وظائف GIS في مصر
١٨٧ وظائف شاغرة
Company Description Competent HR Consultancy provides smart, reliable HR outsourcing solutions tailored to the specific needs of each client. Since launch, the firm has supported over 80 clients across multiple industries, building long-term relationships through quality, speed, and competitive pricing. Clients frequently refer new partners, reflecting trust in Competent’s focus on measurable results rather than standard services. The team prioritizes understanding each organization, adapting to its context, and delivering targeted HR solutions. Competent grows client teams through a commitment to excellence instead of advertising. Role Description The Geographic Information System (GIS) Specialist is a full-time, on-site role based in Cairo. The specialist will manage, analyze, and visualize geospatial data to support client projects and internal decision-making. Daily responsibilities include collecting and organizing spatial datasets, creating and updating maps, running spatial analyses, and maintaining GIS databases and related documentation. The role also involves collaborating with project teams to translate business requirements into GIS workflows, preparing clear reports and visual outputs, and ensuring data accuracy and integrity. The GIS Specialist will support continuous improvement of GIS tools, standards, and processes to enhance service quality. Qualifications Strong Analytical Skills to interpret geospatial information, identify patterns, and support data-driven decisions. Proficiency in Geographic Information Systems (GIS) software and tools for spatial analysis and visualization. Experience in Data Management, including organizing, cleaning, and maintaining spatial and non-spatial datasets. Ability to work with Geospatial Data and create accurate, clear Maps for technical and non-technical stakeholders. Bachelor’s degree in Geography, GIS, Environmental Science, Engineering, Computer Science, or a related field. Familiarity with spatial databases (e.g., Post GIS), mapping tools (e.g., Arc GIS, QGIS), and basic scripting or automation is an advantage. Strong communication skills, attention to detail, and ability to collaborate effectively in cross-functional teams. Experience working on location-based projects or consulting assignments is beneficial.
توسع شركة Distance Infra (DI) فريقها المهني وتبحث حالياً عن أخصائي نظم معلومات جغرافية (GIS) ذي خبرة ودافعية عالية للانضمام إلى مكتبنا في زهراء المعادي، القاهرة. سيلعب المرشح الناجح دوراً رئيسياً في دعم مشاريع البنية التحتية والهندسية الخاصة بنا من خلال الإدارة الفعالة للبيانات المكانية، والتحليل المتقدم لنظم المعلومات الجغرافية، ورسم الخرائط، وتطوير حلول جيومكانية موثوقة. سيتضمن المنصب أيضاً تنسيقاً وثيقاً مع فرق الهندسة ونمذجة معلومات البناء (BIM) متعددة التخصصات لضمان دمج بيانات نظم المعلومات الجغرافية بدقة في سير عمل المشروع ودعم اتخاذ القرارات المستنيرة.
Install, configure, and troubleshoot Windows operating systems and business applications. Manage user accounts, permissions, and group policies in Active Directory. Manage day-to-day operations of servers, networks, and storage systems. Track, manage, and audit all hardware and software assets (ITAM) across the organization. Execute qualification activities for infrastructure components per GXP and GAMP 5 standards. Respond to infrastructure incidents promptly, ensuring MTTR < 2 hours. Implement infrastructure security measures, network segmentation, and patch management. Ensure 100% completion of scheduled backups and participate in disaster recovery drills. Support network connectivity, printers, shared folders, and corporate applications. Monitor and maintain IT infrastructure, including servers and network devices. Perform routine system maintenance, updates, and patch management. Assist in backup and restore operations and verify backup success. Install and support endpoint security solutions (e.g., antivirus/EDR). Document incidents, solutions, and standard operating procedures (SOPs). Escalate complex technical issues to senior IT staff when required. Ensure compliance with IT security policies and company standards. Participate in IT projects, deployments, and infrastructure upgrades. Train and enable end-users on how to effectively utilize core business applications and office productivity tools (e.g., MS Office suite). Demonstrate proficiency in AI tools—specifically Microsoft Copilot Pro—and actively educate staff on leveraging AI features across Microsoft Office applications and Microsoft Teams to enhance overall workflow efficiency.<br>Qualifications, experience and skills required Bachelor’s degree in computer science, Information Technology, or a related field. Years of experience in IT Support or System Administration (2–4 years). Good knowledge of Windows 10/11 and Windows Server. Basic understanding of Active Directory, DNS, DHCP, and Group Policy. Basic networking knowledge (TCP/IP, VLANs, Routing, Switching). Familiarity with Microsoft 365 and Outlook. Experience with troubleshooting hardware, software, and printer issues. Basic knowledge of virtualization technologies (VMware/Hyper-V) is an advantage. Basic understanding of backup solutions and cybersecurity concepts is a plus. Strong problem-solving and analytical skills. Good communication skills and customer-oriented attitude. Ability to work independently and as part of a team. Good command of written and spoken English.
<p>نحن نبحث عن مهندس برمجيات متكامل (Full Stack) موهوب متخصص في أنظمة معلومات الرعاية الصحية للانضمام إلى فريقنا التقني.</p><p> </p><p>المرشح المثالي يجب أن يمتلك مهارات قوية في تطوير البرمجيات المتكاملة إلى جانب خبرة عملية في تطبيقات الرعاية الصحية، والسجلات الطبية الإلكترونية، وسير عمل الرعاية الصحية، وتكامل الأنظمة.</p><p> </p><p>ستكون مسؤولاً عن تصميم وتطوير ودمج وصيانة تطبيقات الرعاية الصحية الآمنة والقابلة للتوسع، مع العمل عن كثب مع مهندسي البرمجيات وأخصائيي الرعاية الصحية وفرق المنتجات ومزودي التكنولوجيا الخارجيين.</p><p> </p><p> </p><p>## المسؤوليات الرئيسية</p><p>* تصميم وتطوير وصيانة تطبيقات رعاية صحية حديثة تعتمد على الويب (Frontend و Backend).</p><p>* تطوير واجهات برمجة تطبيقات (RESTful APIs) وخدمات خلفية آمنة وقابلة للتوسع.</p><p>* بناء واجهات مستخدم متجاوبة وسهلة الاستخدام باستخدام أطر عمل برمجية حديثة.</p><p>* تطوير تطبيقات الجانب الخلفي (Backend) باستخدام أحدث التقنيات.</p><p>* تصميم وتحسين قواعد البيانات الارتباطية، واستعلامات SQL، والإجراءات المخزنة، ونماذج البيانات.</p><p>* دمج تطبيقات الرعاية الصحية مع أنظمة EMR و EHR و HIS و LIS و RIS/PACS و ERP وأنظمة التأمين وغيرها من أنظمة الرعاية الصحية.</p><p>* تطوير وصيانة عمليات التكامل باستخدام معايير HL7 و FHIR و REST APIs و JSON و XML وخدمات الويب.</p><p>* المشاركة في مشاريع التشغيل البيني للرعاية الصحية وتبادل البيانات مع المنصات الخارجية.</p><p>* فهم سير عمل الرعاية الصحية بما في ذلك تسجيل المرضى، والمواعيد، والوثائق السريرية، والسجلات الطبية، والفواتير، والتأمين، وسير عمل المختبرات/الأشعة.</p><p>* تنفيذ ضوابط أمنية مناسبة لمعلومات الرعاية الصحية ومعلومات المرضى الحساسة.</p><p>* كتابة كود نظيف وقابل للصيانة والاختبار وموثق بشكل جيد.</p><p>* إجراء مراجعات الكود والاختبار وتصحيح الأخطاء وتحسين الأداء.</p><p>* استكشاف الأخطاء وإصلاحها في بيئة الإنتاج وإجراء تحليل الأسباب الجذرية.</p><p>* المشاركة في مناقشات الهندسة والتصميم التقني.</p><p>* التعاون مع أخصائيي الرعاية الصحية وأصحاب المصلحة في الأعمال لتحويل المتطلبات السريرية والتشغيلية إلى حلول تقنية.</p><p>* إعداد الوثائق التقنية ومواصفات واجهة برمجة التطبيقات (API) وخرائط البيانات ووثائق التكامل.</p><p>* مواكبة تكنولوجيا الرعاية الصحية ومعايير التشغيل البيني والممارسات الأمنية والتقنيات الناشئة.</p><p> </p><p> </p><p> </p><p>## المؤهلات المطلوبة</p><p>* درجة البكالوريوس في علوم الحاسب، أو هندسة البرمجيات، أو تكنولوجيا المعلومات، أو معلوماتية الرعاية الصحية، أو مجال ذي صلة.</p><p>* خبرة مهنية في تطوير البرمجيات تتراوح من 3 إلى 7 سنوات، مع خبرة كبيرة في التطوير المتكامل (Full Stack).</p><p>* معرفة قوية بتقنيات الواجهة الأمامية والخلفية:</p><p> * Python</p><p> * React</p><p>* خبرة قوية في SQL وقواعد البيانات الارتباطية.</p><p>* خبرة في واجهات برمجة التطبيقات (RESTful APIs) وتكامل أنظمة الطرف الثالث.</p><p>* فهم قوي لهندسة البرمجيات وأنماط التصميم وأمن التطبيقات.</p>
