Enable job alerts via email!

Compliance & Governance Analyst

Saudi Aramco Base Oil Company-Luberef

Saudi Arabia

On-site

SAR 60,000 - 100,000

Full time

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking a dedicated Cybersecurity Governance, Risk, and Compliance specialist to enhance its cybersecurity framework. This role involves developing and implementing strategies aligned with corporate objectives, ensuring compliance with regulatory requirements, and promoting cybersecurity awareness. The ideal candidate will have a robust background in GRC, with experience in risk and compliance assessments, and familiarity with cybersecurity regulations specific to the region. Join this forward-thinking company to contribute to a secure digital environment and protect vital organizational assets.

Qualifications

  • 5-8 years of experience in Governance, Risk, and Compliance (GRC).
  • Bachelor's degree in Information Systems or Management Information Systems.

Responsibilities

  • Develop and implement corporate cybersecurity strategy.
  • Provide cybersecurity compliance advisories and consultancy.
  • Develop and maintain Cybersecurity Governance, Risk, and Compliance.

Skills

GRC experience
ITIL
COBIT
Risk assessment
Compliance assessment
Cybersecurity regulations

Education

Bachelor in Information Systems

Tools

GIAC Security Essentials
CompTIA Security +
CompTIA Pentest +
Certified Ethical Hacker (CEH)
CompTIA CySA +

Job description

JOB PURPOSE

Develop Cybersecurity Organizational Governance, Risk and Compliance environment based on regulatory requirements and business direction in coordination with Cybersecurity Officer. Provides cybersecurity compliance advisories and consultancy to IT, OT, and other organization to achieve the corporate objective. Ensure compliance of cybersecurity regulatory requirements and maturity targets are achieved based on industry standards and compliance requirement. Ensure effective measure and reporting of Cybersecurity Performance Indicators to Cybersecurity Officer and Management.

KEY ACCOUNTABILITIES & RESPONSIBILITIES

  • Develop, implement, and report corporate cybersecurity strategy, performance criteria to align with corporate business strategy.
  • Develop, implement, and maintain Cybersecurity Roadmap, Program and its Activities based on compliance guideline and maturity targets.
  • Develop and implement the Cybersecurity Governance, Risk, and Compliance (GRC) to comply with legal and regulatory requirements.
  • Develop and implement Security Architecture for IT, OT and Cybersecurity requirements, acquisition lifecycles for all assets and certification.
  • Provide assessment service for security architecture and Security Risk to IT, OT, and other business stakeholders.
  • Develop and implement Cybersecurity Risk Management Program.
  • Develop and implement Cybersecurity Policies, Procedure and Guideline based on regulatory requirements.
  • Develop and maintain security architecture to change and replacement of organizational assets.
  • Develop and Promote Cybersecurity Awareness Program to prevent Phishing attack.
  • Coordinate with Cybersecurity, IT and OT Liaison, supplier and contractors to provide feedback, advisory and necessary support.

QUALIFICATIONS & REQUIREMENTS

Education

  • Bachelor information System or Management Information system

Knowledge and Experience

  • 5 to 8 years of GRC experience
  • ITIL or COBIT

Preferable Skills

  • GIAC Security Essentials
  • CompTIA Security +
  • CompTIA Pentest +
  • Certified Ethical Hacker (CEH)
  • CompTIA CySA +
  • Experience in Risk assessment
  • Experience in Compliance assessment
  • Experience in Saudi Aramco cybersecurity regulations
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.