Job Overview:
The
GRC Specialist & Awareness professional will lead efforts to enhance the
organization’s governance, risk, and compliance posture. This role focuses on
building and implementing strategies to mitigate risks, ensure compliance with
laws and regulations, and promote security awareness throughout the company.
Key Responsibilities:
- Develop and implement GRC frameworks to ensure that the organization adheres
to industry standards, regulations, and internal policies.
- Perform risk assessments to identify and evaluate potential security risks,
and collaborate with other departments to develop appropriate mitigation
strategies.
- Oversee the development and implementation of a company-wide security
awareness program, educating employees about security best practices and
policies.
- Manage compliance audits, prepare reports, and ensure remediation of any
findings.
- Monitor regulatory changes and advise senior management on potential impacts
to the organization’s operations.
- Work closely with internal stakeholders to ensure that security controls are
integrated into business operations.
Qualifications:
- Experience: 4-6 in the field.
- Extensive knowledge of governance, risk management, and compliance frameworks
(e.g., NIST, ISO 27001, GDPR).
- Strong analytical and problem-solving skills.
- Proven experience in creating and delivering effective security awareness
programs.
- Excellent communication skills, capable of presenting complex information to
senior management and staff at all levels.
-Required Certifications: CISA (Certified Information Systems Auditor), GRCP (Governance, Risk & Compliance Professional), CISSP (Certified Information Systems Security Professional)
- Location: Madinah