The Manager – Cyber Security & OT GRC will lead cybersecurity governance, risk, and compliance activities at the project company level, ensuring full alignment with ACWA Power’s corporate cybersecurity standards and regulatory requirements.
This role provides continuous oversight of IT and OT cybersecurity, acting as the key governance interface between project companies and corporate Cybersecurity GRC teams.
Key Responsibilities
- Oversee and assess IT & OT cybersecurity programs at project companies for compliance with corporate and regulatory frameworks
- Review and validate cybersecurity deliverables including:
- VAPT reports
- Monitor and ensure timely remediation of cybersecurity findings
- Ensure alignment with ACWA Power cybersecurity policies, risk appetite, and regulatory commitments
- Coordinate closely with corporate Cybersecurity GRC teams to ensure consistent governance implementation
- Report cybersecurity risks, incidents, and compliance gaps to the Head of Cybersecurity GRC
- Act as a trusted cybersecurity governance advisor to project-level stakeholders.
Technical & Governance Skills
- Strong expertise in IT & OT cybersecurity governance, risk, and compliance
- Solid understanding of OT environments, ICS, and critical infrastructure cybersecurity
- Hands-on experience with cybersecurity frameworks such as:
- NCA ECC
- ISO 27001
- NIST CSF
- IEC 62443
- Ability to review and challenge technical and governance reports from internal teams and vendors
Professional Skills
- Risk assessment and remediation tracking
- Audit and compliance oversight
- Stakeholder management across corporate and entities
- Strong communication, reporting, and analytical skills
Qualifications & Certifications
Education
- Bachelor’s degree in computer science, Information Security, or related field
Certifications (At Least one preferred)
- GICSP
- CISM
- ISO 27001 Implementer
Experience
- 10–12 years of experience in IT & OT cybersecurity governance, risk management, or compliance
- Proven exposure to energy, utilities, industrial, or critical infrastructure environments
- Experience working with multi-site or project-based organizations is highly preferred.
Core & Leadership Competencies
- Accountability & Integrity
- Collaboration & Stakeholder Partnership
- Analytical Thinking
- Quality Orientation
- Drives Results & Champions Agility
- Develops Talent & Builds Effective Teams