Cybersecurity GRC Specialist

Tibah Airports Operation | طيبة لتشغيل المطارات

Medina

On-site

SAR 140,000 - 210,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

T ibah Airports Operation | طيبة لتشغيل المطارات is seeking a Cybersecurity GRC Specialist to support governance, risk management, and compliance across IT and OT/ICS environments in Medina, Saudi Arabia. The role focuses on implementing and monitoring cybersecurity strategies, policies, standards, and controls to meet regulatory and business requirements.

The position requires CRISC certification, a Bachelor's degree in a related field, and 3+ years of cybersecurity experience, including GRC

Qualifications

  • Strong knowledge of cybersecurity domains and best practices.
  • Excellent knowledge of Governance, Risk, and Compliance (GRC) frameworks and program management.
  • Good understanding of cybersecurity incident management practices.
  • Familiarity with cybersecurity standards and frameworks (ISO 27001, NIST, CIS).
  • Understanding of IT and OT/ICS security concepts.

Responsibilities

  • Support governance, risk management, and compliance activities.
  • Identify threats, vulnerabilities, and risks across IT and OT/ICS.
  • Monitor risk treatment and remediation plans.
  • Ensure compliance with cybersecurity policies and regulatory requirements.
  • Assist in updating policies and procedures for OT/ICS.
  • Support audits, assessments, and reviews.
  • Advise stakeholders to ensure secure operations.
  • Prepare status reports for Cybersecurity Manager.

Skills

GRC frameworks
Cybersecurity risk management
Incident management
Cybersecurity standards
IT/OT concepts

Education

Bachelor's degree in Cybersecurity
CRISC certification

Job description

Job Purpose

The Cybersecurity GRC Specialist is responsible for supporting the organization's cybersecurity governance, risk management, and compliance (GRC) activities. The role ensures that cybersecurity strategies, policies, standards, and controls are effectively implemented, monitored, and aligned with regulatory, operational, and business requirements, including IT and OT/ICS environments.

Responsibilities
  • Manage and oversee the implementation of cybersecurity strategies, policies, standards, and procedures across the organization
  • Conduct cybersecurity risk assessments to identify threats, vulnerabilities, and risks across IT and OT/ICS environments
  • Develop, track, and monitor cybersecurity risk treatment and mitigation plans, ensuring timely remediation of identified risks
  • Ensure IT activities, processes, and procedures comply with approved cybersecurity policies, standards, and regulatory requirements
  • Identify, document, review, and periodically update cybersecurity policies and procedures, including those related to OT/ICS infrastructure
  • Support cybersecurity compliance with applicable laws, regulations, standards, and frameworks
  • Support cybersecurity functions in integrating security requirements into new and changed systems, services, and projects
  • Provide GRC advisory support to IT, OT, and business stakeholders to ensure secure and compliant operations
  • Prepare periodic cybersecurity compliance and risk status reports and present updates to the Cybersecurity Manager
  • Monitor the overall cybersecurity compliance posture and recommend improvements where gaps are identified
  • Implement and support cybersecurity training and awareness programs to promote a strong security culture
  • Support internal and external cybersecurity audits, assessments, and reviews
  • Stay informed about emerging cybersecurity risks, threats, and regulatory changes relevant to airport and critical infrastructure environments
  • Perform other related cybersecurity GRC duties as assigned
Requirements
Education requirements:

Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field.

Certification Requirements:

Certified in Risk and Information Systems Control (CRISC).

Experience:

Minimum of 3 years of overall cybersecurity-related experience. 1-2 years of hands‑on experience in Cybersecurity GRC roles. Experience in regulated environments, critical infrastructure, or airport operations is an advantage.

Languages:

Fluent in Arabic & English (required).

Technical Skills:
  • Strong knowledge of cybersecurity domains and best practices
  • Excellent knowledge of Governance, Risk, and Compliance (GRC) frameworks and program management
  • Good understanding of cybersecurity incident management practices
  • Familiarity with cybersecurity standards and frameworks (e.g., ISO 27001, NIST, CIS)
  • Understanding of IT and OT/ICS security concepts
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Specialist (KSA National)
GRC Specialist (KSA National)

Specialized Technical Services – STS • Riyadh

On-site
SAR 100,000 - 150,000
GRC Specialist
GRC Specialist

Managed.sa • Jeddah

On-site
SAR 70,000 - 100,000
Cybersecurity GRC Lead
Cybersecurity GRC Lead

Confidential • Saudi Arabia

On-site
SAR 250,000 - 350,000
GRC Specialist
GRC Specialist

Managed • Jeddah

On-site
SAR 120,000 - 180,000
Cyber GRC Specialist — IT/OT Security & Compliance
Cyber GRC Specialist — IT/OT Security & Compliance

Tibah Airports Operation | طيبة لتشغيل المطارات • Medina

On-site
SAR 140,000 - 210,000
GRC Specialist
GRC Specialist

Managed Services • Jeddah

On-site
SAR 120,000 - 180,000
Cybersecurity GRC Specialist
Cybersecurity GRC Specialist

flint-international • Jeddah

On-site
SAR 180,000 - 300,000
Cybersecurity GRC Specialist
Cybersecurity GRC Specialist

Water Transmission and Technologies Co. • Riyadh

On-site
SAR 120,000 - 160,000
Cybersecurity GRC Consultant
Cybersecurity GRC Consultant

Devoteam • Riyadh

On-site
GRC Consultant
GRC Consultant

Catalyic Security • Saudi Arabia

On-site
SAR 50,000 - 75,000