GRC Information Security Specialist (KSA)

تابي

Saudi Arabia

On-site

SAR 120,000 - 210,000

Full time

6 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Global team
Inclusive culture
Stock options
Growth opportunity
Relocation support
Equipment provided

Job summary

Tabby is seeking an Information Security Specialist (GRC) to join the InfoSec GRC team in KSA. The role will independently execute governance, risk, and compliance activities across Tabby’s information security programme.

You will work on governance frameworks, risk assessments, regulatory tracking (SAMA CSF, PDPL, NCA ECC, PCI-DSS), and reporting. 1–3 years of relevant experience and applicable certifications are preferred.

Qualifications

  • Bachelor's degree in Information Technology, Computer Science, Software Engineering, Cybersecurity, Risk Management, or a related field.
  • 1–3 years of professional information security governance, risk management, compliance experience; hands-on risk assessment, policy development, or compliance monitoring.
  • ISO 27001 Foundation or Lead Implementer (preferred); CompTIA Security+ or equivalent.
  • Working toward CRISC or CISM.

Responsibilities

  • Maintain and update the information security governance framework documentation, policy library, and associated standards and procedures.
  • Draft and revise information security policies, standards, and baselines, ensuring alignment with regulatory requirements and business objectives.
  • Monitor and track changes in regulatory requirements (SAMA CSF, PDPL, NCA ECC, PCI-DSS) and update the compliance register.
  • Maintain role and responsibility matrices (RACI) and governance reporting.
  • Coordinate security governance committee meetings with agendas, minutes and action tracking.
  • Produce internal and external communication materials related to information security governance.

Skills

Risk assessment
Policy development
Compliance monitoring
GRC experience
1–3 years experience
CRISC/CISM (pursuing)

Education

Bachelor's degree in IT/CS/CYBER/Risk mgmt
ISO 27001 Foundation/Lead Implementer
CompTIA Security+ or equivalent

Job description

Tabby is seeking an Information Security Specialist (GRC) to join the InfoSec GRC team in KSA. The role will independently execute governance, risk, and compliance activities across Tabby’s information security programme.

You will work on governance frameworks, risk assessments, regulatory tracking (SAMA CSF, PDPL, NCA ECC, PCI-DSS), and reporting. 1–3 years of relevant experience and applicable certifications are preferred.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Information Security Specialist - Risk & Compliance
GRC Information Security Specialist - Risk & Compliance

Tabby | تابي • Riyadh

On-site
SAR 180,000 - 300,000
International team
Stock options
Relocation support
+2
GRC Information Security Specialist - Policy & Risk
GRC Information Security Specialist - Policy & Risk

تابي • Riyadh

On-site
SAR 120,000 - 180,000
Relocation support
Devices provided
Information Security GRC Specialist: Governance & Risk
Information Security GRC Specialist: Governance & Risk

tabby • Saudi Arabia

On-site
SAR 180,000 - 260,000
Information Security Specialist
Information Security Specialist

Tabby | تابي • Riyadh

On-site
SAR 180,000 - 300,000
International team
Stock options
Relocation support
+2
Information Security Specialist KSA
Information Security Specialist KSA

تابي • Saudi Arabia

On-site
SAR 120,000 - 210,000
Global team
Inclusive culture
Stock options
+3
Information Security Specialist
Information Security Specialist

تابي • Riyadh

On-site
SAR 120,000 - 180,000
Relocation support
Devices provided
GRC Senior Specialist
GRC Senior Specialist

مرنة للتمويل • Riyadh

On-site
SAR 246,000 - 379,000
GRC Consultant
GRC Consultant

Catalyic Security • Saudi Arabia

On-site
SAR 50,000 - 75,000
GRC & Cybersecurity Risk Specialist — On-Site Jeddah
GRC & Cybersecurity Risk Specialist — On-Site Jeddah

Managed Services • Jeddah

On-site
SAR 120,000 - 180,000
GRC Specialist
GRC Specialist

Managed.sa • Jeddah

On-site
SAR 70,000 - 100,000