Cyber Security Governance

2 weeks ago


Riyadh, Ar Riyāḑ, Saudi Arabia geidea Full time 120,000 - 180,000 per year

Established in 2008, Geidea epitomises customer focused empowerment and commercial success through continuous innovation

Geidea makes best in class digital payment solutions available for all by attracting and leveraging the best creative & entrepreneurial talent in the market

Our solutions give any business the chance to get ahead and reach for more no matter their size or maturity.

Our technology mirrors our people - Smart, Innovative & Forward Thinking

To maintain competitive advantage as we grow, we are currently looking for new
Cyber Security Governance & Compliance lead

Job purpose:

Assist in the implementation of A governance, risk, and compliance programs and guidelines, drafting policies and procedures, reporting to ensure smooth implementation of cybersecurity activities across all regions in Geidea.

Key accountabilities and decision ownership:

  • Assist in implementation of Information Security Management System in compliance with SAMA CSF, PCI-DSS and ISO 27001 across organization.
  • Assist in implementation of PCI DSS compliance.
  • Assist in drafting, maintaining, and enforcing policies, procedures, and controls in accordance with PCI DSS.
  • Coordinate and formulate detailed reports of ISMS internal reviews and periodic PCI DSS reviews.
  • Execute periodic activities as required for achieving compliance of PCI DSS/ISO 27001.
  • Coordinate and assist various teams in closure of ISMS findings internal review report and PCI DSS gaps.
  • Assist and coordinate with various teams in annual external audits of PCI DSS.
  • Assist and support in achieving PCI DSS compliance for upcoming projects and various teams in IT.
  • Conduct organization wide information security awareness training.
  • Assist in security incident response and RCA activities.
  • Implementing cybersecurity program in compliance with CBE Cyber Security Framework, PCI-DSS and ISO 27001 across organization.
  • Conduct a cyber security risk assessment.
  • Represent the cyber security function in the change management process.
  • Maintain an updated risk register.
  • Report on the progress and engagement of the cyber security GRC on a weekly basis.
  • Conduct cyber security third-party risk assessment.
  • Engage in the early stages of business project to recommend cyber security controls.

Must have technical / professional qualifications:

  • 3-5 years of experience
  • Bachelor's degree in computer engineering, computer science, Information Technology or any related field.
  • Certifications:
  • ISO 27001 LA/LI
  • PCIP
  • CISA/CRISC/CISSP
  • CEH
  • ITIL Foundation
  • CompTIA Security+
  • Firewalls certifications
  • Experience in information security and application security controls.
  • Exposure to methodologies, such as OWASP is preferred.
  • Sound experience in PCI-DSS, SAMA Cyber Security Framework, and NCA.
  • Knowledge and understanding of Information Security related risk assessments framework such as SAMA, OCTAVE, COBIT, ISO 27005 and NIST 800-30, CBE.
  • Ability to perform internal information security reviews and meet with external

audits.

  • Sound understanding and knowledge of firewall rules, security architecture, infrastructure, and application hardening.
  • Sound experience in Implementing ISMS, performing internal reviews, drafting and enforcing policies in accordance with SAMA Cyber Security Framework, ISO 27001, and PCI-DSS, CBE Cyber Security Framework or national regulators.
  • Exposure to the financial Sector Is preferred.

Our values guide how we think and act - They describe what we care about the most

C
ustomer first - It's embedded in our design thinking and customer service approach

O
pen - Openness allows us to constantly improve and evolve

R
eal - No jargon and no excuses

B
old - Constantly challenging ourselves and our way of thinking

R
esilient – If we fail, we bounce back stronger than before

C
ollaborative - We know that we can achieve a lot more as a team

We are changing lives by constantly striving for a better solution

Click apply below and become part of the Geidea story



  • Riyadh, Ar Riyāḑ, Saudi Arabia IT Security Training & Solutions - I(TS)² Full time 90,000 - 120,000 per year

    Cyber Security Presales Consultant (Arabic Speaker) Riyadh, Saudi ArabiaWe're looking for aCyber Security Presales Engineerto join our team in Riyadh. You'll work with clients to design tailored security solutions, lead POCs, and support the sales cycle with strong technical expertise.You should have hands-on experience withIAM, PAM, DLP, EDR, NDR,...

  • Cyber Security

    2 weeks ago


    Riyadh, Ar Riyāḑ, Saudi Arabia AtkinsRéalis Full time 120,000 - 180,000 per year

    AtkinsRéalis is looking for aCyber Security & Resilience ConsultantinRiyadh, KSA.About AtkinsRéalisCreated by the integration of long-standing organizations dating back to 1911, AtkinsRéalis is a world-class engineering services and nuclear company dedicated to engineering a better future for our planet and its people. We create sustainable solutions that...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Salt Full time 60,000 - 120,000 per year

    Senior Cyber Security Consultant – AdvisoryIndustry: Cyber Security & Technology ConsultingAbout the RoleWe are seeking a Senior Cyber Security Consultant to join our client's growing advisory practice in the Middle East. The ideal candidate will have a strong background in security architecture, SOC assessments, and governance, risk, and compliance (GRC)...


  • Riyadh, Ar Riyāḑ, Saudi Arabia MUFG Full time

    Do you want your voice heard and your actions to count? Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world's leading financial groups. Across the globe, we're 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships,...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Leader Investment Group - LIG Full time

    Company DescriptionLeader Investment Group (LIG) is a multinational corporation and a global leader in Management Consultation, Executive Consultation, Digital Transformation, and IT. We specialize in helping businesses modernize through Business Process Solutions, IT Solutions, and Digital Transformation. Our proven track record of solving business...


  • Riyadh, Ar Riyāḑ, Saudi Arabia PrimeResources Full time $150,000 - $250,000 per year

    Company DescriptionPrimeResources specializes in building efficient and reliable workforces by connecting skilled professionals with organizations seeking top-tier talent. Recognized as a leading manpower provider in Saudi Arabia, PrimeResources ensures seamless and stress-free hiring processes across multiple industries. The company is dedicated to...


  • Riyadh, Ar Riyāḑ, Saudi Arabia SIJIL Full time 120,000 - 240,000 per year

    Company DescriptionSIJIL, the Saudi Financial Lease Contract Registry Company, is licensed by the Saudi Arabian Monetary Authority to provide services and solutions for financial lease registrations. The company offers a specialized register of contracts, including data of leased assets, aiming to enhance the mechanism of financial lease and contract...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Security Matterz Full time

    About the RoleSecurity Matterz is looking for a Pre-Sales Cybersecurity Engineer to support our sales team in designing and positioning advanced security solutions for our customers. You will work closely with account managers, vendors, and technical teams to understand client requirements, build tailored solutions, and help win strategic opportunities...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Astek Middle East Full time 60,000 - 180,000 per year

    As the Cyber Security Senior Manager, you will be responsible for defining and leading the strategic direction, implementation, and governance of the organization's cybersecurity and information security programs. This role ensures that all data, systems, and digital assets are effectively protected against evolving cyber threats while maintaining full...


  • Riyadh, Ar Riyāḑ, Saudi Arabia Riyadh Cement Company Full time 90,000 - 120,000 per year

    Job Description :To secure the organization's cyberspace, we are seeking a cybersecurity engineer with an analytical mindset and a comprehensive understanding of cybersecurity approaches. Expectations for cyber security engineers include diligent attention to detail, exceptional problem-solving skills, the ability to operate comfortably under pressure, and...