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Description</span><br><span></span><p>1.Design, Implement & maintain Cloud Security Measures for public/private Cloud Infrastructure Platforms. This includes Securing Virtual Machines, storage Systems, Networks or Cloud Resources. </p><br><p>2.Develop and maintain security baselines for all information systems and ensure regular maintenance and update of all baselines inventory bank wide.</p><br><p>3.Perform regular baseline scans or reviews as applicable to ensure compliance with the developed security baselines and follow up on mitigating the identified gaps/findings</p><br><p>4.Support the implementation of the different security projects and initiatives through defining the necessary security requirements in full alignment with the security policies and industry requirements.</p><br><p>5.Contribute to the design and implementation of security controls & technologies including but not limited to firewalls, intrusion detection/prevention systems, access controls and cryptographic mechanisms to strengthen the bank security posture</p><br><p>6.Conduct comprehensive reviews for security controls & configurations in alignment with Banks’ policy, compliance & regulation mandates and industry best practices</p><br><p>7.Effectively participate in the change and release management process to ensure adequate security controls are applied before go-live</p><br><p>8.Review and approve access control requests over different technology platforms/ and network security infrastructure to ensure adequate application of the approved security policies (e.g., Firewall rules change review).</p><br><p>9.Participate in the new server provisioning process to ensure conducting the needed security checks and ensure closure of any identified gaps before production deployment.</p><br><p>10.Ensure proper management and enforcement of privileged accounts over different technology layers (Operating System, Database, Application) including account designation, and implementation of privileged access control requirements. </p><br><p>11.Review and approve privileged access related requests including but not limited to (generic accounts creation, PAM access, access to existing accounts, etc.). </p><br><p>12.Assess and provide recommendations for IT & Cyber security policy deviation requests and ensure proper tracking of the same.</p><br><br> <br> <span>Qualifications</span><br><span></span><p>Qualifications & Experience</p><br><p>Bachelor's degree in Computer Science, Information Security, or a related field. A master's degree is preferred. </p><br><p>3-5 (5-8 for the senior) years of proven experience in security domains</p><br><p>Strong knowledge of Operating Systems Principals, secure design principles, and common security vulnerabilities</p><br><p>Has strong technical experience and knowledge of several cyber security technologies including firewalls, IDS/IPS, DLP, End Point Security, Data Encryption, Database Security, Web/Email Filtering vulnerability scanners, code analysis tools, etc.</p><br><p>Knowledge of industry regulations and standards such as CIS benchmark, ISO 27001, NIST, OWASP, etc.</p><br><p>Experience conducting security assessments, vulnerability testing, and risk assessments.</p><br><p>Mandatory Certification:</p><br><p>CISSP</p><br><p>CCSP or CCSE</p><br><p>Technical Certification ex. Cisco, Palo Alto, F5, etc.</p><br><p>Recommended Certification:</p><br><p>CISM</p><br><p>CSSLP</p><br><p>CEH</p><br><p>Security+</p><br><p>GIAC Certificates</p><br><p>Skills</p><br><p>Strong communication and presentation skills</p><br><p>Strong problem-solving and analytical skills</p><br><p>Proficient verbal and written English</p><br><p>Time Management skills</p><br><br> </div>
<p>الهدف من هذا المنصب هو المساءلة عن تنفيذ النظام وصيانته لدى Coptic Orphans. وتتضمن الوظائف اللازمة العمل كأول مستوى دعم للمشكلات والاستفسارات؛ تتبُّع بنية تصميم الأنظمة؛ ضمان توفر أنظمة Coptic Orphans وموثوقيتها وقابليتها للتوسع.</p><p>تحليل وتصميم وتنفيذ جميع أتمتة الأنظمة اللازمة لضمان قدرة المستخدمين على أداء مسؤولياتهم المرتبطة بالنظام بأقل جهد ووقت ممكن</p><p>إدارة Salesforce CRM بما في ذلك طلبات الدعم واحتياجات الإدارة المرتفعة المستوى للمستخدمين من خلال توفير حل سريع وكامل للتحديات التقنية ومشكلات دعم الأعمال</p><p>العمل كأول مستوى دعم للمشكلات والاستفسارات القادمة من العملاء الداخليين والخارجيين</p><p>إدارة ملفات تعريف المستخدمين والأدوار، والأذونات، وإعدادات الأمان في Salesforce. إنشاء وصيانة كائنات مخصصة، حقول، جداول عمل، قواعد التحقق، ومكونات Salesforce الأخرى.</p><p>إجراء استكشاف الأخطاء بحسب الحاجة، قيادة جهود حل المشكلات، وإشراك بائعين خارجيين وموظفي دعم آخرين و/أو منظمات إذا لزم الأمر</p><p>ضمان التوافر العالي ومستويات أداء مقبولة للأنظمة الحرجة للمهمة</p><p>إجراء استيراد البيانات وتصديرها وتحديثات جماعية في Salesforce. إنشاء وصيانة التقارير ولوحات التحكم لتوفير رؤى ذات مغزى للمساهمين.</p><p>معالجة تذاكر الدعم المقدمة من العملاء الداخليين والخارجيين، تشغيل الموقع، إدارة الأجهزة المحمولة، إلى آخره.</p><p>إعداد عملي لميزات جديدة وموجودة في "Salesforce.com" بما في ذلك إدارة المستخدمين، الأدوار/الملفات، مجموعات الأذونات، الكائنات المخصصة، تخطيطات الصفحات الجديدة، الحقول المخصصة، حقول الصيغ، التحقق من الصحة، قواعد جداول العمل، قوالب البريد الإلكتروني، Process Builder، وFlows</p><p>إجراء رصد استباقي للنظام لتحديد أي مشاكل في الأداء و/أو اتساق البيانات</p><p><strong>الملف الشخصي المثالي للمرشح</strong></p><ul><li>درجة البكالوريوس في هندسة الحاسوب، علوم الحاسوب، إدارة نظم المعلومات، أو مجالات ذات صلة</li><li>1 - 3 سنوات من الخبرة المهنية ذات الصلة</li><li>قدرات قوية في إدارة تصميم ونظام CRM مع مهارات استكشاف أخطاء ممتازة، خبرة Salesforce CRM ميزة إضافية</li><li>خبرة قوية في دور مدير قاعدة بيانات</li><li>معرفة قوية بأنظمة الكائنات الموجهة وتصميمها العلاقي</li><li>معرفة ممتازة بتحليل البيانات وتصوير البيانات</li><li>مهارات قوية في حل المشاكل وإدارة الوقت</li><li>القدرة على جمع وتحليل وعرض المعلومات والبيانات الرقمية بشكل فعال وبمستوى دقة وشمولية عالٍ في جميع الواجبات</li></ul>
وصف الشركة<br><br>تأسست الجامعة الأمريكية بالقاهرة عام 1919، وانتقلت في عام 2008 إلى حرم جامعي جديد متطور يمتد على مساحة 270 فداناً في القاهرة الجديدة. كما تواصل الجامعة عملياتها في مرافقها التاريخية بوسط المدينة، حيث تقدم فعاليات ثقافية ودراسات عليا وبرامج التعليم المستمر. يتوفر سكن للطلاب في حرم القاهرة الجديدة. تُعد الجامعة الأمريكية بالقاهرة من بين الجامعات الرائدة في المنطقة، وهي حاصلة على اعتماد لجنة الولايات الوسطى للتعليم العالي (Middle States Commission on Higher Education)، كما حصلت كلية إدارة الأعمال بها على اعتماد جمعية تطوير كليات إدارة الأعمال (AACSB)، ورابطة ماجستير إدارة الأعمال (AMBA)، ونظام تحسين الجودة الأوروبي (EQUIS). تضم مكتبات الجامعة الأمريكية بالقاهرة أكبر مجموعة بحثية باللغة الإنجليزية في المنطقة، وهي جزء حيوي وفعال من سعي الجامعة نحو التميز في جميع البرامج الأكاديمية والبحثية. الجامعة الأمريكية بالقاهرة هي مؤسسة تعليمية لغتها الأساسية هي الإنجليزية. يتم تحديد راتب أعضاء هيئة التدريس ودرجاتهم الوظيفية بناءً على المؤهلات والخبرة المهنية. ووفقاً لسياسات وإجراءات الجامعة، يتمتع أعضاء هيئة التدريس بمزايا سخية.