Cybersecurity Governance

3 days ago


Jeddah, Makkah Province, Saudi Arabia KAUST (King Abdullah University of Science and Technology) Full time

The Role

The Cybersecurity Governance and Compliance Specialist is responsible for establishing and maintaining the organization's cybersecurity governance framework while ensuring compliance with regulatory requirements, industry standards, and internal security policies. This role involves developing and enforcing governance strategies, monitoring compliance efforts, and driving initiatives to enhance the organization's security posture. By collaborating with cross-functional teams, the specialist ensures that cybersecurity practices align with business objectives and risk management priorities.

Major Accountabilities

Governance Framework Development

  • Design, implement, and maintain the organization's cybersecurity governance framework to ensure alignment with business objectives, regulatory requirements, and industry standards (e.g., NCA, ISO 27001, NIST, CIS Controls).
  • Establish, review, and update cybersecurity policies, standards, and procedures to address emerging threats, technologies, and compliance requirements.
  • Define roles and responsibilities related to cybersecurity governance across departments to ensure accountability and ownership.
  • Develop a clear escalation path for policy violations and governance issues to enable timely resolution and accountability.
  • Lead periodic reviews and gap analyses of governance structures to identify areas for improvement and align with evolving best practices.

Compliance Management

  • Monitor and evaluate the organization's compliance with applicable cybersecurity regulations (e.g., NCA, ISO, NIST) and contractual obligations.
  • Conduct compliance assessments and internal audits to identify deficiencies and ensure adherence to required standards and policies.
  • Oversee third-party risk assessments to ensure vendors and partners comply with organizational cybersecurity requirements.
  • Coordinate with legal and regulatory teams to interpret and implement new or updated cybersecurity laws and standards.
  • Create and manage a compliance roadmap, prioritizing initiatives based on risk and regulatory deadlines.
  • Maintain comprehensive documentation of compliance activities, including audit results, remediation plans, and communication with regulatory bodies.

Performance Metrics and Reporting

  • Develop key performance indicators (KPIs) to measure the effectiveness of governance and compliance programs.
  • Provide regular updates and insights to senior leadership on cybersecurity governance and compliance initiatives.

Stakeholder Collaboration

  • Work closely with internal teams, including IT, legal, and audit, to ensure cohesive cybersecurity governance and compliance practices.
  • Act as a liaison with regulatory bodies and external auditors during inspections and reviews.

Required Skills & Experience

Technical Expertise

  • In-depth knowledge of cybersecurity frameworks, standards, and regulations (e.g., NCA, ISO 27001, NIST CSF).
  • Proficiency in risk management methodologies and compliance assessment tools.
  • Understanding of IT systems, cloud platforms, and network security principles.

Analytical Thinking

  • Strong ability to analyze complex regulatory requirements and translate them into actionable compliance measures.
  • Skilled in identifying risks, evaluating potential impacts, and recommending effective mitigation strategies.

Communication and Collaboration

  • Excellent verbal and written communication skills to convey technical information to non-technical stakeholders.
  • Strong interpersonal skills to work effectively with cross-functional teams, external auditors, and regulatory bodies.

Leadership and Influence

  • Ability to lead governance and compliance initiatives and influence stakeholders to prioritize cybersecurity measures.
  • Skilled in promoting a culture of compliance and accountability across the organization.

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, or related field
  • 5+ years of experience in cybersecurity governance, compliance, risk management, or a related field.
  • Preferred certifications: CISSP, CISM, CRISC, CISA certifications

Experience

  • Proven experience developing, implementing, and maintaining cybersecurity governance frameworks and compliance programs.
  • Demonstrated ability to conduct compliance assessments, internal audits, and third-party risk evaluations.
  • Hands-on experience working with industry regulations and standards such as NCA, ISO 27001, and NIST CSF.
#J-18808-Ljbffr

  • Jeddah, Makkah Province, Saudi Arabia KAUST (King Abdullah University of Science and Technology) Full time

    At KAUST, we are seeking a highly skilled Cybersecurity Governance Specialist to join our team.The successful candidate will be responsible for establishing and maintaining our cybersecurity governance framework while ensuring compliance with regulatory requirements, industry standards, and internal security policies.Key Responsibilities:Develop and...


