GRC Consultant📣 Job Ad
| Contract Type | Full-time | |
| Workplace type | On-site | |
| Location | Riyadh |
About the Role
HCLTech is seeking a skilled and experienced Governance, Risk & Compliance (GRC) Consultant, Level 3 IT Resource, for an onsite, full-time position in Riyadh, Saudi Arabia. This role requires a professional with a strong background in IT operations, security governance, and compliance, specifically within the Saudi Arabian regulatory landscape. The GRC Consultant will be instrumental in ensuring robust governance practices, effective risk management, and adherence to compliance requirements across the organization's IT infrastructure.
In this pivotal role, you will manage and mitigate IT risks, ensure the security and integrity of systems, and support the organization's compliance objectives. Collaboration with various technology teams, leadership, and external stakeholders will be key to driving best practices and maintaining a strong control environment.
Key Responsibilities
- Coordinate with technology teams to identify missing patches and open vulnerabilities within the IT infrastructure.
- Ensure vulnerabilities are accurately classified, prioritized, and tracked based on their severity, business risk, and regulatory impact.
- Monitor the progress of vulnerability remediation efforts and validate the closure evidence for resolved vulnerabilities.
- Ensure that vulnerabilities are updated, closed, or risk-accepted in accordance with established governance approvals.
- Collaborate with IT teams to initiate change requests for patching and vulnerability remediation activities.
- Review, align, and approve change plans according to governance policies and Change Advisory Board (CAB) processes.
- Coordinate and broadcast change schedules, conduct impact assessments, and manage execution plans for IT changes.
- Track post-change validation and ensure the closure of all change activities.
- Prepare accurate, detailed, and leadership-ready reports on vulnerability status, patch compliance, and overall risk posture.
- Publish regular status dashboards and reports for senior leadership, governance forums, and audit stakeholders.
- Ensure all reported data is factually correct, validated, and audit-ready, as reports are disseminated across multiple leadership layers.
- Provide timely escalations for identified risks, delays, and instances of non-compliance.
- Coordinate with internal IT teams, external vendors, Original Equipment Manufacturers (OEMs), and subsidiaries to drive timely remediation of issues.
- Act as a governance bridge, facilitating communication and collaboration between central governance teams, security teams, and operations teams.
- Support audits, regulatory reviews, and internal assessments by providing the necessary evidence and documentation.
Qualifications and Experience
- A Bachelor's degree in Information Technology, Computer Science, or a related field.
- 5-10 years of relevant IT operations, security governance, and compliance experience.
- Strong understanding of IT infrastructure, applications, middleware, databases, and security operations.
- Hands-on experience with vulnerability management, patching governance, and compliance tracking.
- In-depth knowledge of SAMA cybersecurity frameworks, risk management principles, and regulatory expectations relevant to the Saudi Arabian market.
- Proven experience with change management processes, CAB governance, and the utilization of ITSM tools.
- Experience using ITSM and GRC tools for tracking incidents, changes, vulnerabilities, and compliance status.
- Advanced skills in Microsoft Excel, dashboard creation, and structured reporting.
- Ability to maintain central registers, trackers, and compliance metrics effectively.
- Preferred certifications include ITIL, ISO 27001, CISA/CISM.
Essential Skills and Competencies
- IT Infrastructure Management
- Application Management
- Middleware Operations
- Database Management
- Security Operations
- Vulnerability Management
- Patching Governance
- Compliance Tracking
- SAMA Cybersecurity Frameworks
- Risk Management
- Regulatory Compliance
- Change Management Processes
- CAB Governance
- ITSM Tools
- Incident Tracking
- Change Tracking
- Vulnerability Tracking
- Compliance Tracking
- Advanced Excel
- Dashboard Creation
- Structured Reporting
- Central Registers and Trackers
- Compliance Metrics Management
- Strong coordination and stakeholder management skills are essential for effective collaboration across diverse teams.
- Capability to work effectively with multiple teams under tight regulatory timelines.
- High attention to detail and a commitment to accuracy in all tasks.
- Clear, concise, and professional communication skills, suitable for presenting to senior leadership.
Work Environment and Location
This is a full-time, onsite position located in Riyadh, Saudi Arabia. The role requires close collaboration with various technology teams and stakeholders within the organization.
Requirements
- Requires 5-10 Years experience
Similar Jobs
You may also like
- Related GRC Consultant Opportunities
- Business Development Manager Jobs in Riyadh
- Sales Manager Jobs in Riyadh
- Digital Marketing Specialist Jobs in Riyadh
- Sales Representative Jobs in Riyadh
- Marketing Specialist Jobs in Riyadh
- Other Job Fields in Riyadh
- Business Development Manager Jobs in Riyadh
- Sales Manager Jobs in Riyadh
- Digital Marketing Specialist Jobs in Riyadh
- Sales Representative Jobs in Riyadh
- Marketing Specialist Jobs in Riyadh
- Executive Assistant Jobs in Riyadh
- Human Resources Specialist Jobs in Riyadh
- Truck Driver Jobs in Riyadh
- Logistics Pricing & Sales Support Coordinator Jobs in Riyadh
- Sales Specialist Jobs in Riyadh
- Explore Jobs Across Saudi Arabia
- Copywriter Jobs in Makkah
- Restaurant Manager Jobs in Makkah
- Secretary Jobs in Yanbu
- Cashier Jobs in Tabuk
- Butler Jobs in Umluj
- Sales Specialist Jobs in Khamis Mushayt
- Certified Trainer Jobs in Al Jubail
- Certified Trainer Jobs in Dammam
- Car Driver Jobs in Abha
- Project Coordinator Jobs in Jeddah