Overview
Job ID: 14328
Sector:
Governance, Risk & Compliance
Location: NEOM, Saudi Arabia
OVERVIEW
NEOM is an accelerator of human progress and a vision of what a new future might look like. A region in northwest Saudi Arabia on the Red Sea, NEOM is being built from the ground up to include hyperconnected, cognitive cities, ports, next-generation infrastructure and industries, enterprise zones, research centers, sports and entertainment venues and tourist destinations.
As a destination, it will be a home for people who dream big and want to be part of building a new model for exceptional livability, creating thriving businesses and reinventing environmental conservation.
As a workplace, it is a place for people who share our core values of care, curiosity, diversity, passion, respect, and becoming a catalyst for change.
Are you ready to help NEOM find solutions to the world’s most pressing challenges? Are you prepared to create a lasting legacy that benefits generations to come? Then we want to hear from you!
ROLE OVERVIEW
To direct the cybersecurity activities associated with Cybersecurity Management, Cybersecurity Policies and Procedures, Cybersecurity Roles and Responsibilities, Cybersecurity Risk Management, Compliance with Standards, Laws and Regulations, Supply Chain and Third-party Cybersecurity, Cybersecurity in Human Resources, Cybersecurity Resilience Aspects of Business Continuity Management (BCM), Periodical Cybersecurity Review and Audit, Physical Security, Vulnerability Management and Penetration Testing to support the secure achievement of NEOM’s business goals within relevant laws and regulations
Key Responsibilities:
Company-wide Responsibilities
- Ensure the implementation of cybersecurity GRC processes in accordance with company-wide strategies.
- Ensure the implementation of cybersecurity activities in line with other functions and with Subsidiaries.
- Ensure appropriate support is provided to the organization to enhance NEOM cybersecurity resilience and maturity.
- Work closely with senior leaders in other departments and with external stakeholders to raise awareness of the cybersecurity risks and challenges and support their management through integration into project design and delivery in relation to values of NEOM.
Planning and Strategy
- Coordinate with senior leadership of the organization to ensure that authorization decisions consider all factors necessary for mission and business success, including cybersecurity risks and challenges.
- Ensure appropriate data is collected and maintained to meet defined cybersecurity reporting requirements.
- Ensure that appropriate reporting is provided to senior management as necessary.
People Management
- Take responsibility for building and maintaining a high-performance team, ensuring effective teamwork and communication across the Cybersecurity GRC function.
- Support the management of talent acquisition, retention, and succession planning within Cybersecurity GRC function.
- Set performance objectives, provide necessary support, evaluate/appraise staff and provide regular feedback on performance.
- Lead and mentor the teams under Cybersecurity GRC function, fostering a culture of continuous learning and professional development.
- Ensure that appropriate resources are allocated to meet the organization’s cybersecurity requirements.
- Foster a working environment and culture that supports, develops, and promotes equality and diversity
Budgeting and Financials
- Support the CISO in managing the budget, ensuring optimal allocation of resources.
- Manage financial aspects of cybersecurity, including budgeting and resourcing.
Function-specific Responsibilities
Cybersecurity Policies and Strategy Alignment
Policy Implementation and Guidance
Cybersecurity Roles and Responsibilities
Risk, Compliance, and Assurance Monitoring
Cybersecurity Risk Management
Compliance with Cybersecurity Standards, Laws, and Regulations
Periodical Cybersecurity Review and Audit
Supply Chain and Third-party Cybersecurity
Cybersecurity Resources Management
Physical Security
Cybersecurity Resilience Aspects of Business Continuity Management (BCM)
Penetration Testing
Vulnerability Management
|
Culture and Values
- Embrace NEOM’s culture and Values https://www.neom.com/en-us/about
- Act with honesty and integrity by following best practices, and upholding the robust standards and expectations set out in NEOM’s Code of Conduct.
- Maintain fair, ethical and professional work practices in accordance with NEOM’s Values and Code of Conduct.
BACKGROUND, SKILLS & QUALIFICATIONS
Knowledge, Skills and Experience
- 12+ years’ experience in information security or IT disciplines, including at least 7 years in management role overseeing strategic cybersecurity planning in complex organizational or governmental settings.
