Cybersecurity Governance Specialist

6 days ago


Riyadh, Ar Riyāḑ, Saudi Arabia هيئة الزكاة والضريبة والجمارك Full time
Job Summary

We are seeking a highly skilled Cybersecurity Governance Specialist to join our team at هيئة الزكاة والضريبة والجمارك. The successful candidate will be responsible for designing and implementing information security procedures and frameworks, as well as developing and managing information security, governance, risk, and compliance programs.

Key Responsibilities

Information Security Governance

  • Develop and Implement Information Security Policies: Set information security policies, standards, and develop related processes ensuring alignment with cybersecurity regulatory requirements.
  • Design Information Security Procedures and Frameworks: Design information security procedures and frameworks to ensure consistency in the implementation of security controls.
  • Develop and Manage Information Security Programs: Develop and manage information security, governance, risk, and compliance programs for effective management of IT and security risks meeting compliance requirements.
  • Prepare Cybersecurity Awareness Programs: Prepare cybersecurity awareness programs and develop education plans including workshops, seminars, etc. regarding standards, policies, and governance processes to foster attentiveness and knowledge in cybersecurity topics across our employees.

Information Security Risk Management

  • Conduct Cybersecurity Risk Assessments: Conduct cybersecurity risk assessments to identify potential risks and related daily changes initiating the development of needed mitigation plans.
  • Develop and Implement Risk Mitigation Plans: Develop risk mitigation plans and remediation plans to effectively manage risk in accordance with our risk appetite.
  • Manage Cybersecurity Risks and Risks Register: Manage cybersecurity risks and risks register to identify, log, and track potential risks ensuring compliance with cybersecurity standards and governance policies and procedures.
  • Follow up on Implementation of Mitigating Controls: Follow up on the implementation of corresponding mitigating controls as per set plans ensuring update of risk register.
  • Conduct Risk Assessments for Identified Non-Conformities: Conduct risk assessments for identified non-conformities during security audits and recommend needed improvement actions for protection and detection capabilities.

Information Security Compliance

  • Perform Information Security Audits: Perform information security audits, semiannual assessments against NCA and annual assessments against ISO 27001 to recognize patterns and cases of non-compliance with cybersecurity policies and recommend areas of improvement.
  • Manage Non-Compliance Cases: Manage non-compliance cases improving business processes and operations by supporting external assessments against NCA framework.
  • Develop Periodic Reports: Develop periodic reports consolidating the status of information security compliance and report it with regulators (ISO 27001 & NCA).

Organization and Operations

  • Follow Relevant Policies and Procedures: Follow all relevant policies, processes, and standard operating procedures so that work is carried out in a controlled and consistent manner.
  • Help in Solving Escalated Problems: Help in solving escalated problems and provide needed support for junior team members to ensure work is carried out efficiently.
  • Evaluate and Escalate Complex Problems: Escalate complex problems to the relevant person to ensure cases/issues are closed properly.
  • Perform Other Duties as Requested: Perform other duties as requested.

People Management

  • Train Junior Staff: Train junior staff on the different job activities to ensure transfer of know-how, when applicable.
  • Provide Clear Direction and Prioritize Tasks: Provide clear direction, prioritize tasks, assign and delegate responsibility, and monitor the workflow of subordinates/junior staff.
  • Support Junior Staff or Direct Reports: Support junior staff or direct reports in order to execute their duties according to set policies and processes.

Job Requirements

Education: Bachelor's degree in Science in Cybersecurity or equivalent is required.

Experience: A minimum of 2 years of relevant experience.

Competencies: Vendor Management - Developing, Communication - Developing, Professionalism - Developing, IT Operations Management - Developing, Cybersecurity Incident and Investigation - Developing, Project Management - Developing, IT Compliance - Proficient, Results Oriented - Developing, Information Security - Proficient, Customer Focus - Developing, Change Enabler - Developing



  • Riyadh, Ar Riyāḑ, Saudi Arabia Lifera Full time

    About LiferaLifera is a leading global biopharma company that aims to enable the Saudi National Biotech Strategy and achieve biopharma resilience in Saudi Arabia.We are committed to enabling Saudi Arabia's Vision 2030 and changing lives through our mission to establish Lifera as a leading global biopharma company.Job SummaryWe are seeking a highly skilled...


  • Riyadh, Ar Riyāḑ, Saudi Arabia IT Security C&T Full time

    About the RoleIT Security C&T is seeking a highly skilled Cybersecurity Governance Risk Management Consultant to join our team. As a key member of our security consulting and training company, you will play a critical role in delivering comprehensive security solutions to our customers across the MENA region.Key ResponsibilitiesDevelop and Maintain...


  • Riyadh, Ar Riyāḑ, Saudi Arabia CME Full time

    About the RoleCME is seeking a highly skilled and experienced Cybersecurity Specialist to join our team as an Information Security Engineer. This role requires a strong background in designing, implementing, and managing advanced cybersecurity solutions to protect our organization's data and infrastructure.Key ResponsibilitiesDesign and implement advanced...


  • Riyadh, Ar Riyāḑ, Saudi Arabia TIS Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Governance Risk Consultant to join our team at TIS. As a key member of our Information Security and Compliance function, you will play a crucial role in ensuring the security and compliance of our customers' data.Key ResponsibilitiesRisk Management: Develop and maintain a deep understanding of risk...


  • Riyadh, Ar Riyāḑ, Saudi Arabia CME Argentina Full time

    About CME ArgentinaWe are a multinational technology consulting firm that helps companies and corporations scale their operations, achieve technology innovation, elevate their brand, and transform their business model.We are a team of over 500 engineers from around the world with one shared goal: to leverage and crisscross technology, creative thinking, and...


