GRC Consultant — ISO 27001 & SOC 2 Audits (Saudi)

HCLTech

Riyadh

On-site

SAR 180,000 - 280,000

Full time

11 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

HCLTech in Saudi Arabia is seeking a GRC Consultant to support governance, risk and compliance engagements, working with senior team members to deliver client projects. You will gather and analyze data for GRC assessments, prepare reports, and lead audits for ISO 27001 and SOC 2 while ensuring compliance with NCA ECC and SAMA frameworks.

The ideal candidate has a bachelor's degree in cybersecurity or IT, 5–6 years of relevant experience, and certifications such as CISM/CISSP; GRC/ITSM experience

Qualifications

  • Bachelor's degree in cybersecurity, information technology, or related fields.
  • 5–6 years of relevant experience.
  • Certifications such as CISM/CISSP, CompTIA Security+, ISO 27001 Lead Implementor, SSCP & ITIL or equivalent are a plus.
  • Experience with GRC platforms & ITSM knowledge is a plus.

Responsibilities

  • Assist in gathering and analyzing data for GRC assessments.
  • Support the preparation of assessment reports, governance documentation, and client presentations.
  • Lead the preparation and execution of external audits for ISO 27001 and SOC 2 (Type 1 & 2).
  • Manage compliance with local Saudi regulations (NCA ECC and SAMA cybersecurity frameworks) and assess other frameworks (ISO 27001, NDI Controls, ECC, CSCC, DCC, TCC & OSMACC).
  • Collaborate with senior consultants on policies, procedures, frameworks, and controls.
  • Participate in client workshops and project meetings.
  • Liaise with cross-functional teams to support secure and compliant operations.
  • Assist in selecting and implementing GRC software to automate processes and improve reporting.

Skills

Analytical thinking
Communication
Attention to detail
Team oriented

Education

Bachelor's degree in Cybersecurity or IT

Tools

GRC platforms
ITSM

Job description

HCLTech in Saudi Arabia is seeking a GRC Consultant to support governance, risk and compliance engagements, working with senior team members to deliver client projects. You will gather and analyze data for GRC assessments, prepare reports, and lead audits for ISO 27001 and SOC 2 while ensuring compliance with NCA ECC and SAMA frameworks.

The ideal candidate has a bachelor's degree in cybersecurity or IT, 5–6 years of relevant experience, and certifications such as CISM/CISSP; GRC/ITSM experience

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Consultant (saudi only)
GRC Consultant (saudi only)

HCLTech • Riyadh

On-site
SAR 180,000 - 280,000
GRC & ISO 27001 Specialist: Risk & Compliance
GRC & ISO 27001 Specialist: Risk & Compliance

Help AG • Riyadh

On-site
SAR 120,000 - 200,000
GRC Consultant
GRC Consultant

Catalyic Security • Saudi Arabia

On-site
SAR 50,000 - 75,000
GRC Consultant | ISO/NIST & Saudi Compliance Expert
GRC Consultant | ISO/NIST & Saudi Compliance Expert

Extelligence SRO • Riyadh

On-site
SAR 180,000 - 300,000
Guaranteed on-time payment
Long-term relationship opportunities
Team building activities and social events
Senior GRC Consultant - Regulatory & ISO Compliance
Senior GRC Consultant - Regulatory & ISO Compliance

Catalyic Security • Saudi Arabia

On-site
SAR 50,000 - 75,000
Cyber GRC Specialist - On-site in Jeddah
Cyber GRC Specialist - On-site in Jeddah

Managed • Jeddah

On-site
SAR 120,000 - 180,000
GRC Principal Consultant (RE)
GRC Principal Consultant (RE)

Innovative Solutions • Riyadh

On-site
SAR 240,000 - 420,000
GRC Specialist
GRC Specialist

Managed Services • Jeddah

On-site
SAR 120,000 - 180,000
GRC Consultant
GRC Consultant

Help AG • Riyadh

On-site
SAR 120,000 - 200,000
GRC Specialist
GRC Specialist

Managed • Jeddah

On-site
SAR 120,000 - 180,000