
GRC Consultant
- Riyadh
- Permanent
- Full-time
- Assist in the development and implementation of GRC strategies and policies.
- Conduct risk assessments and compliance audits to evaluate the effectiveness of security controls.
- Support efforts to ensure compliance with applicable regulations and industry standards.
- Collaborate with cross-functional teams to promote a culture of risk management and compliance.
- Prepare documentation, reports, and presentations for stakeholders and management.
- Develop policies, standards, procedures
- Support audits and evidence collection
- Align IT/security practices with governance
- Bachelor's degree in Cybersecurity, Information Security, or a related field.
- 4-6 years of experience in governance, risk management, and compliance within the cybersecurity framework.
- Understanding of cybersecurity frameworks and regulations, including ISO 27001, NIST, and PCI DSS.
- Knowledge of NCA ECC, SAMA CSF
- Strong analytical skills with the ability to identify and assess risk.
- Relevant certifications such as CISA, CRISC, ISO 27001 Lead Implementer, or equivalent are a plus.