Senior Executive Manager - Cybersecurity GRC & Data Protection
Job in
Jeddah, Saudi Arabia
Listed on 2026-08-18
Listing for:
BUPA Arabia
Full Time
position Listed on 2026-08-18
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below
To manage daily operations of Cyber Security Governance, Risk & Compliance unit.
1 - Governance Documentation & Implementation:- Develop and maintain a cybersecurity governance program
- Develop and document quality governance processes for Cyber initiatives, BAU, policies/standards, contracts, etc.
- Ensure the processes are aligned to clear objectives and have oversight/review frequencies.
- Review/document RASCI for processes
- Ensure that there is a continuous improvement cycle for process.
- Establish value for the Governance structure/process
- Design and implement a Cyber Security risk management process.
- Analysing current risks and identifying potential risks that are affecting BUPA Arabia
- Evaluating the BUPA Arabia’s previous handling of risks and comparing potential risks with criteria set out by the company such as costs and legal requirements.
- Risk reporting tailored to the relevant audience. (Educating the board of directors about the most significant risks to the business; ensuring business heads understand the risks that might affect their departments; ensuring individuals understand their own accountability for individual risks)
- Explaining the external risk posed by BUPA Arabia to stakeholder.
- Design and implement third-party risk operating model to identify, evaluate and provide solutions to complex business and technology risks.
- Identify and address key third party related risks and areas of concerns associated with new and existing third-party relationships
- Monitor Key Performance Indicators (KPIs) and Key Risk Indicators (KRIs) for appropriate escalation to stakeholders
- Develop a TPRM dashboard to highlight key TPRM program metrics and statistics (e.g., third-party portfolio risk, cyber security incidents, program efficiencies/value add)
- Maintain the list of all legal / regulatory compliance requirements.
- Ensure periodic assessment of the efficiency of Cyber Security control systems and recommend effective improvements.
- Ensure the review and evaluation of Cyber Security procedures to identify hidden risks or common issues.
- Coordinate with different department to review their respective compliance with Cyber Security Polices.
- Ensure implementation of program to perform periodic review on company procedures and processes.
- Data Privacy Officer (DPO) ensuring that the Bupa Arabia processes the personal data of its staff, beneficiaries, providers or any other individuals in compliance with the applicable KSA data privacy regulations.
- Identify personal data schemes and the applicable privacy laws and regulations.
- Identifies and analyzes privacy risks that are applicable to the privacy ecosystem.
- Develops a data privacy mitigation plan to mitigate identified privacy risks.
- Monitors the proper implementation of the mitigation plan with other business units.
- Monitors compliance with the KSA PDPL and other data protection laws.
- Advise the Data Controller or Data Processor and its employees about their obligations to comply with the KSA PDPL and other data protection laws.
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×