<br><br>نبذة عن كلية أونسى ساويرس لإدارة الأعمال<br><br>تعود جذور كلية أونسى ساويرس لإدارة الأعمال إلى عام 1947، حين تم طرح أول شهادة في الاقتصاد في مصر. حصلت الكلية على اعتماد جمعية تطوير كليات إدارة الأعمال (AACSB) منذ عام 2006، واعتماد نظام تحسين الجودة الأوروبي (EQUIS) من المؤسسة الأوروبية للتنمية الإدارية (EFMD)، واعتماد رابطة ماجستير إدارة الأعمال (AMBA) منذ عام 2014، لتصبح ضمن 1% من كليات إدارة الأعمال في العالم الحاصلة على "الاعتماد الثلاثي". الكلية عضو في التحالف العالمي للتعليم الإداري (CEMS) والشبكة العالمية للإدارة المتقدمة (GNAM). في عام 2024، صنفت مؤسسة "إيدونيفرسال" (Eduniversal) الكلية كأفضل كلية في أفريقيا للعام الثامن على التوالي، وصنفتها صحيفة "فاينانشال تايمز" في المرتبة 73 عالمياً في برامج التعليم التنفيذي المفتوحة. تقدم الكلية ست درجات بكالوريوس، تشمل: الاقتصاد، والمحاسبة، والتسويق، والمالية، وإدارة تكنولوجيا المعلومات والاتصالات، وريادة الأعمال. بالإضافة إلى ذلك، تقدم الكلية ست درجات للدراسات العليا في الاقتصاد، والتنمية الاقتصادية، والمالية، والإدارة الدولية، بالإضافة إلى برامج ماجستير إدارة الأعمال (MBA) وماجستير إدارة الأعمال التنفيذي (EMBA). تضم الكلية 8 مراكز بحثية وتنموية، منها مركز الوصول للمعرفة من أجل التنمية، ومركز ريادة الأعمال والابتكار، ومختبر المشاريع (Venture Lab)، ومركز الخزندار لبحوث إدارة الأعمال ودراسات الحالة. للمزيد من المعلومات عن الكلية: business.aucegypt.edu.<br><br>الوصف الوظيفي<br><br>تعلن كلية أونسى ساويرس لإدارة الأعمال بالجامعة الأمريكية بالقاهرة عن فتح باب الترشح والتقديم لشغل وظيفة عضو هيئة تدريس في قسم هيكل للإدارة في تخصص نظم معلومات الإدارة (أستاذ مساعد/ مشارك/ أستاذ)، وذلك بعقد محدد المدة لمدة أربع سنوات، يبدأ في خريف 2027. يُتوقع من المرشح الناجح المساهمة في تدريس مقررات نظم معلومات الإدارة في مرحلتي البكالوريوس والدراسات العليا وبرامج ماجستير إدارة الأعمال. يجب أن يكون المرشح مشاركاً بفعالية في البحث العلمي للحفاظ على اعتماد (AACSB)، وأن يمتلك فهماً عميقاً للتطورات والاتجاهات الناشئة في تكنولوجيا المعلومات والاتصالات، بالإضافة إلى إدارة نظم المعلومات. يبحث قسم هيكل للإدارة عن مرشح استثنائي يكمل أبحاثه نقاط القوة الموجودة في القسم، مع تجاوز الأبحاث التقليدية في مجال نظم معلومات الإدارة. يُتوقع من المرشح تطوير محفظة بحثية ذات مستوى عالمي وبناء فريق بحثي متنوع بالتعاون مع شركاء الأعمال والصناعة، مع التركيز على معالجة القضايا المتعلقة بالأسواق الناشئة، خاصة في منطقتي الشرق الأوسط وأفريقيا. كما يُتوقع من المتقدمين المشاركة في الخدمات الأكاديمية وتنمية المجتمع بما يتماشى مع مهام التدريس والبحث، بما في ذلك الأنشطة المستمرة في القسم، وتنفيذ مشاريع تطويرية. يجب أن يكون جميع أعضاء هيئة التدريس على استعداد لتدريس المقررات التمهيدية.<br><br>المسؤوليات الرئيسية<br><br>البحث والمنح الدراسية<br><br>قيادة برنامج بحثي عالمي المستوى في مجال نظم معلومات الإدارة وتأثيراتها على الأعمال. تأمين تمويل خارجي تنافسي لاستدامة المبادرات البحثية وتوسيعها. إجراء أبحاث ذات تأثير ملموس. النشر في دوريات أكاديمية مرموقة وتقديم الأوراق البحثية في المؤتمرات الدولية الرائدة.<br><br>التدريس والتوجيه<br><br>تطوير مناهج مبتكرة للبكالوريوس والدراسات العليا تدمج التقنيات الناشئة واتجاهات الصناعة في نظم معلومات الإدارة وتطبيقاتها في الأعمال والاقتصاد. مواءمة الدرجات العلمية مع متطلبات السوق المتغيرة. تقديم مقررات الدراسات العليا والجامعية في نظم معلومات الإدارة والتخصصات ذات الصلة. الإشراف على طلاب الدراسات العليا وتوجيههم. تقديم التوجيه لأعضاء هيئة التدريس.<br><br>القيادة المؤسسية<br><br>العمل كمحفز للبحوث متعددة التخصصات عبر الأقسام والكليات والشركاء الخارجيين. المساهمة في التخطيط الاستراتيجي لمبادرات نظم معلومات الإدارة على المستوى المؤسسي. تمثيل الكلية والجامعة في المحافل الوطنية والدولية، وتعزيز سمعتها العالمية، والارتقاء بمستوى التعاون.<br><br>المشاركة المجتمعية والصناعية<br><br>بناء شراكات مع قطاعات الصناعة والحكومة والمجتمع المدني لتحويل الأبحاث إلى تأثير ملموس على أرض الواقع. المشاركة في النقاشات العامة حول نظم معلومات الإدارة وتأثيراتها المجتمعية. دعم برامج التوعية التي توسع نطاق المشاركة في تعليم نظم معلومات الإدارة. التعاون مع قطاع الصناعة لتصميم مشاريع بحثية تطبيقية.
Müller's Solutions, a leading technology consulting firm, is seeking a skilled and experienced GIS Product Manager to join our team. In this role, you will be responsible for driving the strategic development, implementation, and management of our GIS solutions. You will collaborate with stakeholders, including clients, development teams, and senior management.<br><br> Experience in the full scope of product management in GIS and utility and infrastructure Ability to develop and execute long-term product strategies Experience working in a dynamic, fast-paced environment Demonstrated experience in leading cross-functional teams, with the ability to influence without authority Strong written and verbal communication skills, with the ability to articulate complex concepts to diverse audiences and<br><br>effectively engage with stakeholders at various levels.<br><br> Prefer to have experience in city utility and infrastructure<br><br>Requirements<br><br>Bachelor's degree in Computer Science, Geographical Information Systems, or a related field<br><br>Proven experience as a GIS Product Manager or in a similar role<br><br>In-depth knowledge of GIS concepts, tools, and technologies<br><br>At least 12 years of work experience in product management or related technical roles, preferably in a GIS context<br><br>Benefits<br><br>1- Attractive Package.<br><br>2- Family Benefits.<br><br>3- Visa.<br><br>4-Air Tickets.
Company Description Groovy Aesthetic Clinics is dedicated to helping clients feel good inside and out by providing comprehensive, medical-grade spa and aesthetic services for the entire body. The clinic offers a wide range of treatments, including advanced skin-care procedures such as dermal fillers and laser treatments, as well as nutritional services, spa therapies, and a modern gym. All services are supervised by experienced doctors and medical professionals, ensuring safe, effective, and medically sound procedures. Groovy maintains the same level of professionalism and medical standards as leading clinics and hospitals, while creating a relaxing and comfortable atmosphere. The team is committed to supporting client confidence and overall well-being.<br>Role Description The Medical Information Services professional will provide accurate, evidence-based information about Groovy’s medical and aesthetic services to clients, staff, and other stakeholders. Day-to-day responsibilities include answering medical inquiries, explaining treatment options and procedures in clear, accessible language, and supporting informed consent processes. The role involves collaborating with medical staff to update educational materials, ensuring consistency with clinical guidelines and regulatory requirements, and maintaining thorough documentation of interactions and information requests. Additional tasks may include training front-line staff on medical communications, supporting quality assurance initiatives, and contributing to patient education campaigns. This is a full-time, on-site role based at Groovy Aesthetic Clinics in Cairo.<br>Qualifications<br> Candidates should possess strong Communication and Medical Communications skills for clear, accurate, and empathetic information delivery. Candidates should possess solid knowledge of Medicine and Medical Affairs to understand clinical practices, aesthetic treatments, and relevant guidelines. Candidates should possess a background in Pharmacy or a related health science to interpret medical information, treatment protocols, and product details. Relevant qualifications such as a degree in medicine, pharmacy, nursing, or another healthcare field are highly beneficial. Strong organizational skills, attention to detail, and the ability to manage multiple inquiries and documentation simultaneously. Proficiency in written and spoken English; Arabic language skills are a strong advantage for local communication in Cairo. Experience in aesthetic medicine, medical clinics, or spa/dermatology settings is preferred. Commitment to ethical standards, patient confidentiality, and collaborative teamwork within a multidisciplinary clinical environment.
