Overview
We are looking for a detail-oriented and proactive Compliance and Certification Specialist with strong expertise in managing multi-standard compliance programs, ensuring audit readiness, and driving continuous improvement across enterprise security, IT service management, information security, privacy, Business continuity, cloud security QHSE, quality, The ideal candidate will be proficient in ISO standards (27001, 22301, 31000, 20000-1, 9001, 14001, 45001, 27017, 27018, 27701,38500,42001), SOC 2 Type 2 & type 1,CSA STAR level 2, PCI-DSS,FEDRAMP,DORA,GDPR,HIPAA and regulatory frameworks including NIST800, NESA,NCEMA, DESC, and FIPS. Familiarity with Internal controls, business continuity management, cloud compliance, data centre governance, and physical security is required.
Core42 is the UAE’s national-scale enabler for cloud and generative AI, combining G42 Group’s expertise across multiple technology disciplines into a single platform for public sector and large enterprise transformations. Building on our capabilities as sovereign cloud and HPC specialist, we bring generative AI, cybersecurity, professional and managed services expertise to enable national-scale program deployments across industries.
Key Responsibilities
- Support in implementation, and audit of ISO and regulatory certification programs across departments of core42
- Develop and maintain audit and compliance calendars aligned with internal and external certification schedules.
- Conduct risk assessments, internal audits, and facilitate external audits for above mentioned standards including any new requirements.
- Maintain documentation for SOC 2 Type 2 readiness and liaison with auditors for evidence collection and validation.
- Interpret and apply compliance requirements for above mentioned standards in a hybrid IT environment (cloud and on-prem).
- Assess and govern cloud platforms (e.g. AWS, Azure, including internal sovereign cloud) for compliance with cloud security controls.
- Support DC compliance audit for physical security, CCTV, fire protection, HSE, access control and environment monitoring systems.
- Ensure legal and regulatory compliance across data privacy, environmental, occupational health and food safety requirements.
- Perform compliance risk evaluations for third-party vendors and contractors and track remediation status.
- Develop training programs and deliver awareness campaigns for staff on ISO standards, BCMS, HSE, and data protection policies.
- Support policy and SOP development, version control, approvals, and dissemination across business units.
- Develop metrics, dashboards, and reports on compliance status, risks, audit outcomes, and corrective actions.
- Support technology and construction projects to ensure compliance considerations are integrated from design through execution.
- Coordinate closely with IT, operations, security HR, Facilities, and QHSE teams to ensure integrated compliance operations.
- Stay updated with the latest changes in standards, best practices, and legal regulations, and adjust compliance frameworks accordingly.
- Oversee Business Continuity Management System (BCMS) based on ISO 22301: conducting BIAs, developing BCPs, and ensuring continuity readiness.
- Coordinate annual disaster recovery and business continuity drills and ensure corrective actions are implemented.
- Integrate business continuity and crisis management elements into enterprise risk management and audit plans.
- Understanding technology related risk assessment criteria aligning to various information security domains
Qualifications & Skills
- Bachelor’s degree in information technology, Engineering, Environmental Science, or a related discipline.
- 6 to 10 years of experience in information security, Data centre, Cloud audit.
- Strong understanding of security frameworks and standards (e.g., NIST) and their application in risk assessments.
- Experience with compliance frameworks (ISO 27001, SOC 2) and regulatory requirements.
- Familiarity with cloud security best practices and platforms (AWS, Azure).
- Preferred certifications: ISO 27001/22301/31000 Lead Auditor/Implementor, CISA, CISM, PMP.
- Technology Infrastructure: understanding of enterprise IT infrastructure, networking, and Cloud, systems architecture
- Information Security (InfoSec): Expertise in security frameworks such as ISO 27001, NIST, SOC 2, DORA, FIPS, as well as advanced knowledge in encryption, firewalls, access controls, identity management, and incident response strategies.
- Cloud Platforms: Deep familiarity with cloud services (AWS, Azure, GCP) and their respective compliance standards (ISO 27017, 27018, SOC 2). Knowledge of cloud-native security tools, containerization (Docker, Kubernetes), and serverless architecture.
- Data Center Security: Understanding of Data Center Operations, physical security measures, environmental controls, and disaster recovery strategies.
- Business Continuity: Advanced knowledge of business continuity planning (BCP), disaster recovery (DR), and the implementation of BCMS as per ISO 22301.
- Project management skills and ability to coordinate cross-functional team & vendors
- Ability to work independently and under pressure while managing competing priorities.
- Proven track record of successfully managing certifications, audits, and compliance programs
What we look for
If you are a performance-driven, inquisitive mind with the agility to adapt to ambiguity, you will fit right in. You should be eager to explore opportunities to build meaningful collaborations with stakeholders and aspire to create unique customer-centric solutions. Bias for action and a passion to conquer new frontiers in the AI space is at the heart of the Core42 community.
What working at Core42 offers
Culture: An open, diverse and inclusive environment with a global vision that encourages personal growth and focuses on ground-breaking, industry-first innovations.
Career: Outstanding learning, development & growth opportunities via structured training programs and innovative, high-tech projects.
Work-Life: A hybrid work policy to strike the perfect balance between office and home.
Rewards: A competitive remuneration package with a host of perks including healthcare, education support, leave benefits and more.
If you can confidently demonstrate that you meet the criteria above, please contact us as soon as possible.