.
نمو الإيرادات وتمكين الأعمال:
· دفع نمو الإيرادات عبر عروض الأمن السيبراني، والخدمات المُدارة، وأمان السحابة، وحوكمة البيانات، وضمان الذكاء الاصطناعي.
· تحديد فرص البيع المرتفع والبيع المتبادل ضمن حسابات عملاء CNS ومجموعة CNS.
· بناء خدمات إيرادات متكررة جديدة وعروض مُدارة.
· التعاون مع المبيعات وقيادة المجموعة لتعزيز موضع CNS في السوق الإقليمي والشراكات الاستراتيجية.
قيادة الفريق وتطوير القدرات:
· بناء وقيادة فرق عالية الأداء عبر دفاع سيبراني، وأمن هجومي، وأمن سحابي، وGRC، وحوكمة البيانات، وضمان الذكاء الاصطناعي.
· تحديد الهيكل التنظيمي المستهدف وتعيين القيادات الحاسمة، والوظائف التقنية والتسليم.
· دفع الشهادات المهنية، والتدريب، وتطوير المسيرة المهنية، والتخطيط للخلافة.
· مواءمة قدرات الفريق مع خط الأنابيب، وتقديم الخدمة، والنمو التجاري.
إدارة الأداء، الحوكمة ونموذج التشغيل:
· تعريف مؤشرات الأداء الرئيسية، ومستويات الخدمة، والاستخدام، وهامش الربح، وجودة الخدمة، ومقاييس رضا العملاء.
· وضع حوكمة وتقارير عبر المبيعات والتسليم وتقنية المعلومات والامتثال والبيانات والذكاء الاصطناعي والخدمات المدارة.
· رصد الأداء التشغيلي والمالي مقابل الأهداف التجارية المتفق عليها.
· تعزيز نموذج التشغيل وجودة التقديم والأتمتة وقابلية التوسع وتجربة العملاء بشكل مستمر.
المؤهلات
التعليم
- درجة البكالوريوس في الأمن السيبراني أو تكنولوجيا المعلومات أو المجال ذات الصلة
- درجة الماجستير في الأمن السيبراني/أمن المعلومات مرغوبة
الخبرة
- 15+ عامًا في الأمن السيبراني مع خمس سنوات على الأقل في مناصب قيادية
- الخبرة في MSSP/مُتكامل أنظمة (بيئة CNS-type) مرغوبة
معلومات إضافية
المهارات والقدرات
- • خبرة قوية في SOC، وSIEM، وEDR، وأمان السحابة، وأطر GRC
• الشهادات: CISSP، CISM، CISA، CEH، ISO 27001 Lead Implementer
الامتثال بالسياسات والإجراءات وفق معايير ISO المعتمدة من CNS.