Cybersecurity GRC Specialist – Saudi National Only
SIFI S.p.A
Job description
About the role
SIFI is a fast‑growing B2B FinTech company focused on spend management and card issuance. The Cybersecurity GRC Specialist will safeguard the company’s compliance posture, ensuring audit readiness across Saudi regulatory frameworks and international standards.
Key responsibilities
- Maintain and update the compliance tracker for SAMA CSF, PDPL/NDMO, and PCI‑DSS.
- Own the full evidence lifecycle: collection, validation, documentation, and continuous audit readiness.
- Develop, version, and review cybersecurity policies, standards, and procedures aligned with SAMA CSF controls.
- Manage the cybersecurity risk register, conduct third‑party risk assessments and vendor due diligence.
- Collect, validate, and report cybersecurity KPIs/KRIs, providing trend analysis and escalation of performance gaps.
Required profile
- 1–3 years of experience in a dedicated Cybersecurity GRC role.
- Saudi national.
- Hands‑on experience with SAMA CSF compliance in regulated entities.
- Proven ability to prepare audit evidence and conduct regulatory assessments.
- Experience drafting cybersecurity policies and procedures.
Required skills
- SAMA CSF compliance
- Cybersecurity GRC
- ISO 27001 Lead Implementer
- Audit evidence preparation
- Regulatory assessments
- Drafting cybersecurity policies and procedures
- CGRC
- CISA
- CRISC
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in Saudi Arabia.
Salaries by job title
Apply in 30 seconds
Enter your email to apply. An account will be created automatically.
By continuing, you accept our terms of use.
Already have an account? Login
A question about this job?
Ask it here: you will get the full job summary by e-mail, right away.
Published 1 month ago
Expires 2 weeks from now
9 views · 0 interested
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
SIFI S.p.A