img
Contract TypeSeasonal
Workplace typeOn-site
LocationJazan

Job Description

About the Senior Cybersecurity Specialist – GRC Role

Jazan Integrated Gasification & Power Company (JIGPC) is seeking a Senior Cybersecurity Specialist – GRC to join their team in Jazan. This is a contract position focused on strengthening the organization's cybersecurity posture through governance, risk, and compliance initiatives.

Role Overview and Responsibilities

The Senior Cybersecurity Specialist – GRC will play a crucial role in supporting the implementation and maintenance of cybersecurity governance, risk, and compliance frameworks. This involves a range of critical activities designed to protect the company's information assets across IT, IS, and OT environments.

  • Assist in the development and refinement of cybersecurity policies, procedures, and standards.
  • Conduct comprehensive risk assessments, audits, and compliance reviews.
  • Manage and execute third-party cybersecurity risk assessments.
  • Maintain and update the cybersecurity risk register to ensure accuracy and relevance.
  • Develop and deliver cybersecurity awareness training programs and conduct phishing simulations.
  • Monitor threat intelligence feeds and identify emerging cyber risks.
  • Support the implementation of data security and privacy controls.
  • Participate in incident response activities and contribute to reporting.
  • Prepare Key Performance Indicator (KPI) reports and support performance monitoring efforts.
  • Provide mentorship and guidance to junior cybersecurity team members.

Qualifications and Experience

Candidates for this role should possess a strong foundation in cybersecurity principles and practical experience in governance, risk, and compliance.

  • A Bachelor’s degree in Cybersecurity, Computer Science, Information Security, or a related field is required.
  • A minimum of 5 years of experience in Cybersecurity GRC, IT GRC, or Information Security is essential.
  • Demonstrated hands-on experience in risk management, compliance, and policy development is necessary.

Preferred Certifications

While not mandatory, possessing relevant professional certifications will be advantageous.

  • CISA, CISM, CRISC
  • CISSP, Security+, SSCP
  • CEH, GIAC
  • ISO 27001 Lead Implementer / Auditor
  • NIST, ITIL

Essential Skills and Competencies

Success in this role requires a blend of technical knowledge, analytical capabilities, and strong interpersonal skills.

  • A strong understanding of NCA and HCIS regulations within the Kingdom of Saudi Arabia (KSA).
  • Proficiency in cybersecurity risk assessment methodologies and control implementation.
  • Knowledge of IT/OT cybersecurity environments and their unique challenges.
  • Excellent analytical, problem-solving, and communication skills.
  • The ability to work effectively and collaboratively within a team environment.

Requirements

  • Requires 5-10 Years experience

Similar Jobs