{bc}
naukri

Cybersecurity Governance, Risk & Compliance (GRC) Specialist

Client of ITHR 360° CONSULTING FZE
, UAE
4-10 years
2 days ago
cybersecurityinformation securitynetwork securitySOCSIEMpenetration testing
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan

Key skills for this role

cybersecurityinformation securitynetwork security
Smart Apply

Full Job Posting

Role Overview

We are seeking an experienced Cybersecurity Governance, Risk & Compliance (GRC) Specialist to lead and support cybersecurity governance initiatives, risk management programs, compliance assessments, and security framework implementation across client environments.

The ideal candidate will possess strong knowledge of cybersecurity standards, regulatory requirements, risk assessment methodologies, and information security governance practices.

This role will work closely with clients, technical teams, and business stakeholders to ensure cybersecurity risks are effectively managed and compliance obligations are met.

Governance & Security Frameworks

  • Develop, implement, and maintain cybersecurity governance programs.
  • Establish and manage Information Security Management Systems (ISMS).
  • Support implementation and maturity assessments for frameworks such as: ISO 27001 NIST Cybersecurity Framework (CSF) NIST 800-53 CIS Controls PCI DSS GDPR UAE Information Assurance Standards NIS2 and other regional regulatory requirements where applicable.
  • Develop cybersecurity policies, procedures, standards, and guidelines.

Risk Management

  • Conduct enterprise cybersecurity risk assessments.
  • Perform risk identification, analysis, treatment, and reporting.
  • Maintain organizational risk registers and risk treatment plans.
  • Facilitate business impact assessments and control effectiveness reviews.
  • Present risk findings and recommendations to management and clients.

Compliance & Audit Management

  • Conduct compliance gap assessments and readiness reviews.
  • Support internal and external audits.
  • Coordinate evidence collection and remediation activities.
  • Track compliance obligations and regulatory requirements.
  • Develop compliance dashboards and executive reports.

Third-Party & Vendor Risk Management

  • Perform vendor security assessments.
  • Review supplier compliance and security controls.
  • Manage third-party risk remediation activities.
  • Support procurement and due diligence security reviews.

Security Awareness & Advisory

  • Deliver cybersecurity awareness and governance workshops.
  • Provide strategic cybersecurity guidance to clients and stakeholders.
  • Assist organizations in developing security roadmaps and compliance strategies.
  • Support virtual CISO (vCISO) engagements when required.

Reporting & Metrics

  • Prepare executive-level risk and compliance reports.
  • Develop and track cybersecurity KPIs and KRIs.
  • Monitor compliance status across multiple frameworks and client environments.

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today