Cybersecurity GRC Consultant
Riyadh, Riyadh Province, Saudi Arabia · Full Time
Be the first to apply
- Experience
- 3–7 yrs
- Salary
- —
- Openings
- 1
- Posted
- 2 days ago
- Work mode
- In office
- Education
- Bachelor's degree
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
About Devoteam
Devoteam is committed to leveraging technology combined with strong human values to drive positive change globally. Operating for over 25 years in more than 18 countries across EMEA, we focus on innovation, expertise, and a human-centric approach to make a meaningful impact.
Culture and Values
- We foster a fair and courageous environment where all decisions are made ethically and bravery is encouraged.
- Ambition drives us to achieve outstanding results through entrepreneurial spirit and commitment to growth.
- Continuous learning and innovation are at our core to meet evolving challenges and build excellent partnerships.
- We nurture a caring and sharing culture promoting teamwork, support, and collaboration.
Our core values emphasize respect, transparency, passion, and collaboration as keys to success.
Job Overview
The Cybersecurity GRC Consultant plays a vital role in designing, implementing, and refining cybersecurity governance, risk, and compliance initiatives aligned with organizational goals and Saudi cybersecurity legislation. This role involves close cooperation with senior consultants, architects, and client stakeholders to deliver high-quality governance frameworks, policies, and advisory services.
Key Responsibilities
- Develop, implement, and maintain comprehensive cybersecurity governance frameworks, including relevant policies, standards, procedures, and guidelines.
- Participate in crafting and enhancing cybersecurity governance operating models, organizational designs, and clearly defined RACI matrices.
- Create and maintain governance KPIs, KRIs, dashboards, and reporting tools to monitor effectiveness.
- Conduct governance maturity assessments, gap analyses, and benchmarking against industry standards and best practices.
- Prepare clear governance documentation, reports, presentations, and recommendations for clients.
- Ensure compliance with Saudi regulatory frameworks such as NCA ECC, CST, SAMA Cybersecurity Framework, along with international standards like ISO/IEC 27001 and NIST Cybersecurity Framework.
- Support governance committee meetings, workshops, and working groups by preparing materials, facilitating discussions, and tracking follow-up actions.
- Work collaboratively with risk management, compliance, third-party risk management, enterprise architecture, and security operations to integrate governance across cybersecurity domains.
- Review and assure the quality of governance documents and project deliverables.
- Stay abreast of regulatory changes and cybersecurity trends to propose governance improvements.
- Provide expert advice to clients on best practices for cybersecurity governance and regulatory compliance.
- Contribute to ongoing knowledge sharing, documentation, and enhancements within the Cybersecurity GRC practice.
Qualifications and Experience
- A bachelor's degree in Cybersecurity, Information Security, IT, Computer Science, or a closely related field.
- Between 3 and 7 years of professional experience in Cybersecurity Governance, Risk & Compliance, Information Security, or related cybersecurity consulting roles.
- Proven ability to develop governance documentation, policies, standards, and implement cybersecurity frameworks.
- Good understanding of cybersecurity governance models and corporate organizational structures.
- Experience in supporting governance assessments, driving compliance initiatives, and managing regulatory audits.
- Familiarity with Saudi Arabian cybersecurity regulations and internationally recognized security standards.
- Background in consulting, managed services, or working within large enterprises is advantageous.
Additional Information
Business Unit: Strategy & Transformation
Position Level: Mid Level
Minimum education
Bachelor's Degree