✨ AI Summary
The Compliance Expert will provide advice on cybersecurity audits, monitor compliance with controls, and raise employee awareness. This role involves recommending activities for monitoring the National Cybersecurity Authority's recommendations, preparing periodic reports, and reviewing cybersecurity procedure audits. The expert will also advise on establishing a compliance management framework, developing information security controls compliance plans, and assessing compliance with national and international laws. Responsibilities include evaluating compromised assessment and disaster response simulations, supervising penetration tests, and preparing cybersecurity incident preparedness exercises. Additionally, the role involves assessing and enhancing security awareness among users and developing and delivering awareness programs. The expert will also review technical projects for compliance with standards and adhere to organizational policies.
Requirements
Requires a Bachelor's degree in cybersecurity or a related field, with a minimum of 6 years of experience. Must have skills in cybersecurity, compliance management, security awareness programs, information security controls, and disaster response simulations. Familiarity with National Cybersecurity Authority guidelines and reporting is essential.
Description
Key ResponsibilitiesProvides advice on conducting audits and monitoring compliance with controls related to cybersecurity and works to raise awareness of the importance of cybersecurity among all employees of the organization.Recommends activities for monitoring the implementation of controls and recommendations issued by the National Cybersecurity Authority.Determines the tasks for preparing, compiling, and sharing periodic reports with the National Cybersecurity Authority.Reviews the implementation of periodic audits of cybersecurity procedures in the organization.Recommends activities related to establishing a framework for compliance management and managing the policy for exceptions.Provides advice on developing and implementing an information security controls compliance review plan and ensuring that any identified gaps are addressed.Determines the extent of compliance with relevant national and international information security laws and regulations.Provides advice on conducting and evaluating Compromised assessment and disaster response simulations.Recommends activities related to supervising and scheduling penetration tests, such as Red Team penetration attempts and email phishing simulations, in coordination with the relevant Information Technology department.Recommends tasks related to supervising the preparation and implementation of cybersecurity incident preparedness exercises (Table Top / Exercise Drill for Cybersecurity incidents) in coordination with the relevant departments within the administration.Reviews activities for assessing security awareness among users of the organization's systems.Determines plans and implementation programs for raising security awareness in coordination with various relevant organizational units within the organization.Reviews the preparation of information security awareness and educational programs and their delivery to beneficiaries within the organization.Recommends activities for implementing security awareness programs and working on their development.Recommends activities related to assessing technical projects to ensure their compliance with published standards.Adheres to the organization's policies and work behaviors and the procedures of the organizational unit.Performs any other tasks assigned by direct supervisors.Required ExperienceMinimum of 6 years of experience in a relevant field.EducationBachelor's degree in cybersecurity or any related field.