img
نوع العقددوام كامل
طبيعة الوظيفةبالموقع
الموقعالرياض

وصف الوظيفة

About the Role

flynas is seeking a Cybersecurity Risk Specialist to join its team in Riyadh, Saudi Arabia. This full-time role involves conducting and supporting the identification, assessment, analysis, treatment, monitoring, and reporting of cybersecurity risks across the organization's technology environment, systems, projects, third parties, and business operations. The specialist will maintain cybersecurity risk records and coordinate risk treatment activities.

Key Responsibilities

  • Identify, assess, analyze, evaluate, and monitor cybersecurity risks across systems, applications, infrastructure, projects, third parties, and business processes.
  • Provide cybersecurity risk guidance to internal stakeholders and support risk-based decision-making for systems, projects, technology changes, and third-party engagements.
  • Monitor the cybersecurity risk profile and emerging risk exposure, supporting timely escalation and reporting of significant cybersecurity risks.
  • Support alignment of cybersecurity risk management activities with National Cybersecurity Authority (NCA) requirements, organizational Enterprise Risk Management (ERM) processes, and recognized frameworks.

Operational Duties

  • Identify relevant cyber threats, vulnerabilities, potential threat scenarios, affected assets, existing controls, and potential business impacts during risk assessments.
  • Review supporting evidence for completed risk treatment activities and reassess residual risk.
  • Maintain the cybersecurity risk register, including risk ratings, ownership, treatment decisions, action plans, target dates, review dates, and current status.
  • Support cybersecurity third-party risk assessments and evaluate risks associated with vendors, service providers, and cloud providers.
  • Support cybersecurity risk assessments during project initiation, solution design, procurement, implementation, and significant technology changes.
  • Coordinate with vulnerability management, threat intelligence, incident management, compliance, and other cybersecurity functions to incorporate relevant findings.
  • Support the development and continuous improvement of the cybersecurity risk management methodology, risk criteria, assessment templates, risk taxonomy, and supporting processes.
  • Develop and maintain cybersecurity Key Risk Indicators (KRIs) and monitor trends.

Safety and Security Responsibilities

  • Submit a safety report if exposed to any safety hazard or issue.
  • Understand and comply with safety precautions outlined in relevant manuals and publications.
  • Immediately report all safety hazards, accidents/incidents, injuries, and damage to the concerned supervisor.

Experience Required

Candidates should possess 2-5 years of relevant experience in cybersecurity risk management.


متطلبات الوظيفة

  • تتطلب ٢-٥ سنوات خبرة

وظائف مشابهة