  • Jeddah, Makkah Province, Saudi Arabia KAUST (King Abdullah University of Science and Technology) Full time

    About the RoleThe Cybersecurity Governance and Compliance Strategist will play a critical role in ensuring the organization's cybersecurity posture is aligned with business objectives, regulatory requirements, and industry standards.Key Responsibilities:Governance Framework DevelopmentDesign, implement, and maintain the organization's cybersecurity...


  • Jeddah, Makkah Province, Saudi Arabia flyadeal Egypt Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Governance Specialist to join our team at flyadeal Egypt. As a key member of our cybersecurity department, you will play a crucial role in ensuring the security and integrity of our networks and systems.Your primary responsibility will be to assess and implement access controls that align with our...


  • Jeddah, Makkah Province, Saudi Arabia Saudi Aramco Base Oil Company-Luberef Full time

    JOB PURPOSEDevelop Cybersecurity Organizational Governance, Risk and Compliance environment based on regulatory requirements and business direction in coordination with Cybersecurity Officer. Provides cybersecurity compliance advisories and consultancy to IT, OT, and other organization to achieve the corporate objective. Ensure compliance of cybersecurity...


  • Jeddah, Makkah Province, Saudi Arabia flyadeal Egypt Full time

    Key ResponsibilitiesAccess Control Assessment: Conduct thorough assessments of our access control mechanisms to ensure they meet industry standards and comply with regulatory requirements.Security Policy Development: Collaborate with our cybersecurity team to develop and maintain comprehensive security policies and procedures.Cybersecurity Training: Provide...


  • Jeddah, Makkah Province, Saudi Arabia KAUST (King Abdullah University of Science and Technology) Full time

    We are seeking a highly skilled Regulatory Compliance Professional to join our team at KAUST.The successful candidate will be responsible for ensuring compliance with applicable cybersecurity regulations and industry standards while maintaining the organization's cybersecurity governance framework.Main Responsibilities:Monitor and evaluate the organization's...


  • Jeddah, Makkah Province, Saudi Arabia KAUST (King Abdullah University of Science and Technology) Full time

    We are seeking a highly experienced Compliance and Risk Management Expert to join our team at KAUST.The ideal candidate will have in-depth knowledge of cybersecurity frameworks, standards, and regulations, as well as strong analytical and problem-solving skills.Responsibilities:Develop and implement effective compliance programs that ensure alignment with...


  • Jeddah, Makkah Province, Saudi Arabia SBM Full time

    About this Opportunity:We are seeking an experienced Compliance Specialist to join our team at SBM. As a key member of our IT department, you will be responsible for ensuring compliance with regulatory requirements and managing risks associated with information technology.Your Key Tasks:Review and update department policies to ensure compliance.Conduct...


  • Jeddah, Makkah Province, Saudi Arabia flyadeal Full time

    The role is responsible for identifying, assessing and managing an organization's cybersecurity risks to protect its information and technology assets in line with organizational policies and procedures and related laws and regulations.Key Responsibilities:Effectively communicate cybersecurity risks and posture to senior management.Develop security risk...


  • Jeddah, Makkah Province, Saudi Arabia Islamic Development Bank Full time

    The aim is to supervise and guarantee the implementation and embrace of the Cyber Risk framework throughout IsDB. This role involves wielding the authority of the second line of defense at a corporate level to handle cyber and information security risks.The key tasks include overseeing the risks associated with IsDB's IT resources and information assets by...

  • Senior GRC Consultant

    2 weeks ago


    Jeddah, Makkah Province, Saudi Arabia CONNECT Professional Services Full time

    Job Summary:We are seeking a highly skilled Senior GRC Consultant to lead and enhance our governance, risk, and compliance (GRC) programs. In this role, you will be responsible for ensuring regulatory compliance, managing enterprise risks, and implementing security frameworks to protect organizational assets. You will work closely with cross-functional teams...

