
Roshn
Specialist, Cybersecurity GRC
- Permanent
- Riyadh, Saudi Arabia
- Experience 2 - 5 yrs
- Urgent
Job overview
Date posted
04/10/2025
Location
Riyadh, Saudi Arabia
Salary
SAR 15,000 - 20,000 per month
Compensation
Salary only
Experience
2 - 5 yrs
Seniority
Experienced
Qualification
Bachelors degree
Expiration date
18/11/2025
Job description
The Cybersecurity GRC Specialist supports the Senior Manager of Cybersecurity GRC by providing expertise in risk management, compliance, and governance, assisting in the execution of cybersecurity risk assessments, and ensuring that policies, procedures, frameworks, and guidelines are developed, reviewed, and aligned with applicable laws, regulations, and mandates. The role collaborates across teams to design, implement, and test security processes and controls, ensuring adherence to ROSHNâs cybersecurity program and fulfillment of regulatory requirements. Responsibilities include assisting in developing and reviewing cybersecurity policies, procedures, processes, frameworks, and guidelines; supporting the execution of information security compliance and maturity assessments leveraging international standards and industry best practices; identifying, analyzing, and evaluating information security processes and controls such as access management, incident management, and business continuity; assessing compliance with national cybersecurity laws, regulations, and mandates (e.g., NCA); performing cybersecurity risk analysis based on recognized frameworks monitoring and reporting on ROSHNâs compliance with national cybersecurity requirements; developing and recommending cybersecurity countermeasures and risk mitigation strategies; collaborating with stakeholders to implement and maintain an effective cybersecurity risk management program; collecting, analyzing, and presenting data to support risk management reporting and visualization for clear communication to target audiences; and recommending, implementing, and managing risk management and compliance tools to strengthen governance capabilities. ROSHN is a national real estate developer powered by the Public Investment Fund, committed to delivering high quality communities in line with Vision 2030.
Required skills
Key responsibilities
- Assist in developing and reviewing cybersecurity policies, procedures, processes, frameworks, and guidelines
- Support execution of information security compliance and maturity assessments leveraging international standards and industry best practices
- Identify, analyze, and evaluate information security processes and controls, including access management, incident management, and business continuity
- Assess compliance with national cybersecurity laws, regulations, and mandates (e.g., NCA) and report on adherence
- Perform cybersecurity risk analysis using recognized frameworks such as NIST, ISO/IEC 31000, and ISO/IEC 27005
- Monitor and report on compliance with national cybersecurity requirements for ROSHN
- Develop and recommend cybersecurity countermeasures and risk mitigation strategies
- Collaborate with stakeholders to implement and maintain an effective cybersecurity risk management program
- Collect, analyze, and present data to support risk management reporting and visualization for target audiences
- Recommend, implement, and manage risk management and compliance tools to strengthen governance capabilities
Experience & skills
- Possess 3+ experience in Cybersecurity
- Demonstrate a strong technical background and knowledge in IT Security, Information Security, and Risk Management
- Show familiarity with information security policies, standards, and regulatory/framework compliance requirements
- Understand national and international cybersecurity and risk management standards and best practices (e.g., NCA, NDMO, ISO/IEC 27001/27002, ISO/IEC 27005, NIST Cybersecurity Framework)
- Maintain awareness of the regional regulatory environment and experience in compliance assessments
- Hold professional certifications such as CompTIA Security+ or GISF (preferred)