Gentis
Gentis
Accueil

JobsMissionsMédiaÉtudes de cas
Contactez-nous à tout moment via
hello@gentis.com

Nos dernières offres

Rechercher une opportunité par mot-clé

Security Solution Analyst - GRC Cybersecurity

30/10/2024
PermanentSaudi ArabiaOn site17000 SR21000 SR
Lien copié
Description du poste

A leading organization in Saudi Arabia is seeking a Cybersecurity Compliance Officer to join their GRC team. The role focuses on developing and maintaining security governance frameworks, policies, and procedures to ensure alignment with regulatory requirements. The candidate will drive compliance with national cybersecurity regulations, data protection laws, and international security standards.


Key responsibilities include monitoring regulatory compliance, conducting internal security assessments, managing GRC technology platforms, and coordinating external audit engagements. The position requires regular reporting to GRC leadership and supporting organizational certification initiatives.


The ideal candidate will have experience in implementing and maintaining comprehensive security compliance programs while ensuring adherence to industry and regulatory requirements.


Detailed Responsibilities:

  • Develop and maintain comprehensive cybersecurity governance frameworks, policies, and procedures ensuring alignment with regulatory requirements, including NCA controls.
  • Drive compliance with key security standards and regulations including PDPL, ISO 27001, and other applicable frameworks. Monitor and implement emerging requirements.
  • Perform technical security reviews of system configurations, network architecture, and control implementations to validate compliance and security best practices.
  • Lead internal security assessments and compliance reviews to identify and remediate control gaps.
  • Implement and administer GRC automation platforms to enhance compliance monitoring efficiency and reporting capabilities.
  • Design and oversee control attestation procedures, working with control owners to validate and document control effectiveness.
  • Develop and execute third-party security assessment program to evaluate and monitor vendor security practices.
  • Generate regular security status reports for GRC management. Effectively communicate security risks, issues and recommendations to key stakeholders.
  • Manage external audit engagements and certification processes to ensure successful outcomes and continued compliance.
Description du profil

Key Competencies:

  • Information Security Governance: Advanced knowledge of security frameworks, policies, and strategic integration of security with business operations. Strong understanding of cyber resilience principles.
  • Regulatory & Standards Expertise: Comprehensive understanding of data protection laws, international security standards (ISO), and industry regulations. Ability to interpret and apply evolving requirements.
  • Technical Security Knowledge: Proficiency in assessing system security configurations, network architecture, and control implementations. Deep understanding of security best practices.
  • Security Assessment: Expert capability in conducting security assessments and compliance reviews. Strong analytical skills in control effectiveness evaluation.
  • GRC Technology: Advanced knowledge of GRC platforms and automation solutions. Expertise in optimizing compliance monitoring and reporting processes.
  • Control Framework: Deep understanding of control validation procedures and attestation processes. Knowledge of control documentation best practices.
  • Third-Party Security: Expert knowledge of vendor security assessment methodologies and supply chain risk management principles.
  • Strategic Communication: Strong ability to articulate complex security concepts to various stakeholders. Excellence in security status reporting and presentation.
  • Audit Management: In-depth knowledge of external audit and certification processes. Strong understanding of audit evidence requirements and remediation approaches.
  • Policy Architecture: Expert understanding of control frameworks and their relationship to organizational policies. Proficiency in mapping security requirements to operational controls.


Core Responsibilities:

  • Information Security Governance: Develop and oversee security frameworks, policies, and procedures aligned with business objectives. Integrate security strategy with operations to maintain business continuity and cyber resilience.
  • Regulatory & Standards Management: Ensure adherence to data protection laws, international security standards (ISO), and industry regulations. Monitor evolving requirements and update security practices accordingly.
  • Technical Security Oversight: Assess and validate system security configurations, network architecture, and control implementations against security requirements and industry best practices.
  • Security Assurance: Lead internal security assessments and compliance reviews. Evaluate control effectiveness and drive continuous improvement initiatives.
  • Technology & Process Optimization: Implement and manage GRC platforms and automation solutions to enhance compliance monitoring and reporting efficiency.
  • Control Management: Design and maintain control validation procedures, ensuring proper documentation and attestation from control owners.
  • Third-Party Risk Management: Develop and execute vendor security assessment programs. Evaluate and monitor external partner security postures to manage supply chain risks.
  • Stakeholder Management: Deliver regular status updates to GRC leadership on security posture and program effectiveness. Drive clear communication channels with key stakeholders.
  • Audit Coordination: Support external audit engagements and certification processes. Partner with auditors and internal teams to facilitate successful outcomes.
  • Policy Framework Administration: Maintain unified control framework mapping security requirements to organizational policies. Establish clear relationships between policies, standards, and operational controls.