Company Description Groovy Aesthetic Clinics is dedicated to promoting holistic well-being, helping clients feel good both inside and out. The clinic offers state-of-the-art, medical-grade spa and aesthetic services that cover the full body, including advanced skin-care treatments, nutritional services, spa therapies, and access to a modern gym. Groovy operates with a medical standard comparable to clinics and hospitals, with all services supervised by experienced doctors and medical professionals to ensure effective and safe procedures. The environment is designed to be relaxing and comfortable, supporting clients in building self-confidence and enhancing their overall quality of life.<br>Role Description The Medical Information Agent at Groovy Aesthetic Clinics is a full-time, on-site role based in Cairo. This role is responsible for providing clear, accurate information to clients and prospective clients about available aesthetic and medical-grade spa services, procedures, and pre- and post-treatment guidelines. The agent responds to inquiries via phone, email, and in person, supports appointment booking and follow-up communication, and ensures that clients understand treatment options and clinic policies. Daily tasks include maintaining up-to-date knowledge of Groovy’s services, coordinating with medical staff to clarify clinical information, documenting client interactions in the clinic’s systems, and supporting a welcoming, professional front-desk atmosphere. The agent also assists in collecting feedback, sharing common client questions with management, and supporting patient education materials as needed.<br>Qualifications<br> Candidates should possess strong communication and interpersonal skills, including clear spoken and written English and Arabic, active listening, and the ability to explain medical information in simple terms. Candidates should possess customer service and client-care skills, such as empathy, professionalism, conflict resolution, and the ability to maintain a calm, reassuring presence. Candidates should possess administrative and organizational skills, including appointment scheduling, data entry, record-keeping, and basic computer literacy (email, office software, clinic systems). Candidates should possess basic medical and aesthetic services knowledge or a willingness to learn, with an understanding of spa, dermatology, and cosmetic procedures under clinical supervision. Candidates should possess problem-solving and collaboration skills, including the ability to coordinate with medical staff, follow protocols, and manage multiple inquiries efficiently. Relevant qualifications such as a diploma or bachelor’s degree in a healthcare, nursing, pharmacy, or related field are beneficial. Prior experience in a clinic, hospital, or medical spa environment is an advantage. Ability to work flexible shifts, maintain confidentiality of client information, and adhere to safety and quality standards is required.
Company Description Groovy Aesthetic Clinics is dedicated to promoting well-being inside and out, offering medical-grade spa and aesthetic services for the whole body. The clinic provides a wide range of treatments, from advanced skin-care procedures such as derma fillers and laser therapies to nutritional counseling, spa services, and a modern gym. All services are delivered under the continuous supervision of experienced physicians and medical professionals, ensuring safety and medical-level standards of care. Groovy is committed to creating a relaxing, comfortable environment where clients can feel confident and cared for. The clinic’s culture values professionalism, client safety, and helping individuals build lasting self-confidence. Role Description This is a full-time, on-site role based at Groovy Aesthetic Clinics in Cairo. The medical information center team member will serve as a key point of contact for clients seeking information about medical-grade aesthetic services, procedures, and aftercare. Daily responsibilities include responding to client inquiries in person and by phone, explaining treatment options based on medical guidance, and ensuring accurate, clear communication of medical information approved by the clinic’s physicians. The role also involves maintaining up-to-date knowledge of Groovy’s services, assisting with appointment coordination, supporting patient education materials, and documenting client interactions in line with clinic policies. Collaboration with doctors, nurses, and administrative staff is essential to deliver a safe, informed, and reassuring experience for every client. Qualifications Candidates should possess strong Communication skills, including clear verbal and written communication and active listening. Candidates should possess foundational knowledge in Medicine and Pharmacy to understand and relay medically sound information. Candidates should possess Medical Communications and Medical Affairs skills to handle patient information, educational materials, and treatment explanations accurately. Candidates should have strong customer service and interpersonal skills, with a client-centered approach and professional demeanor. Candidates should have the ability to collaborate with multidisciplinary medical teams and follow clinical protocols and ethical standards. Relevant education such as a degree or diploma in medicine, pharmacy, nursing, or a related health science field is preferred. Prior experience in a clinic, hospital, medical call center, or aesthetic/dermatology setting is an advantage. Proficiency in basic office software, record-keeping, and comfortable working in a fast-paced, patient-facing environment is beneficial.
<h2 class="h5">Job description</h2>
<div class="t-break" data-jb-field="description">
<span>Description</span><br><span></span><p>1.Ensure proper security controls are enforced across the different systems based on the identified systems’ criticality.</p><br><p>2.Review and recommend updates to the bank’s IT & Cyber security policy, relevant processes, procedures and guidelines.</p><br><p>3.Participate in the security gap and threat assessments post globally/locally identified security incidents/threats and ensure the effective implementation of action plans with the relevant stakeholders. </p><br><p>4.Support the implementation of the key strategic business initiatives and projects through following the secure software acquisition life cycle including specifying the confidentiality, integrity, and availability requirements, addressing security requirements throughout the acquisition of new systems and performing proper risk assessment prior to releasing new systems to production.</p><br><p>5.Review new technologies and changes to existing technologies for vendor acquired solutions to ensure proper information security requirements/controls and compliance with relevant security policies and compliance mandates.</p><br><p>6.Validate the security requirements to ensure the proper management of test data on development and test environments according to the set test data management strategy and in alignment with the developed security policies.</p><br><p>7.Develop and maintain threat modelling strategy and procedures for the purpose of optimizing the infrastructure and network security through identifying clear objectives and developing countermeasures to prevent or mitigate the impacts of cybersecurity attacks/threats on the environment.</p><br><p>8.Provide updates on the different Security KRIs, RAIs and RCSA and develop an action plan to mitigate those risks to be reported to the Security & Technology Risk Management Team for tracking.</p><br><p>9.Conduct the different security assessments for vendors and third Parties providing critical services and engagements that involve access to or sharing of CIB’s information, as per the respective policies and guidelines.</p><br><p>10.Responsible for initial security risk assessment for any identified security risks across the organization and liaise with the security & technology risk management for final risk rating and reporting.</p><br><p>11.Conduct the annual review and update of the area’s processes, procedures and recommend updates to relevant policies with the adherence to the developed SLAs.</p><br><br> <br> <span>Qualifications</span><br><span></span><p>Qualifications & Experience</p><br><p>Bachelor’s degree of Engineering, Computer Science, Information Security or equivalent.</p><br><p> 3-5 (5-8 for the senior) years of work experience in Information Security, IT Security Analysis or Risk Analysis</p><br><p>Excellent Knowledge of ISO 27001, PCI standards, NIST frameworks, OWASP and SWIFT CSP</p><br><p>Excellent knowledge about ISMS implementation</p><br><p>Risk Management & Security Risk assessments.</p><br><p>Must have technical background in areas like software development, security architecture, security platforms and IT tools/platforms commonly used in a modern software architecture, administration and management along with risk background</p><br><p>Recommended Certifications:</p><br><p>oISO 27001:2013 Implementer/Lead Implementer</p><br><p>oCISSP</p><br><p>oCRISC</p><br><p>oCISM</p><br><p>oGIAC Certifications</p><br><p>oCEH</p><br><p>oSecurity+</p><br><p>Skills</p><br><p>Time Management Skills, Analytical skills, and Strong presentation skills</p><br><p>Teamwork Spirit</p><br><p>Strong Communication skills</p><br><br> </div>
Job Purpose:To collect, analyze, and maintain a secure electronic database containing information related to all bank facilities, projects, and operations. Job Responsibilities:Collect and analyze security-related information regularly in coordination with the General Security Department. Develop and maintain a secure electronic database for all bank facilities, projects, and employees. Electronically register and archive confidential documents and correspondence in accordance with General Security Director instructions while ensuring information security. Record and update information and data received from all bank departments relating to facilities, assets, and employees.<br>Qualifications & Requirements Suitable academic qualification. Experience in the security field
<h2 class="h5">وصف الوظيفة</h2>
<div class="t-break" data-jb-field="description">
<p><strong>الغرض من الوظيفة</strong><br>
قيادة وإدارة أمن المعلومات عبر المؤسسة، ضمان الامتثال للسياسات، المحافظة على شهادة ISO 27001، وحماية أنظمة الأعمال والبيانات.</p><br>
<p><strong>المسؤوليات الأساسية<br>
</strong>حوكمة أمن المعلومات والامتثال:<br>
– الحفاظ على نظام إدارة أمن المعلومات (ISMS) وضمان شهادة ISO 27001<br>
– ضمان الامتثال للسياسات والمعايير والإجراءات<br>
– إدارة سجل المخاطر وتتبع إجراءات التخفيف<br>
– قيادة عمليات التدقيق ISO ومعالجة الملاحظات وعدم المطابقة</p><br>
<p>إدارة المخاطر والحوادث:<br>
– إنشاء وإدارة إجراءات استجابة حوادث أمن المعلومات<br>
– إجراء تحليل السبب الجذري وتنفيذ الإجراءات التصحيحية<br>
– تحديد الثغرات وتنسيق أنشطة التخفيف</p><br>
<p>استمرارية الأعمال والتعافي من الكوارث:<br>
– تطوير واختبار خطط التعافي من الكوارث (DRP)<br>
– قيادة عمليات تخطيط استمرارية الأعمال (BCP)</p><br>
<p>العمليات الأمنية والضوابط:<br>
– ضمان وجود ضوابط أمنية فعالة عبر بنية تكنولوجيا المعلومات<br>
– إدارة عمليات الاعتماد والتحكم في الوصول<br>
– العمل مع تكنولوجيا المعلومات والموردين لتحديد المخاطر وتخفيفها</p><br>
<p>التوعية والتدريب:<br>
– تطوير وتقديم برامج توعية أمنية وتدريبية<br>
– ضمان فهم الموظفين لسياسات الاستخدام المقبول (AUP)</p><br>
<p>التعاون مع أصحاب المصلحة:<br>
– العمل كمُستشار لقيادة تكنولوجيا المعلومات<br>
– التعاون مع فرق داخلية وشركاء خارجيين<br>
– التواصل الفعال للمخاطر وقضايا الأمن</p><br>
<p><strong>المهارات والخبرات </strong><br>
8+ سنوات من الخبرة في أمن المعلومات<br>
معرفة قوية بتهديدات الأمن (البرمجيات الخبيثة، الاحتيال الاحتيالي، فدية، DDOS)<br>
خبرة مع أطر ISO 27001 و ISMS<br>
فهم قوي للشبكات وأمن البنية التحتية<br>
خبرة مع Windows و Linux و Mac OS و iOS و Android<br>
المألوف مع Azure و AWS و SQL و Active Directory و VPNs<br>
مهارات اتصال وإدارة أصحاب المصلحة قوية<br>
مستوى عالٍ من النزاهة والسرية</p><br>
<p><strong>الكفاءات الأساسية</strong><br>
التفكير التحليلي<br>
إدارة المخاطر<br>
الانتباه للتفاصيل<br>
مهارات الاتصال والتأثير<br>
القيادة والمسؤولية<br>
التفكير في حل المشكلات</p><br>
<br> </div>
<h2 class="h5">وصف الوظيفة</h2>
<div class="t-break" data-jb-field="description">
<strong>العنوان: </strong>موظف معلومات صحية <br> <strong>الفريق/البرنامج: </strong>فريق الصحة <strong>الموقع: </strong>القاهرة، المعادي <br> <strong>الدرجة</strong>: 4 (حزمة تنافسية) <strong>مدة العقد: </strong>بانتظار موافقة المانح <br> <p><strong>حماية الطفل:</strong></p><br> <p>المستوى 3: سيكون لدى حامل المنصب اتصال بالأطفال و/أو الشباب <i><u>إما</u></i> بشكل متكرر (مثال).</p><br> <p>مرة في الأسبوع أو أكثر</p><br> <p>أو بشكل مكثف (مثلاً أربعة أيام في شهر واحد أو أكثر أو overnight) لأنهم يعملون في برامج بلد ما؛ أو يزورون برامج البلد؛ أو لأنهم مسؤولون عن تنفيذ عملية التحقق/الفحص من قبل الشرطة للموظفين.</p><br> <br> <p><strong>الغرض من الدور:</strong></p><br> <p>سيقود موظف المعلومات الصحية جميع أنظمة المعلومات الصحية لبرنامج الصحة، وستلعب البيانات الطبية دورًا رئيسيًا في متابعة جميع أنشطة المشروع، وتقييم النتائج الصحية، وتنفيذ التقدم في الخطة والعمل وتحقيق أهداف المشروع. سيدعم اتخاذ القرار من خلال تقديم نتائج تحليل البيانات لمدير البرنامج، والتقارير في الوقت المناسب عن جميع أنشطة المشروع، بما في ذلك الخدمات الاختيارية والطوارئ. بالإضافة إلى ذلك، سيشارك في المتابعة وتقييم جودة الخدمات الصحية المقدمة عند الحاجة.</p><br> <p>في حالة حدوث طارئ إنساني كبير، من المتوقع أن يعمل حامل الدور خارج ملف الدور العادي وأن يكون قادرًا على تعديل ساعات العمل وفقًا لذلك.</p><br> <br> <p><strong>نطاق الدور:</strong></p><br> <p><strong>التقارير إلى: مباشر</strong> مدير البرنامج<i><strong> و</strong></i> غير مباشر إلى MEAL</p><br> <p><strong>الموظفين الذين ي report لهذا المنصب: </strong>غير متوفر</p><br> <br> <p><strong>المجالات الأساسية للمسؤولية:</strong></p><br> <p><strong>تنفيذ المشروع</strong></p><br> <p>• تصميم وإنشاء نموذج تقارير وقائمة خطوط وقاعدة بيانات ولوحات معلومات لجميع بيانات ومعلومات المشروع الصحي، بما في ذلك حالات الإحالة الطبية الأولية والثانوية، وأنشطة المشروع الأخرى، التي تفي بمتطلبات الجهة المانحة في خطة الرصد والتقييم.</p><br> <p>• جمع والتحقق وإدخال وتحليل البيانات التي تشمل، ولكن لا تقتصر على: النتائج الصحية، التدخلات الطبية، تحليل التكلفة/الفائدة، إعداد التقارير الشهرية والربع سنوية والسنوية كما هو مطلوب</p><br> <p>• ينبغي حفظ جميع بيانات المشروع ومعلوماته وقواعد البيانات والتقارير وتوثيقها في SharePoint الرسمي لدى SCI والإشارة إليها كمراجع</p><br> <p>• مساعدة فريق الصحة في تصحيح أخطاء البيانات وإرشادهم لتوفير وتقديم بيانات وتقارير دقيقة.</p><br> <p>• دعم فريق MEAL في عمليات التعلم الخاصة بالبرنامج، بما في ذلك توثيق الدروس المستفادة، وتنظيم ورش عمل الدروس المستفادة، الخ.</p><br> <p>• ضمان الاستخدام المنتظم والتقارير وتتبع الإجراءات على معايير جودة المشروع</p><br> <p>• التعاون والمشاركة مع فريق MEAL وفريق المشروع وفريق المساءلة لضمان وجود آلية تغذية راجعة وتقارير قوية وميسورة ومتاحة للمستفيدين.</p><br> <p>• المشاركة في تقييم الموردين عند الحاجة.</p><br> <p>• الاستجابة للانحراف وإعداد تقرير الانحراف والمشاركة في التحقيق كما يعينه مدير المشروع.</p><br> <p>• إجراء زيارات تدقيق للمشروع لضمان الامتثال لتوجيهات المشروع وSOPs</p><br> <p>• عقد اجتماعات دورية لعرض تحليل الصحة وتعزيز وعي الفريق بنظام معلومات الصحة ودوره في اتخاذ القرار.</p><br> <p>• أداء أي مهام يكلف بها مدير الخط حسب الحاجة.</p><br> <br> <p><strong>التقارير والوثائق</strong></p><br> <p>• جمع وتحليل بيانات المشروع وMOVs وإعداد التقارير الشهرية والربع سنوية والسنوية وتقارير أخرى حسب الطلب.</p><br> <p>• إعداد وتقديم تقرير الانحراف، بما في ذلك السبب/التبرير وتقييم الحدث والإجراءات التصحيحية والوقائية.</p><br> <p>• تقديم التقارير في الوقت المحدد إلى مدير المشروع</p><br> <p>• ضمان الإبلاغ الدوري وفي الوقت المناسب عن IPTT للمشروع (أداة تتبع أداء المؤشر).</p><br> <p>• ضمان التحليل والتقرير النظامي للمؤشرات من أجل تقارير المانحين.