Back to jobsSign in and upload your CV to see how well you match this job.
Sign inJob overview
- Location
- Riyadh, Saudi Arabia
- Workplace
- On-site
- Employment type
- Full-time
- Date posted
- Oct 4, 2026
- Last checked at the source
- Oct 7, 2026
- Job source
- via Workable
Responsibilities
• Support the development and maintenance of cybersecurity policies, standards, procedures, and governance records.
• Coordinate cybersecurity risk assessments for systems, projects, suppliers, and business initiatives.
• Maintain risk registers, track treatment plans, and follow up on overdue actions.
• Support cybersecurity compliance assessments against regulatory and internal requirements.
• Coordinate the collection, validation, and organization of compliance and audit evidence.
• Support Internal Audit, external assessments, and regulatory reviews by preparing required cybersecurity evidence.
• Track audit findings, remediation actions, and closure evidence.
• Support cybersecurity due diligence and risk reviews for third parties and service providers.
• Maintain security exceptions, risk acceptance records, and required follow-ups.
• Prepare GRC reports, dashboards, and management updates.
• Identify control gaps and opportunities to improve cybersecurity governance processes.
Requirements
• Bachelor’s degree in Cybersecurity, Information Security, Information Technology, Risk Management, Business Administration, or a related field.
• 2–4 years of experience in cybersecurity GRC, information security, risk, compliance, or a related function.
• Good understanding of cybersecurity governance, risk assessment, control testing, and compliance.
• Familiarity with Saudi cybersecurity requirements and information security frameworks.
• Strong documentation, analytical, and stakeholder coordination skills.
• Ability to communicate effectively with both technical and non-technical stakeholders.
• Professional proficiency in Arabic and English.
• Certifications such as ISO 27001, CRISC, CISA, CGRC, or equivalent are preferred.
Key Responsibilities
• Support the development and maintenance of cybersecurity policies, standards, procedures, and governance records.
• Coordinate cybersecurity risk assessments for systems, projects, suppliers, and business initiatives.
• Maintain risk registers, track treatment plans, and follow up on overdue actions.
• Support cybersecurity compliance assessments against regulatory and internal requirements.
• Coordinate the collection, validation, and organization of compliance and audit evidence.
• Support Internal Audit, external assessments, and regulatory reviews by preparing required cybersecurity evidence.
• Track audit findings, remediation actions, and closure evidence.
• Support cybersecurity due diligence and risk reviews for third parties and service providers.
• Maintain security exceptions, risk acceptance records, and required follow-ups.
• Prepare GRC reports, dashboards, and management updates.
• Identify control gaps and opportunities to improve cybersecurity governance processes.
Visa and relocation
?The posting doesn't mention visa sponsorship. Check the original posting or ask the company.
?The posting doesn't mention relocation.
Job description
The Cybersecurity GRC Specialist will support cybersecurity governance, risk, and compliance activities across the Group. The role will focus on maintaining cybersecurity policies and controls, coordinating risk assessments and compliance evidence, tracking remediation actions, and supporting regulatory, audit, and assurance activities.
• Bachelor’s degree in Cybersecurity, Information Security, Information Technology, Risk Management, Business Administration, or a related field.
• 2–4 years of experience in cybersecurity GRC, information security, risk, compliance, or a related function.
• Good understanding of cybersecurity governance, risk assessment, control testing, and compliance.
• Familiarity with Saudi cybersecurity requirements and information security frameworks.
• Strong documentation, analytical, and stakeholder coordination skills.
• Ability to communicate effectively with both technical and non-technical stakeholders.
• Professional proficiency in Arabic and English.
• Certifications such as ISO 27001, CRISC, CISA, CGRC, or equivalent are preferred.
Key Responsibilities
• Support the development and maintenance of cybersecurity policies, standards, procedures, and governance records.
• Coordinate cybersecurity risk assessments for systems, projects, suppliers, and business initiatives.
• Maintain risk registers, track treatment plans, and follow up on overdue actions.
• Support cybersecurity compliance assessments against regulatory and internal requirements.
• Coordinate the collection, validation, and organization of compliance and audit evidence.
• Support Internal Audit, external assessments, and regulatory reviews by preparing required cybersecurity evidence.
• Track audit findings, remediation actions, and closure evidence.
• Support cybersecurity due diligence and risk reviews for third parties and service providers.
• Maintain security exceptions, risk acceptance records, and required follow-ups.
• Prepare GRC reports, dashboards, and management updates.
• Identify control gaps and opportunities to improve cybersecurity governance processes.
GetGlobalJob is not the employer or a recruiting agency. You apply on the original publisher's site: always check the posting before sharing your details, and never pay for a job.
Check your fit for this job
Create your free account and upload your CV to see how well you match this job and which skills you're missing.
Check my fit