Cybersecurity GRC Specialist
Tibah Airports Operation | طيبة لتشغيل المطارات
Medina, Al Madinah, Saudi Arabia · 全职
抢先申请
- 经验
- 3年以上
- 薪水
- —
- 职位空缺
- 1
- 发布
- 16 小时前
- 工作模式
- 在办公室
- 学历
- 学士学位
- 恢复
- 需要申请
你的工作地点
职位描述
About Tibah Airports Operation
Tibah Airports Operation Co. is a premier aviation management firm responsible for running Prince Mohammad Bin Abdulaziz International Airport in Madinah, Saudi Arabia. Dedicated to superior operational standards and safety, Tibah emphasizes rigorous risk management and adherence to regulations to ensure smooth and secure airport functions.
Job Purpose
The Cybersecurity GRC Specialist will play a key role in advancing the organization’s cybersecurity governance, risk management, and compliance initiatives. This position ensures cybersecurity policies, controls, and frameworks are appropriately applied, monitored, and meet regulatory and operational standards, spanning IT and OT/ICS environments.
Key Duties
- Oversee and implement comprehensive cybersecurity strategies, policies, standards, and protocols throughout the organization.
- Conduct thorough cybersecurity risk assessments identifying vulnerabilities and threats within both IT and Operational Technology/Industrial Control Systems landscapes.
- Create and monitor mitigation plans to address identified cybersecurity risks, ensuring swift and effective resolution.
- Ensure all IT functions and processes comply with defined cybersecurity policies, industry standards, and legal requirements.
- Develop, periodically review, and update cybersecurity policies and procedures, including those specifically for OT/ICS infrastructures.
- Support compliance with applicable cybersecurity laws, standards, and regulatory frameworks.
- Assist in integrating security requirements into new or evolving systems, services, and projects.
- Provide governance, risk, and compliance advisory to IT, OT, and business teams for secure and compliant operations.
- Compile and present regular cybersecurity risk and compliance reports to management.
- Continuously assess the cybersecurity compliance status and recommend enhancements for identified gaps.
- Implement and promote cybersecurity training programs to strengthen organizational security culture.
- Assist with internal and external audits and cybersecurity evaluations.
- Stay updated on evolving cybersecurity threats, risks, and regulatory changes pertinent to airports and critical infrastructure.
- Perform other related duties as assigned in cybersecurity governance, risk, and compliance.
Candidate Profile and Requirements
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a closely related field.
- Certified in Risk and Information Systems Control (CRISC).
- Minimum three years of experience in cybersecurity roles, including at least one to two years in cybersecurity governance, risk management, and compliance.
- Exposure to regulated industries, critical infrastructure, or airport operations is considered advantageous.
- Fluent in both Arabic and English languages.
- In-depth understanding of cybersecurity domains and best practices.
- Strong expertise in Governance, Risk, and Compliance frameworks and managing GRC programs.
- Knowledge of cybersecurity incident response processes.
- Familiarity with cybersecurity standards such as ISO 27001, NIST, and CIS.
- Insight into IT and OT/ICS security principles and practices.