📍 المملكة العربية السعودية تحديث مستمر على مدار الساعة

Devoteam تعلن عن وظيفة استشاري GRC للأمن السيبراني في الرياض

Cybersecurity GRC Consultant
🏢 Devoteam
🕒 نُشرت: (اليوم) 📍 الرياض وظائف الهندسة والتقنية
التقديم على الوظيفة من المصدر الرسمي ↗

تفاصيل الوظيفة

تعلن شركة Devoteam عن توفر وظيفة مستشار حوكمة ومخاطر وامتثال في الأمن السيبراني (Cybersecurity GRC Consultant) في الرياض، السعودية. سيدعم المستشار تصميم وتنفيذ وتحسين مبادرات الحوكمة والمخاطر والامتثال السيبراني بما يتوافق مع اللوائح السعودية.

المهام والمسؤوليات

  • دعم تطوير وتنفيذ وصيانة إطار الحوكمة السيبرانية بما في ذلك السياسات والمعايير والإجراءات والإرشادات.
  • المساعدة في تصميم وتحسين نماذج تشغيل الحوكمة السيبرانية والهياكل التنظيمية ومصفوفات RACI.
  • المساهمة في تطوير وصيانة مؤشرات الأداء الرئيسية (KPIs) ومؤشرات المخاطر (KRIs) ولوحات المعلومات وآليات إعداد التقارير المتعلقة بالحوكمة.
  • إجراء تقييمات نضج الحوكمة وتحليل الفجوات وقياس الأداء وفقاً لأفضل الممارسات.
  • إعداد وثائق الحوكمة والتقارير والعروض والتوصيات لمراجعة العميل.
  • ضمان توافق مخرجات الحوكمة مع المتطلبات التنظيمية السعودية مثل NCA ECC وCST (سابقاً CITC) وإطار الأمن السيبراني لمؤسسة النقد العربي السعودي (SAMA) والمعايير الدولية ذات الصلة مثل ISO/IEC 27001 وإطار NIST للأمن السيبراني.
  • دعم لجان الحوكمة ومجموعات العمل وورش العمل الخاصة بالعملاء من خلال إعداد الوثائق وتسهيل المناقشات وتتبع بنود العمل.
  • التعاون مع فرق إدارة المخاطر والامتثال وإدارة مخاطر الطرف الثالث (TPRM) وهندسة المؤسسات وعمليات الأمن لضمان تكامل أنشطة الحوكمة عبر مجالات الأمن السيبراني.
  • المساعدة في مراجعة وضمان جودة وثائق الحوكمة ومخرجات المشروع.
  • مراقبة التحديثات التنظيمية واتجاهات الصناعة لتقديم توصيات لتحسين ممارسات الحوكمة.
  • تقديم خدمات استشارية للعملاء حول أفضل ممارسات حوكمة الأمن السيبراني ومتطلبات الامتثال التنظيمي.
  • المساهمة في مبادرات مشاركة المعرفة والتوثيق والتحسين المستمر ضمن ممارسة الحوكمة والمخاطر والامتثال السيبراني.

الشروط والمتطلبات

  • درجة البكالوريوس في الأمن السيبراني أو أمن المعلومات أو تقنية المعلومات أو علوم الحاسب أو تخصص ذي صلة.
  • خبرة من 3 إلى 7 سنوات في مجال الحوكمة والمخاطر والامتثال السيبراني أو أمن المعلومات أو الاستشارات السيبرانية.
  • خبرة في تطوير وثائق الحوكمة والسياسات والمعايير والأطر السيبرانية.
  • الإلمام بنماذج تشغيل حوكمة الأمن السيبراني والهياكل التنظيمية.
  • خبرة في دعم تقييمات الحوكمة ومبادرات الامتثال والتدقيق التنظيمي.
  • معرفة اللوائح السيبرانية السعودية والمعايير الأمنية الدولية.
  • يفضل خبرة في العمل ضمن بيئات استشارية أو خدمات مدارة أو مؤسسات كبيرة.

معلومات إضافية

الوحدة التنظيمية: Strategy & Transformation | المستوى الوظيفي: Mid Level

عرض النص الأصلي للإعلان
Tech for People Unlocks the Future

At Devoteam, we believe that technology, combined with strong human values, can actively drive change for the better. Discover how Tech for People is shaping the future, creating a positive impact on individuals and the world around us.

