Cybersecurity GRC Manager
الوصف الوظيفي
Cybersecurity GRC Manager – Drive Enterprise-Level Security Governance at HALA
Join HALA, a pioneering fintech leader in the MENAP region, as our Cybersecurity GRC Manager. We are reshaping financial services for SMEs by delivering innovative, technology-driven solutions that empower businesses to thrive in a digital-first economy. With a presence across the UAE, Saudi Arabia, and Egypt—including HALA Payments and HALA Logistics—we are committed to revolutionizing how merchants operate, pay, and scale. Licensed by the Saudi Arabian Central Bank (SAMA), HALA is at the forefront of fintech innovation, and we are seeking a visionary security leader to fortify our cybersecurity framework, align it with global best practices, and ensure compliance in a rapidly evolving regulatory landscape.
As the Cybersecurity GRC Manager, you will play a pivotal role in establishing HALA’s cybersecurity governance, risk management, and compliance (GRC) strategy. This position demands a strategic mindset, deep technical expertise, and the ability to bridge the gap between security imperatives and business objectives. You will lead the charge in developing a robust security posture that safeguards our digital assets while enabling seamless growth for our clients and partners.
Key Responsibilities
Your impact will be transformative across four critical domains:
- Governance & Strategy: Design and implement a comprehensive Information Security Governance Framework that aligns with HALA’s business goals and industry standards. Lead the development of a Cybersecurity Strategy that anticipates emerging threats and ensures proactive risk mitigation. Present executive-level reports to the Board of Directors and senior management, providing transparency on cybersecurity posture, risk exposure, and strategic initiatives. Establish and refine a security metrics and KPI program to measure the effectiveness of our security controls and drive continuous improvement. Oversee the information security budget, ensuring optimal resource allocation to mitigate risks and support innovation.
- Risk Management: Develop and oversee an enterprise-wide Cybersecurity Risk Management Program that identifies, assesses, and mitigates risks across all business functions. Conduct regular risk assessments, including Business Impact Analyses (BIA), to evaluate vulnerabilities and prioritize remediation efforts. Collaborate with business and technology stakeholders to develop risk treatment plans, ensuring alignment with HALA’s risk appetite and operational objectives. Manage the vendor risk program, particularly for third-party providers such as cloud services and payment gateways, to ensure their security practices meet HALA’s stringent standards. Integrate risk management into the Software Development Life Cycle (SDLC) and change management processes to embed security by design.
- Regulatory Compliance: Serve as the primary regulatory liaison for cybersecurity-related examinations and audits, including engagements with SAMA, the Central Bank of Egypt (CMA), and other financial authorities. Ensure full compliance with SAMA’s Cyber Security Framework (CSF), PCI DSS, and other relevant regulations, while staying ahead of evolving legal requirements. Lead the process for obtaining and maintaining necessary cybersecurity licenses and certifications, ensuring HALA remains operationally compliant and competitive. Monitor the regulatory landscape for changes and proactively advise leadership on adjustments to policies and controls. Prepare and submit accurate, timely regulatory reports, evidence requests, and questionnaires with precision and clarity.
- Audit & Assurance: Manage all internal and external security audits, coordinating with auditors, providing evidence, and tracking remediation of findings to closure. Develop and maintain a control testing program to validate the effectiveness of critical security controls and identify gaps. Oversee the remediation of audit findings, ensuring issues are addressed permanently and do not recur. Foster a culture of accountability and continuous improvement through rigorous audit processes.
- Awareness & Culture: Design and deliver a tailored security awareness and training program for employees at all levels, emphasizing local threats and best practices. Champion a strong security culture by fostering a shared responsibility mindset, ensuring every team member understands their role in protecting HALA’s digital assets. Drive engagement through interactive training, phishing simulations, and ongoing education initiatives.
This role is ideal for a strategic security leader who thrives in a fast-paced, innovative environment. You will have the opportunity to shape HALA’s security framework, influence industry standards, and contribute to the growth of a fintech pioneer. If you are passionate about cybersecurity, committed to compliance, and eager to make a lasting impact, we invite you to be part of our mission to redefine financial services for the modern enterprise.
Why Join HALA?
At HALA, we believe that exceptional talent drives exceptional outcomes. We offer:
- A dynamic, inclusive culture that celebrates diversity and encourages innovation, with flexible work arrangements to support a balanced lifestyle.
- Competitive compensation, including the potential for equity participation, reflecting your contributions to HALA’s success.
- Unlimited personal and professional growth through regular training programs, mentorship opportunities, and an annual learning stipend to expand your expertise.
- The chance to work with a global team of over 30 nationalities across seven countries, collaborating in a collaborative and high-impact environment.
- Autonomy and challenging goals that empower you to drive meaningful change while making a tangible difference in the fintech space.
This is more than a job—it’s an opportunity to lead, innovate, and grow within a company that is redefining the future of financial services. If you are ready to take your career to the next level and contribute to a mission-driven organization, we encourage you to apply.
يمكن أن يرتكب الذكاء الاصطناعي أخطاءً.
ℹ️ إخلاء مسؤولية توظيف:
موقع وظائف السعودية (ksajobshub.com) هو محرك بحث ومجمع لإعلانات الوظائف من المصادر والشركات الرسمية في المملكة العربية السعودية. نحن لا نتقاضى أي مبالغ مالية أو رسوم من الباحثين عن عمل، وتتم عمليات التقديم مباشرة عبر الانتقال للرابط الأصلي للجهة المعلنة.