Compliance Expert
Confidential Government · Riyadh, Saudi Arabia
Apply & track with Apply EdgeKey ResponsibilitiesProvides advice on conducting audits and monitoring compliance with controls related to cybersecurity and works to raise awareness of the importance of cybersecurity among all employees of the organization.Recommends activities for monitoring the implementation of controls and recommendations issued by the National Cybersecurity Authority.Determines the tasks for preparing, compiling, and sharing periodic reports with the National Cybersecurity Authority.Reviews the implementation of periodic audits of cybersecurity procedures in the organization.Recommends activities related to establishing a framework for compliance management and managing the policy for exceptions.Provides advice on developing and implementing an information security controls compliance review plan and ensuring that any identified gaps are addressed.Determines the extent of compliance with relevant national and international information security laws and regulations.Provides advice on conducting and evaluating Compromised assessment and disaster response simulations.Recommends activities related to supervising and scheduling penetration tests, such as Red Team penetration attempts and email phishing simulations, in coordination with the relevant Information Technology department.Recommends tasks related to supervising the preparation and implementation of cybersecurity incident preparedness exercises (Table Top / Exercise Drill for Cybersecurity incidents) in coordination with the relevant departments within the administration.Reviews activities for assessing security awareness among users of the organization's systems.Determines plans and implementation programs for raising security awareness in coordination with various relevant organizational units within the organization.Reviews the preparation of information security awareness and educational programs and their delivery to beneficiaries within the organization.Recommends activities for implementing security awareness programs and working on their development.Recommends activities related to assessing technical projects to ensure their compliance with published standards.Adheres to the organization's policies and work behaviors and the procedures of the organizational unit.Performs any other tasks assigned by direct supervisors.Required ExperienceMinimum of 6 years of experience in a relevant field.EducationBachelor’s degree in cybersecurity or any related field.