Security and ICT Inspector - Risk and Compliance

AECOM Middle East Ltd

Riyadh

On-site

SAR 16,000 - 25,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

AECOM Riyadh is seeking a Security and ICT Inspector - Risk and Compliance to lead independent inspections of security controls, ICT infrastructure, and regulatory compliance across facilities. You will perform structured risk assessments, identify vulnerabilities, document findings, and provide actionable recommendations to reduce technology risk and strengthen resilience.

The role requires a minimum of 8 years of experience in security audits, ICT inspections, and risk management within

Qualifications

  • Minimum 8 years of professional experience in security audits, ICT inspections, security assessments or comparable technology assurance activities.
  • Strong knowledge of ICT infrastructure, network systems, information-security architecture, and security-control design.
  • Ability to communicate security concerns clearly to both technical and non-technical stakeholders.

Responsibilities

  • Conduct scheduled security and ICT inspections across facilities, technology systems, and supporting infrastructure.
  • Review network environments for weaknesses, control gaps, and security exposure.
  • Assess ICT systems against internal policies and applicable security requirements.
  • Examine security architecture and determine whether controls remain appropriate for identified risks.
  • Perform structured security risk assessments across assigned environments.
  • Identify vulnerabilities that could affect systems, data, infrastructure, or business operations.
  • Evaluate potential threats and determine their likely operational impact.
  • Prioritize findings according to severity, likelihood, and business exposure.
  • Develop practical remediation recommendations for identified security weaknesses.
  • Review network security protocols and associated technical controls.
  • Assess user access controls, permissions, authentication measures, and related safeguards.
  • Evaluate data protection measures against applicable policies and compliance requirements.
  • Verify adherence to security regulations and recognized industry frameworks.
  • Review compliance with internal ICT and information-security standards.
  • Examine technical evidence supporting security-control implementation.
  • Conduct security audits and maintain clear documentation of findings.
  • Prepare comprehensive inspection reports covering observations, risks, and recommended actions.
  • Present technical findings in language suitable for both technical and non-technical stakeholders.
  • Maintain inspection registers, audit records, and supporting evidence.

Skills

Security inspections
ICT inspections
Security audits
ICT audits
Risk assessments
Vulnerability analysis
Threat identification
Network security
Data protection
Security compliance
ISO 27001
CISSP
Stakeholder management
Project coordination

Job description

Security and ICT Inspector - Risk and Compliance Job Snapshot

Role: Security and ICT Inspector - Risk and Compliance

Location: Riyadh, Saudi Arabia

Industry: Computer and Network Security

Function: Security Intelligence & Analysis

Experience: Minimum 8 years

Job Type: Full-time

Position Overview: Security and ICT Inspector - Risk and Compliance in Riyadh, Saudi Arabia is a Computer and Network Security opportunity focused on security inspections, ICT infrastructure assessments, vulnerability identification, regulatory compliance, and technology risk mitigation. AECOM is hiring an experienced inspector to evaluate network and security controls, conduct structured risk assessments, investigate incidents, document compliance gaps, and provide practical recommendations that strengthen organizational security and technology resilience.

Job Details: Country: Saudi Arabia City: Riyadh Industry: Computer and Network Security Function: Security Intelligence & Analysis Salary: 16000-25000 Estimated salary range based on similar jobs in the job city; please confirm the final offer with the employer. Gender: Any Candidate Nationality: Any Job Type: Full-time

Role Context: The Security and ICT Inspector will provide independent oversight of security controls and technology environments, helping ensure that organizational systems, facilities, and digital infrastructure operate in accordance with approved policies, regulatory requirements, and recognized security practices. The position is centered on evidence-based inspection. Network configurations, access controls, security protocols, protection measures, incident records, and operational procedures must be reviewed systematically to identify weaknesses before they develop into significant operational or information-security risks. Working closely with ICT, cybersecurity, security operations, and management teams, the inspector will convert technical findings into prioritized corrective actions. Effective follow-up will be essential to verify that identified vulnerabilities are addressed and that improvements produce measurable reductions in organizational risk.

