img
نوع العقددوام كامل
طبيعة الوظيفةبالموقع
الموقعجدة

وصف الوظيفة

About the Role

FNRCO is seeking a Digital GRC Section Head to lead IT governance, risk, and compliance practices across digital platforms. This full-time position is based in Makkah, with operations spanning Jeddah and Makkah. The role focuses on ensuring effective risk oversight, audit readiness, and adherence to policies and regulations within the digital landscape.

Role Purpose and Context

The primary purpose of this role is to embed GRC frameworks into IT processes, manage third-party risks, and provide actionable reporting to the Section Head. The Digital GRC Section Head will enable accountable and risk-aware operations by overseeing IT governance, enterprise risk management, and compliance across the organization's digital platforms.

Key Responsibilities

  • Establish, refine, and enforce IT governance frameworks, policies, and controls across the enterprise technology landscape, ensuring alignment with standards and regulatory requirements.
  • Lead enterprise-level IT risk assessments, maintain a centralized risk register, and prioritize vulnerabilities based on business impact.
  • Oversee compliance frameworks (*, ISO, NCA, GDPR), ensure digital platforms are audit-ready, and coordinate responses to internal and external audits.
  • Lead assessments of vendor GRC maturity, embed risk-based clauses, and monitor third-party compliance through SLAs, certifications, or independent audits.
  • Define and maintain GRC dashboards covering risk posture, audit findings, and compliance status, providing regular updates to governance committees.
  • Support monitoring of day-to-day activities to ensure compliance with stipulated policies and procedures.
  • Contribute to identifying opportunities for continuous improvement of systems and processes.
  • Actively participate in on-the-job training, mentoring, and coaching of subordinates, providing clear direction and monitoring workflow.

Qualifications and Experience

  • A minimum of 5 to 10 years of relevant experience in IT governance, risk, and compliance.
  • Demonstrated experience in establishing and refining IT governance frameworks and policies.
  • Proficiency in leading enterprise-level IT risk assessments and managing risk registers.
  • Experience with compliance frameworks such as ISO, NCA, and GDPR.
  • Ability to lead control testing, gap assessments, and remediation planning.
  • Experience in third-party and vendor risk governance.

Skills and Attributes

  • Strong understanding of IT GRC best practices and regulatory requirements.
  • Ability to drive adoption of a risk-aware culture across IT teams.
  • Excellent analytical and reporting skills, including the ability to define and maintain GRC dashboards.
  • Strong communication and interpersonal skills for coordinating with internal and external stakeholders.
  • Leadership capabilities for people management, including mentoring and coaching.

Work Environment

This is a full-time position based in Makkah, Saudi Arabia, with responsibilities covering operations in Jeddah and Makkah. The role involves working within a professional environment that promotes a high-performance culture aligned with company values.


متطلبات الوظيفة

  • تتطلب ٥-١٠ سنوات خبرة

وظائف مشابهة