Senior Officer Cybersecurity Governance and

5 months ago


Riyadh, Saudi Arabia البنك السعودي الفرنسي Full time

This level requires Good knowledge of Information Security Governance and compliance. This level also requires good knowledge of information security policies, processes, standards and guidelines. Knowledge of security exceptions, security awareness is also expected, National regulations of Cybersecurity and international standards and practices Knowledge of security exceptions, cyber security awareness, cyber security compliance program including PCI-DSS, SAMA CSF, Tadawul Member policy, ISO/IEC 27001:2013, NCA mandates, guidelines and policies are also required
- The key accountability would be on Cybersecurity Policy Management, Cybersecurity Training & Awareness, Cybersecurity Regulatory & Policy Compliance, Privacy and Data protection, Cybersecurity Matrix, Risk Register, Appetite & Reporting.
- Participate in understanding the enterprise objectives and translate them in defining annual Information Security strategy, roadmap and objectives.
- Work with the higher levels to understand compliance gaps or requirements, technical need and translate them to policy statements also participate in establishing and maintaining security policies, baselines, standards, checklist and processes and for defining roles and responsibilities of Info. Security within the bank.
- Participate in establishing a strong and effective Security Governance model and instituting a sound IS GRC platform based on a unified security compliance model.
- Participate in the execution of bank-wide information security awareness program and a customer focused IS awareness program with an objective to enhance the awareness level of BSF staff and customers.
- Participate in establishing and maintaining Information Security KPI and metrics, risk register and risk appetite
- Participate in maintaining overall security remediation plans and managing Information Security exceptions.
- Participate in the effectiveness review of processes
- Coordinate in the preparation of all reports generated for Management
- Participate in Identifying and keep track of all information security related compliance mandates and work with governance in the creation, implementation, and maintenance of appropriate policies, and procedures to be compliant with all applicable regulations
- Responsible for identifying compliance gaps and to recommends, implements, and maintains technical and procedural controls to provide regulatory compliance in the most reasonable and cost-effective manner
- Liaison with other business lines and support divisions in the implementation of regulatory compliance requirements.
- Responsible in tracking audit findings and recommendations to ensure that appropriate mitigation actions are taken and support necessary compliance activities
- Participate in managing critical information security compliance programs including PCI DSS, ISO 27001, SAMA CSF and compliance mandates from SAMA and NCA
- Responsible for coordinating activities internal and external auditors including PCI QSA, ISO 27001 external auditor, and internal BSF audit division and with all B/Ls and support divisions.
- Participate in understanding and interpreting emerging and evolving data protection and privacy standards and framework and translate them to BSF compliance program
- Participate in ensuring that all requirements of SAMA circulars, guidelines, Information Security Strategy, Information Security Framework and incorporated in the information security compliance program
- A bachelor's or master’s degree in Computer Science or Information Technology or related field.
- Professional certification such as CISSP, CISA, CISM, CGEIT, CRISC, CEH etc.
- Minimum 3 to 6 years in information security with experience in information security governance and compliance.
- Relevant certifications

**المهارات**:

- Cyber security Strategy, Policies, procedures baselines standards and information security regulations.
- Good knowledge of compliance assessments and knowledge of information security related business processes, and control objectives.
- Knowledge of information security standards, codes of practice and guidelines such as 27000:2005, the NIST Computer Security Division Special Publications and Federal Information Processing Standards.
- Sound understanding of generally accepted IT security and privacy audit procedures and standards.
- Excellent knowledge of information security concepts, methodologies and best/leading practices.



  • Riyadh, Saudi Arabia Talent Pal Full time

    **Cybersecurity GRC (Analyst/Consultant)** **Location: Riyadh, Saudi Arabia** **About Accenture** **Accenture Technology** Through unmatched industry experience, leading technologies from our ecosystem partners and startups, and the largest delivery network in the world, we provide a powerful range of capabilities that can be tailored to our client’s...


  • Riyadh, Saudi Arabia Help AG Full time

    Help AG is looking for a talented and experienced Senior Cybersecurity Engineer who will be responsible for the creation of procedures, implementation of process development, and maintenance of security systems across internal and client environments. The Senior Cybersecurity Engineer will work closely with Management, Security Operation Center Analysts,...


  • Riyadh, Saudi Arabia Foodics Full time

    **Who Are We❓** We Are Foodics! a leading restaurant management ecosystem and payment tech provider. Founded in 2014 with headquarters in Riyadh and offices across 5 countries, including UAE, Egypt, Jordan and Kuwait. We are currently serving customers and partners in over 35 different countries worldwide. Our innovative products have successfully...

  • Account Manager

    5 months ago


    Riyadh, Saudi Arabia Innovative Solutions Full time

    **Company Description**: Innovative Solutions (IS) is a leading pure-player Cyber security company in the GCC established in 2003 headquartered in Riyadh with presence in Al Khobar, Jeddah, Dubai, and Abu Dhabi. Our Cybersecurity Solutions and Services encompasses Advisory Services, Technical Assurance, Solution Deployment, Professional Services and Managed...

  • Cybersecurity Engineer

    6 months ago


    Riyadh, Saudi Arabia Objectives Recruitment Full time

    **Job Summary** A senior cybersecurity engineer is well versed in the market and field. Has a strong passion and interest in the field of cybersecurity. A fast learner who keeps up to date on the trends in the field. Able to work at client sites and in our office. Able to meet project deadlines on time. **Responsibilities**: - Data/Device Integration -...


