Company logo hidden

Information Security Risk Assessment Manager

Unlock employer Riyadh, Saudi Arabia Posted: 14 Apr 2026

Financial

  • Estimate: $80k - $120k*
  • Zero income tax location

Accessibility

  • Office Only
  • Visa Provided

Requirements

  • Experience: Intermediate
  • English: Professional

Position

The Information Security Risk Assessment Manager is responsible for managing the enterprise-wide cybersecurity risk management program. This role entails conducting threat modeling, developing and maintaining risk assessment methodologies, and playing a critical role in identifying and assessing cybersecurity risks to protect the organization's information assets.

Ready to apply for roles like this?

Unlock the company name and direct application link. Subscribers get instant access to fresh jobs across Dubai, Abu Dhabi and Riyadh, many with visa support.

Unlock employer & apply directly

Key Responsibilities:

  • Conduct detailed, risk-based Cybersecurity Risk Assessments during IT and cybersecurity engagements, adhering to Service Level Agreements (SLAs).
  • Maintain awareness of industry best practices in Information Security and address potential policy gaps.
  • Liaise with end users to explain cybersecurity risks and promote initiatives for risk prevention.
  • Advise IT and business units on strategies for managing identified cybersecurity risks.
  • Execute comprehensive Cybersecurity Risk Assessments before system go-live.
  • Conduct cybersecurity threat modeling and risk assessments for IT projects and existing systems.
  • Review and validate Cybersecurity Risk Assessment results in collaboration with other cybersecurity teams.
  • Customize and optimize the Cybersecurity risk assessment platform for accuracy.
  • Review and update Cybersecurity Risk Management documentation to align with regulatory practices.
  • Manage the periodic Cybersecurity Assessment Plan, ensuring critical systems undergo regular security reviews.
  • Provide quarterly reports on cybersecurity risks, highlighting priority risks for action.

Qualifications and Experience:

  • Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Information Security, or a related discipline.
  • Minimum of 3 years of professional experience in cybersecurity risk management, governance, IT audit, or a similar field, ideally within the financial or banking sector.
  • Experience with compliance to SAMA CSF and NCA ECC is preferred.

Location: Riyadh, Saudi Arabia
Work Conditions: On-site, Full-time
Working Hours: 8:00 AM to 5:00 PM (Sunday to Thursday)

Apply Direct

Jobs you might like   View all jobs

Ready to apply for this role?

Apply Direct