Key Responsibilities
  • Conduct scheduled security and ICT inspections across facilities, technology systems, and supporting infrastructure.
  • Review network environments for weaknesses, control gaps, and security exposure.
  • Assess ICT systems against internal policies and applicable security requirements.
  • Examine security architecture and determine whether controls remain appropriate for identified risks.
  • Perform structured security risk assessments across assigned environments.
  • Identify vulnerabilities that could affect systems, data, infrastructure, or business operations.
  • Evaluate potential threats and determine their likely operational impact.
  • Prioritize findings according to severity, likelihood, and business exposure.
  • Develop practical remediation recommendations for identified security weaknesses.
  • Review network security protocols and associated technical controls.
  • Assess user access controls, permissions, authentication measures, and related safeguards.
  • Evaluate data protection measures against applicable policies and compliance requirements.
  • Verify adherence to security regulations and recognized industry frameworks.
  • Review compliance with internal ICT and information-security standards.
  • Examine technical evidence supporting security-control implementation.
  • Conduct security audits and maintain clear documentation of findings.
  • Prepare comprehensive inspection reports covering observations, risks, and recommended actions.
  • Present technical findings in language suitable for both technical and non-technical stakeholders.
  • Maintain inspection registers, audit records, and supporting evidence.
  • Preserve complete audit trails for follow-up and compliance review.
  • Coordinate corrective actions with IT and security teams.
  • Track remediation commitments against agreed completion dates.
  • Verify whether implemented corrective measures adequately address original findings.
  • Escalate unresolved or high-risk security issues to appropriate management.
  • Investigate security incidents and reported breaches where required.
  • Review incident timelines, technical evidence, and affected systems.
  • Support root-cause analysis to determine how security failures occurred.
  • Recommend preventive controls designed to reduce recurrence.
  • Review incident response practices and identify opportunities for improvement.
  • Support evaluation of business continuity and technology resilience arrangements where relevant.
  • Use vulnerability assessment tools where available to strengthen technical inspection activities.
  • Apply appropriate security testing methodologies during assessments.
  • Review security trends and recurring findings across inspection cycles.
  • Identify systemic weaknesses requiring broader corrective programs.
  • Provide management with risk mitigation recommendations based on inspection evidence.
  • Support security improvement initiatives through technical review and follow-up.
  • Maintain awareness of emerging cyber threats and evolving attack methods.
  • Monitor developments in ICT security technologies and control practices.
  • Keep inspection approaches aligned with changing regulatory and compliance expectations.
  • Manage multiple inspections and assessments while maintaining documentation quality.
  • Coordinate activities with stakeholders without disrupting critical operations.
  • Support security-related project initiatives when inspection or assurance input is required.
  • Contribute to continuous improvement of organizational security governance and inspection procedures.
Ideal Profile

Ideal Profile Candidates should have at least 8 years of professional experience conducting security audits, ICT inspections, security assessments, or comparable technology assurance activities within corporate or complex organizational environments. Strong knowledge of ICT infrastructure, network systems, information-security architecture, and security-control design is required. Candidates should be able to understand how vulnerabilities within individual systems can affect wider operational and business risks. Practical expertise in risk assessment, vulnerability analysis, and threat identification is essential. The successful candidate should be capable of distinguishing minor technical issues from weaknesses that require urgent corrective action. A solid understanding of security compliance frameworks, regulatory requirements, access-control principles, and data protection measures is expected. Candidates should have strong technical reporting and documentation capabilities. Findings must be recorded accurately, supported by appropriate evidence, and communicated clearly to management and technical teams. Experience with vulnerability assessment tools and structured security testing methodologies is preferred. Knowledge of incident response procedures and business continuity planning will provide additional value. Professional credentials such as ISO 27001, CISSP, or equivalent recognized security certifications are preferred rather than mandatory. Project management experience involving security-related initiatives will be advantageous, particularly where multiple remediation activities or inspection programs must be coordinated simultaneously. The role requires independent judgment, strong analytical ability, disciplined organization, and the confidence to communicate security concerns objectively to diverse stakeholders.

