Talent.com
Director, GRC & Cybersecurity (859)

Director, GRC & Cybersecurity (859)

Team SaudiRiyadh, Riyadh Region, Saudi Arabia
4 days ago
Job description

Overview

Lead the Governance, Risk, Compliance, and Cybersecurity functions to ensure SOPC’s regulatory compliance, enterprise resilience, and digital security. The Director owns the enterprise risk management framework, business continuity, and cybersecurity governance, ensuring full compliance with national directives such as PDPL and NCA. The Director provides oversight and guidance to SOPC functions, enabling them to operate within defined risk appetites and ensuring alignment with SOPC’s governance and operational priorities. The position strengthens SOPC’s second line of defense through integrated risk oversight, compliance monitoring, and cyber readiness.

Responsibilities

  • Enterprise Risk Management : Lead the development, implementation, and continuous improvement of SOPC’s enterprise risk management framework, including risk appetite, taxonomy, and assessment methodologies.
  • Maintain and oversee risk registers across SOPC and federations, ensuring risks are identified, evaluated, and mitigated in line with strategic objectives.
  • Coordinate enterprise-level risk reporting and escalation mechanisms, ensuring transparency and timely decision-making by the CEO and Audit Committee.
  • Partner with Internal Audit to align audit priorities with enterprise risk exposures and provide regular updates on residual risks.
  • Cyber Strategy & Governance : Oversee SOPC’s cybersecurity strategy, policies, and frameworks, ensuring alignment with national cybersecurity directives and international standards.
  • Ensure the implementation of incident response protocols, access control systems, and data protection mechanisms that safeguard SOPC’s digital assets and sensitive information.
  • Lead cyber risk assessments and maturity reviews, identifying vulnerabilities and ensuring mitigation measures are implemented effectively.
  • Collaborate with the Digital Transformation and IT functions to maintain secure technology environments and align cybersecurity architecture with operational priorities.
  • Governance & Compliance : Develop and enforce compliance frameworks and monitoring systems that ensure adherence to national and international regulations, including PDPL, NCA, anti-fraud, and anti-corruption standards.
  • Establish and maintain governance frameworks and compliance reporting protocols to track performance, identify breaches, and drive remedial actions across SOPC entities.
  • Provide the CEO and leadership team with periodic compliance dashboards and reports, enabling proactive management of legal and regulatory obligations.
  • Act as the focal point for regulatory inspections, compliance reviews, and audits, ensuring accurate documentation and timely responses.
  • Business Continuity & Crisis Management : Direct the establishment and testing of business continuity management (BCM) and disaster recovery (DR) frameworks, ensuring organizational preparedness for disruptions.
  • Conduct scenario testing and simulations to evaluate SOPC’s resilience and recovery capabilities across critical operations.
  • Integrate BCM and DR plans into enterprise risk and compliance structures, ensuring unified risk governance across the organization.
  • Provide assurance to senior leadership that SOPC’s continuity and resilience mechanisms meet regulatory expectations and operational needs.
  • Boundaries : Independent assurance and audit reviews fall under Internal Audit, which provides oversight on the effectiveness of controls and frameworks developed by GRC.
  • Legal advisory, representation, and statutory interpretation are under Legal Affairs, which informs the compliance frameworks developed by GRC.
  • Operational policy design and process documentation are owned by Corporate Excellence, with GRC embedding compliance and risk requirements within those structures.
  • Front-line control execution and risk ownership remain the responsibility of management functions (first line of defense), with GRC providing oversight, monitoring, and guidance.