With over 25 years of passion for technology and a presence in 18+ countries across EMEA and beyond, we are committed to leveraging innovation, expertise, and human-centric values to make a difference.

Devoteam Culture & Values:

True innovation is born from a powerful culture, fused with meaningful values.

Culture:

Fair and courageous

Everyone is treated fairly - this fuels bravery. At Devoteam, we always make fair decisions. We listen and are willing to be challenged, taking courageous decisions as a result. We help our employees to progress at every step and congratulate those who deserve it.

Ambition and results

Ambition is nurtured at every step - this drives results. We are ambitious entrepreneurs with a taste for performance, growth and celebrating success. Commitments are always kept as we seek to achieve profitable growth to create value and employment. We aim to bring as much value as possible to our clients, at every touchpoint.

Learning and innovating

Curiosity and learning are at our core - this stimulates innovation. At Devoteam, we are curious. We learn and embrace innovation constantly to meet challenges and build partnerships of excellence.

Caring and sharing

A caring attitude is infused into our culture - this encourages sharing. We believe in the power of teams, we promote support and collaboration.

At Devoteam, we care about our teams and want to work in a positive, productive environment. We support the development of talent and careers,

Values:

  • Respect
  • Frankness
  • Passion


Knowing that success is the result of collaboration. Alone, we go faster, but together, we go further.

To know more about us, please visit: www.devoteam.com

Job Description

The Cybersecurity GRC Consultant supports the design, implementation, and continuous improvement of cybersecurity governance, risk, and compliance initiatives. The role contributes to the development of governance frameworks, policies, operating models, and regulatory compliance activities while ensuring alignment with organizational objectives and Saudi cybersecurity regulations. The consultant works closely with senior consultants, architects, and client stakeholders to deliver high-quality governance artifacts and advisory services.

Qualifications

Key Responsibilities

  • Support the development, implementation, and maintenance of the cybersecurity governance framework, including policies, standards, procedures, and guidelines.
  • Assist in designing and improving cybersecurity governance operating models, organizational structures, and RACI matrices.
  • Contribute to the development and maintenance of governance-related KPIs, KRIs, dashboards, and reporting mechanisms.
  • Perform governance maturity assessments, gap analyses, and benchmarking activities against industry best practices.
  • Prepare governance documentation, reports, presentations, and recommendations for client review.
  • Ensure governance deliverables align with Saudi regulatory requirements, including NCA ECC, CST (formerly CITC), SAMA Cybersecurity Framework, and relevant international standards such as ISO/IEC 27001 and NIST Cybersecurity Framework.
  • Support governance committees, working groups, and client workshops by preparing documentation, facilitating discussions, and tracking action items.
  • Collaborate with Risk Management, Compliance, Third-Party Risk Management (TPRM), Enterprise Architecture, and Security Operations teams to ensure governance activities are integrated across cybersecurity domains.
  • Assist in the review and quality assurance of governance documentation and project deliverables.
  • Monitor regulatory updates and industry trends to recommend improvements to governance practices.
  • Provide advisory support to clients on cybersecurity governance best practices and regulatory compliance requirements.
  • Contribute to knowledge sharing, documentation, and continuous improvement initiatives within the Cybersecurity GRC practice.


Qualifications

  • Bachelor's degree in Cybersecurity, Information Security, Information Technology, Computer Science, or a related discipline.
  • 3-7 years of experience in Cybersecurity Governance, Risk & Compliance (GRC), Information Security, or Cybersecurity Consulting.
  • Experience in developing governance documentation, policies, standards, and cybersecurity frameworks.
  • Familiarity with cybersecurity governance operating models and organizational structures.
  • Experience supporting governance assessments, compliance initiatives, and regulatory audits.
  • Knowledge of Saudi cybersecurity regulations and international security standards.
  • Experience working within consulting, managed services, or large enterprise environments is preferred.


Additional Information

Business Unit: Strategy & Transformation

Level: Mid Level
المصدر: LinkedIn - أُضيفت للموقع في 18 أغسطس 2026

وظائف أخرى لدى Devoteam