img
نوع العقددوام كامل
طبيعة الوظيفةبالموقع
الموقعالرياض

وصف الوظيفة

About the Role

HCLTech is seeking a GRC Consultant to join their team in Riyadh, Saudi Arabia. This full-time role involves supporting the delivery of Governance, Risk, and Compliance (GRC) services and assisting senior team members in executing client projects. The consultant will play a key role in ensuring compliance with various regulatory frameworks and industry standards.

Key Responsibilities

  • Assist in gathering and analyzing data for GRC assessments.
  • Support the preparation of assessment reports, governance documentation, and client presentations.
  • Lead the preparation and execution of external audits for ISO 27001 and SOC 2 (Type 1 & 2) certifications.
  • Manage compliance with local Saudi regulations, specifically NCA ECC and SAMA cybersecurity frameworks.
  • Perform assessments for various frameworks including ISO 27001, NDI Controls, NCA-Frameworks (ECC, CSCC, DCC, TCC & OSMACC), and other best practices.
  • Collaborate with senior consultants on the development and implementation of policies, procedures, and frameworks.
  • Develop and implement policies, procedures, and controls to ensure compliance with laws, regulations, and industry standards.
  • Participate in client workshops and project meetings.
  • Liaise with cross-functional teams (GRC, IT, legal, audit, operations) to support secure and compliant business operations.
  • Assist in the selection and implementation of GRC software solutions to automate processes and improve reporting capabilities.
  • Stay informed about industry trends, regulatory changes, and emerging risks to provide proactive advice to clients.
  • Evaluate third-party vendors for compliance with security standards and risk management requirements.
  • Provide input into enterprise risk management processes from a cybersecurity perspective.
  • Track and report key GRC metrics and issues to stakeholders and executive leadership.

Qualifications and Experience

  • Bachelor's degree in Cybersecurity, Information Technology, or a related field.
  • 5-6 years of relevant experience.
  • Basic understanding of cybersecurity concepts, Internal Audit, Risk Management, and compliance standards.

Required Competencies

  • Strong analytical and problem-solving skills.
  • Effective communication skills, both verbal and written.
  • Attention to detail in documentation and reporting.
  • Team-oriented mindset with a proactive attitude.

Work Environment

This is a full-time position based in Riyadh, Riyadh, Saudi Arabia. The role involves working within a dynamic team environment, collaborating with various internal and external stakeholders to achieve GRC objectives.

Application Process

Candidates meeting the qualifications are encouraged to apply. Salary details will be discussed during the interview process.


متطلبات الوظيفة

  • للسعوديين فقط
  • تتطلب ٥-١٠ سنوات خبرة

وظائف مشابهة