×
Register Here to Apply for Jobs or Post Jobs. X

Cybersecurity GRC Manager

Job in Riyadh, Riyadh Region, Saudi Arabia
Listing for: HALA
Full Time position
Listed on 2026-09-22
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 300000 - 420000 SAR Yearly SAR 300000.00 420000.00 YEAR
Job Description & How to Apply Below

HALA is a leading fintech player in the MENAP region that aims to redefine financial services and build the future bank of SMEs. HALA aims at empowering SMEs to start, run, and grow their businesses by providing them with cutting-edge financial and technological tools.

HALA currently holds multiple entities in UAE, Saudi Arabia and Egypt (including HALA Payments and HALA Logistics) and offers solutions that enable merchants to digitize their payments as well as manage their sales and operations.

Founded in 2017, HALA is currently licensed by the Saudi Arabian Central Bank.

Who Are We

HALA is a leading fintech player in the MENAP region that aims to redefine financial services and build the future bank of SMEs. HALA aims at empowering SMEs to start, run, and grow their businesses by providing them with cutting-edge financial and technological tools.

HALA currently holds multiple entities in UAE, Saudi Arabia and Egypt (including HALA Payments and HALA Logistics) and offers solutions that enable merchants to digitize their payments as well as manage their sales and operations.

Founded in 2017, HALA is currently licensed by the Saudi Arabian Central Bank.

Responsibilities

Governance & Strategy:

Develop, implement, and continuously improve the organization's Information Security Governance framework, policies, standards, and procedures.

Lead the creation and execution of the Cyber Security Strategy in alignment with the company's overall business goals.

Providing regular reports to the Board of Directors and executive management on the state of cybersecurity.

Establish and manage a security metrics and Key Performance Indicator (KPI) program to measure the effectiveness of the security program and report on progress.

Oversee the information security budget, ensuring resources are allocated effectively to manage risk.

Risk Management:

Design and manage a comprehensive enterprise-wide Cyber Security Risk Management program.

Conduct regular risk assessments, including Business Impact Analysis (BIA), to identify, analyze, and evaluate information security risks.

Facilitate risk treatment planning with business and technology owners, ensuring appropriate mitigation, acceptance, or transfer strategies are implemented.

Manage the vendor risk management program, assessing the security posture of third-party vendors and partners, especially cloud service providers and payment gateways.

Integrate risk management into the Software Development Life Cycle (SDLC) and change management processes.

Regulatory Compliance:

Serve as the primary point of contact and subject matter expert for all regulatory examinations and audits related to cybersecurity (e.g., SAMA, CMA).

Ensure continuous compliance with SAMA's Cyber Security Framework (CSF), Payment Card Industry Data Security Standard (PCI DSS) requirements, and other relevant regulations.

Manage the process for obtaining and maintaining necessary regulatory licenses and certifications from a cybersecurity perspective.

Prepare and submit accurate and timely regulatory reports, questionnaires, and evidence requests.

Monitor the regulatory landscape for changes in laws, regulations, and standards, and proactively advise the business on required adjustments.

Audit & Assurance:

Manage all internal and external security audits, including coordinating with auditors, providing evidence, and tracking remediation of findings.

Develop and maintain a robust control testing program to validate the effectiveness of key security controls.

Manage the remediation of all audit and assessment findings, ensuring they are closed out effectively and permanently.

Awareness & Culture:

Develop and deliver a security awareness and training program tailored to different roles within the organization, with a focus on local context and threats.

Champion a strong security culture, ensuring that every employee understands their role in protecting the company's information assets.

What We Offer You
We believe you will love working at HALA!
  • We have an inclusive and diverse culture that encourages innovation and flexibility in remote, in-office, and hybrid work setups.
  • We offer highly competitive compensation packages, including the potential for shares.
  • We prioritize personal development and offer regular training and an annual learning stipend to tackle new challenges and grow your career in a hyper-growth environment.
  • Join a talented team of over 30 nationalities working in 7 countries and gain valuable experience in an exciting industry.
  • We offer…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary