Cybersecurity GRC Specialist

Responsibilities

Manage and oversee the implementation of cybersecurity strategies, policies, standards, and procedures across the organization.
Conduct cybersecurity risk assessments to identify threats, vulnerabilities, and risks across IT and OT/ICS environments.
Develop, track, and monitor cybersecurity risk treatment and mitigation plans, ensuring timely remediation of identified risks.
Ensure IT activities, processes, and procedures comply with approved cybersecurity policies, standards, and regulatory requirements.
Identify, document, review, and periodically update cybersecurity policies and procedures, including those related to OT/ICS infrastructure.
Support cybersecurity compliance with applicable laws, regulations, standards, and frameworks.
Support cybersecurity functions in integrating security requirements into new and changed systems, services, and projects.
Provide GRC advisory support to IT, OT, and business stakeholders to ensure secure and compliant operations.
Prepare periodic cybersecurity compliance and risk status reports and present updates to the Cybersecurity Manager.
Monitor the overall cybersecurity compliance posture and recommend improvements where gaps are identified.
Implement and support cybersecurity training and awareness programs to promote a strong security culture.
Support internal and external cybersecurity audits, assessments, and reviews.
Stay informed about emerging cybersecurity risks, threats, and regulatory changes relevant to airport and critical infrastructure environments.
Perform other related cybersecurity GRC duties as assigned.

Requirements

Education requirements: Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
Certification requirements: Certified in Risk and Information Systems Control (CRISC).
Experience: Minimum of 3 years of overall cybersecurity-related experience. 1-2 years of hands-on experience in Cybersecurity GRC roles.
Experience in regulated environments, critical infrastructure, or airport operations is an advantage.
Languages: Fluent in Arabic and English (required).

Technical Skills

  • Strong knowledge of cybersecurity domains and best practices.
  • Excellent knowledge of Governance, Risk, and Compliance (GRC) frameworks and program management.
  • Good understanding of cybersecurity incident management practices.
  • Familiarity with cybersecurity standards and frameworks (e.g., ISO 27001, NIST, CIS).
  • Understanding of IT and OT/ICS security concepts.

See also

要針對這個職缺調整履歷嗎?

目前無法檢查您與這個職缺的符合程度;請先將履歷加入個人檔案,下次即可查看。

A new version of freehire is available