  • Riyadh, Saudi Arabia Foodics Full time

    **Who Are We❓**: - We Are Foodics!_ a leading restaurant management ecosystem and payment tech provider. Founded in 2014 with headquarter in Riyadh and offices across 5 countries, including UAE, Egypt, Jordan and Kuwait. We are currently serving customers and partners in over 35 different countries worldwide. Our innovative products have successfully...


  • Riyadh, Saudi Arabia Devoteam Full time

    **Devoteam is a leading consulting firm focused on digital strategy, tech platforms and cybersecurity. By combining creativity, tech and data insights, we empower our customers to transform their business and unlock the future. **With 25 years’ experience and more than 8,500 employees across Europe, the Middle East and Africa, Devoteam promotes responsible...


  • Riyadh, Saudi Arabia Devoteam Middle East Full time

    Company Description **Devoteam is a leading consulting firm focused on digital strategy, tech platforms and cybersecurity. By combining creativity, tech and data insights, we empower our customers to transform their business and unlock the future.** **With 25 years’ experience and more than 8,500 employees across Europe, the Middle East and Africa,...


  • Riyadh, Saudi Arabia Management Recruitment Group Full time

    **Role and Responsibilities**: - Planning, implementing, managing, monitoring, and upgrading security measures for the protection of the organization’s data, systems, and networks. - Troubleshooting security and network problems. - Responding to all system and/or network security breaches. - Ensuring that the organization’s data and infrastructure are...


  • Riyadh, Saudi Arabia Jadeer Full time

    **Jadeer** is hiring on behalf of one of our clients in Riyadh, KSA. Our client is a leading company in the field of Cybersecurity Solutions. - Collaborate with clients to understand their cybersecurity needs and recommend effective solutions. - Develop and execute sales strategies to drive the adoption of cybersecurity products and services. - Build and...

  • Sales Manager

    5 months ago


    Riyadh, Saudi Arabia Innovative Solutions Full time

    **Company Description**: Innovative Solutions (IS) is a leading pure-player Cyber security company in the GCC established in 2003 headquartered in Riyadh with presence in Al Khobar, Jeddah, Dubai, and Abu Dhabi. Our Cybersecurity Solutions and Services encompasses Advisory Services, Technical Assurance, Solution Deployment, Professional Services and Managed...

  • Managing Consultant

    5 months ago


    Riyadh, Saudi Arabia Professional Recruitment Full time

    **Responsibilities**: - Leading the practice in TechArch by developing and enhancing the different spectrum of delivering cybersecurity consultation services covering cybersecurity governance, risk management, compliance, and standards. - Aligning delivery approaches, recommendations, and strategies with multiple frameworks and regulatory standards,...


  • Riyadh, Saudi Arabia Control Risks Full time

    The Government Relations Officer (GRO) plays a pivotal role in ensuring smooth interactions between our organization and government authorities in Saudi. Responsibilities will encompass administrative tasks, compliance, and liaison with local authorities. **Government Liaison**: - Act as a primary point of contact between our company and relevant...


  • Riyadh, Saudi Arabia Network Intelligence Full time

    **Designation**: Senior Cybersecurity Analyst - Solutions **Job Code**: HR1175 **Location**: Saudi Riyadh **Experience**: 3-5 years - Act as an L2 resource for managing IAM One Identity solution. - Expert in One Identity and should be able to perform user life cycle management, perform user access provisioning and de-provisioning. - On-boarding accounts...


  • Riyadh, Saudi Arabia JASARA PMC Full time

    JASARA Program Management Company, a joint venture between Public Investment Fund (PIF), Jacobs, and Saudi Aramco, is looking for a Cybersecurity Sr. Manager to join our team. As part of the Civil Engineering industry, JASARA offers an opportunity to work on the most exciting and complex programs in the world and bring visible change within the Kingdom of...

  • Cybersecurity Manager

    5 months ago


    Riyadh, Saudi Arabia ENGIE Full time

    Requisition ID: 20997- Location: Riyadh, Saudi Arabia**About ENGIE** ENGIE group is a global reference in low-carbon energy and services. Together with our 96,000 employees, our customers, partners and stakeholders, we are committed to accelerate the transition towards a carbon-neutral world, through reduced energy consumption and more environmentally...


  • Riyadh, Saudi Arabia Elia Grid International Full time

    **Who we are **Elia Grid International (EGI) **is a global engineering consultancy company, part of Elia Group (Belgium) and 50Hertz (Germany), specializing in complex power system challenges. Our goal is to provide **high-quality solutions **for the challenges of the **energy transition **. Our **multidisciplinary team of experts **offers strategic,...


  • Riyadh, Saudi Arabia Elia Grid International Full time

    **Who we are** **Elia Grid International (EGI) **is a global engineering consultancy company, part of Elia Group (Belgium) and 50Hertz (Germany), specializing in complex power system challenges. Our goal is to provide **high-quality solutions** for the challenges of the **energy transition**. Our **multidisciplinary team of experts** offers strategic,...

  • Senior Sales

    5 months ago


    Riyadh, Saudi Arabia Concept Resourcing Full time

    **Senior Account executive - Cybersecurity Enterprise sales KSA** My client are a Multi Billion turn over Multinational software vendor, which have multiple solutions including Content Management, Archiving, Security among many others. They have been growing year on year and have a turnover greater then $3 billion US They are looking for a senior and...


  • Riyadh, Saudi Arabia Cundall Full time

    The Team: As part of the development of its MENA business, and overall global growth, Cundall are excited to announce the establishment of a new office in Riyadh, KSA. Cundall have been working on projects in KSA for almost 15 years, so this is the natural progression for the business, building on long standing relationships and offering the same high...