ت

Chief Information Security Officer (CISO)

تعميد | Tameed

Riyadh, Riyadh Province, Saudi Arabia · Full Time

Be the first to apply

Experience
5+ yrs
Salary
Openings
1
Posted
3 weeks ago
Work mode
In office
Education
Bachelor’s degree
Eligibility
Applicants with a bachelor’s degree in IT, Computer Science, Information Security, Technology, or a related discipline, along with more than 5 years of relevant experience and strong English communication skills, are suitable for this role.
Resume
Required to apply

Where you'll work

Job description

About Tameed

Tameed is recognized as the first debt-based crowd lending platform focused on purchase order financing and is licensed by the Saudi Central Bank. The company operates from Riyadh, Saudi Arabia.

Position Overview

Tameed is hiring a Chief Information Security Officer (CISO) to strengthen its cybersecurity leadership team in Riyadh. This role is responsible for overseeing security governance, operational controls, compliance, and risk management across the organization and its vendors.

Key Responsibilities

  • Head the cybersecurity general department and provide leadership across all related activities.
  • Oversee cybersecurity operations for assigned global services and vendors to ensure alignment with corporate and regulatory expectations.
  • Prepare and present cybersecurity updates and status reports to senior leadership.
  • Review, facilitate, and validate cybersecurity controls and standards across vendors and services in line with Tameed requirements and external regulatory obligations.
  • Track, manage, and report the compliance position of assigned vendors and services at a global level.
  • Support the rollout of cybersecurity controls, policies, and standards.
  • Drive cybersecurity awareness and training initiatives across the organization.
  • Implement and continuously monitor the SAMA cybersecurity framework.
  • Plan, deploy, and oversee SOC operations, including incident remediation.
  • Set up and monitor cybersecurity tools and respond to security incidents when they occur.
  • Support third-party vendors with implementation, monitoring, and remediation activities.
  • Assess third parties based on business needs and security requirements.
  • Ensure vendors comply with Tameed’s cybersecurity policies and standards.
  • Develop policies and procedures required under the SAMA cybersecurity framework.
  • Ensure employees across all departments follow cybersecurity policies and standards.
  • Educate staff on cybersecurity risks through virtual or in-person training sessions.
  • Lead penetration testing and vulnerability assessments, followed by remediation of findings.
  • Conduct audits and risk assessments for Tameed and close identified gaps.
  • Work within the company’s QMS environment.
  • Address and close regulatory compliance gaps.
  • Run weekly cybersecurity meetings.
  • Provide weekly cybersecurity status updates to the CEO and committee.
  • Define and maintain cybersecurity strategy, policy, architecture, and risk management processes.

Requirements

  • A bachelor’s degree in IT, Computer Science, or a related area such as Information Security or Technology.
  • Preferred GPA of at least 3.5/5 or 2.5/4.
  • More than 5 years of experience in GRC, IT or security operations, SOC functions, or networking.
  • Working knowledge of Microsoft Word, Project, Excel, Access, and Visio.
  • Strong English communication skills.
  • Good teamwork, analytical thinking, and problem-solving abilities, with the ability to communicate effectively with stakeholders.
  • Positive mindset and willingness to contribute to projects and resolve technical issues.
  • Ability to handle multiple priorities and responsibilities at the same time.
  • Excellent time management and the ability to stay effective under pressure.
  • Comfortable collaborating across teams and managing several projects at once.
  • Up-to-date understanding of IT trends and cybersecurity standards.
  • Strong business writing and technical documentation skills.
  • Technical knowledge of SIEM solutions.
  • Familiarity with programming languages such as SQL, C, C++, C#, Java, or PHP.
  • Solid understanding of TCP/IP, networking, routing, and switching.
  • Experience with penetration testing and vulnerability testing.
  • Hands-on knowledge of firewalls and intrusion detection/prevention systems.
  • Experience with Windows, UNIX, and Linux operating systems.
  • Understanding of network protocols and packet analysis tools.
  • Knowledge of anti-virus and anti-malware tools.

Working Hours and Benefits

  • This is a full-time position.
  • Working hours are from 9:00 AM to 5:00 PM.
  • Employees receive 30 days of annual leave.

Additional Information

The opening date for this role is 29-06-2026 and the closing date is 12-07-2026.

Candidates were instructed to apply through the company’s official website or LinkedIn account.

Leave it if you'd like a reply — we won't use it for anything else.

Click to browse, drag & drop, or paste a screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Max 20MB each · Up to 5 files

🤖
Online · instant AI help