Total-TECH Co.
” The Job Description”
- Lead or support the implementation of cybersecurity governance, risk, and compliance programs.
- Conduct risk assessments, gap analyses, and security audits aligned with national and international standards (e.g., NCA ECC, ISO 27001, NIST).
- Develop and maintain security policies, procedures, and documentation in accordance with compliance requirements.
- Ensure compliance with government cybersecurity regulations and provide audit support.
- Act as a trusted advisor to government stakeholders on all matters related to GRC and cybersecurity.
- Collaborate with technical teams to ensure secure network and system configurations.
- Provide hands-on support in network and security technologies during audits or incident reviews.
- Monitor and report on compliance posture and control effectiveness.
- Engage in continuous improvement of GRC frameworks and tools.
Requirements:
- 7+ years of experience in Cybersecurity, including GRC and Network/Security Operations.
- Proven experience working with government entities or high-regulation sectors.
- Strong knowledge of:
1· Cybersecurity frameworks (e.g., NIST, ISO 27001, NCA ECC).
2· Risk management methodologies.
3· Vulnerability and compliance management tools. - Hands-on experience in network and security technologies (firewalls, IDS/IPS, endpoint security, etc.).
- Strong documentation, policy writing, and reporting skills.
- Fluent in English (Arabic is a plus).
Certifications (Required):
1. CISSP – Certified Information Systems Security Professional.
2. CISA – Certified Information Systems Auditor.
