Senior Compliance Specialist
Confidential Government · Riyadh, Saudi Arabia
Apply & track with Apply EdgeKey ResponsibilitiesContributes to conducting audits and monitoring compliance with cybersecurity-related controls and works to raise awareness of the importance of cybersecurity among all employees of the organization.Contributes to activities for monitoring the implementation of controls and recommendations issued by the National Cybersecurity Authority.Develops processes for preparing, compiling, and sharing periodic reports with the National Cybersecurity Authority.Contributes to conducting periodic audits of cybersecurity procedures within the organization.Develops processes for establishing a framework for compliance management and managing the policy related to exceptions.Develops a mechanism for implementing the compliance review plan for information security controls and ensuring that any identified gaps, if any, are addressed.Contributes to activities aimed at ensuring compliance with relevant national and international laws and regulations related to information security.Develops processes for conducting and evaluating Compromised assessment and disaster response simulations.Contributes to the tasks of supervising and scheduling penetration tests, such as Red Team penetration attempt testing and email phishing simulations, in coordination with the relevant Information Technology department.Contributes to the tasks of supervising the preparation and implementation of cybersecurity incident preparedness exercises (Table Top / Exercise Drill for Cybersecurity incidents), in coordination with the relevant departments within the organization.Develops processes for assessing security awareness among users of the organization's systems.Contributes to developing plans and executive programs to raise security awareness, in coordination with various relevant organizational units within the organization.Develops processes for preparing information security awareness and educational programs and delivering them to the organization's beneficiaries.Contributes to activities for implementing security awareness programs and works on developing them.Develops processes for evaluating technical projects to ensure their compliance with published standards.Adheres to the organization's policies, work behaviors, and procedures specific to the organizational unit.Performs any other tasks assigned by direct supervisors.Required ExperienceMinimum of 4 years of experience in a relevant field.EducationBachelor’s degree in cybersecurity or any related field.