Início Arábia Saudita Authorization and GRC Specialist

Início Arábia Saudita Authorization and GRC Specialist

Authorization and GRC Specialist

Full time na a Laimoon Verified Company no Saudi Arabia
Publicado em November 3, 2024

Detalhes do emprego

Job Title: Authorization and GRC Specialist

Location: Saudi Arabia (Preference for candidates based in Saudi Arabia)

About Us:Sada Thalate Gulf is a leading consultancy firm in Saudi Arabia, committed to delivering exceptional services to our diverse range of clients.We are expanding our team and are on the lookout for talented professionals to join us in providing quality services.

Responsibilities:

Development: Design, develop, and implement solutions in alignment with business requirements.

Landscape: Installation and configuration of environments (Development, Quality, Production, and DR).

Operation: Run and maintain the environments (Development, Quality, Production, and DR).

Staging: Testing and debugging services in Development, Quality, Production, and DR environments.

Enhancements: Version updates, optimization, fine-tuning, and customization of systems and services.

Backup: High availability, backup, and restore of systems and services.

Monitoring: Systems alerts, reports, audits, and analytics.

Security Platforms: Integration with SIEM and SOC systems.

Collaboration: Work with stakeholders and cross-functional teams for change management and technical activities.

Documentation: Develop SOW, end-user instructions, operational/troubleshooting guides, and design documents.

Up to Date: Stay current with product updates and industry best practices to enhance the effectiveness of services.

Standards: Use of frameworks, methodologies, policies, processes, and procedures.

Platforms: Understanding of front-end and back-end systems.

Enforce security policies and best practices.

System Administration:

Oversee the day-to-day operation of systems and services, ensuring optimal performance and availability.

Perform routine system monitoring, tuning, and troubleshooting.

Upgrades and Patch Management:

Plan and execute system upgrades, updates, and patches.

Stay informed about the latest releases and features.

Backup and Recovery:

Develop and maintain backup and recovery strategies for systems.

Conduct regular backup tests to ensure data integrity.

Performance Optimization:

Identify and implement performance optimization measures.

Collaborate with other teams to improve overall system efficiency.

Interface and Integration Monitoring:

Monitor and manage interfaces between security SOC and other systems.

Collaborate with integration teams to troubleshoot and resolve issues.

Access Management:

Administer and oversee user access provisioning, de-provisioning, and modifications.

Implement and enforce role-based access controls (RBAC) across the organization's systems and applications.

Role Design and Segregation of Duties (SoD):

Design and maintain roles in accordance with business requirements and industry best practices.

Conduct regular SoD analyses to identify and remediate conflicts in access assignments.

Authorization Governance:

Establish and maintain authorization policies and procedures.

Conduct periodic reviews and audits to ensure compliance with security and access policies.

GRC Framework Implementation:

Implement and manage Governance, Risk, and Compliance (GRC) frameworks.

Collaborate with stakeholders to define and document risk profiles and mitigation strategies.

Policy Management:

Develop and enforce security policies related to access controls, data protection, and information security.

Ensure policies align with regulatory requirements and industry standards.

Incident Response:

Collaborate with the IT security team to investigate and respond to access-related security incidents.

Develop and implement measures to prevent unauthorized access.

Training and Awareness:

Conduct training sessions for end-users and IT personnel on access management best practices and security awareness.

Foster a culture of security and compliance throughout the organization.

Documentation and Reporting:

Maintain accurate and up-to-date documentation related to access management and GRC activities.

Generate regular reports for management on access compliance and security metrics.

Qualifications:

Bachelor's degree or a related field.

Proven experience in authorization management and GRC activities.

Familiarity with industry standards and regulations such as GDPR, HIPAA, or SOX.

Experience with GRC tools and platforms.

Knowledge of identity and access management (IAM) principles and technologies.

Strong understanding of role-based access controls (RBAC) and segregation of duties (SoD).

Excellent communication and interpersonal skills.

Relevant certifications such as Certified Information Systems Security Professional (CISSP) or Certified in Risk and Information Systems Control (CRISC) are a plus.

Benefits:

Competitive salaryFamily status.Comprehensive health insurance.Annual vacation.Professional development opportunities.Other benefits.

How to Apply:

Interested candidates are invited to submit their resume and a cover letter detailing their experience to hr@sadathalate.com

STG is an equal-opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

#J-18808-Ljbffr Management & Leadership

Apply safely

To stay safe in your job search, information on common scams and to get free expert advice, we recommend that you visit SAFERjobs, a non-profit, joint industry and law enforcement organization working to combat job scams.

Share this job
See All Authorization Jobs
Feedback Feedback