Talent.com
Chief Information Security Officer
Chief Information Security OfficerSASREF • Al Jubayl, Eastern Province, Saudi Arabia
Chief Information Security Officer

Chief Information Security Officer

SASREF • Al Jubayl, Eastern Province, Saudi Arabia
1 day ago
Job description

JOB PURPOSE :

Drive the Information Technology (IT) and Operational Technology (OT) cybersecurity strategy development and implementation to protect the business from security threats and cyber-attacks. Oversee the Governance, Risk, and Compliance (GRC) with the Security Operations Center (SOC) to lead a program of continues improvements in response to changing security risks and threats to ensure that the organization’s intellectual, IT / OT assets and information are safeguarded against internal and external threats. Ensure SASREF is holding a robust cybersecurity program and is complying with regulatory cybersecurity requirements.

KEY ACCOUNTABILITIES :

  • Assist in the development and drive for the achievement of the IT / OT Information Security mission and vision.
  • Define, develop, and maintain an information Security Strategy that is aligned with SASREF objectives that covers all cybersecurity related assets and risks.
  • Establish and maintain information security policies, procedures, and guidelines for implementing and safeguarding the company’s infrastructure while in alignment with the relevant legislation and industry standards.
  • Implement and oversee the cybersecurity risk management program and risk registers for operational and strategic cybersecurity risks.
  • Align the cybersecurity risk management program with the enterprise risk management program.
  • Develop a regulatory compliance framework and register to be assessed and monitored.
  • Ensure compliance with the changing laws and applicable regulations.
  • Drive to achieve the yearly cybersecurity maturity KPIs targets for IT / OT by conducting gap assessments and regular monitoring.
  • Brief senior management on the cybersecurity strategy, risks and compliance status for SASREF.
  • Manage the cybersecurity committee meetings as the cybersecurity committee secretary.
  • Define and implement the Third‑party cybersecurity risk management program through integration with the contracting cycles for evaluation.
  • Oversee and drive the continues cybersecurity evaluations such as penetration tests, vulnerability scans, red team exercises, and compromise assessments. While monitoring the gaps and remediation actions until closure.
  • Report cybersecurity incidents to the management and regulating entities while providing regular communication reports.
  • Oversee cybersecurity incidents and high‑level security alerts until closure; ensure and recommend mitigating actions for avoiding recurrence.
  • Act as the focal point of communication with National Cybersecurity Authority (NCA).
  • Maintain the Information Security Management Systems (ISMS) to sustain the ISO27001 certification.
  • Initiate, facilitate, and promote cybersecurity awareness program and ensure proper implementation of all its aspects including training, phishing, and consequence management.
  • Ensure that incident response plans are in place, up‑to‑date and tested.
  • Oversee infrastructure, network, system and application‑related technical and architectural changes and design decision to enhance the underlying infrastructure security and alignment with the Enterprise Architecture (EA).
  • Oversee logical access management to SASREF assets through the Identity and Access management policy definition and compliance checks.
  • Conduct periodic internal security assurance reviews / audits on the SASREF’s assets to monitor security compliance with information security policies and procedures, before the scheduled internal / shareholder / NCA / external audits.
  • Manage and prepare for the external Information Security audits while monitoring and driving for the closure of all identified gaps.
  • Utilize and manage the baseline compliance tools (Tripwire) in both IT and OT.
  • Define, monitor and aim to achieve the cybersecurity Key Performance Indicators (KPIs) while communicating the KPIs with the cybersecurity committee and SASREF management.
  • Ensure the business processes and work activities, relevant to position, are executed in compliance with SASREF policy, procedures and best practice to achieve the business objectives in a safe, efficient and cost effective manner.
  • Plan and manage the department budget for the cybersecurity activities.
  • Lead, motivate, develop and assess the assigned team to achieve business objectives and grow capability.

