About the Role
We are seeking a highly skilled Senior Cybersecurity Specialist – GRC to strengthen our cybersecurity governance, risk, and compliance capabilities across IT, IS, and OT environments.
This role will play a key part in developing frameworks, managing risks, ensuring regulatory compliance, and enhancing organizational cybersecurity maturity.
Key Responsibilities
- Support the development and enhancement of cybersecurity strategies, policies, and standards
- Conduct cybersecurity risk assessments and audits, ensuring timely closure of findings
- Manage and assess third-party cybersecurity risks
- Maintain and update the cybersecurity risk register
- Lead cybersecurity awareness programs, including phishing simulations
- Monitor and analyze threat intelligence to strengthen security posture
- Support data security and privacy controls in line with regulatory frameworks
- Participate in incident response activities and reporting
- Mentor junior team members and prepare performance/KPI dashboards
Requirements
Education:
- Bachelor's degree in Cybersecurity, Information Security, Computer Science, or related field
Experience:
- Minimum 5+ years in Cybersecurity GRC / IT GRC / Information Security
- Proven experience in policy development, risk assessment, and compliance audits
Preferred Certifications
- GRC / Governance: CISA, CRISC, CISM
- Cybersecurity: CISSP, Security+, SSCP
- Technical: CEH, GIAC
- Frameworks: ISO 27001 Lead Implementer/Auditor, NIST, ITIL
Key Skills
- Strong knowledge of KSA regulations (NCA, HCIS)
- Proficiency in risk identification and control frameworks
- Awareness of latest IT & OT cybersecurity trends
- Strong analytical, communication, and stakeholder management skills
Note: Successful candidate will be hired through a registered contractor (Contingent Vacancy)