Cyber Security GRC Specialist

CYBER سايبر

Jeddah

On-site

SAR 180,000 - 240,000

Full time

8 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

CYBER سايبر in Jeddah seeks a Cybersecurity GRC Specialist to strengthen governance, risk, and compliance programs in line with KSA regulations (NCA, SAMA) and ISO 27001.

You will develop policies, monitor adherence, report to the CISO, manage risk registers, support audits, business continuity, and security awareness across the organization. The ideal candidate has 2–4 years in GRC, a Bachelor’s degree in a related field, and hands‑on experience with GRC tools.

Qualifications

  • Bachelor’s degree in Cybersecurity, Information Security, Computer Science, or related field.

Responsibilities

  • Develop, implement, and maintain cybersecurity governance policies and standards.
  • Monitor adherence to established cybersecurity policies and controls.
  • Provide governance and risk posture reports to the CISO and executive leadership.
  • Maintain cybersecurity documentation aligned with regulatory and industry standards.
  • Assist in risk management, audits, and incident response activities.

Skills

GRC knowledge
Risk assessment
Regulatory compliance
ISO 27001
GRC tools

Education

Bachelor's degree in related field

Tools

GRC tools

Job description

Cybersecurity GRC Specialist

Saudi Arabia | Cyber | Full-time Location: Jeddah

About Cyber

At Cyber, we are committed to strengthening organizational resilience through robust cybersecurity governance, risk management, and regulatory compliance. We operate in alignment with the Kingdom of Saudi Arabia’s regulatory landscape, ensuring adherence to NCA, SAMA, and international best practices.

We are seeking a Cybersecurity GRC Specialist to support and enhance our Governance, Risk, Compliance, and Security Awareness programs. This role plays a critical part in protecting our information assets, cloud environments, and data by ensuring effective governance structures, regulatory compliance, and risk mitigation strategies.

Key Responsibilities
  • Develop, implement, and maintain cybersecurity governance policies, frameworks, and standards.
  • Monitor organizational adherence to established cybersecurity policies and controls.
  • Provide periodic governance and risk posture reports to the CISO and executive leadership.
  • Maintain cybersecurity documentation aligned with regulatory and industry standards.
Risk Management
  • Conduct comprehensive cybersecurity risk assessments across business units and cloud environments.
  • Identify, evaluate, and prioritize cybersecurity risks.
  • Maintain and continuously update the organizational risk register.
  • Drive remediation efforts and ensure timely closure of identified risks and audit findings.
Compliance & Regulatory Alignment
  • Ensure compliance with KSA regulatory frameworks (e.g., NCA ECC, SAMA CSF) and international standards such as ISO 27001.
  • Support internal and external audit activities.
  • Evaluate the effectiveness of implemented technical and administrative security controls.
  • Prepare and submit regulatory compliance reports as required.
Business Continuity & Incident Support
  • Assist in the development and maintenance of Business Continuity and Disaster Recovery plans.
  • Support Business Impact Analysis (BIA) activities.
  • Participate in testing and validation of continuity and recovery procedures.
  • Contribute to incident response efforts to ensure minimal operational disruption.
Security Awareness
  • Support and promote cybersecurity awareness initiatives across the organization.
  • Assist in managing awareness tools and programs.
  • Foster a strong cybersecurity culture and ensure employee understanding of risks and responsibilities.
Qualifications & Requirements
  • Bachelor’s degree in Cybersecurity, Information Security, Computer Science, or related field.
  • 2–4 years of experience in Cybersecurity GRC or related roles.
  • Strong understanding of governance frameworks, risk management methodologies, and compliance practices.
  • Knowledge of KSA regulatory requirements (NCA, SAMA) and ISO 27001 standards.
  • Hands-on experience with GRC tools is preferred.
Preferred Certifications
  • ISO 27001 Lead Implementer
  • CompTIA Security+
  • Other relevant GRC certifications are a plus
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber GRC Specialist: Drive Risk, Compliance & Resilience
Cyber GRC Specialist: Drive Risk, Compliance & Resilience

CYBER سايبر • Jeddah

On-site
SAR 180,000 - 240,000
Cybersecurity Governance, Risk & Compliance (GRC) Specialist
Cybersecurity Governance, Risk & Compliance (GRC) Specialist

CCDS • Riyadh

On-site
SAR 240,000 - 360,000
Cybersecurity GRC Specialist
Cybersecurity GRC Specialist

flint-international • Jeddah

On-site
SAR 180,000 - 300,000
GRC Specialist
GRC Specialist

Managed • Jeddah

On-site
SAR 120,000 - 180,000
IT, Cybersecurity GRC Consultant
IT, Cybersecurity GRC Consultant

CCDS • Riyadh

On-site
SAR 240,000 - 360,000
Medical Insurance
Paid Time Off
Training & Development
+1
GRC Specialist
GRC Specialist

Managed Services • Jeddah

On-site
SAR 120,000 - 180,000
Cybersecurity Governance, Risk & Compliance (GRC) Specialist
Cybersecurity Governance, Risk & Compliance (GRC) Specialist

Cloud Consultancy - CCDS • Riyadh

On-site
SAR 180,000 - 240,000
IT, Cybersecurity GRC Consultant
IT, Cybersecurity GRC Consultant

Cloud Consultancy - CCDS • Riyadh

On-site
SAR 201,000 - 312,000
Medical Insurance
Paid Time Off
Training & Development
+1
Cybersecurity GRC Lead
Cybersecurity GRC Lead

Confidential • Al Khobar

On-site
SAR 220,000 - 320,000
GRC Specialist
GRC Specialist

Managed.sa • Jeddah

On-site
SAR 70,000 - 100,000