SAFETY :

Workplace (WPS) and Process (PSM) Safety :

  • Ensure that measures to protect personal safety and well‑being are always in place and that personal actions do not jeopardize the safety and well‑being of others.
  • Adhere strictly to all IOWs, Safe Operating Procedures, and Safe Work Instructions - thus preventing potential WPS and PSM incidents at all times.
  • Always comply with the SASREF HSE Policy, the 5 Safety Principles and 8 Life Saving Rules.
  • Performance Indicators :

  • No personal injury or injury to a third party.
  • No WPS or PSM incident caused.
  • Cybersecurity :

  • Maintain SASREF’s cybersecurity by implementing security best practices.
  • Adhere strictly to all cybersecurity requirements while dealing with SASREF’s assets and data.
  • Comply always with SASREF’s information security policies.
  • Performance Indicators : Reporting all suspicious emails including the phishing tests.
  • 0 Failure to the phishing campaign tests.
  • 100% Completion of the assigned cybersecurity awareness courses.
  • 0 Cybersecurity violation or negative behavior.
  • QUALIFICATIONS & EXPERIENCE :

    Qualification :

  • Bachelor’s Degree in Computer Science, Cybersecurity or any other related field.
  • (Preferred) Master’s Degree.
  • CISSP and CISM certifications are required.
  • Experience :

  • Minimum of 10 years of experience in Cybersecurity / IT with 2 in management role.
  • Prior Operational Technology (OT) experience is required.
  • SASREF values its people as they are its greatest asset. We shaped our compensation and benefits to provide wide variety of excellent and competitive packages to our diverse employees. We aim to Attract, Maintain, Engage & Retain our employees.

    Post Dates :

    Starting Date : 17-Nov-2025

    End Date : 16-Dec-2025

    Seniority level

    Director

    Employment type

    Full‑time

    Job function

    Information Technology

    Industries

    Chemical Manufacturing and Oil and Gas

    #J-18808-Ljbffr

    Create a job alert for this search

    Security Officer • Al Jubayl, Eastern Province, Saudi Arabia

    Related jobs
    Chief Officer

    Chief Officer

    Telford Offshore • Al Jubayl, Eastern Province, Saudi Arabia
    Telford Offshore is looking for.Chief Officer / SDPO for DP3 Accommodation / Construction barge.Minimum 2 years experience in rank on DP Accommodation / construction vessels.Experience with marine ...Show more
    Last updated: 1 day ago • Promoted
    IT Administrator

    IT Administrator

    AL BILAD • Al Jubayl, Eastern Province, Saudi Arabia
    IT Support monitors and maintains the company network and computer systems, installs and configures hardware and software and solves technical issues as they arise. Working hours can be general or s...Show more
    Last updated: 19 hours ago • Promoted • New!
    IT Administrator in Jubail : Network & Security Expert

    IT Administrator in Jubail : Network & Security Expert

    Saudi Petroleum Services Polytechnic • Al Jubayl, Eastern Province, Saudi Arabia
    A leading educational institution in Saudi Arabia is seeking an experienced IT Administrator to maintain network systems and provide technical support. The successful candidate will manage Microsoft...Show more
    Last updated: 19 hours ago • Promoted • New!
    Senior Completion Specialist

    Senior Completion Specialist

    Worley • رأس الخير, Eastern Province, Saudi Arabia
    Support smart completions and system readiness through detailed completion management.Monitor and close punchlists, maintain PIR‑leak‑check, ITP close‑out. Ensure completeness of documentation, tagg...Show more
    Last updated: 30+ days ago • Promoted
    Lead Engineer, System Integration & IOT II

    Lead Engineer, System Integration & IOT II

    Maaden • رأس الخير, Eastern Province, Saudi Arabia
    MAADEN, established in 1997, is one of the fastest-growing mining companies in the world and the largest multi-commodity mining and metals company in the Middle East. We are leading the development ...Show more
    Last updated: 1 day ago • Promoted
    His Implementation Consultant Jobs in Jubail (Nov 2025) - Bayt.com

    His Implementation Consultant Jobs in Jubail (Nov 2025) - Bayt.com

    Saudi Petroleum Services Polytechnic • Al Jubayl, Eastern Province, Saudi Arabia
    We are looking for an experienced IT Administrator to maintain network systems and provide technical support in our Jubail office. The successful candidate will manage Microsoft 365, configure secur...Show more
    Last updated: 19 hours ago • Promoted • New!
    Senior IoT & System Integration Engineer

    Senior IoT & System Integration Engineer

    Maaden • رأس الخير, Eastern Province, Saudi Arabia
    A leading mining company in Saudi Arabia seeks a Lead Engineer in System Integration & IoT II.This role focuses on developing integration strategies and advanced technology solutions to enhance ope...Show more
    Last updated: 1 day ago • Promoted
    QHSE Technical Lead & Auditor Trainer

