IT Cyber Security Head (Onsite)
KBR, Inc. · Bassorah
Job description
About the role
The Head of Cybersecurity leads the day‑to‑day cybersecurity function, managing operations and implementing security controls across the organisation’s IT and OT environments. The role provides technical leadership to a small team and ensures risks are identified, assessed, monitored and mitigated.
Key responsibilities
- Lead and manage the cybersecurity team, providing guidance, mentoring and performance management.
- Oversee Security Operations Centre (SOC) activities, monitoring alerts, incidents, vulnerabilities and threats.
- Direct incident response, containment and recovery, and conduct post‑incident reviews.
- Manage cybersecurity risk assessments, maintain the risk register and track remediation actions.
- Ensure compliance with cybersecurity standards, regulatory requirements and corporate policies.
- Review and approve security designs, support network segmentation and defense‑in‑depth strategies.
- Oversee identity and access management, privileged access controls and periodic access reviews.
- Lead vulnerability assessment and remediation programmes, reporting status and risk exposure.
- Assess third‑party supplier security risks and incorporate requirements into contracts.
- Develop and maintain cybersecurity awareness and training programmes, including phishing simulations.
- Prepare dashboards and reports for management, tracking KPIs and roadmap progress.
Required profile
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, Engineering or related discipline.
- Minimum 8–10 years of cybersecurity experience.
- 3–5 years of leadership or management experience in security operations, risk management, governance and architecture.
- Experience managing third‑party cybersecurity service providers.
- Relevant certifications such as CISSP, CISM, CRISC, ISO 27001 Lead Implementer or Lead Auditor.
Required skills
- SIEM and security monitoring platforms.
- Endpoint Detection and Response (EDR/XDR).
- Microsoft security technologies.
- Identity and Access Management and Privileged Access Management.
- Vulnerability management and remediation.
- Cloud security (Azure, AWS).
- Network security.
- OT/ICS cybersecurity.
- Security architecture principles.
- NIST Cybersecurity Framework and related standards.
- ISO 27001 and IEC 62443 standards.
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in Iraq.
Salaries by job title
Apply in 30 seconds
Enter your email to apply. An account will be created automatically.
By continuing, you accept our terms of use.
Already have an account? Login
Published 3 hours ago
Expires 1 month from now
2 views · 0 interested
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
KBR, Inc.
Bassorah