Apply Edge Start your job search

Cybersecurity RISK ASSESSOR

Shabakkat KSA (Member of IPT PowerTech Group) · Riyadh Region

Apply & track with Apply Edge

Job Summary – Cybersecurity Risk AssessorThe Cybersecurity Risk Assessor is responsible for identifying, assessing, and managing cybersecurity risks in line with SAMA CSF requirements. The role involves conducting various cyber risk assessments, reviewing security controls, and ensuring cybersecurity considerations are integrated into organizational processes and changes.Key ResponsibilitiesUnderstand SAMA CSF requirements related to cybersecurity risk management and compliance.Conduct Application Risk Assessments to identify security vulnerabilities and risks.Conduct Product Risk Assessments for SAMA NOC-related products and services.Conduct Outsourcing Risk Assessments for vendors and outsourced services related to SAMA NOC.Perform Third-Party Risk Assessments to evaluate vendor cybersecurity posture and compliance.Review Change Management activities from a cybersecurity perspective to ensure security risks are properly addressed before implementation.Review Firewall configurations and access rules from a cybersecurity perspective to identify security gaps and policy violations.Identify, document, and report cybersecurity risks along with mitigation recommendations.Coordinate with internal teams and stakeholders to ensure effective risk remediation and compliance.Prepare risk assessment reports and maintain proper documentation for audit and management review.Required Skills & QualificationsRequired Skills & QualificationsGood understanding of SAMA CSF and cybersecurity risk management practices.Knowledge of application security, network security, and third-party risk management.Familiarity with firewall reviews and change management processes.Strong analytical, reporting, and documentation skills.Ability to communicate cybersecurity risks and recommendations effectively.Bachelor’s degree in Cybersecurity, IT, Computer Science, or related field preferred.Relevant cybersecurity certifications (CISSP, CISM, CRISC, ISO 27001, etc.) are an added advantage.