Lead Anti Fraud Officer
📣 إعلان| نوع العقد | دوام كامل | |
| طبيعة الوظيفة | بالموقع | |
| الموقع | الرياض |
وصف الوظيفة
About the Role
Tabby is seeking a Lead Anti-Fraud Officer to join its team in Riyadh, Saudi Arabia. This full-time role involves independently leading complex governance, risk, and compliance (GRC) activities, serving as a subject matter expert in areas such as enterprise information security governance, risk management frameworks, regulatory compliance, or third-party risk management.
The Lead Anti-Fraud Officer will produce high-quality GRC deliverables, mentor junior and mid-level team members, and contribute to the continuous improvement of the organization's GRC framework, risk treatment processes, and compliance reporting mechanisms. This position acts as a liaison between technical execution and program leadership, collaborating with leads, legal, audit, and business stakeholders to achieve mature GRC outcomes aligned with the Saudi Fintech regulatory environment.
Key Responsibilities
- Lead the development, review, and continuous improvement of information security policies, standards, procedures, and governance frameworks.
- Serve as the subject matter expert for assigned regulatory domains, interpreting requirements and translating them into implementable control objectives.
- Monitor regulatory and legal developments affecting information security, assessing impact, and recommending updates to the governance framework.
- Prepare and review governance documentation, including RACI matrices, security charter updates, and governance committee packs, presenting findings to senior stakeholders.
- Lead the preparation of regulatory self-assessments and compliance attestations, coordinating evidence gathering and quality-reviewing submissions.
- Mentor GR1–GR2 team members on governance documentation quality, regulatory interpretation, and risk assessment methodology.
Enterprise Risk Management
- Lead complex enterprise information security risk assessments, applying advanced methodologies to produce risk profiles aligned with the organization's risk appetite.
- Maintain the enterprise information security risk register, ensuring accuracy, currency, and appropriate escalation of significant risks.
- Lead Business Impact Analysis (BIA) processes for critical business functions, coordinating with asset owners and analyzing recovery requirements.
- Design and execute control effectiveness testing programs, producing findings reports with gap analysis and risk-ranked remediation recommendations.
- Lead third-party information security risk management, designing assessment frameworks, conducting vendor reviews, and maintaining the third-party risk register.
- Produce executive-quality risk reporting with trend analysis, emerging risk identification, and treatment progress tracking.
Compliance Program Delivery
- Lead compliance monitoring activities for CFFR, NCA ECC, PDPL, ISO 27001, and PCI-DSS, producing gap analyses, treatment plans, and periodic status reports.
- Manage internal and external audit cycles, coordinating evidence collection, reviewing quality, engaging with auditors, and tracking remediation.
- Design and deliver the security awareness program, producing targeted content, conducting awareness sessions, and analyzing effectiveness metrics.
- Develop and maintain GRC program metrics dashboards, ensuring KPIs and KRIs are accurately measured and presented.
- Lead the integration of information security requirements into third-party contracts, procurement processes, and major project onboarding.
- Contribute to the information security program strategy, identifying capability improvement opportunities and recommending investment priorities.
Cross-Functional Collaboration and Knowledge Leadership
- Serve as the primary GRC point of contact for assigned business and technology teams, providing expert guidance on security requirements, risk treatment, and compliance obligations.
- Lead information classification and security requirements reviews for significant IT, product, and business projects.
- Contribute to the GRC knowledge base, developing reusable templates, guidance documents, and training materials for internal use.
- Represent the GRC function in cross-functional working groups, project steering committees, and regulatory workstreams.
- Perform additional responsibilities as assigned by management.
Qualifications and Experience
Candidates should possess 2-5 years of relevant experience in governance, risk, and compliance within information security. The role requires a strong understanding of GRC domains and the ability to lead complex activities independently.
متطلبات الوظيفة
- تتطلب اكثر من ١٠ سنوات خبرة
وظائف مشابهة
قد يعجبك أيضاً
- وظائف ذات صلة بـ Lead Anti Fraud Officer
- وظائف أخصائي إدارة حسابات تواصل إجتماعي في تبوك
- وظائف بائع في تبوك
- وظائف مهندس مدني في تبوك
- وظائف مندوب مبيعات في تبوك
- وظائف GIS Specialist في تبوك
- مجالات وظيفية أخرى في الرياض
- وظائف أخصائي إدارة حسابات تواصل إجتماعي في الرياض
- وظائف صانع محتوى للتواصل الاجتماعي في الرياض
- وظائف مدير مشتريات في الرياض
- وظائف أخصائي تسويق في الرياض
- وظائف مهندس معماري في الرياض
- وظائف بائع في الرياض
- وظائف Key Account Manager في الرياض
- وظائف Sales Manager في الرياض
- وظائف Data Scientist في الرياض
- وظائف Brand Manager في الرياض
- استكشف الوظائف في أنحاء المملكة
- وظائف مسؤول إداري في الرياض
- وظائف مهندس اتصالات في ضبا
- وظائف جامع بيانات في مكة المكرمة
- وظائف Cost Controller في العلا
- وظائف Receiving Clerk في المدينة المنورة
- وظائف Operations Manager في القريات
- وظائف أخصائي زراعي في المدينة المنورة
- وظائف Sales Manager في الظهران
- وظائف اخصائي نطق وتخاطب في بريدة
- وظائف فني مختبر طبي في رابغ