Seniority level

  • Director
  • Employment type

  • Full-time
  • Job function

  • Information Technology
  • #J-18808-Ljbffr

    Create a job alert for this search

    Cybersecurity • Riyadh, Riyadh Region, Saudi Arabia

    Related jobs
    • Promoted
    • New!
    GRC Manager

    GRC Manager

    Aventus Global TalentRiyadh, Riyadh Region, Saudi Arabia
    GRC Manager – Short-Term Engagement | Riyadh, Saudi Arabia.We are seeking an experienced GRC (Governance, Risk & Compliance) Manager for a 2‑month consulting engagement with a leading government or...Show moreLast updated: 14 hours ago
    • Promoted
    Cyber Security GRC Lead

    Cyber Security GRC Lead

    FoodicsRiyadh, Riyadh Region, Saudi Arabia
    The Cybersecurity GRC lead will be responsible for developing and implementing Cyber Security policies, standards, and procedures in alignment with regulatory requirements such as SAMA and best pra...Show moreLast updated: 30+ days ago
    • Promoted
    Manager - Risk Management & GRC

    Manager - Risk Management & GRC

    Arthur LawrenceRiyadh, Saudi Arabia
    Arthur Lawrence is urgently looking for a Manager - Risk Management & GRC for a client in Riyadh, KSA.Please review the job requirements below and apply promptly to enable placement.IT risk managem...Show moreLast updated: 30+ days ago
    Enterprise Governance, Risk & Compliance (GRC) Manager

    Enterprise Governance, Risk & Compliance (GRC) Manager

    LucidyaRiyadh, Riyadh Province, SA
    Quick Apply
    The Enterprise GRC Manager leads the company’s integrated governance, risk, and compliance framework, ensuring all business units, systems, and processes operate with transparency, accountability, ...Show moreLast updated: 16 days ago
    • Promoted
    Cybersecurity Lead

    Cybersecurity Lead

    Schneider ElectricRiyadh, Saudi Arabia
    The Cybersecurity Lead role purpose is to ensure cybersecurity posture (process, people, technology) at cluster level for the benefit of our business. He / she has a specific focus on ensuring compl...Show moreLast updated: 30+ days ago
    • Promoted
    Director, GRC & Cybersecurity (859)

    Director, GRC & Cybersecurity (859)

    Team SaudiRiyadh, Saudi Arabia
    Lead the Governance, Risk, Compliance, and Cybersecurity functions to ensure SOPC’s regulatory compliance, enterprise resilience, and digital security. The Director owns the enterprise risk manageme...Show moreLast updated: 4 days ago
    • Promoted
    Cybersecurity GRC Senior Analyst

    Cybersecurity GRC Senior Analyst

    The Cigna GroupRiyadh, Saudi Arabia
    Cybersecurity GRC Senior Analyst.The Cigna Group Join to apply for the.Cybersecurity GRC Senior Analyst.The Cigna Group Get AI-powered advice on this job and more exclusive features.This position w...Show moreLast updated: 30+ days ago
    • Promoted
    Director- Enterprise Risk (CDU3) - 20004049

    Director- Enterprise Risk (CDU3) - 20004049

    Qiddiya Investment CompanyRiyadh, Saudi Arabia
    Qiddiya is Saudi Arabia’s future capital of entertainment, sports, and culture — a 360 km² mega-project just outside Riyadh. From F1-grade racetracks and theme parks to stadiums and performance venu...Show moreLast updated: 24 days ago
    • Promoted
    Senior Cybersecurity GRC Specialist

    Senior Cybersecurity GRC Specialist

    MoznRiyadh, Saudi Arabia
    Mozn is a rapidly growing technology firm revolutionizing the field of Artificial Intelligence and Data Science headquartered in Riyadh, Saudi Arabia and it’s working to realize Vision 2030 with a ...Show moreLast updated: 16 days ago
    • Promoted
    Cybersecurity GRC Specialist

    Cybersecurity GRC Specialist

    2P Perfect PresentationRiyadh, Saudi Arabia
    The Cybersecurity GRC (Governance, Risk, and Compliance) Specialist is responsible for working on the establishment of the organization's cybersecurity governance framework, ensuring adherence to r...Show moreLast updated: 3 days ago
    • Promoted
    Cybersecurity GRC Senior Analyst

