D

Cybersecurity GRC Consultant

Devoteam

Riyadh, Riyadh Province, Saudi Arabia · Full Time

Be the first to apply

Experience
3–7 yrs
Salary
Openings
1
Posted
2 days ago
Work mode
In office
Education
Bachelor's degree
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

About Devoteam

Devoteam is committed to leveraging technology combined with strong human values to drive positive change globally. Operating for over 25 years in more than 18 countries across EMEA, we focus on innovation, expertise, and a human-centric approach to make a meaningful impact.

Culture and Values

  • We foster a fair and courageous environment where all decisions are made ethically and bravery is encouraged.
  • Ambition drives us to achieve outstanding results through entrepreneurial spirit and commitment to growth.
  • Continuous learning and innovation are at our core to meet evolving challenges and build excellent partnerships.
  • We nurture a caring and sharing culture promoting teamwork, support, and collaboration.

Our core values emphasize respect, transparency, passion, and collaboration as keys to success.

Job Overview

The Cybersecurity GRC Consultant plays a vital role in designing, implementing, and refining cybersecurity governance, risk, and compliance initiatives aligned with organizational goals and Saudi cybersecurity legislation. This role involves close cooperation with senior consultants, architects, and client stakeholders to deliver high-quality governance frameworks, policies, and advisory services.

Key Responsibilities

  • Develop, implement, and maintain comprehensive cybersecurity governance frameworks, including relevant policies, standards, procedures, and guidelines.
  • Participate in crafting and enhancing cybersecurity governance operating models, organizational designs, and clearly defined RACI matrices.
  • Create and maintain governance KPIs, KRIs, dashboards, and reporting tools to monitor effectiveness.
  • Conduct governance maturity assessments, gap analyses, and benchmarking against industry standards and best practices.
  • Prepare clear governance documentation, reports, presentations, and recommendations for clients.
  • Ensure compliance with Saudi regulatory frameworks such as NCA ECC, CST, SAMA Cybersecurity Framework, along with international standards like ISO/IEC 27001 and NIST Cybersecurity Framework.
  • Support governance committee meetings, workshops, and working groups by preparing materials, facilitating discussions, and tracking follow-up actions.
  • Work collaboratively with risk management, compliance, third-party risk management, enterprise architecture, and security operations to integrate governance across cybersecurity domains.
  • Review and assure the quality of governance documents and project deliverables.
  • Stay abreast of regulatory changes and cybersecurity trends to propose governance improvements.
  • Provide expert advice to clients on best practices for cybersecurity governance and regulatory compliance.
  • Contribute to ongoing knowledge sharing, documentation, and enhancements within the Cybersecurity GRC practice.

Qualifications and Experience

  • A bachelor's degree in Cybersecurity, Information Security, IT, Computer Science, or a closely related field.
  • Between 3 and 7 years of professional experience in Cybersecurity Governance, Risk & Compliance, Information Security, or related cybersecurity consulting roles.
  • Proven ability to develop governance documentation, policies, standards, and implement cybersecurity frameworks.
  • Good understanding of cybersecurity governance models and corporate organizational structures.
  • Experience in supporting governance assessments, driving compliance initiatives, and managing regulatory audits.
  • Familiarity with Saudi Arabian cybersecurity regulations and internationally recognized security standards.
  • Background in consulting, managed services, or working within large enterprises is advantageous.

Additional Information

Business Unit: Strategy & Transformation
Position Level: Mid Level

Minimum education

Bachelor's Degree

How they work

Communication Teamwork & Collaboration Attention to Detail Learning Agility
🤖
Online · instant AI help
Broxer