</p><br> <p><strong>الميزانية</strong></p><br> <p>• دعم في تخطيط الميزانية بأعلى جودة، والمراقبة والاستخدام، والمشاركة في تقييم التكلفة/الفائدة للحالات المعتمدة/المودعة في المستشفى وفقًا لـ SOP الإحالة الصحية، مع اعتبار النتائج الصحية</p><br> <br> <p><strong>السلوكيات (القيم في الممارسة)</strong> <strong>المساءلة:</strong></p><br> <p>• يتحمل المسؤولية عن اتخاذ القرارات وإدارة الموارد بكفاءة وتحقيق أن يحقق النموذج القيمي لـ Save the Children</p><br> <p>• يحاسب الفريق والشركاء على تنفيذ مسؤولياتهم مع منحهم الحرية في الأداء كما يرونه مناسبًا وتوفير التطوير اللازم لتحسين الأداء وتطبيق العواقب المناسبة عند عدم تحقيق النتائج.</p><br> <p><strong>الطموح:</strong></p><br> <p>• يحدد أهدافًا طموحة وتحديات لنفسه ولفريقه، ويتحمل مسؤولية تطويره الشخصي ويشجع فريقه على القيام بالمثل</p><br> <p>• يشارك ويوجه الرؤية الشخصية لـ Save the Children ويحفز الآخرين</p><br> <p>• موجه نحو المستقبل، يفكر بشكل استراتيجي وعلى نطاق عالمي.</p><br> <p><strong>التعاون:</strong></p><br> <p>• يبني علاقات فعالة ويحافظ عليها مع فريقه وزملائه وأعضائه وشركاءه ومؤازريه من الخارج</p><br> <p>• يقدِّر التنوع، ويراه كمصدر قوة تنافسية</p><br> <p>• يمكن الوصول إليه، مستمع جيد، سهل الحديث معه.</p><br> <p><strong>الإبداع:</strong></p><br> <p>• يطور ويشجع حلولاً جديدة ومبتكرة •</p><br> <p>• مستعد لتحمل مخاطر منضبطة.</p><br> <p><strong>النزاهة:</strong></p><br> <p>• صادق، يشجع الانفتاح والشفافية؛ يُظهر أعلى مستويات النزاهة</p><br> <br> <p><strong>المؤهلات</strong></p><br> <p>· درجة البكالوريوس في مجال صحي ذي صلة. الخلفية الطبية والباراميديكالية مفضلة</p><br> <p>· شهادة أو درجة عليا في الصحة العامة / الإحصاء، مفضلة.</p><br> <br> <p><strong>الخبرة والمهارات</strong></p><br> <p>· الحد الأدنى 3–5 سنوات من الخبرة المهنية ذات الصلة في أنظمة معلومات الصحة، إدارة البيانات، الرصد والتقييم، أو مجال ذو صلة، ويفضل مع وكالة أممية أو INGO.</p><br> <p>· خبرة سابقة في العمل مع مشاريع صحية، برامج إنسانية، أو مجموعات ضعيفة</p><br> <p>· استجابات المجموعات مرغوبة بشدة.</p><br> <p>· خبرة مثبتة في جمع البيانات، وإدارة البيانات، والتحقق، والتحليل، والتقارير، مع اهتمام قوي بجودة ودقة البيانات.</p><br> <p>· خبرة مثبتة باستخدام برامج الإحصاء وتحليل البيانات ومنصات إدارة البيانات الرقمية.</p><br> <p>· قدرة قوية على تطوير وصيانة أدوات تتبع البيانات ولوحات المعلومات وقواعد البيانات وتقارير البرنامج الروتينية.</p><br> <p>· فهم جيد للمؤشرات الصحية، وضمان جودة البيانات ومتطلبات التقارير.</p><br> <p>· مهارات تحليلية وحل المشكلات قوية، مع نهج مثمر للنتائج.</p><br> <p>· مهارات كمبيوتر ممتازة، خاصة في Microsoft Excel وغيرها من أدوات إدارة وتحليل البيانات.</p><br> <p>· مهارات تواصل وتنسيق وعمل جماعي قوية.</p><br> <p>· مهارات قوية في العلاقات الحكومية والشبكات وتنسيق أصحاب المصلحة.</p><br> <p>· الطلاقة في الإنجليزية، مع مهارات كتابة وتواصل شفهية قوية.</p><br> <p>· المعرفة بمبادئ حماية الطفل ومعايير العمل الإنساني ميزة.</p><br> <p>· الالتزام بقيم Save the Children International ورؤيتها ومهمتها ومبادئ الحماية.</p><br> <br> <p><strong>مسؤوليات وظيفية إضافية</strong></p><br> <p>تظل الواجبات والمسؤوليات كما وردت أعلاه غير حصرية، وقد يطلب من حامل الدور أداء واجبات إضافية ضمن حدود معقولة لاستوى مهاراته وخبرته.</p><br> <br> <p><strong>فرص متساوية</strong></p><br> <p>يتعين على حامل الدور أداء الواجبات وفق سياسات وت procedures SCI للمساواة في الفرص والتنوع.</p><br> <br> <p><strong>حماية الطفل:</strong></p><br> <p>نحن بحاجة إلى الحفاظ على الأطفال آمنين، لذا فإن عملية الاختيار لدينا، التي تتضمن تحققاً دقيقاً من الخلفية، تعكس التزامنا بحماية الأطفال من الإساءة.</p><br> <br> <p><strong>الصحة والسلامة</strong></p><br> <p>يتعين على حامل الدور أداء الواجبات وفق سياسات وإجراءات SCI للصحة والسلامة.</p><br> <br> <strong>تم التحديث بواسطة: عمر النومان</strong> <strong>التاريخ: </strong>أغسطس 2026 <br> <strong>تمت المراجعة والتوقيع بواسطة: قيـس جاسر</strong> <strong>التاريخ: </strong>أغسطس 2026 <br> <br> </div>
Who we are?- onebank was established in 2020 as the company responsible for launching the 1st digital native bank in Egypt. The digital bank aims to create innovative solutions tailored to serve the needs of the banking customers in Egypt.-Our main goal is to create a positive customer experience through the differentiated journey that our customers live while using the digital bank.-Our Drive: We use our drive and commitment to energies, engage and inspire others, upholding the highest standards of work ethic, honesty and morality.<br>JOB PURPOSEEnsuring that the organization adheres to information security laws, regulations, and industry standards Including ISO27001 & PCI-DSS compliance & certifications.<br>MINIMUM QUALIFICATIONS/EDUCATION/EXPERIENCE<br>Bachelor's degree in information technology, computer science, or a related field<br>-Certifications:- ISO27001 LA or ISO 27001 LI- PCI- GRCP- GRCA<br>- 5-7+ years of experience in Information technology (IT) and Information security- Experience in ISO & PCI compliance and surveillance.- CBE CSF<br>Job Duties & Responsibilities <br>Collaborate with internal teams and provide guidance and support to address security gaps or non-compliance issues in a timely manner<br>Coordinate and facilitate internal and external audits to evaluate the effectiveness of information security controls and ensure compliance with internal policies and external regulations by preparing relevant documentation and evidence to support the audit process and facilitating interviews, data collection, and analysis during the audit, and coordinating follow-up actions to address audit findings.<br>Prepare reports on information security compliance status and progress to ensure transparency and accountability to be presented to management and relevant committees with the necessary information to make informed decisions and prioritize actions.<br>Assuring compliance to security best practices, standards (ISO27001:2013 and PCI-DSS 3.1) and regulatory (CBE CSF) to mitigate risks, protect sensitive information, and maintain customer trust.<br>Ability to lead and manage cross-functional teams and projects to successfully execute information security compliance projects and meet compliance requirements by clearly define project objectives, scope, and deliverables in addition to monitor project progress, identify and address any obstacles or challenges, and provide guidance and support as needed.<br>In-depth understanding of information security regulations and relevant industry standards ISO27001 & PCI-DSS<br>Conducting regular assessments, audits, and gap analyses including third-party audits to identify areas of non-compliance in addition to Developing and implementing remediation plans, monitor compliance, and provide guidance to stakeholders to meet security standards and regulatory requirements.<br>Stay up to date with evolving compliance requirements and industry best practices by proactively reaching out to regulatory bodies, auditors, and external stakeholders
Information Security & Risk Manager<br><br> Job Details<br><br>Position Title: Information Security & Risk Manager<br><br>Department: Technology Services / IT<br><br>Reports To: Information Security / CTO<br><br>Employment Type: Permanent<br><br>Location: Maadi, Degla - On-site<br><br>Grade: As per organizational structure<br><br>Direct Reports: As per approved organizational structure<br><br> Job Purpose<br><br>The Information Security & Risk Manager is responsible for leading the organization's Information Security and Cyber Risk function. The role will design, implement, and maintain the cybersecurity program, manage enterprise information security risks, ensure compliance with applicable Saudi regulatory and industry requirements, and promote a strong security-aware culture across the organization.<br><br>The role provides strategic and operational leadership across Information Security Governance, Risk & Compliance (GRC), Security Operations, Incident Response, Data Protection, and Security Awareness.