    QHSE Technical Lead & Auditor Trainer

    SGS • Al Jubayl, Eastern Province, Saudi Arabia
    A global leader in inspection and certification is seeking an experienced professional to manage compliance audits and training in Al Jubayl, Saudi Arabia. The role requires over 16 years of educati...Show more
    Last updated: 2 days ago • Promoted
    Director, IT / OT Cybersecurity & Risk Management

    Director, IT / OT Cybersecurity & Risk Management

    SASREF • Al Jubayl, Eastern Province, Saudi Arabia
    A leading chemical manufacturing company in Al Jubayl is seeking a Cybersecurity Director to develop and implement a robust cybersecurity program. You will oversee compliance with regulations and ma...Show more
    Last updated: 1 day ago • Promoted
    Project Manager

    Project Manager

    ETECHS-Industrial Safety & Security Sector (ISSS) • Al Jubayl, Eastern Province, Saudi Arabia
    Get AI-powered advice on this job and more exclusive features.Direct message the job poster from ETECHS-Industrial Safety & Security Sector (ISSS). Executive Manager | General Management, Sales, Str...Show more
    Last updated: 2 days ago • Promoted
    IT Jobs in Jubail (Nov 2025) - Bayt.com

    IT Jobs in Jubail (Nov 2025) - Bayt.com

    Saudi Petroleum Services Polytechnic • Al Jubayl, Eastern Province, Saudi Arabia
    An IT Administrator position focusing on maintaining network systems and providing technical support.Responsibilities include managing Microsoft 365, configuring security protocols, and troubleshoo...Show more
    Last updated: 19 hours ago • Promoted • New!
    Relocation-Eligible Traffic Engineer — GCC & ITS Expert

    Relocation-Eligible Traffic Engineer — GCC & ITS Expert

    Bechtel Corporation • رأس الخير, Eastern Province, Saudi Arabia
    A global engineering firm is seeking an experienced Traffic Engineer based in Ras Al-Khair, Saudi Arabia.This role involves applying traffic management principles and overseeing contractor plans fo...Show more
    Last updated: 19 hours ago • Promoted • New!
    Healthcare IT Manager — Strategy, Security & Cloud

    Healthcare IT Manager — Strategy, Security & Cloud

    CARE • Al Jubayl, Saudi Arabia
    Summary : Radcare Medical Company seeks a skilled IT Manager to oversee our IT department and ensure seamless operations in our medical center. Responsibilities include developing IT strategies, mana...Show more
    Last updated: 3 days ago • Promoted
    Traffic Engineer

    Traffic Engineer

    Bechtel Corporation • رأس الخير, Eastern Province, Saudi Arabia
    Get AI-powered advice on this job and more exclusive features.Direct message the job poster from Bechtel Corporation.Extraordinary teams building inspiring projects : . Since 1898, we have helped cust...Show more
    Last updated: 19 hours ago • Promoted • New!
    Cost Manager - Data Center - Charleston SC

    Cost Manager - Data Center - Charleston SC

    Arcadis • Qatif, Eastern Province, Saudi Arabia
    Job Title : Cost Manager – Data Center Construction (Charleston, SC).Arcadis is a leading company delivering sustainable design, engineering, and consultancy solutions for natural and built assets.W...Show more
    Last updated: 4 days ago • Promoted
    Safety Officer : Elevate Industrial Safety & Compliance

    Safety Officer : Elevate Industrial Safety & Compliance

    Saudi Petroleum Services Polytechnic • Al Jubayl, Eastern Province, Saudi Arabia
    Summary : A Safety Engineer is sought in Riyadh to ensure compliance with safety regulations in electrical stations.Responsibilities include conducting safety audits, developing safety policies, and...Show more
    Last updated: 2 days ago • Promoted
    Global Logistics Safety Lead – HSE & Compliance

    Global Logistics Safety Lead – HSE & Compliance

    DHL • Al Jubayl, Eastern Province, Saudi Arabia
    A leading international logistics provider in Jubail is seeking a Safety Officer to ensure compliance with KSA regulations and enhance safety within logistics operations. The ideal candidate will ha...Show more
    Last updated: 4 days ago • Promoted
    Lead Data Scientist - Jeddah, Saudi Arabia

    Lead Data Scientist - Jeddah, Saudi Arabia

    CARE • Qatif, Eastern Province, Saudi Arabia
    Seeking a Lead Data Scientist in Jeddah, Saudi Arabia to steer data initiatives, develop advanced models, and guide teams in innovative analytics. The role involves leading projects, mentoring staff...Show more
    Last updated: 4 days ago • Promoted