Company logo hidden

GRC Consultant (Compliance)

Unlock employer Riyadh, Saudi Arabia Posted: 21 Oct 2025

Financial

  • Estimate: $40k - $60k*
  • Zero income tax location

Accessibility

  • Hybrid
  • Visa Provided

Requirements

  • Experience: Intermediate
  • English: Professional

Position

Help AG, an e& enterprise company, is seeking an experienced GRC Consultant who will be responsible for compliance management and alignment with national cybersecurity regulations, such as the National Cybersecurity Authority (NCA) Essential Cybersecurity Controls (ECC) and SDAIA data governance frameworks. The role entails conducting compliance assessments, developing compliance frameworks, collecting evidence, and advising on regulatory readiness and compliance status. The GRC Consultant will work independently and as part of a cross-functional team, led by a project or program manager.

Ready to apply for roles like this?

Unlock the company name and direct application link. Subscribers get instant access to fresh jobs across Dubai, Abu Dhabi and Riyadh, many with visa support.

Unlock employer & apply directly

Responsibilities:

  • Conduct compliance assessments aligned with local (e.g., NCA, SDAIA) and international standards, considering regulatory changes.
  • Perform gap analyses on internal controls and external regulatory requirements.
  • Review and update compliance-related policies, procedures, and frameworks.
  • Promote GRC objectives to foster a compliance-aware culture.
  • Engage stakeholders through structured interviews and validate findings collaboratively.
  • Establish workflows to track cybersecurity compliance, monitor compliance status, audit findings, and remediation efforts.
  • Facilitate evidence collection for assessments and audits.
  • Develop gap analysis reports, mitigation plans, and resolution roadmaps.
  • Define and prioritize compliance enhancement roadmaps based on strategic goals and budget.
  • Map regulatory controls to internal policies and standards for traceability and coverage.

Qualifications & Skills:

  • Currently residing in Saudi Arabia.
  • Minimum of 3-5 years of working experience in the KSA market in a similar capacity.
  • Hands-on experience in compliance management, assessments, and regulatory compliance.
  • Excellent working knowledge of NCA Controls Frameworks, SDAIA Regulations, SAMA CSF, CITC standards, ISO/IEC 270XX, ISO 22301, and ISO/IEC 20000-1.
  • Strong consulting skills with a customer and business focus.
  • University degree in a technical subject related to IT and/or Information Security.
  • Proven track record in implementing cybersecurity-related frameworks.
  • Good communication and interpersonal skills.
  • Ability to understand complex business processes and activities.
  • Flexible work approach based on job requirements.
  • Industry professional certifications such as CISSP, CISM, and CISA are desirable.

Benefits:

  • Health insurance with a leading global provider.
  • Career progression and growth through challenging projects.
  • Employee engagement and wellness campaigns throughout the year.
  • Excellent learning and development opportunities.
  • Inclusive and diverse working environment.
  • Flexible/Hybrid working options.
  • Open door policy.
Apply Direct

Jobs you might like   View all jobs

Ready to apply for this role?

Apply Direct