
GRC Lead
- Al Madinah
- Permanent
- Full-time
- Develop and document governance processes for cyber initiatives, policies/standards, and contracts.
- Align governance processes with clear objectives, oversight mechanisms, and review cycles.
- Maintain and review RACI matrices for key processes.
- Drive continuous improvement in governance frameworks.
- Ensure measurable value delivery from governance activities.
- Design and implement an effective Cyber Security risk management process.
- Identify, analyze, and evaluate risks in line with organizational and regulatory requirements.
- Provide tailored risk reporting for executive, departmental, and operational audiences.
- Educate stakeholders on potential internal and external risk impacts.
- Maintain an up-to-date register of legal and regulatory compliance requirements (e.g., NCA, PDPL, PCI DSS).
- Conduct periodic assessments of control systems and recommend enhancements.
- Review cybersecurity procedures to identify vulnerabilities or recurring issues.
- Collaborate with departments to ensure policy compliance.
- Implement periodic procedural and process reviews.
- Coordinate with vendors according to defined plans.
- Engage with regulatory bodies (NCA, SDAIA) as needed to ensure compliance and alignment.
- +4 Years of experience in cybersecurity governance, risk, and compliance.
- Strong knowledge of NCA and SDAIA regulations and relevant standards.
- Bachelor’s degree in Cybersecurity, IT, Computer Science, or related field.
- At least one professional certification (CISSP, CISM, CISA).
- Proven leadership, communication, and stakeholder management skills.
- Experience in multi-platform OS (Windows, Linux, Unix) and application/database security.
- Health Insurance Coverage
- Paid Leave
- Remote Work Opportunities (where applicable)
- Professional Development and Training