-
View all jobs
Job Description
Become a part of Pemo’s incredible team!
We’re bold, collaborative, and ego-free. We challenge each other positively, encourage courageous decisions, and always aim high. Excited to be part of something big? We’re hiring a Head of Security.
The Role
Pemo is establishing a dedicated security function to formalize and elevate our cybersecurity posture. As Head of Security, you will be the first owner of this critical function, responsible for maintaining our compliance standards, strengthening our security controls, and building the frameworks necessary for our regulatory roadmap.
This role requires balancing technical security work with governance and compliance. You will work closely with engineering teams to implement security best practices while maintaining the documentation and processes required for PCI-DSS, ISO 27001/SOC 2, and EMI license preparation.
Required Qualifications
Compliance & Governance
This position reports directly to the CTO and will be the sole owner of the security function initially. The role involves close collaboration with Engineering, DevOps, Product, Legal, and Compliance teams.
Why Pemo?
Work your way with flexible hours and freedom to take time off when you need it. Join a global team of fintech experts, backed by $18M+ from top investors and named in Forbes ME Top 50. At Pemo, you’ll innovate, grow, and help shape the future of spend management in MENA.
A Little More About Our Company
Pemo is a fintech company providing corporate expense management and card services in the UAE and KSA markets. We operate under full regulatory supervision and maintain:
With Pemo, company spending becomes easy, fast and transparent. Teams can spend smarter and autonomously. Business owners can run more efficient workplaces and keep control of their finances. Pemo gives superpowers to businesses so they can be bold and fast.
Job Details
Role Level: Executive-Level Work Type: Full-Time Country: United Arab Emirates City: Dubai Company Website: http://www.pemo.io Job Function: Information Technology (IT) Company Industry/
Sector: Financial Services
What We Offer
About The Company
Searching, interviewing and hiring are all part of the professional life. The TALENTMATE Portal idea is to fill and help professionals doing one of them by bringing together the requisites under One Roof. Whether you're hunting for your Next Job Opportunity or Looking for Potential Employers, we're here to lend you a Helping Hand.
Report
Disclaimer: talentmate.com is only a platform to bring jobseekers & employers together. Applicants are advised to research the bonafides of the prospective employer independently. We do NOT endorse any requests for money payments and strictly advice against sharing personal or bank related information. We also recommend you visit Security Advice for more information. If you suspect any fraud or malpractice, email us at [email protected].
Become a part of Pemo’s incredible team!
We’re bold, collaborative, and ego-free. We challenge each other positively, encourage courageous decisions, and always aim high. Excited to be part of something big? We’re hiring a Head of Security.
The Role
Pemo is establishing a dedicated security function to formalize and elevate our cybersecurity posture. As Head of Security, you will be the first owner of this critical function, responsible for maintaining our compliance standards, strengthening our security controls, and building the frameworks necessary for our regulatory roadmap.
This role requires balancing technical security work with governance and compliance. You will work closely with engineering teams to implement security best practices while maintaining the documentation and processes required for PCI-DSS, ISO 27001/SOC 2, and EMI license preparation.
