Cybersecurity Governance, Risk & Compliance; GRC) Specialist
Job in
Riyadh, Riyadh Region, Saudi Arabia
Listed on 2026-09-01
Listing for:
Cloud Consultancy - CCDS
Full Time
position Listed on 2026-09-01
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below
Location: On-site - Riyadh, Saudi Arabia
Contract/engagement: Project-based managed cybersecurity services (13-month)
Minimum experience: 6+ years
Role PurposeSupport the governmental entity's cybersecurity governance, enterprise risk, regulatory compliance, audit readiness, and executive reporting activities.
Key Responsibilities- Review and periodically update cybersecurity policies, procedures, standards, and guidelines
- Perform cybersecurity risk assessments covering assets, systems, projects, and third parties
- Maintain the cybersecurity risk register, develop treatment plans, track actions, and align decisions with the entity's approved risk appetite
- Conduct compliance gap assessments against NCA controls, ISO/IEC 27001, and other applicable national or international frameworks
- Support internal and external audits, prepare evidence, manage non-compliance cases, and follow remediation through closure
- Operate or support eGRC and cybersecurity risk-management tools
- Prepare management reports, executive dashboards, KPIs, compliance status reports, and committee-level presentations
- Bachelor's degree in Computer Science, Information Security, or a related field
- At least 6 years of experience in cybersecurity governance, risk, and compliance
- Advanced knowledge of Saudi and international cybersecurity frameworks and standards, including NCA controls and ISO/IEC 27001
- Proven experience with cybersecurity risk registers, treatment plans, third-party risk, executive reporting, and eGRC tools
- Strong stakeholder-management skills and confidence working with senior leadership
- Excellent analytical, writing, presentation, and documentation skills
- Structured, detail-oriented, accountable, and able to coordinate remediation across multiple teams
Preferred: CISSP, CISM, CRISC, or ISO/IEC 27001 Lead Implementer (LI).
#J-18808-LjbffrTo View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×