Digital GRC Section Head

FNRCO

Jeddah

On-site

SAR 300,000 - 540,000

Full time

6 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

FNRCO in Jeddah seeks a Digital GRC Section Head to lead IT governance, risk and compliance across digital platforms, embedding GRC frameworks into IT processes and driving audit readiness.

Responsibilities include establishing governance policies, managing risk and vendor risk, ensuring regulatory compliance (ISO, NCA, GDPR), and driving continuous improvement within IT teams. The role requires 6+ years of related experience and a bachelor’s degree in IT/engineering.

Qualifications

  • Minimum 6 years of experience in a related field or equivalent is required.
  • A bachelor’s degree in Engineering, Computer Science, Information Technology (IT), or equivalent is required.
  • Preferrable qualifications include certifications in audit and assurance, as well as expertise in risk management, KPI-P, compliance, and internal control frameworks.

Responsibilities

  • Establish, refine, and enforce IT governance frameworks, policies, and controls across the enterprise technology landscape.
  • Ensure governance practices align with standards, regulatory requirements, and industry best practices.
  • Provide structured reporting and updates to the Section Head on policy adoption and compliance levels.
  • Lead enterprise-level IT risk assessments and maintain a centralized risk register, ensuring ownership and remediation timelines are defined.
  • Prioritize vulnerabilities and risks based on business impact, integrating with architecture, infrastructure, and security functions for remediation.
  • Drive adoption of a risk-aware culture across IT teams through awareness and practical guidelines.
  • Oversee compliance frameworks (ISO, NCA, GDPR, etc.) and ensure digital platforms are audit ready.
  • Lead control testing, gap assessments, and remediation planning; coordinate timely responses to internal/external audits.
  • Ensure that evidence repositories are well-maintained for efficient audit responses.
  • Lead assessments of vendor GRC maturity, embed risk-based clauses, and monitor compliance.
  • Ensure vendors demonstrate compliance through SLAs, certifications, or independent audits.
  • Define and maintain GRC dashboards covering risk posture, audit findings, remediation timelines, and compliance status.
  • Provide regular structured updates to the Section Head and governance committees.
  • Continuously uplift GRC practices through benchmarking, maturity assessments, and lessons learned.
  • Support in monitoring day-to-day activities to ensure compliance with stipulated policies and procedures
  • Contribute to the identification of opportunities for continuous improvement of systems and processes taking into account leading practices, changes in business environment, cost reduction and productivity improvement
  • Actively participate in on-the-job training, mentoring and coaching of subordinates
  • Provide clear direction, prioritize tasks, assign and delegate responsibility and monitor the workflow
  • Promote a high-performance working environment embracing Company’s values

Skills

GRC leadership
IT governance
Regulatory compliance
Risk management
Vendor risk management
Audit readiness

Education

Bachelor's degree in Engineering, Computer Science, Information Technology (IT)

Tools

ISO 27001
NCA Regulations
GDPR

Job description

Saudi's Only

Digital GRC Section Head

Role Purpose

Lead IT governance, risk and compliance (GRC) practices across digital platforms, ensuring effective risk oversight, audit readiness, and adherence to policies and regulations, enable accountable, risk-aware operations by embedding GRC frameworks into IT processes, managing third-party risks, and providing actionable reporting to the Section Head.


Responsibilities:

Governance Framework & Policy Oversight


  • Establish, refine, and enforce IT governance frameworks, policies, and controls across the enterprise technology landscape.

  • Ensure governance practices align with standards, regulatory requirements, and industry best practices.

  • Provide structured reporting and updates to the Section Head on policy adoption and compliance levels.


Enterprise Risk Management & Vulnerability Oversight


  • Lead enterprise-level IT risk assessments and maintain a centralized risk register, ensuring ownership and remediation timelines are defined.

  • Prioritize vulnerabilities and risks based on business impact, integrating with architecture, infrastructure, and security functions for remediation.

  • Drive adoption of a risk-aware culture across IT teams through awareness and practical guidelines.


Compliance Management & Audit Readiness


  • Oversee compliance frameworks (ISO, NCA, GDPR, etc.) and ensure digital platforms are audit ready.

  • Lead control testing, gap assessments, and remediation planning; coordinate timely responses to internal/external audits.

  • Ensure that evidence repositories are well-maintained for efficient audit responses.


Third-party & Vendor Risk Governance


  • Lead assessments of vendor GRC maturity, embed risk-based clauses, and monitor compliance.

  • Ensure vendors demonstrate compliance through SLAs, certifications, or independent audits.


Performance Reporting, Metrics & Continuous Improvement


  • Define and maintain GRC dashboards covering risk posture, audit findings, remediation timelines, and compliance status.

  • Provide regular structured updates to the Section Head and governance committees.

  • Continuously uplift GRC practices through benchmarking, maturity assessments, and lessons learned.


Policies, Processes and Procedures


  • Support in monitoring day-to-day activities to ensure compliance with stipulated policies and procedures

  • Contribute to the identification of opportunities for continuous improvement of systems and processes taking into account leading practices, changes in business environment, cost reduction and productivity improvement


People Management


  • Actively participate in on-the-job training, mentoring and coaching of subordinates

  • Provide clear direction, prioritize tasks, assign and delegate responsibility and monitor the workflow

  • Promote a high-performance working environment embracing Company’s values


QUALIFICATIONS / REQUIREMENTS


  • Minimum 6 years of experience in a related field or equivalent is required.

  • A bachelor’s degree in Engineering, Computer Science, Information Technology (IT), or equivalent is required.

  • Preferrable qualifications include certifications in audit and assurance, as well as expertise in risk management, KPI-P, compliance, and internal control frameworks.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Digital GRC Lead: Risk, Compliance & Audit
Digital GRC Lead: Risk, Compliance & Audit

FNRCO • Jeddah

On-site
SAR 300,000 - 540,000
Director GRC
Director GRC

Alpha Leadership Co. • Jeddah

On-site
SAR 350,000 - 550,000
Cybersecurity GRC Lead
Cybersecurity GRC Lead

Confidential • Al Khobar

On-site
SAR 220,000 - 320,000
Cyber Security GRC Specialist
Cyber Security GRC Specialist

CYBER سايبر • Jeddah

On-site
SAR 180,000 - 240,000
GRC Manager
GRC Manager

MINDFREE Consulting | Insurance Talent Hub • Riyadh

On-site
IT, Cybersecurity GRC Consultant
IT, Cybersecurity GRC Consultant

CCDS • Riyadh

On-site
SAR 240,000 - 360,000
Medical Insurance
Paid Time Off
Training & Development
+1
GRC Principal Consultant (RE)
GRC Principal Consultant (RE)

Innovative Solutions • Riyadh

On-site
SAR 240,000 - 420,000
IT, Cybersecurity GRC Consultant
IT, Cybersecurity GRC Consultant

Cloud Consultancy - CCDS • Riyadh

On-site
SAR 201,000 - 312,000
Medical Insurance
Paid Time Off
Training & Development
+1
GRC Specialist
GRC Specialist

Managed Services • Jeddah

On-site
SAR 120,000 - 180,000
Cybersecurity Governance, Risk & Compliance (GRC) Specialist
Cybersecurity Governance, Risk & Compliance (GRC) Specialist

CCDS • Riyadh

On-site
SAR 240,000 - 360,000