📍 المملكة العربية السعودية تحديث مستمر على مدار الساعة

AIQU تعلن عن وظيفة أخصائي أمن سيبراني (GRC & Risk-SOC) في الرياض

Cybersecurity Specialist (GRC & Risk-SOC)
🏢 AIQU
🕒 نُشرت: (أمس) 📍 الرياض وظائف الهندسة والتقنية
التقديم على الوظيفة من المصدر الرسمي ↗

تفاصيل الوظيفة

مطلوب متخصص في الأمن السيبراني (GRC وإدارة المخاطر) للعمل في الرياض عبر شركة AIQU بعقد توظيف خارجي (Outsource) قابل للتمديد سنوياً.

المهام والمسؤوليات

  • إجراء تقييمات عملية لمخاطر الأمن السيبراني للتطبيقات والشبكات والبنية التحتية والموردين الخارجيين والمشاريع التقنية والتغييرات التنظيمية.
  • تحديد وتحليل وتقييم مخاطر الأمن السيبراني من خلال تقدير الاحتمالية والأثر التجاري.
  • صيانة سجل مخاطر الأمن السيبراني وتطوير ومتابعة خطط المعالجة والتخفيف من المخاطر.
  • تطوير ومراجعة وصيانة وثائق حوكمة الأمن السيبراني (السياسات والإجراءات والمعايير والأطر والإرشادات).
  • تقييم الامتثال لضوابط الأمن السيبراني الصادرة عن الهيئة الوطنية للأمن السيبراني (NCA) ومراجعة الأدلة الداعمة.
  • تحديد فجوات الامتثال وتوثيق النتائج والتنسيق مع أصحاب المصلحة لضمان المعالجة والإغلاق في الوقت المناسب.
  • دعم عمليات التدقيق الداخلي والخارجي للأمن السيبراني والتقييمات التنظيمية ومراجعات الامتثال.
  • التحقيق في حوادث الأمن السيبراني وتنبيهات مركز عمليات الأمن (SOC) وإجراء التحليل الأولي وتقييم الأثر والتصعيد عند الحاجة ومراقبة أنشطة المعالجة.
  • الحفاظ على معرفة تقنية قوية بثغرات الأمن السيبراني وضوابط الأمان وتكوينات البنية التحتية وأساليب المعالجة.
  • التعاون مع الفرق التقنية والتجارية لتعزيز الوضع الأمني للمؤسسة.

الشروط والمتطلبات

  • خبرة عملية لا تقل عن 3 سنوات في إدارة مخاطر الأمن السيبراني والحوكمة والامتثال (GRC).
  • خبرة عملية قوية في إجراء تقييمات مخاطر الأمن السيبراني (لا تقتصر على تنسيق التقييمات أو إدارة المشاريع).
  • خبرة في تطوير وتنفيذ وثائق حوكمة الأمن السيبراني.
  • فهم متين لضوابط الأمن السيبراني الصادرة عن الهيئة الوطنية للأمن السيبراني ومتطلبات الامتثال.
  • خبرة في دعم عمليات تدقيق الأمن السيبراني والتقييمات التنظيمية.
  • معرفة بالاستجابة لحوادث الأمن السيبراني وعمليات مركز عمليات الأمن (SOC).
  • فهم جيد للشبكات والبنية التحتية والتطبيقات وتقنيات الأمان والثغرات وضوابط الأمان.
  • مهارات ممتازة في التحليل والتواصل وإدارة أصحاب المصلحة.
عرض النص الأصلي للإعلان

Job Title: Cybersecurity Specialist (GRC & Risk)

Location: Saudi Arabia, Riyadh

Duration: Outsource with AIQU , Yealy extendable


We are seeking an experienced Cybersecurity Specialist with strong hands-on expertise in Cybersecurity Risk Management and Governance, Risk, and Compliance (GRC). The ideal candidate will have practical experience in cybersecurity risk assessments, governance, compliance, incident handling, and regulatory requirements.


Key Responsibilities

  • Conduct hands-on cybersecurity risk assessments for applications, networks, infrastructure, third-party vendors, technology projects, and organizational changes.
  • Identify, analyze, and evaluate cybersecurity risks by assessing likelihood and business impact.
  • Maintain the cybersecurity risk register and develop, track, and follow up on risk treatment and mitigation plans.
  • Develop, review, and maintain cybersecurity governance documentation, including policies, procedures, standards, frameworks, and guidelines.
  • Assess compliance with applicable NCA Cybersecurity Controls and review supporting evidence.
  • Identify compliance gaps, document findings, and coordinate with stakeholders to ensure timely remediation and closure.
  • Support internal and external cybersecurity audits, regulatory assessments, and compliance reviews.
  • Investigate cybersecurity incidents and Security Operations Center (SOC) alerts, perform initial analysis, assess impact, escalate when required, and monitor remediation activities.
  • Maintain strong technical knowledge of cybersecurity vulnerabilities, security controls, infrastructure configurations, and remediation approaches.
  • Collaborate with technical and business teams to strengthen the organization's cybersecurity posture.

Required Qualifications

  • Minimum 3 years of hands-on experience in Cybersecurity Risk Management and GRC.
  • Strong practical experience conducting cybersecurity risk assessments (not limited to coordinating assessments or project management).
  • Experience developing and implementing cybersecurity governance documentation.
  • Solid understanding of NCA Cybersecurity Controls and compliance requirements.
  • Experience supporting cybersecurity audits and regulatory assessments.
  • Knowledge of cybersecurity incident response and SOC operations.
  • Good understanding of network, infrastructure, applications, security technologies, vulnerabilities, and security controls.
  • Excellent analytical, communication, and stakeholder management skills.


المصدر: LinkedIn - أُضيفت للموقع في 21 أغسطس 2026

وظائف أخرى لدى AIQU