Role summary
Qiddiya Investment Company is seeking a highly skilled and visionary Senior Manager - Cybersecurity Risk Management to lead cybersecurity initiatives in a rapidly evolving digital landscape. This critical role involves overseeing the development and implementation of a robust cybersecurity risk management strategy that safeguards assets while ensuring compliance with industry standards and regulations.
Responsibilities
- Develop and implement a comprehensive cybersecurity risk management framework tailored to organizational needs and regulatory requirements.
- Lead risk assessments and vulnerability assessments to identify threats and exposures associated with information systems.
- Oversee the creation and maintenance of a cybersecurity risk register, tracking and reporting on identified risks and mitigation efforts.
- Collaborate with IT, legal, and compliance teams to ensure cybersecurity measures align with overall enterprise risk management strategies.
- Drive the development and execution of training and awareness programs to ensure all employees understand their role in cybersecurity risk management.
- Prepare and present detailed reports on cybersecurity risks and compliance to executive leadership and stakeholders.
- Stay abreast of emerging cybersecurity threats and trends, providing strategic guidance to adapt risk management practices accordingly.
- Mentor and lead the cybersecurity risk management team, ensuring their professional growth and expertise in the field.
Qualifications
- Bachelor's degree in Cybersecurity, Information Technology, Risk Management, or a related field; master's degree preferred.
- 7+ years of experience in cybersecurity risk management or related roles, with substantial experience in leadership positions.
- Strong knowledge of cybersecurity frameworks, methodologies, and industry best practices (NIST, ISO 27001, COBIT).
- Expertise in risk assessment methodologies and risk mitigation strategies.
- Relevant certifications such as Certified Information Systems Security Professional (CISSP), Certified Risk Management Professional (CRMP), or equivalent highly desirable.
- Exceptional analytical, organizational, and communication skills.
- Proactive and strategic mindset capable of navigating complex cybersecurity challenges.
Education
Bachelor's degree in Cybersecurity, Information Technology, Risk Management, or a related field; master's degree preferred.
Experience
7+ years of experience in cybersecurity risk management or related roles, with substantial experience in leadership positions.
Skills
- Cybersecurity frameworks and methodologies (NIST, ISO 27001, COBIT)
- Risk assessment methodologies
- Risk mitigation strategies
- Analytical skills
- Organizational skills
- Communication skills
- Strategic thinking
- CISSP or CRMP certification or equivalent