Create a job specific, tailored resume for higher success rate.
Create a job specific, tailored resume for higher success rate.
Job summary
An established industry player is seeking a dedicated Cybersecurity Governance, Risk, and Compliance specialist to enhance its cybersecurity framework. This role involves developing and implementing strategies aligned with corporate objectives, ensuring compliance with regulatory requirements, and promoting cybersecurity awareness. The ideal candidate will have a robust background in GRC, with experience in risk and compliance assessments, and familiarity with cybersecurity regulations specific to the region. Join this forward-thinking company to contribute to a secure digital environment and protect vital organizational assets.
Qualifications
5-8 years of experience in Governance, Risk, and Compliance (GRC).
Bachelor's degree in Information Systems or Management Information Systems.
Responsibilities
Develop and implement corporate cybersecurity strategy.
Provide cybersecurity compliance advisories and consultancy.
Develop and maintain Cybersecurity Governance, Risk, and Compliance.
Skills
GRC experience
ITIL
COBIT
Risk assessment
Compliance assessment
Cybersecurity regulations
Education
Bachelor in Information Systems
Tools
GIAC Security Essentials
CompTIA Security +
CompTIA Pentest +
Certified Ethical Hacker (CEH)
CompTIA CySA +
Job description
JOB PURPOSE
Develop Cybersecurity Organizational Governance, Risk and Compliance environment based on regulatory requirements and business direction in coordination with Cybersecurity Officer. Provides cybersecurity compliance advisories and consultancy to IT, OT, and other organization to achieve the corporate objective. Ensure compliance of cybersecurity regulatory requirements and maturity targets are achieved based on industry standards and compliance requirement. Ensure effective measure and reporting of Cybersecurity Performance Indicators to Cybersecurity Officer and Management.
KEY ACCOUNTABILITIES & RESPONSIBILITIES
Develop, implement, and report corporate cybersecurity strategy, performance criteria to align with corporate business strategy.
Develop, implement, and maintain Cybersecurity Roadmap, Program and its Activities based on compliance guideline and maturity targets.
Develop and implement the Cybersecurity Governance, Risk, and Compliance (GRC) to comply with legal and regulatory requirements.
Develop and implement Security Architecture for IT, OT and Cybersecurity requirements, acquisition lifecycles for all assets and certification.
Provide assessment service for security architecture and Security Risk to IT, OT, and other business stakeholders.
Develop and implement Cybersecurity Risk Management Program.
Develop and implement Cybersecurity Policies, Procedure and Guideline based on regulatory requirements.
Develop and maintain security architecture to change and replacement of organizational assets.
Develop and Promote Cybersecurity Awareness Program to prevent Phishing attack.
Coordinate with Cybersecurity, IT and OT Liaison, supplier and contractors to provide feedback, advisory and necessary support.
QUALIFICATIONS & REQUIREMENTS
Education
Bachelor information System or Management Information system
Knowledge and Experience
5 to 8 years of GRC experience
ITIL or COBIT
Preferable Skills
GIAC Security Essentials
CompTIA Security +
CompTIA Pentest +
Certified Ethical Hacker (CEH)
CompTIA CySA +
Experience in Risk assessment
Experience in Compliance assessment
Experience in Saudi Aramco cybersecurity regulations
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.