شركة القدية للاستثمار تعلن عن وظيفة مدير أول لإدارة مخاطر الأمن السيبراني في الرياض
تفاصيل الوظيفة
شركة القدية للاستثمار تبحث عن Senior Manager - Cybersecurity Risk Management لقيادة مبادرات الأمن السيبراني في الرياض، حيث سيتولى تطوير وتنفيذ استراتيجية متكاملة لإدارة مخاطر الأمن السيبراني بما يحقق أهداف الأعمال.
المهام والمسؤوليات
- تطوير وتنفيذ إطار شامل لإدارة مخاطر الأمن السيبراني يتناسب مع احتياجات المؤسسة والمتطلبات التنظيمية.
- قيادة تقييمات المخاطر وتقييمات الثغرات لتحديد التهديدات والمخاطر المرتبطة بأنظمة المعلومات.
- الإشراف على إنشاء وصيانة سجل مخاطر الأمن السيبراني، وتتبع الإبلاغ عن المخاطر المحددة وجهود التخفيف.
- التعاون مع فرق تقنية المعلومات والقانون والامتثال لضمان توافق إجراءات الأمن السيبراني مع استراتيجيات إدارة المخاطر المؤسسية.
- القيادة في تطوير وتنفيذ برامج التدريب والتوعية لضمان فهم جميع الموظفين لدورهم في إدارة مخاطر الأمن السيبراني.
- إعداد وتقديم تقارير مفصلة حول مخاطر الأمن السيبراني والامتثال للإدارة التنفيذية وأصحاب المصلحة.
- مواكبة التهديدات والاتجاهات الناشئة في الأمن السيبراني، وتقديم التوجيه الاستراتيجي لتكييف ممارسات إدارة المخاطر وفقًا لذلك.
- توجيه وقيادة فريق إدارة مخاطر الأمن السيبراني، وضمان نموهم المهني وخبراتهم في المجال.
الشروط والمتطلبات
- درجة البكالوريوس في الأمن السيبراني أو تقنية المعلومات أو إدارة المخاطر أو مجال ذي صلة، ويفضل درجة الماجستير.
- خبرة لا تقل عن 7 سنوات في إدارة مخاطر الأمن السيبراني أو أدوار ذات صلة، مع خبرة كبيرة في المناصب القيادية.
- معرفة قوية بأطر الأمن السيبراني ومنهجيات العمل وأفضل الممارسات (مثل NIST، ISO 27001، COBIT).
- خبرة في منهجيات تقييم المخاطر واستراتيجيات تخفيف المخاطر.
- الشهادات المهنية مثل Certified Information Systems Security Professional (CISSP) أو Certified Risk Management Professional (CRMP) أو ما يعادلها تعتبر ميزة قوية.
- مهارات استثنائية في التحليل والتنظيم والتواصل.
- عقلية استباقية واستراتيجية وقادرة على التعامل مع التحديات المعقدة في الأمن السيبراني.
المزايا
حزمة تعويضات ومزايا شاملة تُقدم وفقًا لسياسات الشركة.
عرض النص الأصلي للإعلان
Qiddiya Investment Company is on the hunt for a highly skilled and visionary Senior Manager - Cybersecurity Risk Management to lead our cybersecurity initiatives in a rapidly evolving digital landscape. This critical role will involve overseeing the development and implementation of a robust cybersecurity risk management strategy that safeguards our assets while ensuring compliance with industry standards and regulations.
You will be tasked with identifying and mitigating cybersecurity risks, fostering a culture of security awareness, and leading a team dedicated to maintaining the integrity and security of our information systems. Your expertise will be essential in shaping the direction of our cybersecurity posture in alignment with our business objectives.
Key Responsibilities
- Develop and implement a comprehensive cybersecurity risk management framework tailored to organizational needs and regulatory requirements.
- Lead risk assessments and vulnerability assessments to identify threats and exposures associated with information systems.
- Oversee the creation and maintenance of a cybersecurity risk register, tracking and reporting on identified risks and mitigation efforts.
- Collaborate with IT, legal, and compliance teams to ensure that cybersecurity measures align with overall enterprise risk management strategies.
- Drive the development and execution of training and awareness programs to ensure all employees understand their role in cybersecurity risk management.
- Prepare and present detailed reports on cybersecurity risks and compliance to executive leadership and stakeholders.
- Stay abreast of emerging cybersecurity threats and trends, providing strategic guidance to adapt risk management practices accordingly.
- Mentor and lead the cybersecurity risk management team, ensuring their professional growth and expertise in the field.
Requirements
- Bachelor's degree in Cybersecurity, Information Technology, Risk Management, or a related field; a master’s degree is preferred.
- 7+ years of experience in cybersecurity risk management or related roles, with substantial experience in leadership positions.
- Strong knowledge of cybersecurity frameworks, methodologies, and industry best practices (e.g., NIST, ISO 27001, COBIT).
- Expertise in risk assessment methodologies and risk mitigation strategies.
- Relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Risk Management Professional (CRMP), or equivalent are highly desirable.
- Exceptional analytical, organizational, and communication skills.
- A proactive and strategic mindset, capable of navigating complex challenges in cybersecurity.
Benefits
Offering a comprehensive compensation and benefits package.
رقم الإعلان لدى المصدر: 5A2E5A58F9