Information Security Officer

1 day ago


Doha, Baladīyat ad Dawḩah, Qatar Lesha Bank Full time $60,000 - $120,000 per year

Lesha Bank is searching for the greatest talent and brightest minds to contribute to the current growth phase at our bank. We are looking for top-tier individuals who are passionate and hungry to add value from day one. Every day at Lesha is different, presenting a new challenge with the opportunity to contribute and grow. We are looking for an Information Security Officer (ISO).

Role Purpose

The Information Security Officer (ISO) will develop, implement, and oversee the bank's information security strategy, policies, and controls. The ISO ensures that the bank's data, systems, applications, and infrastructure are safeguarded against internal and external threats while complying with local regulatory requirements (QCB, QFCRA, NCSA-Q) and international standards (ISO 27001, NIST, GDPR, PCI-DSS).

Key Responsibilities

Governance & Compliance

  • Establish, maintain, and enforce the bank's information security framework in alignment with QCB, QFCRA, and local cybersecurity regulations.
  • Ensure compliance with international standards (ISO 27001, NIST CSF, COBIT, PCI-DSS) and conduct regular gap analyses.
  • Prepare and present security risk assessments and reports to senior management, regulators, and the Board Risk Committee.
  • Design, implement, and enforce security policies, procedures, and controls to safeguard the bank's infrastructure and data.

Security Operations

  • Oversee Security Operations Center (SOC) activities, incident response, and threat intelligence monitoring.
  • Develop and maintain business continuity, disaster recovery, and incident response plans.
  • Implement and monitor Data Loss Prevention (DLP), intrusion detection/prevention (IDS/IPS), endpoint protection, and other security tools.
  • Lead investigations of security breaches, develop mitigation strategies, and ensure lessons learned are integrated into policies and processes.
  • Conduct regular staff training on security awareness, best practices, and incident procedures.
  • Collaborate with IT and business teams to continuously enhance security culture and controls.

Risk Management

  • Conduct enterprise-wide risk assessments for systems, applications, vendors, and third-party service providers.
  • Identify vulnerabilities and ensure timely remediation through patch management and secure configurations.
  • Partner with IT and business units to integrate security into new products and initiatives.

Vendor & Technology Oversight

  • Evaluate and approve technology vendors, outsourcing partners, and cloud solutions for security compliance.
  • Manage penetration tests, vulnerability assessments, and external audits.

Requirements

  • Bachelor's degree in Information Security, Computer Science, or a related field. Master's degree preferred.
  • Professional certifications: CISSP or CISM required; CISA and ISO 27001 Lead Implementer preferred.
  • Cloud security certifications (e.g., CCSP, AWS Security) are a plus.
  • 8–12 years in information security, with at least 5 years in the financial-services sector.
  • Strong background in banking systems, digital channels, payment systems, and regulatory compliance.
  • Proven experience engaging with regulators (QCB, QFCRA, CMA, or equivalent).
  • Proven experience in implementing SIEM solutions and managing SOC teams.
  • Expertise in cybersecurity frameworks, network security, cryptography, and identity & access management.
  • Strong risk management, analytical, and problem-solving skills.
  • Excellent communication and stakeholder-management skills, capable of engaging effectively with regulators, auditors, and the Board.
  • Ability to influence across departments, drive a culture of security, and lead change initiatives without direct authority.


  • Doha, Baladīyat ad Dawḩah, Qatar Management Solutions International (MSI) Full time 90,000 - 120,000 per year

    LocationDoha, QatarExperienceJob TypeRecruitmentJob DescriptionInformation SecurityInformation Security ResponsibilitiesPrimary responsible for planning, coordinating, and organizing Information Security activities.Enforce and monitor the implementation and compliance with IT Information Security Policy.Develop and manage the implementation of Information...


  • Doha, Baladīyat ad Dawḩah, Qatar Mekdam Technical Services Full time $40,000 - $120,000 per year

    Job Role: Information Security Specialist (Application Security)Work location Government entityLocation: Doha, QatarJob Purpose Statement:We are looking for a skilled Professional for VAPT, Application Security, Offensive Security & compliance profile. The ideal candidate will have experience in Network basics, Security understanding of all OSI layers,...


  • Doha, Baladīyat ad Dawḩah, Qatar Tenet Healthcare US Full time 30,000 - 60,000 per year

    Information Security Audit AssistantJob SummaryThe Information Security Audit Assistant assists the company's information security department in conducting internal and external security compliance audits to ensure that the organization's IT systems, processes, and operations comply with relevant security standards and regulations. This position is suitable...


  • Doha, Baladīyat ad Dawḩah, Qatar Traffic-Tech Gulf Full time 120,000 - 180,000 per year

    About Traffic Tech:Traffic Tech (Gulf) W.L.L. is a leading provider of Intelligent Transportation Systems (ITS), Traffic Management, and Smart Solutions across the region. We take pride in delivering innovative, reliable, and secure technology solutions that support smart city initiatives and critical infrastructure projects in partnership with leading...


  • Doha, Baladīyat ad Dawḩah, Qatar ECCO Gulf Majorel Qatar Full time 90,000 - 120,000 per year

    Job DescriptionECCO Gulf Majorel Qatar is seeking an experienced Information Security Specialist to join our dynamic IT team in Qatar. As an integral part of our organization, you will be responsible for safeguarding our information systems and ensuring the confidentiality, integrity, and availability of our data. Your expertise will help us maintain a...


  • Doha, Baladīyat ad Dawḩah, Qatar Premium Solutions Consultancy Full time 120,000 - 180,000 per year

    Urgent Requirement A well-known IT Consultancy in Qatar is looking for suitable candidates to furnish the below position local with NOC, JOB Title: Information Security (ISMS) Consultants Nationality: Indian / Pakistan / Filipino Notice Period: Immediately Job Location: Qatar Job DescriptionOwn and successfully drive projects for ISO 27001, ISO...


  • Doha, Baladīyat ad Dawḩah, Qatar CLUSTER Full time

    Our company is currently in need of an Information Security Specialist to join our team with the following skills and qualifications:· Bachelor's degree in Information Technology or Cyber ​​Security· Professional Certifications Required + CompTIA Security: or CEH.· Desired Advanced Certifications: CISSP or CISM· At least 5 years of practical...


  • Doha, Baladīyat ad Dawḩah, Qatar Seaworks Co Full time 90,000 - 120,000 per year

    Qualifications:Bachelor's degree in Information Technology or Cybersecurity.Professional certifications such as CompTIA Security+ or CEH.Additional certifications such as CISSP or CISM are an advantage.Minimum of three years' experience in Information Security orCybersecurity.Experience with security tools such as Firewalls, DLP, EDR, and SIEM.Proficiency in...


  • Doha, Baladīyat ad Dawḩah, Qatar Traffic Tech (Gulf) Full time 120,000 - 180,000 per year

    Educational QualificationsBachelor's Degree / Master's in IT or a relevant discipline.Relevant certifications like CISSP, CEH, Security+, or specialized vendor certifications.Skills Required:Deep knowledge of network security, operating systems, cloud security principles, and cryptographic protocols. Hands-on experience with security tools like SIEM,...


  • Doha, Baladīyat ad Dawḩah, Qatar Traffic Tech (Gulf) W.L.L. Full time 80,000 - 120,000 per year

    Educational QualificationsBachelor's Degree / Master's in IT or a relevant discipline.Relevant certifications like CISSP, CEH, Security+, or specialized vendor certifications.Skills Required:Deep knowledge of network security, operating systems, cloud security principles, and cryptographic protocols. Hands-on experience with security tools like SIEM,...