Cyber Security GRC Specialist

CYBER سايبر
جدة, جدة دوام كامل
نشر: 1448/3/19 | 2026/09/01 ينتهي: 1448/4/20 | 2026/10/01 ✨ وصف بالذكاء الاصطناعي
تقدم للوظيفة الآن مشاركة عبر واتساب

الوصف الوظيفي

About Us

At Cyber, we are dedicated to enhancing organizational resilience by implementing robust cybersecurity governance, risk management, and regulatory compliance frameworks. Our operations are meticulously aligned with the Kingdom of Saudi Arabia’s regulatory environment, ensuring full compliance with NCA, SAMA, and international best practices. We are currently seeking a highly skilled Cyber Security GRC Specialist to join our team in Jeddah, Saudi Arabia, and play a pivotal role in safeguarding our information assets, cloud environments, and data through effective governance structures, regulatory adherence, and proactive risk mitigation strategies.

Key Responsibilities

The Cyber Security GRC Specialist will be responsible for the following core functions:

  • Cybersecurity Governance:
    • Develop, implement, and maintain comprehensive cybersecurity governance policies, frameworks, and standards to ensure robust security posture.
    • Monitor and evaluate organizational adherence to established cybersecurity policies and controls, ensuring alignment with regulatory and industry requirements.
    • Provide detailed governance and risk posture reports to the Chief Information Security Officer (CISO) and executive leadership to facilitate informed decision-making.
    • Maintain accurate and up-to-date cybersecurity documentation in compliance with regulatory and industry standards.
  • Risk Management:
    • Conduct thorough cybersecurity risk assessments across all business units and cloud environments to identify potential vulnerabilities and threats.
    • Evaluate, prioritize, and document cybersecurity risks, ensuring they are addressed in alignment with organizational objectives and risk appetite.
    • Maintain and continuously update the organizational risk register to track and manage identified risks effectively.
    • Drive remediation efforts and ensure timely closure of identified risks, audit findings, and compliance gaps to minimize exposure.
  • Compliance & Regulatory Alignment:
    • Ensure strict compliance with Kingdom of Saudi Arabia’s regulatory frameworks, including NCA ECC and SAMA CSF, as well as international standards such as ISO 27001.
    • Support internal and external audit activities by providing necessary documentation, evidence, and insights to validate the effectiveness of security controls.
    • Evaluate the efficacy of implemented technical and administrative security controls to ensure they meet regulatory and industry requirements.
    • Prepare and submit regulatory compliance reports as mandated by relevant authorities and organizational policies.
  • Business Continuity & Incident Support:
    • Assist in the development, maintenance, and continuous improvement of Business Continuity and Disaster Recovery plans to ensure operational resilience during disruptions.
    • Support Business Impact Analysis (BIA) activities to identify critical functions and dependencies, enabling effective recovery strategies.
    • Participate in the testing and validation of continuity and recovery procedures to ensure readiness and effectiveness during actual incidents.
    • Contribute to incident response efforts by providing expertise in risk assessment, mitigation, and recovery to minimize operational disruption and financial impact.
  • Security Awareness:
    • Support and promote cybersecurity awareness initiatives across the organization to foster a culture of security consciousness among employees.
    • Assist in managing and optimizing cybersecurity awareness tools and programs to enhance employee engagement and understanding of security risks and responsibilities.
    • Collaborate with internal stakeholders to develop and deliver targeted training programs that address emerging threats and best practices in cybersecurity.

Qualifications & Requirements

To excel in this role, candidates must meet the following qualifications and possess the following skills:

  • A Bachelor’s degree in Cybersecurity, Information Security, Computer Science, or a closely related field from an accredited institution.
  • A minimum of 2 to 4 years of hands-on experience in Cybersecurity Governance, Risk Management, and Compliance (GRC) or related roles, with a proven track record in implementing and managing GRC frameworks.
  • Strong understanding of cybersecurity governance frameworks, risk management methodologies, and compliance practices, with the ability to apply them in diverse organizational contexts.
  • In-depth knowledge of Kingdom of Saudi Arabia’s regulatory requirements, including NCA and SAMA frameworks, as well as international standards such as ISO 27001.
  • Familiarity with GRC tools and platforms is highly preferred, enabling efficient management of governance, risk, and compliance activities.
  • Preferred certifications include ISO 27001 Lead Implementer, CompTIA Security+, or other relevant GRC certifications that demonstrate expertise and commitment to the field.
  • Excellent analytical, problem-solving, and communication skills, with the ability to articulate complex security concepts to both technical and non-technical stakeholders.
  • Demonstrated ability to work collaboratively in cross-functional teams, driving initiatives that enhance organizational security posture and compliance.

يمكن أن يرتكب الذكاء الاصطناعي أخطاءً.

المصدر: لينكد إن ↗ • 37 مشاهدة

ℹ️ إخلاء مسؤولية توظيف:

موقع وظائف السعودية (ksajobshub.com) هو محرك بحث ومجمع لإعلانات الوظائف من المصادر والشركات الرسمية في المملكة العربية السعودية. نحن لا نتقاضى أي مبالغ مالية أو رسوم من الباحثين عن عمل، وتتم عمليات التقديم مباشرة عبر الانتقال للرابط الأصلي للجهة المعلنة.

وظائف مشابهة

تقدم للوظيفة الآن