Talent.com
Cybersecurity Compliance Analyst

Cybersecurity Compliance Analyst

TISRiyadh, Riyadh Region, Saudi Arabia
30+ days ago
Job description

Position Overview

The Cybersecurity Compliance Analyst will work on gap analysis, evaluating and aligning the organization’s information security practices with the Saudi Central Bank (SAMA) Cyber Security Framework. This role involves assessing current security controls, identifying gaps, recommending risk mitigation strategies, and ensuring ongoing compliance with SAMA’s regulatory requirements. Candidates with knowledge of the National Cybersecurity Authority (NCA) regulations in Saudi Arabia will be at an advantage.

Key Responsibilities

  • Conduct Comprehensive Gap Assessments

Perform detailed reviews of existing security policies, procedures, and technical controls.

  • Map current practices to the SAMA Cyber Security Framework and NCA regulations, documenting any non‑conformities or control gaps.
  • Develop Risk Mitigation Strategies
  • Collaborate with cross‑functional teams (IT, Legal, Compliance, Operations) to prioritize discovered gaps.

  • Propose remediation plans with clear timelines and action items to address deficiencies.
  • Maintain Regulatory Compliance
  • Stay up to date on changes and updates in the SAMA Cyber Security Framework and NCA regulations.

  • Review and update internal policies and standards to ensure continuous alignment with regulatory requirements.
  • Reporting & Stakeholder Communication
  • Prepare compliance reports and presentations for executive leadership and relevant committees.

  • Communicate findings and recommendations clearly to both technical and non‑technical stakeholders.
  • Audit Readiness Support
  • Coordinate with internal and external audit teams to validate remedial actions and ensure readiness for formal SAMA reviews.

  • Provide evidence of compliance, track audit findings, and follow up on corrective actions.
  • Continuous Improvement
  • Evaluate and improve gap analysis methodologies and tools.

  • Advocate best practices for documentation, risk assessment, and compliance testing across the organization.
  • Requirements

  • Education : Bachelor’s degree in Computer Science, Information Security, or a related field (or equivalent practical knowledge).
  • Technical Skillset : Hands‑on experience in IT Security, Compliance, or Risk Management—preferably in the financial sector.
  • Experience : 3 years of relevant experience in GRC or CS Compliance is preferred; candidates with a strong understanding of cybersecurity gap analysis and compliance will also be considered.
  • Must Have : Practical experience on SAMA Cyber Security Framework and its alignment with standards such as ISO 27001 or NIST.
  • Data Privacy & Protection : Experience with Data Privacy and Protection, with a focus on Saudi PDPL and GDPR compliance.
  • NCA Regulations : Awareness of NCA regulations and their implications for cybersecurity in the Saudi government sector.
  • Tools : Familiarity with cybersecurity governance, risk, and compliance (GRC) tools or similar frameworks.
  • Preferred Certifications :
  • ISO 27001 Lead Implementer or Lead Auditor

  • CISSP (Certified Information Systems Security Professional)
  • CISA (Certified Information Systems Auditor)
  • GRCP (GRC Professional)
  • #J-18808-Ljbffr

    Create a job alert for this search

    Cybersecurity Analyst • Riyadh, Riyadh Region, Saudi Arabia

    Related jobs
    • Promoted
    Cyber Security Analyst

    Cyber Security Analyst

    Ta3meedRiyadh, Riyadh Region, Saudi Arabia
    Tameed is the first Debt Based Crowd Lending Platform specializing in financing Purchase Order licensed by Saudi Central Bank, Tameed offers fast financing for your PO. Placed in Riyadh, Saudi Arabi...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    Cybersecurity Services AE for Enterprise Growth

    Cybersecurity Services AE for Enterprise Growth

    Dell GmbHRiyadh, Riyadh Region, Saudi Arabia
    A leading technology company seeks a Services Account Executive in Riyadh to drive sales of innovative Cybersecurity Services. The ideal candidate will have over 10 years of experience in the IT / Sec...Show moreLast updated: 8 hours ago
    • Promoted
    SOC Security Analyst : 24 / 7 Incident Response & Forensics

    SOC Security Analyst : 24 / 7 Incident Response & Forensics

    TISRiyadh, Riyadh Region, Saudi Arabia
    A leading cybersecurity firm in Riyadh is seeking a Cybersecurity Analyst to join their Cyber Security team.The role involves monitoring security incidents, conducting forensic analysis, and implem...Show moreLast updated: 1 day ago
    • Promoted
    Cybersecurity Analyst (Saudi Residents Only)

    Cybersecurity Analyst (Saudi Residents Only)

    TISRiyadh, Riyadh Region, Saudi Arabia
    The Security Analyst will work and follow-up with the IT Teams and other Business Units to develop action plans to mitigate identified vulnerabilities and promote security initiatives.Work as part ...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    Cybersecurity GRC Lead : Strategy, Risk & Compliance

    Cybersecurity GRC Lead : Strategy, Risk & Compliance

    FoodicsRiyadh, Riyadh Region, Saudi Arabia
    A leading restaurant management company in Riyadh seeks a Cybersecurity GRC lead to develop policies aligning with regulations like SAMA. The role involves risk mitigation, compliance assurance, and...Show moreLast updated: 8 hours ago
    • Promoted
    Sr. Specialist I, Cybersecurity Job

