img
Contract TypeFull-time
Workplace typeOn-site
LocationRiyadh

Job Description

About the Role

Al Majed Oud Company is seeking a Cybersecurity Manager to lead and develop its comprehensive cybersecurity strategy in Riyadh, Saudi Arabia. This full-time role involves governing the protection of digital infrastructure and technical assets, ensuring compliance with National Cybersecurity Authority (NCA) regulations, managing risks and budgets, and building internal capacities.

Key Responsibilities

  • Lead and approve the comprehensive cybersecurity strategy in alignment with company directives and digital transformation goals.
  • Define and adopt cybersecurity requirements and controls for infrastructure, networks, servers, and cloud environments, coordinating with the Operations and Infrastructure Department.
  • Approve response plans for cyber incidents, emergencies, and technical crises to ensure business continuity and mitigate risks.
  • Direct vulnerability assessments and periodic penetration testing for digital infrastructure and applications, and approve remediation plans.
  • Oversee the securing of digital supply chains, technology service provider contracts, and external company systems.
  • Supervise the Security Operations Center (SOC) and monitor 24/7 early warning and threat detection indicators.
  • Approve cybersecurity architecture requirements in coordination with the Enterprise Architecture team.

Governance, Risk Management, and Compliance

  • Ensure full compliance with National Cybersecurity Authority (NCA) controls, including Essential Cybersecurity Controls (ECC) and Critical Systems Cybersecurity Controls (CSCC).
  • Approve and update the corporate cyber risk register and endorse treatment strategies and operational/technical risk mitigation plans.
  • Endorse internal security policies, standards, and controls, overseeing their dissemination and implementation across all company sectors.
  • Direct and oversee cybersecurity awareness programs and phishing simulation campaigns for employees.
  • Coordinate with regulatory bodies, authorities, and independent auditors, and approve periodic compliance and cyber audit reports.
  • Monitor and evaluate personal data protection and commercial transaction confidentiality projects to ensure alignment with approved regulations.

Budget and Financial Control

  • Prepare the annual estimated budget for the Cybersecurity Department, covering license costs, security software, and security infrastructure.
  • Oversee the regulation and tracking of operational and capital expenditures (OPEX/CAPEX) for security projects, ensuring compliance with the approved budget.
  • Evaluate the technical and financial feasibility of targeted security solutions and tools to maximize return on investment (ROI).

Team Leadership and Development

  • Lead and direct the cybersecurity team, monitoring the achievement of operational goals.
  • Set SMART individual goals and Key Performance Indicators (KPIs) for subordinates, and approve annual performance evaluations and training needs.
  • Direct and ensure the creation of succession plans, development of technical talents, and preparation of second-line cyber leaders.
  • Foster a culture of compliance and security vigilance, promoting a motivating work environment.

Qualifications and Experience

  • A minimum of 5-10 years of experience in cybersecurity.
  • Demonstrated ability to lead and develop comprehensive cybersecurity strategies.
  • Strong understanding of NCA regulations, including ECC and CSCC.
  • Experience in managing cyber risks, budgets, and security operations.
  • Proficiency in implementing and monitoring security policies, processes, and procedures.

Requirements

  • Requires 5-10 Years experience

Similar Jobs