This job is no longer available
This job expired on 17/09/2026. It no longer accepts applications.
Cybersecurity GRC Specialist
Tibah Airports Operation | طيبة لتشغيل المطارات · Médine
Job description
About the role
The Cybersecurity GRC Specialist supports the organization’s governance, risk management, and compliance activities across both IT and OT/ICS environments. You will ensure that cybersecurity strategies, policies, standards, and controls are effectively implemented, monitored, and aligned with regulatory and business requirements.
Key responsibilities
- Manage and oversee implementation of cybersecurity strategies, policies, standards, and procedures.
- Conduct risk assessments to identify threats, vulnerabilities, and risks in IT and OT/ICS.
- Develop, track, and monitor risk treatment and mitigation plans, ensuring timely remediation.
- Ensure IT activities comply with approved cybersecurity policies, standards, and regulations.
- Document, review, and update cybersecurity policies and procedures, including OT/ICS.
- Support compliance with applicable laws, regulations, standards, and frameworks.
- Integrate security requirements into new and changed systems, services, and projects.
- Provide GRC advisory support to IT, OT, and business stakeholders.
- Prepare and present periodic compliance and risk status reports.
- Monitor overall compliance posture and recommend improvements.
- Implement and support cybersecurity training and awareness programs.
- Assist internal and external audits, assessments, and reviews.
- Stay informed about emerging risks, threats, and regulatory changes relevant to critical infrastructure.
Required profile
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field.
- CRISC certification.
- Minimum 3 years of cybersecurity experience, including 1‑2 years in GRC roles.
- Experience in regulated environments, critical infrastructure, or airport operations is a plus.
- Fluent in Arabic and English.
Required skills
- Strong knowledge of cybersecurity domains and best practices.
- Expertise in Governance, Risk, and Compliance (GRC) frameworks.
- Familiarity with ISO 27001, NIST, and CIS standards.
- Understanding of IT and OT/ICS security concepts.
- Cybersecurity incident management practices.
- Risk assessment and mitigation planning.
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in Saudi Arabia.
Salaries by job title
A question about this job?
Ask it here: you will get the full job summary by e-mail, right away.
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
Tibah Airports Operation | طيبة لتشغيل المطارات
Médine