Required Qualifications
- 5–7 years of experience in information security, preferably in fintech or regulated industries
- Strong technical foundation with ability to review system architecture and assess security controls
- Hands-on experience maintaining compliance frameworks (PCI-DSS, ISO 27001, SOC 2)
- Proven ability to work with engineering teams and translate security requirements into practical implementations
- Experience with data privacy regulations and data localization requirements
- Strong documentation and process design skills
- Ability to manage vendor relationships and coordinate external audits
- Experience with risk assessment methodologies and security frameworks
Compliance & Governance
- Maintain PCI-DSS Level 1 compliance and manage quarterly/annual audit cycles
- Lead implementation of ISO 27001 or SOC 2 Type II certification
- Manage and maintain the existing GRC system
- Conduct regular risk assessments and maintain risk register
- Develop and enforce information security policies and standards
- Ensure compliance with PDPL and other applicable data protection regulations
- Review system architecture and cloud infrastructure security
- Provide security guidance during software development lifecycle
- Assess and recommend security tooling (SAST, DAST, vulnerability management, CSPM)
- Conduct threat modeling and security architecture reviews
- Define security requirements for DevOps and software engineering teams
- Oversee vulnerability management and remediation processes
- Participate in incident response and conduct security investigations
- Develop Standard Operating Procedures (SOPs) for security operations
- Create and maintain security documentation for audit and regulatory requirements
- Build security awareness and training programs for engineering teams
- Establish processes for security reviews and change management
- Document security controls, data flows, and system access policies
- Maintain security baselines and configuration standards
- Implement and maintain data classification framework
- Ensure data residency and localization requirements are met across UAE/KSA operations
- Design and enforce access control policies
- Oversee data subject rights management and privacy incident response
- Partner with engineering on privacy-by-design implementation
- Conduct data protection impact assessments (DPIAs) as required
- Manage relationships with external auditors, penetration testing firms, and security service providers
- Coordinate security audits and ensure timely remediation of findings
- Report on security posture, key risks, and metrics to CTO and executive leadership
- Respond to customer security questionnaires and due diligence requests
- Collaborate with Legal and Compliance teams on regulatory matters
This position reports directly to the CTO and will be the sole owner of the security function initially. The role involves close collaboration with Engineering, DevOps, Product, Legal, and Compliance teams.
Why Pemo?
Work your way with flexible hours and freedom to take time off when you need it. Join a global team of fintech experts, backed by $18M+ from top investors and named in Forbes ME Top 50. At Pemo, you’ll innovate, grow, and help shape the future of spend management in MENA.
A Little More About Our Company
Pemo is a fintech company providing corporate expense management and card services in the UAE and KSA markets. We operate under full regulatory supervision and maintain:
- PCI-DSS Level 1 certification
- SAMA and CBUAE regulatory compliance
- Cloud-agnostic microservices architecture on GCP Dammam region
- PDPL compliance for data protection
With Pemo, company spending becomes easy, fast and transparent. Teams can spend smarter and autonomously. Business owners can run more efficient workplaces and keep control of their finances. Pemo gives superpowers to businesses so they can be bold and fast.
Job Details
Role Level: Executive-Level Work Type: Full-Time Country: United Arab Emirates City: Dubai Company Website: http://www.pemo.io Job Function: Information Technology (IT) Company Industry/
Sector: Financial Services
What We Offer
About The Company
Searching, interviewing and hiring are all part of the professional life. The TALENTMATE Portal idea is to fill and help professionals doing one of them by bringing together the requisites under One Roof. Whether you're hunting for your Next Job Opportunity or Looking for Potential Employers, we're here to lend you a Helping Hand.
Report
Disclaimer: talentmate.com is only a platform to bring jobseekers & employers together. Applicants are advised to research the bonafides of the prospective employer independently. We do NOT endorse any requests for money payments and strictly advice against sharing personal or bank related information. We also recommend you visit Security Advice for more information. If you suspect any fraud or malpractice, email us at [email protected].
Key Skills
Ranked by relevance
dss
devops
penetration testing
incident response
security audits
microservices
cybersecurity
cloud
gcp
Related Jobs
3 roles aligned with this opportunity
View Job Details
Related
L1 Network Engineer/System Engineer
2026-05-26
Full-time
Not Applicable
United Arab Emirates
IT Services
Information Technology
View Job Details
Related
Senior Project Manager Elevators And Escalators
2026-05-23
Full-time
Not Applicable
United Arab Emirates
IT Services
Project Management
View Job Details
Related
AI Architect
2026-05-23
Full-time
Not Applicable
United Arab Emirates
IT Services
Design
Login to Apply
- Posted
- Feb 13, 2026
- Type
- Full-time
- Level
- Director
- Location
- Dubai
- Company
- TALENTMATE
Industries
IT Services
IT Consulting
Categories
Information Technology
Related Jobs
3 roles aligned with this opportunity
View Job Details
Related
L1 Network Engineer/System Engineer
2026-05-26
Full-time
Not Applicable
United Arab Emirates
IT Services
Information Technology
View Job Details
Related
Senior Project Manager Elevators And Escalators
2026-05-23
Full-time
Not Applicable
United Arab Emirates
IT Services
Project Management
View Job Details
Related
AI Architect
2026-05-23
Full-time
Not Applicable
United Arab Emirates
IT Services
Design