Security and ICT Inspector - Risk and Compliance
Listed on 2026-09-07
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Security Management & Operations -
Security
Cybersecurity, Information Security & Data Protection, Security Management & Operations
Security and ICT Inspector
- Risk and Compliance Job Snapshot
Role:
Security and ICT Inspector
- Risk and Compliance
Location:
Riyadh, Saudi Arabia
Industry: Computer and Network Security
Function:
Security Intelligence & Analysis
Experience:
Minimum 8 years
Job Type: Full-time
Position Overview:
Security and ICT Inspector
- Risk and Compliance in Riyadh, Saudi Arabia is a Computer and Network Security opportunity focused on security inspections, ICT infrastructure assessments, vulnerability identification, regulatory compliance, and technology risk mitigation. AECOM is hiring an experienced inspector to evaluate network and security controls, conduct structured risk assessments, investigate incidents, document compliance gaps, and provide practical recommendations that strengthen organizational security and technology resilience.
Job Details:
Country:
Saudi Arabia City:
Riyadh Industry: Computer and Network Security Function:
Security Intelligence & Analysis Salary: Estimated salary range based on similar jobs in the job city; please confirm the final offer with the employer. Gender: Any Candidate Nationality:
Any Job Type: Full-time
Role Context:
The Security and ICT Inspector will provide independent oversight of security controls and technology environments, helping ensure that organizational systems, facilities, and digital infrastructure operate in accordance with approved policies, regulatory requirements, and recognized security practices. The position is centered on evidence-based inspection. Network configurations, access controls, security protocols, protection measures, incident records, and operational procedures must be reviewed systematically to identify weaknesses before they develop into significant operational or information-security risks.
Working closely with ICT, cybersecurity, security operations, and management teams, the inspector will convert technical findings into prioritized corrective actions. Effective follow-up will be essential to verify that identified vulnerabilities are addressed and that improvements produce measurable reductions in organizational risk.
- Conduct scheduled security and ICT inspections across facilities, technology systems, and supporting infrastructure.
- Review network environments for weaknesses, control gaps, and security exposure.
- Assess ICT systems against internal policies and applicable security requirements.
- Examine security architecture and determine whether controls remain appropriate for identified risks.
- Perform structured security risk assessments across assigned environments.
- Identify vulnerabilities that could affect systems, data, infrastructure, or business operations.
- Evaluate potential threats and determine their likely operational impact.
- Prioritize findings according to severity, likelihood, and business exposure.
- Develop practical remediation recommendations for identified security weaknesses.
- Review network security protocols and associated technical controls.
- Assess user access controls, permissions, authentication measures, and related safeguards.
- Evaluate data protection measures against applicable policies and compliance requirements.
- Verify adherence to security regulations and recognized industry frameworks.
- Review compliance with internal ICT and information-security standards.
- Examine technical evidence supporting security-control implementation.
- Conduct security audits and maintain clear documentation of findings.
- Prepare comprehensive inspection reports covering observations, risks, and recommended actions.
- Present technical findings in language suitable for both technical and non-technical stakeholders.
- Maintain inspection registers, audit records, and supporting evidence.
- Preserve complete audit trails for follow-up and compliance review.
- Coordinate corrective actions with IT and security teams.
- Track remediation commitments against agreed completion dates.
- Verify whether implemented corrective measures adequately address original findings.
- Escalate unresolved or high-risk security issues to appropriate management.
- Investigate security incidents and reported breaches where required.
- Review incident timelines, technical evidence, and affected systems.
- Support root-cause analysis to determine how security failures occurred.
- Recommend preventive controls designed to reduce recurrence.
- Review incident response practices and identify opportunities for improvement.
- Support evaluation of business continuity and technology resilience arrangements where relevant.
- Use vulnerability assessment tools where available to strengthen technical inspection activities.
- Apply appropriate security testing methodologies during assessments.
- Review security trends and recurring findings across inspection cycles.
- Identify systemic weaknesses requiring broader corrective programs.
- Provide management with risk mitigation recommendations based on inspection evidence.
- Support security improvement initiatives through technical review and follow-up.
- Maintain awareness of emerging…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).