    Cybersecurity GRC Senior Analyst

    Cigna Health and Life Insurance CompanyRiyadh, Saudi Arabia
    Cybersecurity GRC Senior Analyst page is loaded Cybersecurity GRC Senior Analyst Apply remote type Hybrid locations Riyadh, Saudi Arabia time type Full time posted on Posted Yesterday job requisiti...Show moreLast updated: 30+ days ago
    • Promoted
    Cybersecurity GRC Engineer

    Cybersecurity GRC Engineer

    Saudi Networkers ServicesRiyadh, Saudi Arabia
    Saudi Networkers Services Develop, implement, and maintain the organization’s cybersecurity governance, risk, and compliance (GRC) framework. Conduct risk assessments, vulnerability assessments, and...Show moreLast updated: 10 days ago
    • Promoted
    Director Cybersecurity

    Director Cybersecurity

    Saudi Networkers ServicesRiyadh, Saudi Arabia
    Overview Join to apply for the.Develops cybersecurity strategy in line with its business strategy as per the guidelines provided by NCA. Monitors organization-wide security operations (vulnerability...Show moreLast updated: 30+ days ago
    • Promoted
    Product Director - Cybersecurity Solutions

    Product Director - Cybersecurity Solutions

    Michael PageRiyadh, Riyadh Region, Saudi Arabia
    The Product Director - Cybersecurity Solutions will play a pivotal role in overseeing the development, strategy, and execution of Cybersecurity products. Based in Riyadh, this position requires a st...Show moreLast updated: 30+ days ago
    • Promoted
    Cybersecurity GRC Manager

    Cybersecurity GRC Manager

    Total-TECH Co.Riyadh, Riyadh Region, Saudi Arabia
    Lead or support the implementation of cybersecurity governance, risk, and compliance programs.Conduct risk assessments, gap analyses, and security audits aligned with national and international sta...Show moreLast updated: 30+ days ago
    • Promoted
    Cybersecurity GRC Specialist

    Cybersecurity GRC Specialist

    Saudi Networkers ServicesRiyadh, Saudi Arabia
    Develop, implement, and maintain cybersecurity policies, standards, and procedures in alignment with industry frameworks (e. Conduct risk assessments and identify vulnerabilities, recommending appro...Show moreLast updated: 30+ days ago
    • Promoted
    Cybersecurity GRC Manager

    Cybersecurity GRC Manager

    Saudi Networkers ServicesRiyadh, Saudi Arabia
    Communicates cybersecurity risks and posture to senior management.Communicates financial aspects of cybersecurity related activities to senior management. Collaborates with stakeholders to ensure bu...Show moreLast updated: 30+ days ago
    • Promoted
    GRC Manager

    GRC Manager

    AventusRiyadh, Saudi Arabia
    Connecting Digital & Technology Talent with Opportunities : Specializing in Digital & Technology Recruitment We are seeking an experienced. GRC (Governance, Risk & Compliance) Manager.The ideal candi...Show moreLast updated: 3 days ago
    • Promoted
    Cybersecurity GRC specialist

    Cybersecurity GRC specialist

    Bayan Credit Bureau بيان للمعلومات الائتمانيةRiyadh, Saudi Arabia
    Get AI-powered advice on this job and more exclusive features.Bayan is committed to leveraging data-driven insights to enhance business strategies and deliver value across various sectors.The role ...Show moreLast updated: 4 days ago
    • Promoted
    Cybersecurity Defense Senior Manager

    Cybersecurity Defense Senior Manager

    Misk FoundationRiyadh, Riyadh Region, Saudi Arabia
    Senior Talent Acquisition Leader at Misk Foundation | Driving Recruitment Across Nonprofit, Construction, Heritage, Science, and Creative Sectors |…. Lead Misk Foundation’s cybersecurity defense cap...Show moreLast updated: 10 days ago