GRC Specialist
CCDS
Job Overview
Location
Riyadh, Riyadh Province, Saudi Arabia
Employment Type
Full-time
Work Arrangement
On-site
Sector
Information Technology & Software
Experience Level
Junior (1-3 years)
Application Deadline
June 17, 2026
About the Company
CCDS is dedicated to simplifying enterprise security through comprehensive end-to-end info-tech and next-generation cybersecurity services and solutions.
Their mission is to empower enterprises to meet stringent compliance requirements and protect their businesses from a wide array of security threats.
Job Description
CCDS is seeking a qualified and motivated IT GRC Specialist to join their team in Riyadh. This pivotal role involves managing IT governance, risk, and compliance in strict adherence to SDAIA, ISO standards, and NCA regulations.
You will collaborate closely with internal and external stakeholders to ensure IT operations align with national cybersecurity directives and international best practices. The ideal candidate is a proactive professional adept at assessing risks, implementing effective controls, and maintaining a robust cybersecurity posture.
To apply for this role, click the Apply button on this page and follow the instructions.
Required Skills
Key Responsibilities
- Implement and manage IT GRC frameworks aligned with SDAIA, ISO standards, and NCA guidelines.
- Conduct risk assessments, compliance audits, and gap analysis to identify and mitigate IT risks.
- Develop and maintain policies, procedures, and documentation related to IT governance and compliance.
- Monitor compliance status and prepare reports for senior management and regulatory bodies.
- Collaborate with relevant teams to ensure adherence to cybersecurity policies and regulations.
- Provide training and awareness sessions on GRC topics to relevant stakeholders.
- Stay updated with regulatory changes and industry best practices in cybersecurity and IT governance.
Qualifications
- Saudi Nationality is required.
- Bachelor’s degree in Information Technology, Cybersecurity, or related field.
- Minimum of 2 years of experience in IT GRC roles.
- Strong knowledge and practical experience with SDAIA, ISO (particularly ISO 27001), and NCA requirements.
- Experience in conducting risk assessments and compliance audits.
- Ability to develop and implement IT governance policies and procedures.
- Excellent communication and interpersonal skills.
- Relevant certifications such as CISA, CISM, CRISC, or ISO 27001 Lead Implementer/Auditor are advantageous.
Benefits & Perks
- Paid Time Off
- Performance Bonus
- Private Family Medical Insurance
- Training & Development plan
How to Apply
To apply for this role, click the Apply button on this page and follow the instructions.
Join Our Communities
The cybersecurity landscape in Saudi Arabia is rapidly evolving, driven by increasing digital transformation and a focus on national security. As a GRC Specialist, you will be instrumental in navigating this complex environment. Your expertise in IT governance, risk, and compliance will be crucial for implementing robust frameworks aligned with SDAIA, ISO 27001, and NCA regulations. This role demands a strategic approach to risk assessment, policy development, and continuous monitoring, directly impacting the organization's security posture and its ability to meet stringent compliance requirements. Your contributions will be vital in safeguarding sensitive data and ensuring operational integrity.
Posted Date
June 3, 2026
OT Cybersecurity Engineer
Managed Services
Cyber Security GRC Manager
JAK Finances
Cybersecurity, Specialist
Master-Works
Cybersecurity, Specialist
Master Works
IT Security (EA - SBO)
Providus Bank
Analyste en cybersécurité sénior
Solution SFT
Information Security Analyst
Al-Watania Information Systems
Cyber Threat Intelligence (CTI) Analyst
Confidential Employer
Security Analyst L1
ProArch
Cyber Security Strategist
Civica