Cybersecurity GRC Manager

HALA
Riyadh
Full timeFunction: CybersecuritySkills: []

Own HALA Payments’ cybersecurity governance, risk, and compliance program by developing security frameworks, strategy, metrics, and KPI reporting for executive leadership and the Board. Lead enterprise-wide cyber risk management including BIAs, risk treatment with stakeholders, and vendor risk oversight. Serve as SME for regulatory audits and continuous compliance with SAMA CSF and PCI DSS, managing audit remediation and control testing, plus security awareness and culture programs.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
HALA
HALA
1 day ago

Cybersecurity GRC Manager

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 8 hours agoStatus: Live
Reposted: similar role first listed 9 months ago

Job Summary

Own HALA Payments’ cybersecurity governance, risk, and compliance program by developing security frameworks, strategy, metrics, and KPI reporting for executive leadership and the Board. Lead enterprise-wide cyber risk management including BIAs, risk treatment with stakeholders, and vendor risk oversight. Serve as SME for regulatory audits and continuous compliance with SAMA CSF and PCI DSS, managing audit remediation and control testing, plus security awareness and culture programs.
Location: Riyadh
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Manager level

Key Responsibilities

  • •Develop, implement, and continuously improve the organization’s information security governance framework, policies, standards, and procedures.
  • •Lead the creation and execution of the cybersecurity strategy aligned to business goals and report regularly to the Board and executive management.
  • •Design and manage an enterprise-wide cybersecurity risk management program, including risk assessments with BIAs and risk treatment planning with business and technology owners.
  • •Serve as primary point of contact for regulatory examinations and audits; ensure continuous compliance with SAMA CSF, PCI DSS, and other applicable regulations while managing regulatory reporting and evidence.
  • •Manage internal and external security audits, control testing, and remediation closure; develop and deliver security awareness and training programs.

Pay and Benefits

Equity and Bonus:Equity
Perks:Learning BudgetEquity

Key Requirements

Languages:English
Tech Stack:Information security governanceCybersecurity strategyCybersecurity risk managementBusiness impact analysis (BIA)Vendor risk managementSDLCChange managementSAMA Cyber Security Framework (CSF)PCI DSSAudit remediationSecurity awareness training

Company Brief

HALA
Provides a mobile-first neobanking platform delivering digital financial services such as virtual cards, payments, and expense management to consumers and small businesses, aiming to simplify everyday banking and cross-border transactions in the region.
Industry: Neobanking
Website