Enable job alerts via email!

Specialist II, IT Security GRC

National Industrialization Company

Riyadh

On-site

SAR 80,000 - 120,000

Full time

3 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An exciting opportunity for a Specialist II in IT Security GRC at a leading company in the chemicals sector. The role involves implementing and maintaining ISO27001 compliance and local cybersecurity regulations, including managing policies, risk assessments, and audits to ensure robust information security practices.

Qualifications

  • Experience of 4+ years in information security management.
  • Certified Information Security Manager - CISM.
  • Good knowledge of ISO27001.
  • Hands-on experience with ISMS.

Responsibilities

  • Lead development and maintenance of ISMS policies.
  • Perform internal audits for information security.
  • Coordinate third-party audits.
  • Manage service continuity plans.

Skills

Negotiation
Communication
Planning
Organizing

Education

Bachelor's degree in Computer Science
MBA/PG Diploma in Business Management

Job description

Bachelor of Science(Computers), MBA/PG Diploma in Business Mgmt(Information Technology)

Nationality

Any Nationality

Any

Vacancy

1 Vacancy

Job Description

An exciting opportunity is available for Specialist II, IT Security GRC, located in Riyadh.

Report to: Section Head, Security Assurance & Aware

Job Summary:

The position helps Tasnee implement, facilitate, and maintain ISO27001 and local cybersecurity regulations and KSA NCA requirements. Compliance with the standard by developing or maintaining an information security management system (ISMS). This covers information security (IS) objectives, IS risk management and development of ISMS roles & responsibilities, controlling documentation, controlling records, ISMS performance evaluation, IS internal & external audits, IS management review, and the continual improvement of ISMS.

Role responsibilities:

  • Lead and manage the development and maintenance of information security management policies and procedures.
  • Drive information security upgrade and continuous improvement projects.
  • Develop and maintain a risk register and risk management framework.
  • Perform internal audits for information security and service management systems.
  • Lead and manage the development of service continuity plans and their related policies and procedures.
  • Work as a process manager for one or more SMS and ISMS processes
  • Host, coordinate and facilitate IT-related external and third-party audits.
  • Control ISMS documentation and records.
  • Lead or coordinate corrective and preventive actions post to major incidents, audit findings, or any other means.
  • Produce and maintain ISO27001 required documents and records
  • Conduct and manage IT Disaster Recovery Exercise.

Qualifications and Requirements:

  • Bachelor’s degree in Computer Science or Information System.
  • Experience: +4 years
  • Certified Information Security Manager – CISM / Certified Information Security
  • Good knowledge of information security management policies & procedures and ISO27001
  • Fair knowledge of COBIT and ISO20000 is a plus
  • Hands-on experience in implementing and maintaining an information security management system
  • Negotiation / Communication Skills
  • Planning and Organizing

Employment Type

    Full Time

Company Industry

  • Chemicals
  • Polymers

Department / Functional Area

  • IT Hardware Support
  • IT Hardware Repair & Maintenance

Keywords

  • Specialist II
  • IT Security GRC
  • IT Security
  • GRC
  • Information Security
  • Computer Science
  • Technology
  • Finance
  • Certified Information Security Manager
  • CISM
  • Certified Information Security
  • Cobit

Disclaimer: Naukrigulf.com is only a platform to bring jobseekers & employers together. Applicants are advised to research the bonafides of the prospective employer independently. We do NOT endorse any requests for money payments and strictly advice against sharing personal or bank related information. We also recommend you visit Security Advice for more information. If you suspect any fraud or malpractice, email us at abuse@naukrigulf.com

People Looking for Specialist II, IT Security GRC Jobs also searched

National Industrialization Company (TASNEE) was established in 1985, as the first Saudi private sector's fully owned joint stock industrial company, with the aim of advancing the economic diversification in Saudi Arabia. Driven by best business practices and the goal of achieving profitable and sustainable growth for its stakeholders and society at large, today Tasnee is one of Saudi Arabia's largest industrial companies and one of the world's largest investors in titanium dioxide.Tasnee is strongly committed to innovation and supports products innovation through its global research and development centers.Website:www.tasnee.com

National Industrialization Company

National Industrialization Company (TASNEE) was established in 1985, as the first Saudi private sector's fully owned joint stock industrial company, with the aim of advancing the economic diversification in Saudi Arabia. Driven by best business practices and the goal of achieving profitable and sustainable growth for its stakeholders and society at large, today Tasnee is one of Saudi Arabia's largest industrial companies and one of the world's largest investors in titanium dioxide.Tasnee is strongly committed to innovation and supports products innovation through its global research and development centers.Website:www.tasnee.com

Read More

Mr. Bakr A. Fallatah - Manager, Talent Mgt & Leadership

NA NA NA 0 NA Riyadh Postal Code- 11496, Riyadh, Saudi Arabia

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.