About the job
About the Role
Thndr is on the lookout for a highly skilled and experienced Director of Information Security to become the foremost security leader within our organization. This role entails complete ownership of our information security program, encompassing governance, risk management, compliance, assurance, and security engineering.
As a pivotal member of the executive team, you will establish the vision and strategy for managing security risks, ensuring that our security operations meet the expectations of the business and regulatory bodies while maintaining agility. You will lead two established teams, overseeing their performance, development, and alignment with our broader security strategy:
Information Security (Governance, Risk, Compliance & Assurance) , responsible for managing the security program at a governance level, including policy and control frameworks, cyber risk management, regulatory compliance, and independent oversight across all business units.
Security Engineering , responsible for the design, planning, implementation, and operation of Thndr's security capabilities and technology stack, ranging from access controls and CI/CD security to logging and broader tooling.
This role is not hands-on technical; it is intended for a leader who possesses deep domain knowledge to pose the right questions, set appropriate expectations, and hold team members accountable , all while cultivating a security function that is trusted by the organization, respected by regulatory authorities, and capable of scaling as Thndr grows across Egypt, the UAE, and KSA.
What You'll Do
Security Strategy & Program Ownership
Define and own Thndr's information security strategy and multi-year roadmap, balancing risk reduction, regulatory requirements, and business agility.
Establish the operational model for the security function, including team structure, accountability distribution, and performance measurement at both individual and functional levels.
Serve as Thndr's senior security voice , advising executive leadership, representing the function in governance committees, and providing independent assessments of residual risk and strategic priorities.
Governance, Risk & Compliance
Lead the information security program at the governance level: managing the policy framework, control framework, and cyber risk management strategy.
Drive the organization’s compliance with security regulations and frameworks.