<br><br> Key Accountabilities & Deliverables<br><br>The role will be accountable for the development, implementation, and continuous improvement of:<br><br>Information Security Strategy and Cybersecurity Roadmap Information Security policies, standards, procedures, and guidelines Information Security Management System (ISMS) Enterprise IT and Cybersecurity Risk Register Information Security Risk Assessment Reports Risk Treatment and Remediation Plans Security Compliance Reports, including ISO 27001 and applicable regulatory requirements Cybersecurity Control Framework and Control Effectiveness Reports Vulnerability Assessment and Penetration Testing (VAPT) Reports Cybersecurity Incident Reports and Root Cause Analysis (RCA) Security Monitoring and Threat Dashboards Cybersecurity KPI and KRI Dashboards Identity and Access Management (IAM) Policies, Models, and Access Matrices Data Classification and Data Protection Framework Internal and External Audit Reports and Evidence Repository Audit Findings and Remediation Tracking Business Continuity and Disaster Recovery (BCP/DR) Security Alignment Security Awareness and Training Programs and Reports Regulatory Assessments, submissions, and compliance evidence<br><br>B. Information Security Risk Management C. Security Operations & SOCD. Cybersecurity Incident Response E. Governance, Risk & Compliance F. Data Protection & Privacy G. Vulnerability & Security Testing H. Identity & Access Management I. Security Awareness & Culture J. Business Continuity & Disaster Recovery<br><br> Key Responsibilities Information Security Strategy & Governance Define, develop, and execute the organization's Information Security Strategy and cybersecurity roadmap Own and continuously improve the Information Security Management System (ISMS) Develop and maintain information security policies, standards, procedures, and guidelines Establish effective cybersecurity governance frameworks aligned with business objectives Provide regular reporting on cybersecurity posture, risk exposure, compliance, and security program performance to the CTO and executive leadership Establish and monitor security KPIs, KRIs, and performance metrics Ensure information security requirements are incorporated into technology initiatives, projects, and business processes Lead regular information security and cybersecurity risk assessments across the organization Own and maintain the enterprise IT and cybersecurity risk register Identify, assess, prioritize, and communicate information security risks Develop and manage risk treatment plans and ensure remediation activities are tracked through to closure Work closely with business units, IT, and other stakeholders to establish appropriate risk mitigation strategies Translate technical cybersecurity risks into business impact and communicate them effectively to senior management Monitor the organization's overall cyber risk profile and provide recommendations for risk reduction Oversee Security Operations Centre (SOC) activities, including SOC Analysts and Security Engineers Ensure effective security monitoring, threat detection, investigation, and response capabilities Oversee SIEM operations and security monitoring platforms such as Microsoft Sentinel, Splunk, or equivalent technologies Establish and monitor security incident management processes Review security alerts, incidents, trends, and threat intelligence Ensure appropriate escalation and response mechanisms are in place for critical security events Monitor and improve the effectiveness of security controls and operational processes Lead the organization's cybersecurity incident response capability Ensure effective detection, containment, eradication, recovery, and post-incident activities Develop, maintain, and continuously improve the Cybersecurity Incident Response Plan (CIRP) Conduct regular incident response exercises and simulations Lead investigations into significant security incidents and ensure Root Cause Analysis (RCA) is completed Track corrective and preventive actions resulting from security incidents Ensure lessons learned are incorporated into security controls and processes Lead Information Security Governance, Risk, and Compliance (GRC) activities Ensure compliance with applicable regulatory and industry requirements, including:National Cybersecurity Authority (NCA) requirements Saudi Personal Data Protection Law (PDPL) National Data Management Office (NDMO) requirements, where applicable ISO/IEC 27001Other applicable cybersecurity and data protection regulations Coordinate internal and external security audits and assessments Manage audit evidence collection and maintain an organized security evidence repository Track audit findings, remediation plans, and closure status Prepare management and regulatory compliance reports Support regulatory assessments, reviews, and submissions as required Establish and maintain data protection and information classification frameworks Ensure appropriate security controls are implemented for sensitive and personal data Work with relevant stakeholders to support compliance with PDPL and applicable data protection requirements Establish appropriate data access, handling, retention, and protection controls Support privacy and data protection risk assessments where required Oversee vulnerability management activities across IT environments Coordinate Vulnerability Assessments and Penetration Testing (VAPT) Review vulnerability and penetration testing reports Ensure security vulnerabilities are appropriately prioritized based on business risk Track remediation activities and validate closure of critical and high-risk vulnerabilities Ensure security testing is incorporated into relevant technology projects and systems Establish and maintain IAM policies, standards, and access control frameworks Ensure appropriate access governance and segregation of duties Review privileged access and high-risk accounts Support periodic user access reviews and access recertification Ensure access controls align with business requirements and security policies Develop and implement an organization-wide security awareness program Lead cybersecurity awareness campaigns and security training Implement phishing simulation and social engineering awareness programs Monitor employee security awareness performance and identify improvement areas Promote a strong cybersecurity culture across all business functions Ensure cybersecurity requirements are incorporated into Business Continuity and Disaster Recovery plans Participate in BCP/DR risk assessments and exercises Ensure critical systems have appropriate security, recovery, and resilience controls Support testing and continuous improvement of security-related recovery procedures Qualifications & Experience<br><br>Minimum Qualifications<br><br>Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Information Security, or a related discipline CISSP or CISM certification - Mandatory ISO/IEC 27001 Lead Implementer or Lead Auditor certification preferred NCA-related cybersecurity accreditation or certification is preferred<br><br>Minimum Experience<br><br>8-10 years of professional experience in Information Security / Cybersecurity At least 3 years of experience in a cybersecurity or information security management/leadership role Proven experience managing enterprise cybersecurity programs and security teams Proven experience in GRC, risk management, security operations, and incident response Proven experience working with regulatory compliance, audits, and cybersecurity frameworks Technical & Professional Skills<br><br>The successful candidate should demonstrate:<br><br>Strong knowledge of cybersecurity frameworks, standards, and best practices Deep understanding of NCA, PDPL, NDMO, ISO 27001, and applicable data protection requirements Strong expertise in Governance, Risk, and Compliance (GRC) Experience with SOC operations and SIEM platforms such as Microsoft Sentinel, Splunk, or equivalent Strong understanding of vulnerability management and penetration testing Strong knowledge of Incident Response and Cybersecurity Incident Response Plans (CIRP) Strong understanding of IAM and access governance Knowledge of data protection, data classification, and data governance Strong understanding of secure architecture and security controls Ability to develop and monitor cybersecurity KPIs and KRIsStrong audit and regulatory assessment experience Ability to assess and communicate cybersecurity risks in terms of business impact Strong strategic thinking and high-level decision-making capability Excellent leadership and people-management skills Ability to manage cross-functional teams and stakeholders under pressure Strong communication, presentation, and reporting skills Bilingual proficiency in Arabic and English Leadership Competencies Strategic Thinking Cybersecurity Leadership Risk-Based Decision Making Stakeholder Management Executive Communication Team Leadership & Development Problem Solving Crisis and Incident Management Governance & Accountability Continuous Improvement Business Acumen Change Management<br><br>Special Requirements<br><br>Ability to work effectively in a fast-paced and dynamic environment Ability to manage cybersecurity incidents and critical security situations Willingness to participate in security incident response and escalation activities when required Strong confidentiality and professional integrity Ability to work collaboratively with executive leadership, IT, business functions, auditors, and regulatory stakeholders