    Sr. Specialist I, Cybersecurity Job

    TasneeRiyadh, Saudi Arabia
    Specialist I, Cybersecurity Job Work Location : KSA > .An exciting opportunity is available for.Reports to , Chief Information Security Officer located in. An individual contributor that supports TASN...Show moreLast updated: 30+ days ago
    • Promoted
    Cybersecurity Risk Specialist

    Cybersecurity Risk Specialist

    NTT America, Inc.Riyadh, Riyadh Region, Saudi Arabia
    Join a company that is pushing the boundaries of what is possible.We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society.Our wo...Show moreLast updated: 18 days ago
    • Promoted
    • New!
    SAMA Cybersecurity GRC Analyst - Gap & Compliance

    SAMA Cybersecurity GRC Analyst - Gap & Compliance

    TISRiyadh, Riyadh Region, Saudi Arabia
    A leading cybersecurity firm in Saudi Arabia seeks a Cybersecurity Compliance Analyst to evaluate information security practices against the SAMA Cyber Security Framework.The role includes conducti...Show moreLast updated: 8 hours ago
    • Promoted
    Cybersecurity GRC Consultant (KSA Residences only)

    Cybersecurity GRC Consultant (KSA Residences only)

    TISRiyadh, Riyadh Region, Saudi Arabia
    Saudi-based Managed Cybersecurity Services Provider, to be a milestone member of their Information Security and Compliance function for their customers. Maintain a deep knowledge of risk mitigation ...Show moreLast updated: 1 day ago
    • Promoted
    Project Cybersecurity Manager

    Project Cybersecurity Manager

    ALSTOM GruppeRiyadh, Riyadh Region, Saudi Arabia
    At Alstom, we understand transport networks and what moves people.From high-speed trains, metros, monorails, and trams, to turnkey systems, services, infrastructure, signalling and digital mobility...Show moreLast updated: 23 days ago
    Cybersecurity Engineer

    Cybersecurity Engineer

    SSC HR SolutionsRiyadh, Riyadh Province, SA
    Quick Apply
    Working with the team to manage all cybersecurity systems in Health Affairs, such as Firewall, WAF, SIEM, AV, EDR, Proxy. Continuous monitoring of alerts and security incidents.Classifying incidents...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Senior Cybersecurity GRC Consultant - ISO, NIST & Audits

    Senior Cybersecurity GRC Consultant - ISO, NIST & Audits

    TISRiyadh, Riyadh Region, Saudi Arabia
    A Managed Cybersecurity Services Provider in Saudi Arabia is looking for a Cybersecurity GRC Consultant.You will ensure compliance with key cybersecurity standards, conduct risk assessments, and de...Show moreLast updated: 8 hours ago
    • Promoted
    • New!
    Cybersecurity Partner Enablement Lead — Riyadh (ESOP)

    Cybersecurity Partner Enablement Lead — Riyadh (ESOP)

    COGNNARiyadh, Riyadh Region, Saudi Arabia
    A cybersecurity solutions provider in Riyadh is seeking a Partner Enablement Manager to drive the success of its channel partner program. You will be responsible for onboarding and enabling partners...Show moreLast updated: 8 hours ago
    • Promoted
    • New!
    OT Security Architect : SCADA & Industrial Cyber Defense

    OT Security Architect : SCADA & Industrial Cyber Defense

    AccentureRiyadh, Riyadh Region, Saudi Arabia
    A global professional services firm in Riyadh is seeking a Security Architect to define cloud security frameworks and contribute to risk management strategies. The ideal candidate will possess advan...Show moreLast updated: 8 hours ago
    • Promoted
    Cybersecurity Governance, Risk, and Compliance Sr. Manager

    Cybersecurity Governance, Risk, and Compliance Sr. Manager

    Dammam Airports CompanyRiyadh, Saudi Arabia
    Job Purpose Cybersecurity Governance, Risk, and Compliance Senior Manager is responsible for developing organizational cybersecurity framework for IT and OT—including, but not limited to, policies,...Show moreLast updated: 1 day ago
    • Promoted
    Strategic Cybersecurity Project Lead for Critical Systems

    Strategic Cybersecurity Project Lead for Critical Systems

    ALSTOM GruppeRiyadh, Riyadh Region, Saudi Arabia
    A multinational engineering firm in Riyadh seeks a Project Cybersecurity Manager to ensure essential cybersecurity measures across diverse projects. Responsibilities include managing risks, defining...Show moreLast updated: 1 day ago
    • Promoted
    Director - Tech Consulting - Cybersecurity - Threat Management & SOC - KSA 1

    Director - Tech Consulting - Cybersecurity - Threat Management & SOC - KSA 1

    Ernst & Young Advisory Services Sdn BhdRiyadh, Riyadh Region, Saudi Arabia
    Director - Tech Consulting - Cybersecurity - Threat Management & SOC - KSA 1.Other locations : Primary Location Only.Director / Partner - Cyber Security – Cyber Trust. As the Cyber Trust Sub-Competen...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    Cybersecurity GRC Consultant (Saudi only)

    Cybersecurity GRC Consultant (Saudi only)

    TISRiyadh, Riyadh Region, Saudi Arabia
    Saudi-based Managed Cybersecurity Services Provider, to be a milestone member of their Information Security and Compliance function for their customers. Maintains a deep knowledge of risk mitigation...Show moreLast updated: 8 hours ago