Jobiglo

No results.

Cybersecurity GRC Consultant

Confidential · Riyad

New
Senior 🇬🇧 English
SAMA CSF NCA ECC SWIFT CSP ISO 27001 PCI DSS DORA Threat intelligence frameworks

Job description

About the role

We are seeking a highly experienced Cybersecurity Governance, Risk and Compliance (GRC) Consultant to operationalise and mature the GRC function of one of Saudi Arabia’s largest banks. The consultant will work directly with the bank’s CISO, Audit Committee and senior leadership to ensure regulatory compliance and a robust cybersecurity posture.

Key responsibilities

  • Review, update and align all cybersecurity GRC policies, standards, procedures, frameworks and control documentation with internal policies, regulatory requirements and industry best practices.
  • Conduct comprehensive compliance and maturity assessments against frameworks such as SAMA CSF, NCA ECC, SWIFT CSP, ISO 27001, PCI DSS, fraud risk management requirements, threat intelligence frameworks and DORA.
  • Identify compliance gaps, control deficiencies and process inefficiencies to improve audit readiness, evidence management and regulatory reporting.
  • Perform enterprise‑wide cybersecurity risk assessments and prioritize findings based on business impact, regulatory exposure and control effectiveness.
  • Develop and implement a remediation and compliance improvement roadmap with clear timelines, ownership and measurable outcomes.
  • Streamline and automate compliance processes, including evidence collection, control validation, workflow management, exception tracking and monitoring.
  • Establish centralized compliance reporting and dashboards for executive management, the Board, internal audit and regulators.

Required profile

  • Proven experience in cybersecurity GRC within a highly regulated banking environment.
  • Hands‑on experience collaborating with internal audit teams, external regulators and senior executives.
  • Ability to translate strategic GRC objectives into measurable, automated processes.
  • Strong knowledge of Saudi regulatory frameworks and international standards.
  • Experience conducting enterprise‑wide risk assessments and leading remediation initiatives.

Required skills

  • SAMA CSF
  • NCA ECC
  • SWIFT CSP
  • ISO 27001
  • PCI DSS
  • DORA
  • Fraud risk management frameworks
  • Threat intelligence frameworks

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Confidential.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Why are you reporting this job?

Thank you for your report. We will review this job.

Apply in 30 seconds

Enter your email to apply. An account will be created automatically.

By continuing, you accept our terms of use.

Already have an account? Login

↗ Postuler directement sur linkedin.com
ui.whatsapp_discuss_job

Published 1 week ago

Expires 1 month from now

21 views · 0 interested

Boost your chances

Upload your CV — we will match you with relevant openings.

Analyzing your CV...

Confidential

Riyad