<h2 class="h5">وصف الوظيفة</h2>
<div class="t-break" data-jb-field="description">
<span><br>الملخص الوظيفي<br>استكشاف الأخطاء وإصلاحها في المشكلات الفنية المتعلقة بمعدات الحاسوب والأجهزة الطرفية. الاستجابة لرسائل خطأ البرمجيات من خلال العثور على المشاكل أو تصحيحها أو إنهاء البرنامج. تقديم الإرشاد الفني والتوصيات لحل مشكلات العمل. إحالة المشاكل الكبرى المتعلقة بالعتاد/البرمجيات أو المنتجات المعيبة إلى البائعين أو الفنيين للخدمات. إدخال الأوامر وتفعيل الضوابط على أجهزة الحاسوب والمعدات الطرفية (مثلاً الطابعات) لدمج وتشغيل المعدات. الحفاظ على العتاد والبرمجيات وترقيتهما، بما في ذلك الملحقات (مثلاً الطابعات، الماسحات الضوئية) وهندسة تقنية الموقع المرتبطة بالاتصال بالعتاد والاتصالات عبر الهاتف. الإبلاغ فوراً عن أي حوادث عمل أو إصابات أخرى إلى المدير/المشرف. تحديد وتصحيح إجراءات أو ظروف العمل غير الآمنة و/أو الإبلاغ عنها للإدارة وموظفي الأمن/السلامة. اتباع الإجراءات الخاصة بالممتلكات للتعامل مع حالات الطوارئ (مثلاً الإخلاء، الحالات الطبية، الكوارث الطبيعية). التحدث مع الموظفين الآخرين والاستماع إليهم لتبادل المعلومات بفعالية. تبادل المعلومات مع موظفين آخرين باستخدام الأجهزة الإلكترونية (مثلاً أجهزة النداء وراديو ثنائي الاتجاه، البريد الإلكتروني). قراءة والتحقق بصرياً من المعلومات بمختلف التنسيقات (مثلاً النص صغير الحجم). فحص الأدوات والمعدات والآلات بصرياً لاكتشاف العيوب. إدخال وتحديد معلومات العمل باستخدام الحواسيب ونُظُم نقطة البيع. الوصول إلى الأعالي وتحت الركبتين، بما في ذلك الانثناء والالتواء والسحب والانحناء. نقل ورفع وحمل ودفع وسحب وضع الأشياء التي لا يتجاوز وزنها 50 باونداً دون مساعدة. أداء واجبات وظيفية معقولة أخرى حسب طلب المشرفين.<br>المؤهلات المفضلة<br>التعليم: شهادة المدرسة الثانوية أو ما يعادلها من GED.<br>الخبرة العملية ذات الصلة: بدون خبرة ذات صلة.<br>الخبرة الإشرافية: بدون خبرة إشرافية.<br>التصريح أو الشهادة: لا يوجد<br>في Marriott International، نحن ملتزمون بأن نكون صاحب عمل يوفر فرصة متساوية للجميع، يرحب بالجميع ويحافظ على إمكانية الوصول إلى الفرص. نحن نشجع بيئة تُقدَّر فيها خلفيات موظفينا المتنوعة ونحتفي بها. قوتنا الكبرى تكمن في المزيج الغني من الثقافة والموهبة والتجارب لموظفينا. نحن ملتزمون بتجنب التمييز على أي أساس محمي، بما في ذلك الإعاقة، حالة المحاربين القدامى، أو أي أساس آخر محمي بموجب القانون المعمول به.<br>سعى فنادق ماريوت جاهدة لرفع مستوى فن الضيافة، من خلال الابتكار في كل فرصة مع الحفاظ على راحة ما هو مألوف حول العالم. كونه مضيفاً مع فنادق ماريوت، ستساعد في الحفاظ على وعد "الضيافة الرائعة. دائماً." من خلال تقديم خدمة مدروسة وحنونة ومتفوقة التفكير تدعم وتبني هذه الإرث الحي. بالاسم الذي يُعادل الضيافة في جميع أنحاء العالم، نحن فخورون باستقبالكم لاستكشاف مسار مهني مع فنادق ماريوت. بانضمامك إلى فنادق ماريوت، تنضم إلى مجموعة من العلامات التجارية مع Marriott International. كن حيث يمكنك أداء أفضل أعمالك، ابدأ هدفك، انتمِ إلى فريق عالمي رائع، وأصبِح أفضل نسخة من نفسك. <br>JW Marriott جزء من محفظة Marriott International الفاخرة وتتكون من أكثر من 100 فندق جميل في مدن العبور ومواقع منتجعية مميزة حول العالم. يعتقد JW أن موظفينا أولوية. لأنك إذا كنت سعيداً، سيكون ضيوفنا سعداء. موظفو JW Marriott واثقون ومبدعون وصادقون وبديهون، ويحافظون على إرث اسم العلامة التجارية ومؤسس الشركة ج. ويلارد ماريوت. عروض فنادقنا تجربة عمل فريدة، حيث ستكون جزءاً من مجتمع وتتمتع بروح الرفقة الحقيقية مع مجموعة متنوعة من زملاء العمل. يخلق JW فرصاً للتدريب والتطوير والتقدير، والأهم من ذلك مكان يمكنك فيه متابعة شغفك في بيئة فاخرة مع تركيز على العافية الشمولية. يبدأ التعامل مع الضيوف Exceptional بنوعية رعاية موظفينا. هذا هو علاج JW. بانضمامك إلى JW Marriott، تنضم إلى محفظة علامات تجارية مع Marriott International. كن حيث يمكنك أداء أفضل أعمالك، ابدأ هدفك، انتمِ إلى فريق عالمي رائع، وكن أفضل نسخة من نفسك.</span> </div>
<h2 class="h5">الوصف الوظيفي</h2>
<div class="t-break" data-jb-field="description">
<span><br>الملخص الوظيفي<br>تصحيح المشكلات الفنية أو القضايا المتعلقة ببرمجيات وأنظمة الكمبيوتر وحلها. تقديم التوجيهات الفنية والتوصيات لحل المشكلات التجارية. تحليل، التوصية، وتنفيذ تحسينات العملية. إدخال الأوامر وتنشيط التحكمات على أجهزة الكمبيوتر والمعدات المحيطية لدمج وتشغيل المعدات. تشخيص المشاكل، تعديلها، دعمها، إدارتها، والمحافظة على برامج التطبيقات وحسابات المستخدمين. الحفاظ على سجلات معاملات تبادل البيانات اليومية والمشاكل والإجراءات التصحيحية المتخذة أو أنشطة التثبيت. تدريب أو تعليم المستخدمين الاستخدام الصحيح للأجهزة أو البرمجيات. إدارة وتنسيق التخطيط والتصميم والعمليات والصيانة وتخصيص الموارد لأنشطة الاتصالات، بما في ذلك دعم العميل/الخادم والتخطيط الاستراتيجي والتكتيكي. التشاور مع الآخرين وتقديم المشورة حول السياسات الإدارية والإجراءات والمشكلات الفنية والأولويات والأساليب المتعلقة بالاتصالات.<br>مساعدة الإدارة في التوظيف والتدريب والجدولة والتقييم والتأديب والتحفيز والتوجيه للموظفين؛ العمل كنموذج يحتذى به ونقطة الاتصال الأولى لعملية ضمان المعاملة العادلة/سياسة الباب المفتوح. تطوير والحفاظ على علاقات عمل إيجابية مع الآخرين؛ دعم الفريق لتحقيق الأهداف المشتركة؛ الاستماع والرد بشكل مناسب على مخاوف الموظفين الآخرين. الالتزام بجميع سياسات وإجراءات الشركة؛ حماية أصول الشركة. التحدث مع الآخرين بلغة واضحة ومهنية. ضمان الالتزام بتوقعات الجودة والمعايير؛ تحديد وتوصية وتطوير وتنفيذ طرق جديدة لزيادة كفاءة المنظمة وإنتاجيتها وجودتها وسلامتها وتوفيرها/خفض تكاليفها. التحقق البصري من المعلومات. إدخال وتحديد المعلومات باستخدام أنظمة الكمبيوتر/نقاط البيع (POS). التحريك والرفع والإنحراف والسحب وتحريك الأشياء التي لا تتجاوز 10 أرطال دون مساعدة. أداء واجبات وظيفية أخرى معقولة كما يطلبها المشرفون.<br>المؤهلات المفضلة<br>التعليم: شهادة تقنية أو تجارة أو مدرسة مهنية.<br>الخبرة العملية ذات الصلة: لا تقل عن سنتين من الخبرة ذات الصلة.<br>الخبرة الإشرافية: لا خبرة إشرافية.<br>الرخصة أو الشهادة: لا شيء<br>في فندق ماريوت الدولية، نحن ملتزمون بأن نكون صاحب عمل يوفر فرص متكافئة للجميع، نرحب بالجميع ونوفر الوصول إلى الفرص. نحن نعزز بيئة تُقدَّر وتُحتفى بخلفيات موظفينا الفريدة. أقوى تعبير لنا عن القوة يكمن في المزيج الغني من الثقافة والموهبة والتجارب لدى موظفينا. نحن ملتزمون بعدم التمييز على أي أساس محمي، بما في ذلك الإعاقة، ووضع المحاربين القدامى، أو أي أساس محمي بموجب القانون المعمول به.<br>تسعى فنادق ماريوت إلى رفع مستوى فن الضيافة، والابتكار في كل فرصة مع الحفاظ على راحة ما هو مألوف حول العالم. كأن تكون مضيفاً في فنادق ماريوت ستساعد في الوفاء بوعد “الضيافة الرائعة. دائماً.” من خلال تقديم خدمة مدروسة ومخلصة وتفكير مستقبلي تُمكِّن وتبني على هذا الإرث الحي. بالاسم الذي يُعتبر مرادفاً للضيافة حول العالم، نحن فخورون باستقبالكم لاستكشاف مسار مهني مع فنادق ماريوت. عند انضمامك إلى فنادق ماريوت، ستنضم إلى محفظة علامات تجارية مع ماريوت الدولية. كن حيث يمكنك أداء أفضل عملك، ابدأ هدفك، انتمي إلى فريق عالمي رائع، وكن أفضل نسخة من نفسك. <br> JW Marriott جزء من محفظة ماريوت الدولية الفاخرة ويتكون من أكثر من 100 فندق جميل في مدن بوابات ومواقع منتجعات مميزة حول العالم. يعتقد JW أن موظفينا أولاً. لأنك إذا كنت سعيداً، سيكون ضيوفك سعداء. موظفو JW Marriott واثقون ومبدعون وأصليون وبديهوية، ويحافظون على إرث اسم العلامة ومؤسس الشركة، ج. ويليارد ماريوت. فنادقنا تقدم تجربة عمل لا تشبه أي تجربة أخرى، حيث تكون جزءاً من مجتمع وتتمتع بتضامن حقيقي مع مجموعة متنوعة من زملاء العمل. تخلق JW فرصاً للتدريب والتطوير والتعرّف والأهم من ذلك مكان يمكنك فيه متابعة شغفك في بيئة فاخرة مع تركيز على العافية الشاملة. يبدأ التعامل مع الضيوف بطرقنا في رعاية موظفينا. هذا هو علاج JW. بالانضمام إلى JW Marriott، تنضم إلى محفظة علامات تجارية مع ماريوت الدولية. كن حيث يمكنك القيام بأفضل عملك، ابدأ هدفك، انتمي إلى فريق عالمي رائع، وتصبح أفضل نسخة منك.</span> </div>