GRC Specialist

CCDS

Job Overview

Location

Riyadh, Riyadh Province, Saudi Arabia

Employment Type

Full-time

Work Arrangement

On-site

Sector

Information Technology & Software

Experience Level

Junior (1-3 years)

Application Deadline

June 17, 2026

About the Company

CCDS is dedicated to simplifying enterprise security through comprehensive end-to-end info-tech and next-generation cybersecurity services and solutions.

Their mission is to empower enterprises to meet stringent compliance requirements and protect their businesses from a wide array of security threats.

Job Description

CCDS is seeking a qualified and motivated IT GRC Specialist to join their team in Riyadh. This pivotal role involves managing IT governance, risk, and compliance in strict adherence to SDAIA, ISO standards, and NCA regulations.

You will collaborate closely with internal and external stakeholders to ensure IT operations align with national cybersecurity directives and international best practices. The ideal candidate is a proactive professional adept at assessing risks, implementing effective controls, and maintaining a robust cybersecurity posture.

To apply for this role, click the Apply button on this page and follow the instructions.

Required Skills

IT GovernanceRisk ManagementComplianceSDAIAISO 27001NCA RegulationsRisk AssessmentAuditingPolicy DevelopmentCybersecurity

Key Responsibilities

  • Implement and manage IT GRC frameworks aligned with SDAIA, ISO standards, and NCA guidelines.
  • Conduct risk assessments, compliance audits, and gap analysis to identify and mitigate IT risks.
  • Develop and maintain policies, procedures, and documentation related to IT governance and compliance.
  • Monitor compliance status and prepare reports for senior management and regulatory bodies.
  • Collaborate with relevant teams to ensure adherence to cybersecurity policies and regulations.
  • Provide training and awareness sessions on GRC topics to relevant stakeholders.
  • Stay updated with regulatory changes and industry best practices in cybersecurity and IT governance.

Qualifications

  • Saudi Nationality is required.
  • Bachelor’s degree in Information Technology, Cybersecurity, or related field.
  • Minimum of 2 years of experience in IT GRC roles.
  • Strong knowledge and practical experience with SDAIA, ISO (particularly ISO 27001), and NCA requirements.
  • Experience in conducting risk assessments and compliance audits.
  • Ability to develop and implement IT governance policies and procedures.
  • Excellent communication and interpersonal skills.
  • Relevant certifications such as CISA, CISM, CRISC, or ISO 27001 Lead Implementer/Auditor are advantageous.

Benefits & Perks

  • Paid Time Off
  • Performance Bonus
  • Private Family Medical Insurance
  • Training & Development plan

How to Apply

To apply for this role, click the Apply button on this page and follow the instructions.

Join Our Communities

The cybersecurity landscape in Saudi Arabia is rapidly evolving, driven by increasing digital transformation and a focus on national security. As a GRC Specialist, you will be instrumental in navigating this complex environment. Your expertise in IT governance, risk, and compliance will be crucial for implementing robust frameworks aligned with SDAIA, ISO 27001, and NCA regulations. This role demands a strategic approach to risk assessment, policy development, and continuous monitoring, directly impacting the organization's security posture and its ability to meet stringent compliance requirements. Your contributions will be vital in safeguarding sensitive data and ensuring operational integrity.

Posted Date

June 3, 2026