Cybersecurity GRC Specialist
aarcalev technology solutions- Posted 5 days ago
- Be among the first 10 applicants
Job Description
Company Description Aarcalev Technology Solutions helps organizations across India, the Middle East, Africa, and Europe build secure, resilient, and compliant digital ecosystems through specialized Cybersecurity Advisory and Compliance services. The company is led by Ms. Sireesha Dandu, a Forbes Technology Council member and cybersecurity leader with over 18 years of global experience, supported by a leadership team with Big4 and enterprise backgrounds. Aarcalev delivers GRC and regulatory compliance advisory, cybersecurity consulting, and assessment and audit services covering standards such as ISO 27001, PCI DSS, GDPR, CERT-IN, DPDP, PDPL, SAMA, NCA ECC, NDPA, and CBN IT standards. With a focus on global expertise combined with local compliance knowledge, Aarcalev provides independent, transparent, and tailored solutions to organizations of all sizes. Its mission is to prepare, protect, and empower clients to thrive securely and confidently in the digital era.
Senior GRC / Information Security Compliance Expert
Location: Cairo, Egypt
Work Location: Cairo
Experience: 5 Years+
Joining: Immediate / Urgent Requirement
Key Requirements
We are looking for experienced GRC professionals with strong practical experience in Information Security Governance, Risk Management, Compliance, Auditing, and Regulatory Frameworks.
Candidates should have hands-on experience with several of the following:
International Frameworks & Standards
ISO/IEC 27001:2022
NIST Cybersecurity Framework
NIST SP 800-series
SOC 2
PCI-DSS
Risk Management Frameworks
Information Security Governance & Compliance
Security Risk Assessments
Internal / External Audit Preparation
Policies, Procedures, Controls & SOA
Control Mapping and Gap Assessments
Egyptian Centra Bank of Egypt framework
Egyptian data protection and privacy requirements
Egyptian cybersecurity / information security regulatory requirements
Ability to map international frameworks to Egyptian requirements
Responsibilities
Lead and execute GRC assessments and compliance projects
Perform gap assessments and maturity assessments
Develop and review information security policies and procedures
Perform risk assessments and risk treatment
Develop and maintain Statement of Applicability (SOA)
Map controls across ISO 27001, NIST, SOC 2, PCI-DSS, NCA ECC, SAMA, PDPL, CST CRF and other frameworks
Support organizations during internal and external audits
Prepare compliance evidence and audit documentation
Conduct control effectiveness assessments
Develop remediation plans and track compliance gaps
Work with technical and business teams to implement security controls
Prepare professional GRC, risk and compliance reports for management
Preferred Certifications
Relevant professional certifications are highly desirable, such as:
ISO/IEC 27001 Lead Auditor / Lead Implementer, CISA, CISM, CISSP, CRISC, CGEIT
- PCI Professional / PCI-related certifications
More Info
Key Skills
Control Mapping and Gap Assessments
Security Risk Assessments
Policies Procedures Controls SOA
Egyptian cybersecurity information security regulatory requirements
SOC 2
Ability to map international frameworks to Egyptian requirements
ISO IEC 27001 2022
PCI-DSS
Egyptian data protection and privacy requirements
Internal External Audit Preparation
Information Security Governance Compliance
Risk Management Frameworks
NIST Cybersecurity Framework
NIST SP 800-series