- Proven leadership capabilities, demonstrated through effective management, motivation, and coordination of large cybersecurity teams.
- Strong communication skills with the ability to clearly articulate complex cybersecurity concepts to diverse audiences, including non-technical stakeholders.
- Expertise in collaboration and relationship-building across internal business units, external entities, and stakeholders, effectively integrating cybersecurity into broader organizational goals.
- Demonstrated experience in budgeting, financial planning, resource allocation, and managing multiple concurrent cybersecurity projects and initiatives.
- Comprehensive knowledge of cybersecurity principles, regulatory compliance standards, privacy laws, risk assessment methodologies, and security frameworks.
- Skilled in developing, assessing, and maintaining cybersecurity policies, vulnerability management ]programs, penetration testing, and incident response processes.
- Ability to strategically integrate cybersecurity management with business operations, adapt to evolving cybersecurity threats, and ensuring alignment with organizational objectives.
- Experienced in cybersecurity workforce management, including staffing assessment, training, career path development, and effective integration of cybersecurity roles within organizational structures.
- Proficient in analyzing cybersecurity data, interpreting vulnerability assessments, recommending appropriate mitigation strategies, and clearly communicating technical risks to management and stakeholders.
Qualifications
Required academic achievements:
- Bachelor’s degree in information technology, Cybersecurity, Computer Science, or a related field (required) or Law.
- Master’s degree in Cybersecurity, Information Security, Information Systems, or a related field (highly preferred)
Required professional certifications
- Certified in Risk and Information Systems Control (CRISC), or
- Certified Information Systems Auditor (CISA), or
- Certified Information Security Manager (CISM), or
- Certified in the Governance of Enterprise IT (CGEIT)
- ISO 22301 Lead Auditor
Preferred professional certifications
- Certified Information Systems Security Professional (CISSP)
- Project Management Professional (PMP)
- Certified Compliance and Ethics Professional (CCEP)
- Certified Fraud Examiner (CFE)
- Certified Risk Management Professional (CRMP)
- Certified Regulatory Compliance Manager (CRCM)
- Certified Internal Auditor (CIA)
- Information Security Management System (ISMS) Lead Auditor (ISO 27001 LA)
- Certified Ethical Hacker (CEH)
- Offensive Security Certified Professional (OSCP)
NEOM is committed to attracting and retaining the highest caliber of employees to support NEOM’s vision, mission and strategy. NEOM sources the best candidates based on fit for the role and searches local and global markets to identify talent.
NEOM is an equal opportunities employer. All qualified applicants will receive consideration for employment without regard to gender, disability, age, or any other form of discrimination/other characteristic protected by applicable local laws, regulations and ordinances.
As part of our recruitment process, NEOM will undertake reference checks to confirm suitability for the role. All offers of employment are subject to references, evidence of all qualifications and awards, and other background checks being satisfactorily completed. Additionally, all offers are subject to the candidate being able to successfully obtain a work visa to enter and work in the Kingdom of Saudi Arabia.
This job description is not an exhaustive list of duties and responsibilities. The employee may be required to perform additional job-related tasks and duties as assigned. To meet NEOM’s objectives and business needs, the work location is subject to change. Non office-based roles involve outdoor activities. Candidates should be prepared to work outdoors and on construction sites as part of their job responsibilities.
NEOM uses artificial intelligence as part of its recruitment process to assist and enhance efficiency. However, all final hiring decisions are made by human recruiters, ensuring that NEOM’s employment process remains fair and transparent.
The actions of our team should always support the NEOM Values
About Neom
NEOM is the land of the future where the greatest minds and best talents are empowered to embody pioneering ideas and exceed boundaries in a world inspired by imagination.
NEOM is powered by our vision to build a profitable, sustainable and innovation-driven economy, powered by our 14 key sectors. Future-oriented and legacy-free, we're offering our partners and talent the optimum environment to foster unrestricted thinking and fresh solutions to today's most pressing challenges. NEOM is open for business.