Cybersecurity Governance, Risk & Compliance (GRC) Specialist

🏢 CCDS
📍 Riyadh, Saudi ArabiaFull-timeOn-site
📅 Posted: 1w ago🔄 Updated: 1w ago
CV%
✨ AI Summary
This project-based role supports a governmental entity in Riyadh, Saudi Arabia, for 13 months, focusing on cybersecurity governance, enterprise risk, and regulatory compliance. Responsibilities include updating policies, conducting risk assessments, managing the risk register, performing compliance gap assessments against NCA controls and ISO/IEC 27001, supporting audits, operating eGRC tools, and preparing executive reports. The ideal candidate possesses a Bachelor's degree in Computer Science or Information Security, at least 6 years of relevant experience, and advanced knowledge of cybersecurity frameworks.
Required Skills
Finance, Legal & Governance
Internal Controls
Information Technology
ISO 27001
Soft Skills & Professional Competencies
Stakeholder ManagementAnalytical SkillsReport WritingPresentation Skills
Other
documentation skills
Business, Sales & Management
Risk Management
Requirements
Technical and Professional Requirements·      Bachelor’s degree in Computer Science, Information Security, or a related field.·      At least 6 years of experience in cybersecurity governance, risk, and compliance.·      Advanced knowledge of Saudi and international cybersecurity frameworks and standards, including NCA controls and ISO/IEC 27001.·      Proven experience with cybersecurity risk registers, treatment plans, third-party risk, executive reporting, and eGRC tools.Personal Requirements·      Strong stakeholder-management skills and confidence working with senior leadership.·      Excellent analytical, writing, presentation, and documentation skills.·      Structured, detail-oriented, accountable, and able to coordinate remediation across multiple teams.Professional CertificationsPreferred: CISSP, CISM, CRISC, or ISO/IEC 27001 Lead Implementer (LI).
Description
Location: On-site – Riyadh, Saudi ArabiaContract/engagement: Project-based managed cybersecurity services (13-month)Minimum experience: 6+ yearsRole PurposeSupport the governmental entity's cybersecurity governance, enterprise risk, regulatory compliance, audit readiness, and executive reporting activities.Key Responsibilities·      Review and periodically update cybersecurity policies, procedures, standards, and guidelines.·      Perform cybersecurity risk assessments covering assets, systems, projects, and third parties.·      Maintain the cybersecurity risk register, develop treatment plans, track actions, and align decisions with the entity's approved risk appetite.·      Conduct compliance gap assessments against NCA controls, ISO/IEC 27001, and other applicable national or international frameworks.·      Support internal and external audits, prepare evidence, manage non-compliance cases, and follow remediation through closure.·      Operate or support eGRC and cybersecurity risk-management tools.·      Prepare management reports, executive dashboards, KPIs, compliance status reports, and committee-level presentations.
✨ Premium Match Details
Deep-dive CV analysis, customized Cover Letters, and Interview prep!
📊 Match Analysis
Insights against your active CV
📊
Personalized Match Analysis
Upload your CV to see exact matching percentages, detailed skills mapping, and gap analysis for this role.
🎯 Overalli74%
⚡ Skillsi85%
View Breakdown
Ontology Match: 85.0
Matched:✓ Requirements Matching✓ Ontology Skills Mapping
📜 Eligibilityi49%
View Breakdown
Local: 19600%
🏗️ Career Fiti91%
View Breakdown
Seniority: 91.0
📋 Requirementsi67%
View Breakdown
Domain: 67.0
🔥 Motivationi78%
View Breakdown
Title Fit: 78.00