  • GRC Team Leader

    2 weeks ago


    Jeddah, Makkah Province, Saudi Arabia CONNECT Professional Services Full time

    Job Title: GRC Team LeaderSeniority Level: Mid senior levelEmployment Type: Full timeWorkplace Type: On-siteJob Location: JeddahJob Description:Responsible for overseeing the execution of the GRC program in collaboration with the executive team as well as maintaining the organization's library of security controls. Delivery of Security GRC management and...


  • Jeddah, Makkah Province, Saudi Arabia SBM Full time

    Education : Bachelor's degree in computer science, Information Technology, Management Information Systems (MIS) or Cybersecurity.Experience Level: From 3 up to 7 years.Relevant certifications in Compliance field.Strong attention to detail and analytical skills.Excellent written and verbal communication skills.Ability to work independently and as part of a...


  • Jeddah, Saudi Arabia Bupa Arabia Full time

    Role Purpose: - Identifies, assesses, and manages an organization’s cybersecurity risks protecting its information and technology assets in line with organizational policies and procedures and related laws and regulations. Key Accountabilities: - Cybersecurity Risk Management; - Review and Manage a Cyber Security risk management process. - Develop risk...

  • IT Supervisor

    4 days ago


    Jeddah, Saudi Arabia Nomac Full time

    **Contributing to the Strategy and Management of the Digital Enabling Function** - Deploy the digital adoption and support policies, procedures and standards to govern and always guide proper digital adoption & support implementation - Report solely to the “Digital Adoption & Support Site Lead” / “Digital Adoption & Support Country Head” - Push the...


  • Jeddah, Saudi Arabia Islamic Development Bank Full time

    Job Purpose - Establish, operate, and maintain the security solution governance model based on the business requirements and best practice. - Ensure adherence to cybersecurity and IT governance policies and guidelines in collaboration with Security Operations - Guide the business and IMDT stakeholders to implement and maintain security controls as per IsDB...


  • Jeddah, Saudi Arabia Islamic Development Bank Full time

    Job Purpose - Establish, operate, and maintain the security solution governance model based on the business requirements and best practice. - Ensure adherence to cybersecurity and IT governance policies and guidelines in collaboration with Security Operations - Guide the business and IMDT stakeholders to implement and maintain security controls as per IsDB...


  • Jeddah, Saudi Arabia Bupa Arabia Full time

    **Architecture Management** - Develop and maintain the Cyber Security architecture for existing and planned security products for the organization. - Develops, reviews, and approves installation requirements for Infrastructure components ( such as servers, LANs, WANs, VPNs, firewalls, routers, and related network devices) and Business Applications. -...

  • Cloud Architect Lead

    2 weeks ago


    Jeddah, Saudi Arabia Islamic Development Bank Full time

    JOB PURPOSE The Cloud Architect leads the IMDT cloud first strategy by defining the cloud adoption roadmap aligned with IsDB business strategy, planning and implementing the cloud transformation program and ensuring that cloud operations are efficient and secure. The Cloud Architect provides management and direction across business and IT initiatives to...

  • Senior DevOps

    5 days ago


    Jeddah, Saudi Arabia Talents Solutions Full time

    **The Company** Are you looking for a new challenge? Would you like to work with with a global technology leader with more than 77,000 employees on five continents? ? If your answers are YES keep reading! The Group is investing in digital and deep tech innovations Big Data, artificial intelligence, connectivity, cybersecurity and quantum technology to...


  • Jeddah, Saudi Arabia Islamic Development Bank Full time

    Job Purpose To perform on-boarding of IsDB partners/vendors to specific technology projects and facilitate the right access to IsDB specific assets, systems, data, portals and information repositories in adherence to the procedures, ensuring security measures, to benefit effectively from the input and maximize the value of the input. To collect and gain...