img
Contract TypeFull-time
Workplace typeOn-site
LocationMakkah

Job Description

About Cyber

At Cyber, we focus on enhancing organizational resilience through robust cybersecurity governance, risk management, and regulatory compliance. Our operations align with the Kingdom of Saudi Arabia’s regulatory landscape, ensuring adherence to NCA, SAMA, and international best practices.

The Role of Cybersecurity GRC Specialist

We are seeking a Cybersecurity GRC Specialist to support and enhance our Governance, Risk, Compliance, and Security Awareness programs. This full-time role is based in Jeddah, Makkah, and is critical for protecting information assets, cloud environments, and data by ensuring effective governance structures, regulatory compliance, and risk mitigation strategies. The position requires 2-5 years of relevant experience.

Key Responsibilities

  • Develop, implement, and maintain cybersecurity governance policies, frameworks, and standards.
  • Monitor organizational adherence to established cybersecurity policies and controls.
  • Provide periodic governance and risk posture reports to the CISO and executive leadership.
  • Maintain cybersecurity documentation aligned with regulatory and industry standards.
  • Conduct comprehensive cybersecurity risk assessments across business units and cloud environments.
  • Identify, evaluate, and prioritize cybersecurity risks.
  • Maintain and continuously update the organizational risk register.
  • Drive remediation efforts and ensure timely closure of identified risks and audit findings.
  • Ensure compliance with KSA regulatory frameworks (*, NCA ECC, SAMA CSF) and international standards such as ISO 27001.
  • Support internal and external audit activities.
  • Evaluate the effectiveness of implemented technical and administrative security controls.
  • Prepare and submit regulatory compliance reports as required.
  • Assist in the development and maintenance of Business Continuity and Disaster Recovery plans.
  • Support Business Impact Analysis (BIA) activities.
  • Participate in testing and validation of continuity and recovery procedures.
  • Contribute to incident response efforts to ensure minimal operational disruption.
  • Support and promote cybersecurity awareness initiatives across the organization.
  • Assist in managing awareness tools and programs.
  • Foster a strong cybersecurity culture and ensure employee understanding of risks and responsibilities.

Experience Required

  • 2-5 years of experience in cybersecurity governance, risk management, or compliance.

Application Process

Further details regarding the application process will be provided upon inquiry. Salary information for this role is not disclosed.


Requirements

  • No experience required

Similar Jobs