Search by job, company or skills

GRC Specialist

GRC Specialist

Managed Sales Pros
1-3 Years
Not Disclosed
Early Applicant
  • Posted a month ago
  • Be among the first 10 applicants

Job Description

Job Description

Managed.sa is seeking a motivated GRC Specialist to support a cybersecurity project based in Jeddah.

The ideal candidate will have practical experience in Governance, Risk, and Compliance, with a strong interest in cybersecurity risk management. This role requires working closely with business and technical stakeholders to assess risks, maintain compliance documentation, and support the implementation of cybersecurity controls.

Key Responsibilities

  • Conduct cybersecurity risk assessments and document identified risks.
  • Maintain risk registers, treatment plans, and follow-up actions.
  • Support the development and review of cybersecurity policies, procedures, and standards.
  • Assess compliance with applicable cybersecurity frameworks and regulatory requirements.
  • Identify control gaps and recommend appropriate remediation actions.
  • Collect, organize, and review compliance evidence.
  • Prepare risk and compliance reports for management and project stakeholders.
  • Monitor remediation activities and follow up with relevant teams.
  • Support internal and external cybersecurity audits and assessments.
  • Coordinate with business, IT, cybersecurity, and project stakeholders.

Requirements

  • Bachelor's degree in Cybersecurity, Information Security, Information Technology, Computer Science, or a related field.
  • Approximately 1.5-3 years of relevant experience in cybersecurity GRC.
  • Practical experience in cybersecurity risk assessment and risk management.
  • Familiarity with cybersecurity frameworks and standards such as:
    • NCA ECC
    • ISO 27001
    • ISO 31000
    • NIST Cybersecurity Framework
  • Strong documentation, reporting, and stakeholder communication skills.
  • Ability to work independently and follow up on multiple risk and compliance activities.
  • Professional certifications in GRC, cybersecurity, or risk management are preferred.
  • Availability to work full-time on-site in Jeddah.
  • Candidates who can join within a short timeframe will be prioritized.

More Info

Job Type:
Industry:
Function:
Employment Type:

Key Skills

Cybersecurity risk assessment

ISO 31000

NCA ECC

NIST Cybersecurity Framework

Cybersecurity frameworks

About Company

Similar Jobs

1-3 yrs
Saudi Arabia, Riyadh
Skills:
CGRC, Cisa, SAMA CSF compliance, CRISC, ISO 27001 Lead Implementer, audit evidence preparation, drafting cybersecurity policies and procedures, regulatory assessments
3-5 yrs
Saudi Arabia, Riyadh
Skills:
Iso 27001, Vulnerability Management, change management, It Governance, access management, cybersecurity frameworks, Cisa, Disaster Recovery, CRISC, It Audit
3-5 yrs
Saudi Arabia, Khobar, Al Khobar
Skills:
Isms, Iso 27001, risk assessments, employee security training, cybersecurity policies, cybersecurity governance, risk and compliance framework, NCA ECC, third-party vendor risk assessments, phishing simulations, Saudi PDPL
1-3 yrs
Saudi Arabia, Riyadh
Skills:
Cloud security (AWS, OCI), Security+, Azure, Gcp, Audit evidence preparation, Regulatory assessments, CGRC, Cisa, SAMA CSF compliance, ISO 27001 Lead Implementer, NDMO regulations, PCI-DSS compliance, CRISC