Search by job, company or skills

Cybersecurity GRC Specialist

Cybersecurity GRC Specialist

aarcalev technology solutions
5-7 Years
Not Disclosed
  • Posted 5 days ago
  • Be among the first 10 applicants

Job Description

Company Description Aarcalev Technology Solutions helps organizations across India, the Middle East, Africa, and Europe build secure, resilient, and compliant digital ecosystems through specialized Cybersecurity Advisory and Compliance services. The company is led by Ms. Sireesha Dandu, a Forbes Technology Council member and cybersecurity leader with over 18 years of global experience, supported by a leadership team with Big4 and enterprise backgrounds. Aarcalev delivers GRC and regulatory compliance advisory, cybersecurity consulting, and assessment and audit services covering standards such as ISO 27001, PCI DSS, GDPR, CERT-IN, DPDP, PDPL, SAMA, NCA ECC, NDPA, and CBN IT standards. With a focus on global expertise combined with local compliance knowledge, Aarcalev provides independent, transparent, and tailored solutions to organizations of all sizes. Its mission is to prepare, protect, and empower clients to thrive securely and confidently in the digital era.

Senior GRC / Information Security Compliance Expert

Location: Cairo, Egypt

Work Location: Cairo

Experience: 5 Years+

Joining: Immediate / Urgent Requirement

Key Requirements

We are looking for experienced GRC professionals with strong practical experience in Information Security Governance, Risk Management, Compliance, Auditing, and Regulatory Frameworks.

Candidates should have hands-on experience with several of the following:

International Frameworks & Standards

ISO/IEC 27001:2022

NIST Cybersecurity Framework

NIST SP 800-series

SOC 2

PCI-DSS

Risk Management Frameworks

Information Security Governance & Compliance

Security Risk Assessments

Internal / External Audit Preparation

Policies, Procedures, Controls & SOA

Control Mapping and Gap Assessments

Egyptian Centra Bank of Egypt framework

Egyptian data protection and privacy requirements

Egyptian cybersecurity / information security regulatory requirements

Ability to map international frameworks to Egyptian requirements

Responsibilities

Lead and execute GRC assessments and compliance projects

Perform gap assessments and maturity assessments

Develop and review information security policies and procedures

Perform risk assessments and risk treatment

Develop and maintain Statement of Applicability (SOA)

Map controls across ISO 27001, NIST, SOC 2, PCI-DSS, NCA ECC, SAMA, PDPL, CST CRF and other frameworks

Support organizations during internal and external audits

Prepare compliance evidence and audit documentation

Conduct control effectiveness assessments

Develop remediation plans and track compliance gaps

Work with technical and business teams to implement security controls

Prepare professional GRC, risk and compliance reports for management

Preferred Certifications

Relevant professional certifications are highly desirable, such as:

ISO/IEC 27001 Lead Auditor / Lead Implementer, CISA, CISM, CISSP, CRISC, CGEIT

  • PCI Professional / PCI-related certifications

More Info

Job Type:
Industry:
Function:
Employment Type:

Key Skills

Control Mapping and Gap Assessments

Security Risk Assessments

Policies Procedures Controls SOA

Egyptian cybersecurity information security regulatory requirements

SOC 2

Ability to map international frameworks to Egyptian requirements

ISO IEC 27001 2022

PCI-DSS

Egyptian data protection and privacy requirements

Internal External Audit Preparation

Information Security Governance Compliance

Risk Management Frameworks

NIST Cybersecurity Framework

NIST SP 800-series

Similar Jobs

3-5 yrs
Egypt, Cairo
Skills:
security plus , Gdpr, Iso 27001, Security Controls, Grc, Cism, internal and external security audits, NIST CSF, CIS Controls, Cisa, security frameworks, SOC 2, TCP IP networks, information security policies, Cissp, IT Security Risk Register, cgeit, CRISC, security risk assessments, NIS2