M
Sr. Cybersecurity Governance, Risk & Compliance (GRC) Specialist
MISPay
Riyadh, Saudi ArabiaAED 12,000-30,000/mo≈ SAR 12.2K-30.6K/moYesterday
Saudi ArabiaFinance & AccountingFull Time
Skills Required
ExcelProject ManagementCommunicationArabicEnglish
Job Description
The Sr Cybersecurity GRC Specialist is responsible for establishing and strengthening the organization’s cybersecurity governance, risk, and compliance framework in alignment with SAMA requirements. The role ensures regulatory compliance, manages cybersecurity risks, and enhances audit readiness while supporting secure and sustainable growth in a regulated BNPL environment.Key ResponsibilitiesGovernance & Policy ManagementDevelop and implement cybersecurity policies, standards, and procedures in alignment with the SAMA Cybersecurity Framework.Establish a governance framework for cybersecurity roles, responsibilities, and decision-making.Ensure policies are approved, communicated, and enforced across the organization.Establish and maintain a risk management process, including a risk register, assessment criteria, and periodic reviews.Conduct risk assessments on systems, processes, and vendors.Recommend and track remediation actions.Compliance & Framework AlignmentConduct gap analyses against the SAMA Cybersecurity Framework and other applicable standards (e.g., ISO 27001, NCA ECC/CCC).Develop and execute a roadmap to achieve maturity Level 3.Monitor compliance with internal policies and regulatory requirements.Audit Readiness & Evidence ManagementMaintain a centralized repository for compliance evidence.Coordinate internal and external cybersecurity audits.Prepare and present compliance reports to management.Vendor & Third-Party ManagementImplement vendor risk management processes, including security requirements in SLAs.Ensure third-party SOC services comply with SAMA requirements.Awareness & TrainingConduct cybersecurity awareness and compliance training sessions for employees.Promote a culture of cybersecurity and regulatory compliance.RequirementsBachelor’s degree in Cybersecurity, Information Security, Computer Science, or related field.2-4 years of experience in GRC, preferably in the banking or financial sector.Strong knowledge of the SAMA Cybersecurity Framework and its maturity model.Experience developing policies, conducting gap analyses, and preparing for regulatory audits.Familiarity with ISO 27001 and NCA ECC/CCC is a plus.Excellent communication, documentation, and stakeholder management skills.Preferred SkillsAbility to work independently and lead initiatives.Strong organizational and project management skills.Analytical mindset with attention to detail.Fluency in English and Arabic is preferred.#J-18808-Ljbffr
Similar Opportunities
V
Business Analyst - BA Retail Banking & Digital Transformation
Visible Stars, Inc.
Riyadh, Saudi ArabiaAED 8,000-20,000/mo≈ SAR 8.2K-20.4K/moYesterday
Saudi ArabiaFinance & Accounting
E
Financial Reporting & Corporate Finance Analyst
Egypt Education Platform (EEP)
Riyadh, Saudi ArabiaAED 6,000-15,000/mo≈ SAR 6.1K-15.3K/moYesterday
Saudi ArabiaFinance & Accounting
J
EMEA Corporate Tax Manager - Vice President
JP Morgan Chase
Riyadh, Saudi ArabiaAED 8,000-20,000/mo≈ SAR 8.2K-20.4K/moYesterday
Saudi ArabiaFinance & Accounting
G
AR & Sales Accountant — Drive Cash Flow & Collections
GUTHMI Group
Jeddah, Saudi ArabiaAED 5,000-12,000/mo≈ SAR 5.1K-12.2K/moYesterday
Saudi ArabiaFinance & Accounting
M
In-House Compliance Officer(AML)
Magus Re
Dubai, UAEAED 5,000-12,000/moYesterday
UAEFinance & Accounting
S
Finance & Accounting Lead - Reporting, Payables & Analytics
SGS
Dubai, UAEAED 7,000-22,000/moYesterday
UAEFinance & Accounting