Skills Set
  • Security inspections
  • ICT inspections
  • Security audits
  • ICT audits
  • Security assessments
  • Risk assessments
  • Vulnerability analysis
  • Threat identification
  • Network security
  • ICT infrastructure
  • Security architecture
  • Security protocols
  • Access controls
  • Identity and access management
  • Data protection
  • Security compliance
  • Regulatory compliance
  • Information security
  • Security governance
  • Security controls
  • Control testing
  • Security assurance
  • Vulnerability assessment tools
  • Security testing
  • Risk mitigation
  • Corrective actions
  • Remediation tracking
  • Security incident investigation
  • Incident response
  • Root-cause analysis
  • Business continuity
  • Security documentation
  • Audit trails
  • Inspection reports
  • Technical reporting
  • Compliance records
  • Security findings
  • Risk registers
  • Security monitoring
  • Cybersecurity threats
  • Network systems
  • Information protection
  • ISO 27001
  • CISSP
  • Security standards
  • Security policies
  • Technology risk
  • ICT risk
  • Stakeholder management
  • Management reporting
  • Technical presentations
  • Project coordination
  • Security improvement
  • Compliance monitoring
  • Audit follow-up
  • Security resilience
Why Join Us

Organizations operating complex facilities and digital environments increasingly require independent assurance that security controls are functioning as intended and that ICT risks are identified before they disrupt operations. This Riyadh role provides broad exposure to infrastructure security, technology risk, compliance assessment, vulnerability management, incident review, and corrective-action verification. AECOM 's multidisciplinary environment creates opportunities to collaborate with ICT specialists, engineers, security professionals, project teams, and senior stakeholders across technically demanding programs. The experience can support progression toward senior security assurance, cybersecurity governance, ICT risk management, security compliance, or broader technology-resilience leadership.

About the Company

AECOM is a global infrastructure consulting firm with more than 50000 professionals working across planning, design, engineering, digital technology, program management, and construction management. The company supports complex buildings, transportation, water, energy, and environmental projects, combining technical expertise with structured risk management, digital delivery, sustainable solutions, and coordinated project execution across Saudi Arabia and international markets.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security and ICT Engineer - Network Protection
Security and ICT Engineer - Network Protection

AECOM Middle East Ltd • Riyadh

On-site
SAR 223,000 - 357,000
Senior Security & ICT Risk & Compliance Inspector
Senior Security & ICT Risk & Compliance Inspector

AECOM Middle East Ltd • Riyadh

On-site
SAR 16,000 - 25,000
Health and Safety Manager - Risk Compliance
Health and Safety Manager - Risk Compliance

AECOM Middle East Ltd • Riyadh

On-site
SAR 301,000 - 446,000
Health coverage
Paid leave
Well-being resources
+1
Senior Health and Safety Engineer - Compliance
Senior Health and Safety Engineer - Compliance

AECOM Middle East Ltd • Riyadh

On-site
SAR 246,000 - 391,000
Health coverage
Disability insurance
Paid leave
Fire and Life Safety Inspector - Code Compliance
Fire and Life Safety Inspector - Code Compliance

AECOM Middle East Ltd • Riyadh

On-site
SAR 167,000 - 257,000
Mechanical Inspector - Building Systems
Mechanical Inspector - Building Systems

AECOM Middle East Ltd • Riyadh

On-site
SAR 179,000 - 268,000
Health and Safety Manager - HSE Compliance
Health and Safety Manager - HSE Compliance

AECOM Middle East Ltd • Riyadh

On-site
SAR 28,000 - 42,000
Quality Assurance Manager - Compliance
Quality Assurance Manager - Compliance

AECOM Middle East Ltd • Riyadh

On-site
SAR 279,000 - 446,000
Health coverage
Paid leave
Retirement benefits
Mechanical Inspector
Mechanical Inspector

AECOM • Riyadh

On-site
SAR 391,000 - 580,000
Electrical Inspector - Construction Quality
Electrical Inspector - Construction Quality

AECOM Middle East Ltd • Riyadh

On-site
SAR 179,000 - 268,000