The Cybersecurity GRC Specialist is responsible for supporting the organization’s cybersecurity governance, risk management, and compliance (GRC) activities. The role ensures that cybersecurity strategies, policies, standards, and controls are effectively implemented, monitored, and aligned with regulatory, operational, and business requirements, including IT and OT/ICS environments.
Responsibilities
Manage and oversee the implementation of cybersecurity strategies, policies, standards, and procedures across the organization.
Conduct cybersecurity risk assessments to identify threats, vulnerabilities, and risks across IT and OT/ICS environments.
Develop, track, and monitor cybersecurity risk treatment and mitigation plans, ensuring timely remediation of identified risks.
Ensure IT activities, processes, and procedures comply with approved cybersecurity policies, standards, and regulatory requirements.
Identify, document, review, and periodically update cybersecurity policies and procedures, including those related to OT/ICS infrastructure.
Support cybersecurity compliance with applicable laws, regulations, standards, and frameworks.
Support cybersecurity functions in integrating security requirements into new and changed systems, services, and projects.
Provide GRC advisory support to IT, OT, and business stakeholders to ensure secure and compliant operations.
Prepare periodic cybersecurity compliance and risk status reports and present updates to the Cybersecurity Manager.
Monitor the overall cybersecurity compliance posture and recommend improvements where gaps are identified.
Implement and support cybersecurity training and awareness programs to promote a strong security culture.
Support internal and external cybersecurity audits, assessments, and reviews.
Stay informed about emerging cybersecurity risks, threats, and regulatory changes relevant to airport and critical infrastructure environments.
Perform other related cybersecurity GRC duties as assigned.
Requirements
Education requirements: Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
Certification Requirements: Certified in Risk and Information Systems Control (CRISC).
Experience: Minimum of 3 years of overall cybersecurity-related experience. 1–2 years of hands-on experience in Cybersecurity GRC roles.
Experience in regulated environments, critical infrastructure, or airport operations is an advantage.
Languages: Fluent in Arabic & English (required).
Technical Skills:
Strong knowledge of cybersecurity domains and best practices.
Excellent knowledge of Governance, Risk, and Compliance (GRC) frameworks and program management.
Good understanding of cybersecurity incident management practices.
Familiarity with cybersecurity standards and frameworks (e.g., ISO 27001, NIST, CIS).
All Job Ads are subject to GrabJobs’s Terms of Service. We allow users to flag postings that may be in violation of those terms. Job Ads may also be flagged by GrabJobs moderation team. However, no moderation system is perfect, and flagging a posting does not ensure that it will be removed.
Be the first to receive the latest Others Full-Time Jobs in Saudi Arabia.
Setup your job alert:
By activating job alerts, I agree to GrabJobs Terms & Privacy Policy. I can unsubscribe to job alerts anytime.
Skip
GrabJobs is the no1 job portal in Saudi Arabia, connecting you to thousands of jobs fast!
Find the best jobs in Saudi Arabia, apply in 1 click and get a job today!