ج
وظيفة خبير إدارة المخاطر شاغرة في الرياض لدى جهة غير معلنة
Risk Management Expert
🏢 جهة غير معلنة
تفاصيل الوظيفة
جهة غير معلنة تطلب خبيرًا في إدارة المخاطر (Risk Management Expert) للعمل في الرياض، السعودية.
المهام والمسؤوليات
- تقديم المشورة بشأن تحليل وتقييم المخاطر التي تتعرض لها بيئة تكنولوجيا المعلومات.
- التوصية بأنشطة تتعلق بالتقييمات الأمنية المستمرة لأنظمة وخدمات المؤسسة بما يتماشى مع إطار إدارة مخاطر التكنولوجيا.
- التوصية بأنشطة تتعلق بتحليل وتقييم المخاطر التي تتعرض لها بيئة تكنولوجيا المعلومات.
- تقديم المشورة بشأن المشاركة في الاستجابة للحوادث الأمنية السيبرانية.
- التوصية بإجراءات تتعلق برصد التهديدات الأمنية الناشئة ورصد تنفيذ التدابير اللازمة لتخفيف المخاطر، بالتنسيق والتوافق مع إدارة المخاطر التشغيلية، حسب الاقتضاء.
- مراجعة خطة الاستجابة للكوارث واستمرارية الأعمال، بالتنسيق والتوافق مع إدارة المخاطر التشغيلية، حسب الاقتضاء.
- التوصية بإجراءات لضمان توفر متطلبات المرونة الأمنية السيبرانية في خطة استمرارية الأعمال.
- تحديد المهام المتعلقة بقدرة ضوابط أمن المعلومات على تخفيف المخاطر وتقديم التوصيات في هذا الشأن.
- التوصية بإجراءات لضمان حماية أصول المعلومات والتكنولوجيا من المخاطر السيبرانية المتعلقة بالأطراف الخارجية.
- مراجعة عمليات تقييم الوعي الأمني لمستخدمي الأنظمة.
- اقتراح أنشطة لتطوير خطط وبرامج تنفيذ لتعزيز الوعي الأمني، بالتنسيق مع مختلف الوحدات التنظيمية المعنية (مثل: الإدارة العامة للموارد البشرية وإدارة الاتصال المؤسسي).
- اقتراح أنشطة لتنفيذ برامج التوعية الأمنية والعمل على تطويرها.
- التوصية بإجراءات لضمان امتثال برامج التوعية الأمنية لجميع اللوائح والمعايير ومتطلبات الجهات التشريعية ذات الصلة.
- الامتثال لسياسات المؤسسة وسلوكيات العمل وإجراءات الوحدة التنظيمية.
- أداء أي مهام أخرى تُسند إليه من المشرفين المباشرين.
الشروط والمتطلبات
- خبرة لا تقل عن 6 سنوات في مجال ذي صلة.
- درجة البكالوريوس في الأمن السيبراني (Cybersecurity) أو أي مجال ذي صلة.
عرض النص الأصلي للإعلان
Key Responsibilities
- Provides advice on analyzing and assessing risks to the Information Technology environment.
- Recommends activities related to continuous security assessments of the organization's systems and services in alignment with the Technology Risk Management Framework.
- Recommends activities related to analyzing and assessing risks to the Information Technology environment.
- Provides advice on participating in cybersecurity incident response.
- Recommends actions related to monitoring emerging security threats and monitoring the implementation of necessary measures to mitigate risks, in coordination and alignment with Operational Risk Management, as applicable.
- Reviews the disaster response and business continuity plan, in coordination and alignment with Operational Risk Management, as applicable.
- Recommends actions to ensure the availability of cybersecurity resilience requirements in the Business Continuity Plan.
- Identifies tasks related to the ability of information security controls to mitigate risks and provides recommendations in this regard.
- Recommends actions to ensure the protection of information and technology assets from cyber risks related to external parties.
- Reviews the processes for assessing the security awareness of system users.
- Proposes activities for developing plans and implementation programs to enhance security awareness, in coordination with various concerned organizational units (such as: the General Department of Human Resources and the Corporate Communications Department).
- Proposes activities for implementing security awareness programs and working to develop them.
- Recommends actions to ensure that security awareness programs comply with all relevant regulations, standards, and requirements of the relevant legislative authorities.
- Complies with the organization's policies and work behaviors and the procedures of the organizational unit.
- Performs any other tasks assigned by direct supervisors.
Required Experience
- Minimum of 6 years of experience in a relevant field.
Education
- Bachelor’s degree in Cybersecurity or any related field.
المصدر: LinkedIn - أُضيفت للموقع في 2 سبتمبر 2026
رقم الإعلان لدى المصدر: 4459944594
رقم الإعلان لدى المصدر: 4459944594