ASMO

Cybersecurity Risk Analyst

ASMO

Saudi Arabia · Full Time

Be the first to apply

Experience
5+ yrs
Salary
Openings
1
Posted
4 ore fa
Work mode
In office
Education
Bachelor's degree in Information Technology or equivalent
Resume
Required to apply

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

Role Overview

The Cybersecurity Risk Analyst will be responsible for creating and implementing quality assurance benchmarks for the Technology division at ASMO, while overseeing IT standards and ensuring compliance within the organization.

Key Responsibilities

  • Design and support execution of the Information Security Risk Management Framework, focusing on internal policies, standards, and regulations.
  • Identify, evaluate, and manage information security risks according to the established framework, while developing and maintaining Key Risk Indicators (KRIs) for critical information assets.
  • Monitor remediation and treatment plans on scheduled intervals and keep the security risk register updated.
  • Collaborate with various departments to assist and enforce necessary information risk mitigation strategies.
  • Develop and update Information Security policies and procedures ensuring alignment with ASMO standards and applicable regulatory requirements.
  • Implement countermeasures to risks while ensuring compliance with policies to safeguard technology operations.
  • Analyze monthly business risk reports to pinpoint function-specific risks from a policy angle.
  • Audit system activities, perform spot checks, analyze security incidents, and recommend policy changes coordinated with respective departments.
  • Conduct security assessments for new software, establish setup standards, and supervise integration of security needs into Technology Infrastructure to maintain compliance.
  • Offer risk-based information security guidance for IT projects, ensuring appropriate controls are embedded to meet security objectives.
  • Stay informed on industry best practices and emerging standards in Information Security; evaluate potential threats and suggest policy enhancements.
  • Manage all security-related observations and incidents promptly.
  • Engage with end-users to clarify security risks, emphasize the role of employees in fraud prevention, and lead awareness initiatives.
  • Plan and deliver educational sessions to enhance Information Security awareness within the organization.

Qualifications

  • Bachelor’s degree in Information Technology or equivalent field.
  • Certified Data Privacy Solutions Engineer (CDPSE) certification is preferred.
  • Minimum of five years’ experience in a similar or related cybersecurity or IT role.
  • Background in IT, Data Solutions, Networking, or Cybersecurity is advantageous.
  • Strong proficiency in both oral and written English.

Minimum education

Bachelor's Degree

How they work

Communication

Languages

English
🤖
Online · instant AI help