Information Technology Governance, Risk, and Compliance – Senior Specialist
Join to apply for the Information Technology Governance, Risk, and Compliance – Senior Specialist role at Abdul Latif Jameel Enterprises
The Technology Governance, Risk, and Compliance (GRC) Senior Specialist at ALJ Enterprises will play a key role in managing and overseeing technology governance, risk management, and compliance activities across the organization. The role involves developing and maintaining a robust framework for identifying, assessing, and mitigating technology-related risks, and ensuring compliance with relevant regulations and industry standards.
Responsibilities
- Manage Technology GRC activities, including developing and maintaining ALJ Enterprises policies and procedures, in collaboration with ALJ Enterprises and ALJ Corporate teams.
- Support the development and implementation of a Technology GRC framework, policies, and procedures to manage technology-related risks effectively and ensure compliance with regulatory requirements and industry standards.
- Assist in establishing and maintaining a technology risk management program that includes risk identification, assessment, prioritization, mitigation, and monitoring.
- Conduct regular technology and digital risk assessments and gap analyses to identify potential vulnerabilities and areas for improvement.
- Collaborate with technology, digital, innovation, and business stakeholders to define and implement controls and mitigation strategies to address identified risks.
- Monitor regulatory developments and industry trends to ensure ongoing compliance with relevant laws, regulations, and best practices, and elevate any potential issues as needed.
- Assist in executing technology compliance activities, including audits, assessments, and certifications, to validate adherence to established policies and standards.
- Provide guidance and support to technology teams and business units on GRC-related matters, including risk identification, assessment methodologies, and compliance requirements.
- Support the development and delivery of training programs and awareness initiatives in collaboration with IT corporate and HR to promote a culture of compliance and risk awareness across the organization.
- Assist in managing relationships with internal and external auditors, regulators, and other third-party stakeholders involved in Technology GRC activities.
- Participate in incident response and remediation efforts in coordination with relevant stakeholders to address security incidents and compliance violations.
Requirements
Bachelor's degree in Information Technology, Computer Science, Business Administration, or a related field. A professional certification in technology governance, risk management, or compliance (e.g., CISA, CISM, CRISC, CISSP) is a plus.Minimum of five years of experience in technology governance, risk management, compliance, or related fields.Good understanding of technology governance frameworks, standards, and best practices (e.g., COBIT, ISO 27001, NIST Cybersecurity Framework).Experience participating in technology GRC programs in complex organizational environments.Knowledge of regulatory requirements and compliance frameworks relevant to the organization’s industry and geographical footprint.Strong analytical, problem‑solving, and decision‑making skills, with the ability to assess and prioritize risks effectively.Strong communication and interpersonal skills, with the ability to effectively engage and influence stakeholders at all levels of the organization.Ability to work collaboratively in a cross‑functional environment and effectively manage relationships with internal and external stakeholders.Fluency in English is required; proficiency in Arabic is a plus.Seniority level
Mid‑Senior levelEmployment type
Full‑timeJob function
Information TechnologyInvestment ManagementReferrals increase your chances of interviewing at Abdul Latif Jameel Enterprises by 2x
#J-18808-Ljbffr