Team: Cybersecurity
Activity: Full-time
Role grade: Senior Manager (7)
Direct reports: 3
Indirect reports: 0
Reporting to: Chief Finance & Business Services Officer
Role location: Riyadh, Saudi Arabia
Job Purpose: As the Senior Manager Cybersecurity, you will lead and oversee all cybersecurity domains across Governance, Risk & Compliance (GRC), Cybersecurity Operations, and Data Protection & Privacy. This role involves leading cybersecurity at the team or departmental level, ensuring that all strategic initiatives are translated into effective operational controls while maintaining alignment with the organization's business goals.
Duties and Responsibilities
Strategic Oversight:
Define and drive the overall cybersecurity strategy across GRC, Operations, and Data Protection functions.
Ensure alignment between cybersecurity initiatives and business objectives.
Governance, Risk & Compliance (GRC):
Oversee development and continuous improvement of cybersecurity policies and procedures aligned with NCA, ISO 27001, and NIST.
Ensure enterprise-wide risk management practices including risk assessments, risk registers, and treatment plans.
Monitor compliance posture and report cybersecurity KPIs and risks to executive management.
Cybersecurity Operations:
Oversee cybersecurity operations including SOC, incident response, vulnerability management, and threat intelligence.
Ensure effective detection, response, and recovery capabilities (MTTD, MTTR).
Direct handling of major incidents and ensure proper escalation and reporting to NCA.
Data Protection & Privacy (NDMO & PDPL):
Ensure compliance with NDMO Data Governance and PDPL regulations.
Oversee implementation of data classification, data protection, and data lifecycle management.
Ensure mechanisms for consent management, Data Subject Rights (DSR), and data retention policies are implemented.
Cross-Functional Integration:
Ensure alignment and integration between GRC, Operations, and Data functions.
Embed cybersecurity and data protection requirements into business processes, procurement, and digital initiatives (Secure by Design).
Third-Party & Supply Chain Security:
Oversee third-party risk management ensuring vendor compliance with NCA and data protection regulations.
Audit & Assurance:
Lead internal and external audits across cybersecurity and data protection domains.
Ensure timely remediation of findings and compliance gaps.
Business Continuity & Resilience
Ensure cybersecurity strategies and controls are fully integrated with the organization’s Business Continuity Planning (BCP).
Leadership & Resource Management
Lead and manage the three cybersecurity managers (GRC, Operations, Data).
Ensure effective resource allocation, performance management, and team development.
Awareness & Culture
Govern organization-wide cybersecurity and data privacy awareness programs.
Education and Experience
Bachelor’s degree in cybersecurity – master’s degree in Cybersecurity.
7+ years of experience in cybersecurity.
Knowledge, Skills, and Abilities
Deep knowledge of cybersecurity, data protection, and data governance regulations (NCA, NDMO, ISO and PDPL).
Expertise in Governance, Risk, and Compliance (GRC) methodologies.
High-level decision-making and strategic thinking.
Exceptional leadership and the ability to manage cross-functional teams under pressure.
Proficiency in developing and managing Cybersecurity Incident Response Plans (CIRP).
Strong expertise across GRC, Security Operations, and Data Privacy domains.
Proven ability to lead multi-functional cybersecurity teams.
Strong understanding of incident response, secure architecture, and data protection controls.
Ability to translate cybersecurity and data risks into business impact for executive leadership.
Bilingual proficiency in Arabic and English
Benefits
Relocation support
Transportation allowance
Competitive compensation
Housing allowance
VIP medical insurance
Opportunity to work on a new exciting project with a group of passionate professionals. You will get the freedom to excel and make a real impact
Diversity disclaimer
Our mission is to build a diverse organization where our members, regardless of background or identity, have a sense of belonging. We genuinely believe that thanks to creating a collaborative environment where different perspectives are valued, we can achieve more. Together, we want to reshape the boundaries of what is achievable in the esports domain.