GRC Specialist - Saudi National

Giza Systems

Riyadh, Saudi Arabia

Ref: OP758-547

Job description / Role

Employment: Full Time

Job Description
- Lead/Participate in various IT Risk Management and business continuity initiatives.
- Ensure that requirements in IT Audit, Standard, Policy, Compliance, and Risk controls are met.
- Provide GRC consultancy and security awareness to business teams.
- Ensure external auditors have access to the information they need to complete their audit successfully.
- Design audit programs and test plans to determine the adequacy and effectiveness of internal controls and compliance with Enterprise policies and procedures and applicable regulations especially in relation.
- Assess business processes and information systems to determine the adequacy of the security controls.
- Plan and conduct cybersecurity awareness training
- Create and maintain questionnaires and phishing campaigns to measure awareness training effectiveness.
- Develop and enhance the Cybersecurity Awareness plan.
- Manage the CS awareness platform.
- Help with responding to inquiries about the awareness training progress.
- Send monthly reports to management.
- Align with the PR team to develop the content needed for the security awareness posters.

Requirements

Personal Skills
- Analytical thinker who is highly organized and pays close attention to detail.
- Excellent communication, interpersonal, and negotiation skills.
- Ability to convey technical concepts to non-technical audiences in simple terms.
- Strong written Arabic & English and verbal communication skills; ability to effectively communicate and obtain buy-in at all levels of the organization and with internal stakeholders across the business.

Technical Skills
- CISA, CISM, CRISC, CISSP, PMP or similar Certificates is a plus
- Prior hands-on technical working experience in at least 2 of the domains: ISO27K, Cloud Services, NIST, PCI DSS, BCP/DR/Crisis Management.
- 3+ years of relevant experience in IT Risk & Compliance
- Knowledge in Risk Management (exposure to GRC tools is preferred)
- Basic technical and cybersecurity experience to understand and communicate effectively with development and operation teams.

Education
- Bachelors in Cyber Security, Computer Science, Engineering, other related field, or equivalent experience

About the Company

Giza Systems, a leading systems integrator in the MEA region, designs and deploys industry-specific technology solutions for asset-intensive industries such as the telecoms, utilities, oil and gas, hospitality and real estate among other market sectors. We help our clients streamline their operations and businesses through our portfolio of solutions, managed services, and consultancy practice. Our team of 1000 professionals are spread throughout the region with anchor offices in Cairo, Riyadh, Dubai, Doha, Nairobi, Dar-es-Salaam, Abuja, Kampala and New Jersey, allowing us to service an ever-increasing client base in over 40 countries.

Get personalised updates on latest vacancies
Job Alerts by Email
  • Personalised updates on latest career opportunities
  • Insights on hiring and employment activity in your industry
  • Typically sent twice a month