ج
وظيفة أخصائي امتثال أول شاغرة في الرياض لدى جهة غير معلنة
Senior Compliance Specialist
🏢 جهة غير معلنة
تفاصيل الوظيفة
تعلن جهة غير معلنة في الرياض عن توفر وظيفة "أخصائي امتثال أول" (Senior Compliance Specialist) للعمل في مجال الأمن السيبراني.
المهام والمسؤوليات
- المساهمة في إجراء عمليات التدقيق ومراقبة الامتثال للضوابط المتعلقة بالأمن السيبراني، والعمل على رفع مستوى الوعي بأهمية الأمن السيبراني لدى جميع موظفي المنظمة.
- المساهمة في أنشطة مراقبة تنفيذ الضوابط والتوصيات الصادرة عن الهيئة الوطنية للأمن السيبراني.
- تطوير عمليات إعداد وتجميع ومشاركة التقارير الدورية مع الهيئة الوطنية للأمن السيبراني.
- المساهمة في إجراء عمليات تدقيق دورية لإجراءات الأمن السيبراني داخل المنظمة.
- تطوير عمليات إنشاء إطار لإدارة الامتثال وإدارة السياسة المتعلقة بالاستثناءات.
- تطوير آلية تنفيذ خطة مراجعة الامتثال لضوابط أمن المعلومات، وضمان معالجة أي ثغرات يتم تحديدها إن وجدت.
- المساهمة في الأنشطة الرامية إلى ضمان الامتثال للقوانين واللوائح الوطنية والدولية ذات الصلة بأمن المعلومات.
- تطوير عمليات إجراء وتقييم اختبارات تقييم الاختراق (Compromised Assessment) ومحاكاة التعافي من الكوارث.
- المساهمة في مهام الإشراف على اختبارات الاختراق وجدولتها، مثل اختبار الفريق الأحمر (Red Team) ومحاكاة التصيد الإلكتروني، بالتنسيق مع قسم تقنية المعلومات المعني.
- المساهمة في مهام الإشراف على إعداد وتنفيذ تمارين الاستعداد لحوادث الأمن السيبراني (Table Top / Exercise Drill)، بالتنسيق مع الإدارات المعنية داخل المنظمة.
- تطوير عمليات تقييم الوعي الأمني لدى مستخدمي أنظمة المنظمة.
- المساهمة في وضع الخطط والبرامج التنفيذية لرفع الوعي الأمني، بالتنسيق مع الوحدات التنظيمية المختلفة داخل المنظمة.
- تطوير عمليات إعداد البرامج التوعوية والتعليمية في مجال أمن المعلومات وتقديمها لمستفيدي المنظمة.
- المساهمة في أنشطة تنفيذ برامج التوعية الأمنية والعمل على تطويرها.
- تطوير عمليات تقييم المشاريع التقنية لضمان امتثالها للمعايير المنشورة.
- الالتزام بسياسات المنظمة وسلوكيات العمل والإجراءات الخاصة بالوحدة التنظيمية.
- أداء أي مهام أخرى يتم تكليفه بها من المشرفين المباشرين.
الشروط والمتطلبات
- خبرة لا تقل عن 4 سنوات في مجال ذي صلة.
- درجة البكالوريوس في الأمن السيبراني أو أي مجال ذي صلة.
عرض النص الأصلي للإعلان
Key Responsibilities
- Contributes to conducting audits and monitoring compliance with cybersecurity-related controls and works to raise awareness of the importance of cybersecurity among all employees of the organization.
- Contributes to activities for monitoring the implementation of controls and recommendations issued by the National Cybersecurity Authority.
- Develops processes for preparing, compiling, and sharing periodic reports with the National Cybersecurity Authority.
- Contributes to conducting periodic audits of cybersecurity procedures within the organization.
- Develops processes for establishing a framework for compliance management and managing the policy related to exceptions.
- Develops a mechanism for implementing the compliance review plan for information security controls and ensuring that any identified gaps, if any, are addressed.
- Contributes to activities aimed at ensuring compliance with relevant national and international laws and regulations related to information security.
- Develops processes for conducting and evaluating Compromised assessment and disaster response simulations.
- Contributes to the tasks of supervising and scheduling penetration tests, such as Red Team penetration attempt testing and email phishing simulations, in coordination with the relevant Information Technology department.
- Contributes to the tasks of supervising the preparation and implementation of cybersecurity incident preparedness exercises (Table Top / Exercise Drill for Cybersecurity incidents), in coordination with the relevant departments within the organization.
- Develops processes for assessing security awareness among users of the organization's systems.
- Contributes to developing plans and executive programs to raise security awareness, in coordination with various relevant organizational units within the organization.
- Develops processes for preparing information security awareness and educational programs and delivering them to the organization's beneficiaries.
- Contributes to activities for implementing security awareness programs and works on developing them.
- Develops processes for evaluating technical projects to ensure their compliance with published standards.
- Adheres to the organization's policies, work behaviors, and procedures specific to the organizational unit.
- Performs any other tasks assigned by direct supervisors.
Required Experience
- Minimum of 4 years of experience in a relevant field.
Education
- Bachelor’s degree in cybersecurity or any related field.
المصدر: LinkedIn - أُضيفت للموقع في 31 أغسطس 2026
رقم الإعلان لدى المصدر: 4459219011
رقم الإعلان لدى المصدر: 4459219011