Education & Professional Certifications:


· Advanced degree in Computing/Technology field (Bachelor's/Master's in Computer Science or related)

· Governance, Risk & Compliance certification (ISC2 GRC)

· CISSP (Certified Information Security Professional)

· CISA (Certified Information Systems Auditor)

· Security Controls Framework certification (SANS SEC566)

· OSCP (Offensive Security Certified Professional)

Lien copié

Opportunités similaires

ICT
24/12/2024

IT Technicians

The IT Support is responsible for managing and executing IT operations for all programs and events, ensuring seamless technology integration and support.1. Event Preparation:Assess internet bandwidth requirements and confirm with hotel IT teams.Review hotel RFPs for technical needs such as bandwidth, projectors, and wireless microphones.Prepare, test, and ship IT equipment (e.g., Wi-Fi kits, cables, adapters, and backup devices) to event locations.Verify functionality of all IT components before the event, including VPN and backup setups.2. Event Setup:Install and configure IT systems, including hybrid (HYB) and network kits.Test and ensure readiness of all backup systems.3. Event Management:Launch Zoom sessions and monitor internet connections for reliability.Test and troubleshoot projectors, microphones, and audio quality.Ensure recording quality and resolve technical issues promptly with hotel IT or technical teams.4. Post-Event Management:Conduct inventory checks and issue reports on any technical issues encountered during the event.5. HQ Support:Assist departments in maintaining and upgrading software and hardware systems.Propose improvements for IT processes and manage procurement of necessary IT resources.Analyze system data to identify areas for improvement.6. Additional Responsibilities:Collaborate with the Operations Manager to enhance IT processes through regular goal-setting and follow-ups.Support HR in identifying training and development opportunities for IT skill enhancement.Key Performance Indicators (KPIs):On-time event delivery and readiness.Innovation in hybrid event IT solutions.Customer satisfaction and minimal complaints.Timely resolution of support tickets.Positive customer satisfaction and Net Promoter Scores.Employee training hours completed.Work Environment:Combination of indoor and outdoor work.Full-time role with common travel requirements.Qualifications and Experience:Education:Essential: Bachelor’s degree in Computer Science, CompTIA Network+ certification.Desirable: PMI Project Management Certification.Experience:5–7 years in an IT support role.

PermanentSaudi ArabiaOn site
ICT
16/12/2024

IT Manager

Main Objective:The IT Manager oversees the development, maintenance, and support of the client’s applications (UL3 and Alice). The role involves leading a team of developers, analysts, and support staff to deliver high-performing and efficient software solutions that meet business needs while ensuring system availability. Collaboration with various departments and team leadership are key aspects of this position.Key Responsibilities:Team Management (+- 15 people):Lead, mentor, and motivate an international team of developers, business analysts, and support staff.Oversee daily team operations, ensuring timely delivery of new features, updates, and maintenance tasks.Conduct regular team meetings, performance reviews, and career development discussions.Implement standards and innovative working methods.Project Support:Plan, prioritize, and manage project schedules and resources for life insurance contract management applications.Collaborate with stakeholders to define requirements, project scope, and plans.Ensure projects are delivered on time, within scope, and budget.Propose and define IT projects to automate and optimize contract management applications.Technical Supervision:Provide technical guidance for the design, development, and implementation of solutions.Oversee the integration of contract management systems with other company applications.Ensure system stability, security, and performance.Cross-Department Collaboration:Act as the liaison between IT and business units to ensure effective communication.Identify opportunities to enhance processes and systems to meet business objectives.Vendor Management:Manage relationships with third-party providers of contract management solutions and services.Oversee roadmaps and associated budgets for project portfolios and support activities.Ensure compliance with contracts and SLAs.Risk and Compliance:Ensure contract management applications comply with regulatory requirements and company governance policies.Mitigate risks related to system availability, data security, and user access.Work with governance teams to ensure compliance with data protection regulations.

PermanentBelgiumHybrid

Le job de vos rêves n’est plus qu’à un clic.

Envoyez-nous votre CV et nous vous mettrons directement en contact avec l'un de nos recruteurs spécialisés qui vous guidera dans la recherche de l'emploi de vos rêves !

Numéro de téléphone
Phone
Candidats

Témoignages

Rejoignez notre communauté active de professionnels et découvrez votre potentiel.

Pour vous tenir au courant de nos dernières actualités.