Analyst, Information Security
Job Fit Check
Base Career helps you apply smarter for this job.
Key skills for this role
About the Role
Support information security governance, risk management, and program development while assisting in compliance with regulations and standards; requires a degree in IT or relate.
Key Skills for This Role
Full Job Posting
Overview
The Information Security Analyst supports the Governance, Risk, and Compliance (GRC) function by assisting in the documentation, monitoring, and coordination of information security activities across the organization.
The role contributes to maintaining a robust information security governance framework, supporting risk assessment processes, and helping ensure alignment with applicable regulatory requirements and industry standards (including SAMA, PDPL, ISO 27001, and PCI-DSS).
Working under the guidance of senior GRC professionals, the role serves as a key operational contributor to the organization's overall information security program, awareness initiatives, and compliance monitoring efforts.
Information Security Governance Tasks
- Assist in maintaining documentation related to the information security governance framework.
- Support efforts to ensure information security initiatives remain aligned with business objectives and regulatory requirements.
- Help in gathering and updating information related to legal and regulatory requirements affecting information security (e.g., GDPR, SAMA, ISO27001, PCI-DSS).
- Participate in identifying organisational drivers (technology, risk tolerance, business changes) and documenting their impact on information security.
- Assist in maintaining role and responsibility matrices for information security across the organisation.
- Support the preparation of internal and external communication materials related to information security governance.
Information Risk Management Tasks
- Support the identification and documentation of information assets and their owners as part of asset classification activities.
- Assist in execution and documentation of basic information security risk assessments.
- Participate in business impact assessment (BIA) data collection activities.
- Support ongoing threat and vulnerability assessment activities by gathering data and preparing reports.
- Help in documenting existing controls and supporting the evaluation of their effectiveness.
- Assist in integrating risk and vulnerability data into lifecycle processes (e.g., procurement checks, project reviews).
- Assist in preparing risk reports and highlighting significant changes for review by senior staff.
Information Security Program Development Tasks
- Assist in maintaining documentation supporting the information security program and strategy.
- Support tracking of cybersecurity activities, including SOC alerts and compliance monitoring.
- Help monitor adherence to cybersecurity policies, standards, and procedures.
- Assist in the investigation process for cybersecurity incidents by collecting logs or reports from relevant teams.
- Support threat intelligence gathering from internal and publicly available sources.
- Help coordinate cybersecurity reviews, audits, and assessments.
- Assist in maintaining information security awareness materials, training schedules, and communication plans.
- Support documentation and updates of standards, procedures, guidelines, and baselines.
- Assist in integrating information security requirements into procurement or project documentation.
- Help track program metrics (KPIs/KRIs) and prepare dashboards or reports.
Generic
- Support the maintenance of information security policies, standards, processes, and architecture documentation.
- Assist in information security initiatives across business and technology teams.
- Support establishing and monitoring compliance with information security policies, standards, and relevant regulations.
- Assist in performing information security reviews and preparing related reports.
- Support classification of information and systems and document security requirements for key projects.
- Assist in delivering information security awareness activities and materials.
- Help measure and track security-related KPIs and KRIs.
- Provide general administrative and analytical support to the GRC and Information Security teams.
Apply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
More jobs at tabby
Analyst, Information Security
Saudi Arabia, KSA
Support security architecture, cloud security, secure software development lifecycle, and incident response in a fast-paced Fintech environment, requiring a degree in IT or rela...
Senior Backend Engineer II
Dubai, UAE
Develop backend for AI agent platform, utilizing Golang and Python, while ensuring scalability and performance in a collaborative, high-growth environment.
In-Store Success Executive (In-store Sales Executive)
United Arab Emirates, UAE
The role involves outbound sales, merchant acquisition, negotiation, and market engagement, requiring prior sales experience and fluency in English and Arabic.
Senior Data Analyst
Riyadh, KSA
This role involves analytics, reporting, process optimization, SQL querying, dashboard building, automation, and cross-functional collaboration using AI tools.
Senior Risk Analyst
Riyadh, KSA
Prepare datasets for risk analysis, enhance assessment frameworks, develop fraud prevention strategies, and mentor junior analysts with strong SQL and Python skills.
Information Security Engineer - VAPT
Riyadh, KSA
The role involves penetration testing, vulnerability assessment, and security analysis, requiring strong communication skills and knowledge of information technology security.
Senior ServiceDesk Reliability Engineer - SDRE
Riyadh, KSA
The role involves Terraform expertise, SRE fundamentals, Go/Python scripting, Jira Service Management automation, GCP tasks, and strong teamwork and communication skills.
Process (System) Analyst (Emiratisation)
Dubai, UAE
Analyze and optimize business processes, implement automation tools, collaborate with stakeholders, and monitor performance metrics for continuous improvement.
Analyst, Information Security
Saudi Arabia, KSA
Senior Backend Engineer II
Dubai, UAE
In-Store Success Executive (In-store Sales Executive)
United Arab Emirates, UAE
Senior Data Analyst
Riyadh, KSA
Senior Risk Analyst
Riyadh, KSA
Information Security Engineer - VAPT
Riyadh, KSA
Senior ServiceDesk Reliability Engineer - SDRE
Riyadh, KSA
Process (System) Analyst (Emiratisation)
Dubai, UAE
