الوصف الوظيفي
Cybersecurity Senior Specialist - GRC ( Project Delivery)
Job Description and Qualifications
JOB SCOPE
Ensure the performance, security, and reliability of JIGPC’s Cybersecurity GRC activities and applications.
Monitor and report on Governance and Compliance of JIGPC’s Cybersecurity policies, procedures, applicable regulations, and standards as well as Audit reports.
Identify and document Cybersecurity related Threats, Vulnerabilities and Risks and work with the relevant Stakeholders to implement appropriate Cybersecurity controls for their mitigation.
Develop and maintain organizational cybersecurity policies. Governs cybersecurity structures and processes, manages cyber risks, and assures compliance with the organization’s cybersecurity, risk management and related legal requirements.
Control the execution and implementation of Cybersecurity GRC related projects.
Guarantee Quality of Work and deliverables.
PRINCIPAL DUTIES AND RESPONSIBILITIES
Participate in Cybersecurity Governance, Risk and Compliance (GRC) systems and activities, including the development, maintenance, support and improvement of Cybersecurity policies, processes, procedures, and other documents.
Prepare and provide regular Cybersecurity GRC Reports and Metrics (Weekly, Monthly, Quarterly, Yearly, Ad Hoc, etc.).
Conduct Cybersecurity Risk Management, including Risk Assessments of JIGPC’s Information assets and services, and work with the Risk Owners to mitigate the Risks through appropriate Cybersecurity Controls.
Develop, maintain, and perform regularly update to Cybersecurity Risk Register and contribute towards Cybersecurity improvements.
Perform Compliance Management for JIGPC’s Policies, Procedures, applicable Regulations (MoE, NCA and HCIS) as well as Standards and Audit recommendations.
Provide support to the users of the Cybersecurity GRC systems.
Interact with Third-Party Suppliers / Vendors / Contractors / Consultants and ensure GRC projects are completed on time and within budget and desired quality
Operate a Cybersecurity Awareness Program consisting of Cybersecurity related training and awareness sessions, Phishing awareness and Tests and Cybersecurity Announcements, etc.
Ensure distribution of knowledge within the GRC team through coaching and training, contributing to the technical robustness of the Cybersecurity GRC team
Ensures an organization’s cybersecurity program complies with applicable requirements, policies and standards.
Develops, updates, and maintains cybersecurity policies and procedures to support and align with an organization’s cybersecurity requirements.
Initiate new ideas to improve Cybersecurity controls.
Participate in major Cybersecurity projects and initiatives
Manage any projects related to access control or cybersecurity GRC activities
Perform any task not mentioned with similar job nature
Perform any other duties assigned by the Head Cybersecurity Specialist or Director.
المهارات
REQUIREMENTS
Minimum Qualifications (degree, training, or certification required)
Degree: Bachelor’s Degree in Cybersecurity, Information Security, Computer Science or equivalent.
Certifications: GRC and Cybersecurity related certifications (e.g. Security+, CISSP, CISA, CRISC, CISM, CEH, GIAC, SSCP, etc.) preferred.
Training and other requirements:
Robust knowledge of Cybersecurity regulations, standards, and controls.
Strong understanding of IT / Cybersecurity Governance, technologies, and services.
Expertise in preparing and analyzing GRC and Cybersecurity reports.
Experience in IT / Cybersecurity Audit / Compliance / Regulatory discussions.
Minimum Experience (Technical, functional, and/or leadership experience required)
Five to six (5 – 6) years of IT GRC / Cybersecurity GRC/ Information Security related work experience.
Job Specific Skills (Key functional, leadership, or business skills required)
Awareness of latest IT GRC / Cybersecurity GRC trends and techniques.
Ability to identify Cybersecurity related Risks and their corresponding controls.
Ability to work under pressure in a fast-paced environment and meet tight deadlines.
Ability to work successfully in both individual and team settings.
Strong critical thinking, problem-solving, logic, and forensics skills.
Demonstrated capacity to learn, intellectual honesty and independent thinking.
Strong interpersonal communication skills.
Strong verbal and written communication skills in English.
تفاصيل الوظيفة
منطقة الوظيفة جازان, المملكة العربية السعودية
قطاع الشركة الصناعات الثقيلة
طبيعة عمل الشركة صاحب عمل (القطاع الخاص)
الدور الوظيفي تكنولوجيا المعلومات
نوع التوظيف دوام كامل
الراتب الشهري غير محدد
عدد الوظائف الشاغرة 1
https://www.bayt.com/ar/saudi-arabia/jobs/cybersecurity-senior-specialist-4573276/?from_job_search=/ar/jobs/?filters%5Bjb_location_country_iso%5D%5B0%5D=ae&filters%5Bjb_location_country_iso%5D%5B1%5D=kw&filters%5Bjb_location_country_iso%5D%5B2%5D=qa&filters%5Bjb_location_country_iso%5D%5B3%5D=sa&jobId=4566923&options%5Bjb_is_external_job%5D%5B0%5D=1&page=12