Director of Information Security - GRC
Job Fit Check
Base Career helps you apply smarter for this job.
Key skills for this role
About the Role
Information Security – GRC will lead the design, implementation and continuous., stakeholder engagement at board and executive levels, and the leadership of.
Key Skills for This Role
Full Job Posting
About the Role
The Director of Information Security – GRC will lead the design, implementation and continuous improvement of the organization’s governance, risk and compliance programs across Saudi Arabia.
This role requires strategic oversight of multiple regulatory frameworks, stakeholder engagement at board and executive levels, and the leadership of a high-performing GRC team to ensure robust information security posture and regulatory alignment.
Responsibilities
- Develop and maintain an integrated information security governance framework aligned with ISO 27001, NIST CSF, COBIT, NCA ECC and SAMA CSF
- Drive risk management processes, including identification, assessment, treatment and reporting of information security risks
- Oversee compliance monitoring activities to ensure adherence to GDPR, PDPL and relevant local regulations
- Lead audit response efforts, coordinate internal and external audits, and ensure timely remediation of findings
- Manage third-party assurance and vendor risk assessments to uphold security standards across the supply chain
- Provide strategic counsel and regular reporting to the Board of Directors and executive leadership on GRC metrics, trends and initiatives
- Engage with regulatory bodies, including SAMA and NCA, to interpret requirements and influence regulatory developments
- Recruit, mentor and develop a skilled GRC team fostering a culture of accountability and continuous improvement
- Collaborate with cross-functional teams to integrate GRC principles into business processes and technology initiatives
Required Qualifications
- 12–18 years of progressive experience in information security governance, risk and compliance
- Proven technical expertise with ISO 27001, NIST CSF, COBIT, NCA ECC and SAMA CSF frameworks
- In-depth knowledge of GDPR and PDPL requirements
- Demonstrated experience in cybersecurity governance and enterprise risk management
- Strong background in compliance monitoring, audit response and third-party assurance
- Excellent team leadership skills with experience managing multidiscipline security teams
- Exceptional communication skills, with proven ability to present to board members and senior executives
- Experience engaging with regulatory authorities in the Middle East region
Preferred Qualifications
- Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM) or CRISC
- ISO 27001 Lead Auditor or Implementer certification
- Prior experience in Saudi Arabian financial services or regulated industries
- Advanced degree in Information Security, Cybersecurity, Risk Management or related field
- Fluency in Arabic
- Experience leading GRC initiatives during major digital transformation programs
Apply for this job in 1 click
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
More jobs at TASC Outsourcing
GRC Data Governance Manager
Abu Dhabi, UAE
About the Role: We are seeking a GRC Data Governance Manager to lead and mature our data governance program in the United Arab Emirates. The successful candidate will drive ente...
Senior Cyber GRC Consultant
Abu Dhabi, UAE
About the Role: We are seeking a Senior Cyber GRC Consultant to join our team in the United Arab Emirates. In this role, you will lead governance, risk, and compliance engagemen...
Senior Governance, Risk & Compliance Officer
Abu Dhabi, UAE
About the Role: We are seeking a Senior Governance, Risk & Compliance Officer based in the United Arab Emirates to lead and enhance our GRC framework. The ideal candidate will h...
GRC Compliance Manager
Abu Dhabi, UAE
About the Role: The GRC Compliance Manager will lead and oversee governance, risk, and compliance activities for our Saudi Arabia operations, ensuring adherence to regulatory re...
Director of Information Security - GRC
Abu Dhabi, UAE
About the Role: The Director of Information Security – GRC will lead the design, implementation and continuous improvement of the organization’s governance, risk and compliance ...
Governance, Risk, and Compliance Audit Consultant
Abu Dhabi, UAE
About the Role: We are seeking a Governance, Risk, and Compliance Audit Consultant to join our team in Saudi Arabia. The successful candidate will lead and execute internal audi...
GRC Audit Manager
Abu Dhabi, UAE
About the Role: The GRC Audit Manager in Saudi Arabia will lead and oversee internal audit engagements, evaluate governance, risk management, and control environments, and drive...
CRM Team Leader
Dubai, UAE
Key Responsibilities Team Leadership Lead, mentor, and develop a team of CRM Specialists ensuring high performance and KPI achievement Manage workload distribution, training, coaching, and performance reviews Build a
GRC Data Governance Manager
Abu Dhabi, UAE
Senior Cyber GRC Consultant
Abu Dhabi, UAE
Senior Governance, Risk & Compliance Officer
Abu Dhabi, UAE
GRC Compliance Manager
Abu Dhabi, UAE
Director of Information Security - GRC
Abu Dhabi, UAE
Governance, Risk, and Compliance Audit Consultant
Abu Dhabi, UAE
GRC Audit Manager
Abu Dhabi, UAE
CRM Team Leader
Dubai, UAE