  • Riyadh, Ar Riyāḑ, Saudi Arabia SSC Egypt Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Operations Specialist to join our team at SSC Egypt. As a key member of our cybersecurity team, you will be responsible for monitoring and managing cybersecurity operations to ensure the security and integrity of our systems and data.Key ResponsibilitiesMonitor Cybersecurity Operations: You will be...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Internetwork Expert Full time

    About the RoleInternetwork Expert is seeking a highly skilled Cybersecurity Engineer/SDM/SSAM to join our team. As a key member of our cybersecurity team, you will be responsible for enhancing and managing the cybersecurity posture of our organization.Key Responsibilities:Cybersecurity Policy Development: Develop and update comprehensive cybersecurity...


  • Riyadh, Ar Riyāḑ, Saudi Arabia PuroClean Certified Restoration Specialist of Auburn Full time

    Job Title: Corporate Governance SpecialistWe are seeking a highly skilled Corporate Governance Specialist to join our team at PuroClean Certified Restoration Specialist of Auburn. As a key member of our Corporate Governance Department, you will play a vital role in ensuring the effective governance of our organization.Key Responsibilities:Provide support in...


  • Riyadh, Ar Riyāḑ, Saudi Arabia CME Full time

    Job OverviewCME is seeking a seasoned Information Security Engineer to spearhead the design, implementation, and management of cutting-edge cybersecurity solutions. This role demands collaboration with cross-functional teams to embed security best practices throughout the organization.Key ResponsibilitiesDevelop and execute advanced cybersecurity strategies...

  • Technical Developer

    6 days ago


    Riyadh, Ar Riyāḑ, Saudi Arabia SSC Egypt Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Specialist to join our team at SSC Egypt. As a key member of our Cybersecurity Department, you will be responsible for developing and maintaining cutting-edge cybersecurity dashboards and reports.Key ResponsibilitiesDevelop Cybersecurity Solutions: Collaborate with our team to understand...


  • Riyadh, Ar Riyāḑ, Saudi Arabia PuroClean Certified Restoration Specialist of Auburn Full time

    About the RoleWe are seeking a highly skilled Corporate Governance Specialist to join our team at PuroClean Certified Restoration Specialist of Auburn. As a key member of our organization, you will play a crucial role in ensuring the effective governance of our company.Key ResponsibilitiesSupport Departmental Goals: Provide assistance in achieving the...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Help AG Full time

    About the RoleWe are seeking a highly skilled and experienced SIEM Engineer to join our team at Help AG. As a SIEM Engineer, you will be responsible for the creation of procedures, implementation of process development, and maintenance of security systems across internal and client environments.Key ResponsibilitiesAdministering Splunk and Splunk Apps to...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Career Maker Bahrain Full time

    Key Responsibilities:As a Cybersecurity Manager at Career Maker Bahrain, you will be responsible for:Leading Cybersecurity Efforts: Oversee the development and implementation of comprehensive cybersecurity strategies to protect our organization's assets and ensure compliance with local and international regulations.Cybersecurity Assurance: Provide...


  • Riyadh, Ar Riyāḑ, Saudi Arabia SSC Egypt Full time

    Job SummaryThe Chief Information Security Officer will oversee and ensure the establishment and maintenance of the Client cybersecurity environment. This executive role will focus on governance, strategy, risk management, and process alignment in accordance with SAMA CSF and NCA ECC.Key ResponsibilitiesDevelop and Implement Cybersecurity Strategy: Formulate...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Jeraisy Computer & Comm. Services Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Coordinator to join our team at Jeraisy Computer & Comm. Services. The successful candidate will be responsible for ensuring the security and integrity of our IT systems and infrastructure.Key ResponsibilitiesDocumentation and Record-Keeping: Ensure accurate and complete documentation of all IT-related...


  • Riyadh, Ar Riyāḑ, Saudi Arabia SSC Egypt Full time

    Job SummaryThe Chief Information Security Officer will oversee and ensure the establishment and maintenance of the Client cybersecurity environment. This executive role will focus on governance, strategy, risk management, and process alignment in accordance with SAMA CSF and NCA ECC.Key ResponsibilitiesDevelop and Implement Cybersecurity Strategy: Formulate...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Cognizant Technology Solutions Corporation Full time

    About the RoleCognizant Technology Solutions Corporation is seeking a highly skilled Data Governance Specialist to join our team. As a Data Governance Specialist, you will play a critical role in ensuring the effective management of our organization's data assets.Key ResponsibilitiesDevelop and implement data classification and categorization strategies to...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Internetwork Expert Full time

    Internetwork Expert is a leading provider of IT solutions dedicated to delivering cutting-edge technology services. We are seeking a seasoned Cybersecurity Risk Expert to drive enhancements in our risk management processes. The Cybersecurity Risk Expert will be responsible for rebuilding and enhancing our Risk Management Program (RMP) in alignment with...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Help AG Full time

    About the RoleHelp AG is seeking a highly skilled and experienced Cybersecurity Engineer - Splunk Specialist to join our team. As a key member of our Security Operations Center (SOC), you will be responsible for the administration, maintenance, and integration of security systems across internal and client environments.Key ResponsibilitiesAdminister and...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Boston Consulting Group Full time

    About the RoleAs a Project Director at Boston Consulting Group, focusing on Cybersecurity, you'll lead complex Cybersecurity client engagements, synthesizing BCG's collective intelligence into groundbreaking strategies. You'll architect game-changing solutions, ensuring alignment at every stage while forging long-term partnerships. Your communication will be...