PwC Risk - IT Audit - Riyadh
الوصف الوظيفي
About Us
PwC stands at the forefront of professional services, operating across 152 countries with a global workforce of nearly 328,000 professionals. Our mission is to help organizations and individuals create enduring value through Assurance, Tax, and Advisory services. For over four decades, we have been integral to the Middle East’s evolution, collaborating with governments and businesses to deliver sustainable solutions. Today, our presence in the region spans 12 countries, including Saudi Arabia, where more than 12,000 professionals are driving transformative change and shaping the future of industries.
Line of Service Overview
Within PwC Consulting, you will have the opportunity to redefine industries and contribute to national visions by developing strategic solutions. Our team partners with leaders to deliver transformative outcomes in enterprise strategy, digital innovation, operational excellence, cyber resilience, and risk management. Join a dynamic community that values forward-thinking, collaboration, and measurable impact—where your expertise not only accelerates change but also creates lasting value for businesses and society.
Business Unit Overview
The Risk Consulting team empowers organizations to enhance resilience and foster trust by providing comprehensive advisory solutions. Our services enable businesses to align their objectives with regulatory requirements, mitigate risks, and address the evolving needs of key stakeholders. The Risk Consulting practice delivers a full spectrum of solutions, including Internal Audit, Enterprise Risk Management, Governance, Policies and Procedures, Internal Control over Financial Reporting, Process Intelligence and Compliance, and Technology Risk and Cybersecurity. Here, risk management intersects with business transformation, driven by deep insights and a commitment to purposeful action.
How You’ll Contribute
As a Manager in Technology Risk, you will collaborate with a diverse regional team to address complex business challenges, from strategy to execution. Your responsibilities will include:
- Partnering with leading enterprises to identify, analyze, prioritize, and respond to technology risks in a collaborative regional setting.
- Advising senior leadership, cybersecurity teams, internal audit, compliance, and risk management functions on technology risk matters.
- Maintaining a deep understanding of the latest Information Security (IS) and cybersecurity threats, trends, and emerging technologies.
- Assessing both current and emerging technology risks, and evaluating the design and effectiveness of technology controls.
- Delivering actionable insights and recommendations to safeguard clients’ systems and data against potential threats.
- Working alongside a diverse talent pool of regional and international teams to successfully deliver high-impact projects.
- Conducting qualitative and quantitative risk assessments to identify high-risk areas and recommend strategic risk response plans.
- Supporting clients in mitigating existing and future security and technology risks, including organizational resilience and disaster recovery strategies.
- Evaluating clients’ environments against leading international and regional security standards and frameworks, such as ISO27001, NIST CSF, ITILv4, and NCA-ECC, to ensure compliance with regulatory requirements.
- Contributing to the development of strong client relationships and the growth of key accounts.
What You’ll Bring
To thrive in this role, you will possess the following qualifications and skills:
- A Bachelor’s degree in Computer Engineering, Computer Science, Information Technology Management, or a related field.
- Exceptional client management skills, with the ability to effectively engage stakeholders, consolidate requirements, and translate them into actionable deliverables.
- Proven experience in conducting stakeholder meetings to assess organizational processes, risks, and controls.
- A solid understanding of security industry standards, best practices, tools, and methodologies.
- The ability to identify technical security gaps and propose effective remediation strategies.
- Familiarity with risk management methodologies and concepts, with a structured approach to applying them in real-world scenarios.
يمكن أن يرتكب الذكاء الاصطناعي أخطاءً.