View all jobs

IT Strategy and Governance Specialist

  • Doha, Qatar

Position Summary:
The IT Strategist & Governance Specialist is responsible for defining, implementing, and overseeing the organization’s IT strategy, governance framework, and compliance posture. This role ensures that IT systems supporting motorsport operations, licensing, competition management, and federation services are secure, resilient, compliant with European data protection regulations (GDPR), and aligned with the federation’s long-term objectives.

The role operates at the intersection of strategy, risk management, cybersecurity, and regulatory compliance, ensuring the protection of sensitive sporting, operational, and personal data. image
Core Responsibilities:
IT Strategy & Architecture
  • Define and maintain the federation’s IT strategy and roadmap, aligned with organizational goals and regulations.
  • Ensure IT systems support competition management, safety data, and member services.
  • Evaluate emerging technologies and vendors with a focus on security, compliance, and sustainability.
  • Guide modernization initiatives including cloud, data platforms, and digital services.
IT Governance
  • Develop, implement, and continuously improve IT governance policies, standards, and procedures aligned with frameworks such as CSF, ISO 27001, PCI-DSS, GDPR, and organizational objectives.
  • Ensure alignment of IT strategy with business goals by collaborating with IT leadership and business stakeholders.
  • Lead initiatives to promote policy awareness and adherence across the organization.
Information Security & Risk Management
  • Oversee information security governance in line with ISO 27001, NIS2, or equivalent standards.
  • Ensure protection of sensitive and classified data, including competition data, athlete information, and operational systems.
  • Coordinate risk assessments, vulnerability management, and security audits.
  • Support incident response planning and crisis management related to IT and data breaches.
Data Protection & GDPR Compliance
  • Ensure compliance with Qatar privacy law and GDPR, including lawful processing, data minimization, and retention.
  • Work closely with the Data Protection Officer (or act as liaison) on DPIAs, breach management, and regulatory reporting.
  • Ensure secure handling of Personally Identifiable Information (PII) related to drivers, officials, staff, and members.
  • Govern cross-border data transfers and relationships with international motorsport bodies.
Performance Measurement & Reporting:
  • Define, monitor, and report on key IT governance performance metrics.
  • Prepare governance reports for senior management and board committees.
  • Facilitate IT steering committee meetings and other governance forums.
Policy & Process Management:
IT Project Management:
  • Plan, coordinate, and oversee IT projects from initiation through completion.
  • Define project scope, objectives, timelines, resources, and deliverables.
  • Manage cross-functional project teams, monitor progress, and mitigate risks to ensure project success.
  • Communicate project status, risks, and issues to stakeholders and senior management.
Vendor & Stakeholder Management
  • Manage IT vendors, service providers, and technology partners with a strong focus on security and contractual compliance.
  • Ensure data processing agreements (DPAs) and SLAs meet regulatory and federation requirements.
  • Act as a key interface between IT, legal, operations, sporting departments, and executive leadership.
Training & Awareness:
  • Design and deliver training programs to increase awareness of IT governance principles.
  • Support culture-building efforts around compliance and accountability.
image
Key Skills & Qualifications:
  • Bachelor’s or Master’s degree in Information Systems, Computer Science, Cybersecurity, or a related field.
  • 10+ years of experience with minimum 5+ in IT strategy, IT governance, or information security, preferably in regulated or data-sensitive environments.
  • Familiarity with governance frameworks such as COBIT, ITIL, ISO 27001, CSF, PCI-DSS, GDPR.
  • Strong understanding of regulatory requirements impacting IT.
  • Excellent analytical, communication, stakeholder management, and project management skills.
  • Experience in sports federations, public sector, critical infrastructure, or international organizations is an advantage.
Certifications (Preferred)
  • ISO 27001 Lead Implementer or Auditor
  • COBIT, ITIL, or TOGAF
  • CISM, CISSP, or equivalent security certification
  • GDPR / Data Protection certification