Apply Edge Start your job search

Senior Governance, Risk & Compliance (GRC) Specialist - Banking

TAWANTECH · Riyadh, Riyadh, Saudi Arabia

Apply & track with Apply Edge
We are seeking an experienced Senior GRC Specialist to lead and strengthen the Bank's Governance, Risk, and Compliance framework. The successful candidate will be responsible for ensuring compliance with regulatory requirements, industry standards, and internal governance policies while driving enterprise risk management initiatives. The role requires close collaboration with business, IT, Information Security, Internal Audit, Compliance, and regulatory authorities to maintain a strong control environment.Key ResponsibilitiesDevelop, implement, and maintain Governance, Risk & Compliance (GRC) policies, standards, frameworks, and proceduresLead enterprise-wide risk assessments and maintain the organization's risk registerIdentify, assess, monitor, and report operational, technology, cybersecurity, and compliance risksEnsure compliance with banking regulations, regulatory requirements, and internal governance policiesPerform control assessments and gap analyses to evaluate the effectiveness of security and compliance controlsCoordinate internal audits, external audits, and regulatory examinations, ensuring timely remediation of findingsTrack audit observations, compliance issues, and risk mitigation plans through closurePrepare governance reports, compliance dashboards, and executive-level risk reportsEnsure compliance with PCI DSS (Payment Card Industry Data Security Standard) requirements and support PCI DSS assessments, audits, evidence collection, and remediation activitiesCollaborate with business and IT teams to implement and maintain PCI DSS security controls across payment environmentsSupport compliance initiatives related to ISO 27001, NIST CSF, COBIT, and other applicable regulatory and security frameworksConduct third-party and vendor risk assessmentsReview new projects, systems, and technology initiatives from governance, risk, and compliance perspectivesPromote risk awareness by delivering GRC and compliance training across the organizationStay current with emerging regulatory requirements and recommend improvements to governance and compliance processesRequirementsBachelor's degree in Information Technology, Information Security, Computer Science, Cybersecurity, Risk Management, Business Administration, or a related field9+ years of experience in Governance, Risk & Compliance within the banking or financial services industryStrong knowledge of banking regulations and regulatory compliance requirementsHands-on experience with Enterprise Risk Management (ERM), IT Risk, Operational Risk, and Compliance ManagementExperience managing internal and external audits and regulatory inspectionsExperience with GRC platforms such as RSA Archer, ServiceNow GRC, MetricStream, or equivalentStrong understanding of Information Security Governance and internal control frameworksExperience with PCI DSS compliance programs, assessments, remediation, and audit coordinationExcellent analytical, documentation, communication, and stakeholder management skills