×
Register Here to Apply for Jobs or Post Jobs. X

Cybersecurity Architect – Security Governance, Cloud & GRC

Job in Riyadh, Saudi Arabia
Listing for: VaporVM Ltd.
Full Time position
Listed on 2026-09-27
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, IT Consultant, Security Management & Operations
Salary/Wage Range or Industry Benchmark: 94000 - 156000 SAR Yearly SAR 94000.00 156000.00 YEAR
Job Description & How to Apply Below
Position: Cybersecurity Architect – Security Governance, Cloud & GRC |

Location

Riyadh, Saudi Arabia — On-site

Job Category
  • Information Technology (IT) & Software
  • Security & Defence
  • Legal & Compliance
  • Banking & Insurance
  • Telecommunications
Job Overview

VaporVM is seeking an experienced Cybersecurity Architect to join its team in Riyadh, Saudi Arabia. This on-site opportunity is suitable for cybersecurity professionals with 8–12 years of experience and strong expertise across security architecture, governance, risk and compliance, vulnerability management, threat monitoring, incident response, and cloud security.

The role requires comprehensive knowledge of cybersecurity frameworks and Saudi regulatory requirements, including ISO 27001:2022, SAMA-CSF, NCA, PDPL, and CST CRF
. The successful candidate will work across security governance, penetration testing, vulnerability management, SIEM, cloud, application, API, and IoT security, as well as vendor and third-party risk assessments.

This position offers opportunities for career growth and professional development within cybersecurity architecture, GRC, security engineering, cloud security, and regulatory compliance. Relevant certifications and specialized cybersecurity training can further strengthen long-term career progression.

Key Responsibilities
  • Develop and support cybersecurity architecture and security strategies.
  • Apply relevant cybersecurity frameworks, standards, and regulatory requirements.
  • Support compliance with ISO 27001:2022, SAMA-CSF, NCA, PDPL, and CST CRF requirements.
  • Manage and support security governance, GRC, and enterprise risk-management activities.
  • Assess security risks and recommend appropriate mitigation strategies.
  • Support penetration testing and vulnerability management programs.
  • Monitor security threats and support SIEM and incident-response activities.
  • Apply security controls across cloud, applications, APIs, and IoT environments.
  • Assess security risks throughout the technology and application lifecycle.
  • Apply security testing and assessment methodologies aligned with OWASP Top 10, PTES, and MITRE ATT&CK.
  • Conduct or support vendor security assessments and third-party risk reviews.
  • Collaborate with technology, infrastructure, application, compliance, and business stakeholders.
  • Support continuous improvement of cybersecurity controls, policies, and architecture.
Requirements & Qualifications
  • 8–12 years of professional cybersecurity experience
    .
  • Current residence in Saudi Arabia is required.
  • Availability as an immediate joiner is required.
  • Strong knowledge of:
    • ISO 27001:2022
    • SAMA Cyber Security Framework (SAMA-CSF)
    • National Cybersecurity Authority (NCA) requirements
    • Personal Data Protection Law (PDPL)
    • CST Cybersecurity Regulatory Framework (CST CRF)
  • Strong experience in Security Governance, GRC, and Risk Management.
  • Experience with penetration testing and vulnerability management.
  • Knowledge of SIEM, threat monitoring, and incident response.
  • Experience with cloud, application, API, and IoT security.
  • Strong understanding of OWASP Top 10, PTES, and MITRE ATT&CK.
  • Experience in vendor security and third-party risk assessments.
  • Strong analytical, communication, stakeholder-management, and problem-solving skills.
Preferred Certifications
  • CISM
  • CISA
  • ISO 27001 Lead Auditor
  • ISO 27001 Lead Implementer
  • CAP or equivalent cybersecurity certification
Salary, Benefits & Career Growth

Salary: Up to SAR 14,000 per month
, based on the job posting.

The position provides opportunities for career growth and professional development across cybersecurity architecture, security governance, GRC, regulatory compliance, cloud security, vulnerability management, and threat response. Candidates can further strengthen their professional profile through certifications such as CISM, CISA, ISO 27001 Lead Auditor/Implementer, CAP, and other relevant cybersecurity credentials.

Joining: Immediate joiner required

Location Requirement: Candidates must currently be based in Saudi Arabia.

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary