Light Grey Kablio Logo
Kablio AI
AI Turbo Recruiter
Want to hear how I work? Hit play.Kablio AI applies for you. You just show up to the interviewKablio AI helps you secure roles in construction, clean energy, facilities management, engineering, architecture, sustainability, environment and other physical world sectors.
3D Shield
Get hired, get rewarded!
Land a job through Kablio and earn a 5% salary bonus.
Exclusive benefits
5%Bonus
Tabreed

Specialist Information Security

Company logo
Tabreed
Develops and operates large‑scale district cooling systems for major infrastructure and communities.
Lead cyber security strategy, architecture, and risk reduction for enterprise IT/OT systems.
5d ago
Expert & Leadership (13+ years)
Full Time
Abu Dhabi, Abu Dhabi Emirate, United Arab Emirates
Office Full-Time
Company Size
1,100 Employees
Service Specialisms
District Cooling
Energy Efficiency Consultancy
Operations & Maintenance
Energy Audits
Retrofitting
Asset Replacement
Financing Services
Performance‑Based Contracts
Sector Specialisms
District Cooling
Energy Efficiency
Buildings
Government
Residential
Commercial
Industrial
Urban Development
Role
What you would be doing
security controls
threat prevention
risk reduction
security architecture
compliance reporting
vendor evaluation
  • Regularly review the operation of security controls and recommend changes designed to improve effectiveness and/or counter emerging risks
  • Development of threat prevention strategies
  • Make appropriate recommendations for security enhancements to the line manager or any external vendor providing services including tools, technologies, services, policies, procedures, and other areas as needed
  • Act as a liaison with the UAE regulatory authority, to validate cyber security performance meets or exceeds regulatory expectations for protection against the design basis threat.
  • Comply with Health, Safety and Environment Policies (mandatory for all)
  • Lead the evaluation of the potential impact of implementing difference cyber risk reduction methods (i.e., cyber security controls) with in the IT infrastructure.
  • Lead the development of a corrective action plan for achieving desired risk reduction and maturing program elements.
  • Act as the primary interface with the Tabreed stakeholders to architect the defensive model and implement cyber security controls across Tabreed IT & OT systems for desired risk reduction.
  • Assist in establishing key performance indicators to monitor changes in cyber risk.
  • Assist with designing the governance activities associated with ensuring compliance with Information Security Policies.
  • Provide an evaluation on current milestone delivery and regulatory compliance.
  • Lead the conduct of a cyber-security self-assessment initiatives based on international standard, national standards, and state of practice.
  • Regular generation of reports for executives and administrators
  • Participate in and lead design sessions with Finning personnel as well as external parties.
  • Maintain security guidelines, procedures, standards, and controls documentation
  • Consult on application or infrastructure development projects to harmonize systems or infrastructure.
  • Collaborate with other members of the cybersecurity team to develop new protocols, layers of protection, and other both proactive and defensive systems that stay one step ahead of cyber criminals.
  • Communicates with senior leadership on cyber security strategic issues and current risks.
  • Oversee compliance with applicable laws, rules, and regulations related to cyber and information security
  • Leads the creation of deliverables related to design and analysis of technology solution to ensure that solution meet business and operation needs.
  • Assess the Tabreed’s defensive strategy and the implementation of the cyber security program.
  • Manage budgets, maintain financial forecasts, develop, and present business cases
  • Develop and implement software security compliance program that takes a risk-based approach to ensure appropriate compliance to policies/standards/guidelines
  • Create solutions that balance business requirements with information and cybersecurity requirements
  • Lead the development of a risk management strategy to include a cyber security control implementation strategy for effective and sustainable risk reduction.
  • Work with multiple stakeholders to identify areas for cyber risk reduction on the IT Infrastructure and OT systems.
  • Monitor and ensuring compliance to standards, policies, and procedures.
  • Research new technology to determine what would best support their organization in the future
  • Design security architecture elements to mitigate threats as they emerge.
  • Follow the international framework designed to standardize the selection, planning, delivery, and maintenance of IT services within a business
  • Maintain a working knowledge of current cybercrime tactics.
  • Contribute to awareness and outreach efforts both internally and externally
  • Work with the compliance team to establish policies/standards/guidelines to ensure systems record user activities and access to sensitive data in support of insider risk management
  • Security systems development, testing, analysis, and implementation
  • Lead efforts to evaluate and select vendors for security assessments, penetration testing, and other similar security services
  • Coordinate & conduct black/white box security assessments with industry standard security tools
  • Design, Build, Implement and support an Enterprise-class security systems.
  • Work independently on technical issues and recommend design solutions.
  • Develop, support, and advance strategies, policies, programs, and projects designed to continually improve and enhance cyber and information security posture and resiliency
  • Analyse current risks and identify potential risks in responsibility
  • Lead the development of a risk reduction strategy for the protection of Tabreed critical systems and associated critical digital assets (CDAs).
  • Attend all regular, special, and emergency meetings regarding cyber and information security
  • Lead the analysis of the current technology environment to detect critical deficiencies and recommend solutions for improvement Conduct incident response analyses; develop.
  • Direct and oversee the evaluation of security tools and make acquisition recommendations to the IT Security Manager
  • Report the risk tailored to the relevant audience
  • Establish objectives and milestones and manage activities to deliver high-quality results within budget and schedule
  • Define high-level migration plans to address the gaps between the current and future state, typically in sync with the budgeting or other planning processes.
  • Build risk awareness amongst team by providing support and training
What you bring
cissp
azure
siem
threat intelligence
5+ years
bachelor’s
  • Response to security threats, attacks, and similar events
  • Experience in threat management and threat intelligence.
  • Exhibit excellent analytical skills and the ability to manage multiple projects under strict timelines as well as the ability to work well in a demanding, dynamic environment and meet overall objectives
  • Strong proficiency in Incident Management and Response.
  • Good understanding of Infrastructure Security and its impact on Security Operations, Vulnerabilities, Reporting, Analytics and Monitoring.
  • Experience with contract and vendor negotiations, and expertise in negotiating complex contracts and managing vendors, including design, and tracking of Service Level Agreements (SLAs)
  • Experience in security device management and SIEM.
  • In-depth knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management etc.
  • Risk Management (mandatory; line manager discretion)
  • Ability to quickly comprehend the functions and capabilities of new technologies
  • Demonstrate a solid understanding of infrastructure, virtualization, cybersecurity standards, and operating procedures.
  • Broad knowledge across all areas of the Technology Architecture domain including Cloud Computing (IaaS, PaaS, AWS, Azure etc.) Data Center, Data Storage Technologies, Virtualization, server platforms (Windows and Linux), Desktop, mobility solutions, systems monitoring/management, data protection, high availability/clustering, network (WAN/LAN/WLAN etc.), Security (Firewall, IDS/IPS, VPN etc.)
  • Due to nature of 24/7 operation may be required to work after hours or on weekend
  • Familiar with the basic principles of organizational change management, and understanding of how to apply these principles
  • Project management skills: financial/budget management, scheduling, and resource management
  • Knowledge of many, if not most, aspects of information security architecture Understanding of network and enterprise architecture Certifications: CISSP or CISM , Network and security , Microsoft Azure Administrator Certification and Industrial Cybersecurity
  • Ability to understand the long-term ("big picture") and short-term perspectives of situations
  • High level of personal integrity as well as the ability to professionally handle confidential matters and to show an appropriate level of judgment and maturity
  • Ability to estimate the financial impact of risk mitigation alternatives
  • Self-starter, accountability, and the ability to work with little supervision
  • Bachelor’s degree holder in Computer Science/Engineering or equivalent Knowledge
  • Hands-on experience running mission-critical cybersecurity operations
  • Minimum 5 years’ experience in Information Technology (IT) & Operational Technology (OT) Cyber security
  • Ability to develop a comprehensive understanding of Finning’s business, market and industry and relate that knowledge to identified operations and IT-related risks
  • Proven experience building a service-oriented organization and driving or promoting a service delivery model
  • Flexibility to work in shifts as required
Benefits
  • Limited travel to project sites
Training + Development
Information not given or found
Company
Overview
1999 District Cooling Plant
First Regional District Cooling Plant
Launched in Abu Dhabi, marking the beginning of significant infrastructure development in the region.
1.3 Million Refrigeration Tons
Cooling Capacity
Provides cooling solutions for iconic landmarks, showcasing advanced infrastructure capabilities.
2023 Geothermal Plant
Geothermal Cooling Innovation
Launched a geothermal cooling plant, leading the way in sustainable energy solutions.
  • Grew from a 3-person startup to a publicly listed company owning and operating over 90 plants across multiple countries including UAE, Saudi Arabia, Oman, Bahrain, India, and Egypt.
  • Financially solid and publicly traded on Dubai Financial Market, supports major regional expansions via sukuk and bond issuances.
  • Expertise spans design, build, operation, and maintenance of district cooling networks, often integrated with projects like metros, malls, hospitals, and mixed-use complexes.
  • Innovates with AI control systems and renewable-energy trials.
Culture + Values
  • Prioritize health, safety, and environmental responsibility in all operations.
  • Strive to exceed customer expectations by providing reliable, sustainable solutions.
  • Act with honesty and transparency in every aspect of business.
  • Pursue continuous improvement in performance, products, and services.
  • Embrace new technologies and ideas to drive growth and efficiency.
  • Foster a culture of teamwork and shared responsibility.
Environment + Sustainability
1.7 Million Tons CO2 Saved
Annual Emissions Reduction
Reduction in carbon emissions achieved through efficient district cooling systems.
  • Committed to achieving Net Zero emissions by 2050.
  • Utilizes energy-efficient district cooling systems.
  • Focus on renewable energy sources for cooling networks.
  • Operates with sustainable practices in UAE's built environment.
Inclusion & Diversity
Big Kablio Logo
Kablio AIIf you're someone who helps build and power the world (or dreams to), Kablio AI is your pocket-sized recruiter that gets you hired.
Copyright © 2025 Kablio