Did you apply to Senior Consultant/Manager, Cyber Operate, Governance & PMO Specialist?
Senior Consultant/Manager, Cyber Operate, Governance & PMO Specialist
Job Overview
Design and maintain the governance framework Design the cybersecurity governance framework: governance structure, decision rights, roles and RACI across the CISO office, IT, OT, risk, legal, procurement and business units Write and maintain the cybersecurity policy framework: top-level policy, domain policies, standards, processes, procedures and SOPs, mapped to NCA ECC-2:2024 and other applicable NCA controls Run the document lifecycle: drafting, stakeholder review, approval, publication, communication, periodic review and version control Maintain the ISMS governance components (scope, context, roles, management review) toward ISO/IEC 27001:2022 Define the cybersecurity roles and responsibilities matrix required by NCA ECC, and keep it current as the organisation grows Run governance bodies Set up and run the cybersecurity steering committee and working groups: charters, membership, meeting calendar, agendas, decision packs, minutes and action tracking Prepare clear, decision-focused papers for executives, and follow up on decisions and actions until they are closed Run the programme management office Build and maintain the integrated programme plan across all domains, with milestones, dependencies and critical path (e.g. MS Project, Primavera, Smartsheet) Run the RAID log (risks, assumptions, issues, dependencies), and escalate blockers early with options, not just problems Manage change control for scope, schedule and resources Track resourcing, onboarding, timesheets and budget against plan for the programme team Run the programme's weekly and monthly status reporting, and produce dashboards and executive summaries for leadership Coordinate with the service management office (SMO), centre of excellence (CoE) and domain leads so work flows smoothly across the programme Assure quality and delivery Set programme standards for deliverables: templates, quality review steps and acceptance criteria Run quality reviews and manage deliverable submission and formal acceptance Maintain the programme document repository and records so evidence is easy to find for audits and regulators Leadership Capabilities: Builds own understanding of our purpose and values; explores opportunities for impact. Demonstrates strong commitment to personal learning and development; acts as a brand ambassador to help attract top talent. Understands expectations and demonstrates personal accountability for keeping performance on track. Actively focuses on developing effective communication and relationship-building skills. Understands how their daily work contributes to the priorities of the team and the business.
Experience
5-10 total years Bachelor's in cybersecurity, IT, business or a related field Has designed or substantially updated a cybersecurity governance framework or policy suite (Senior); has written policies, procedures or SOPs (Mid) Proven PMO or programme management experience on large, multi-workstream programmes: planning, RAID, change control and status reporting Working knowledge of NCA ECC, ISO/IEC 27001 and NIST CSF 2.0 Strong stakeholder management and executive reporting Clear, concise written English Experience setting up and running steering committees in Saudi government or large private entities Experience with planning tools (MS Project, Primavera, Smartsheet) and Power BI dashboards Experience coordinating with service management (ITIL) functions Consulting background Arabic language is a plus. At least one preferred: PMP, CISM, CGEIT. Also valued: PgMP, PRINCE2 / MSP, ISO/IEC 27001 Lead Implementer, COBIT. NCA ECC-2:2024 ISO/IEC 27001:2022 ISO/IEC 27014 NIST CSF 2.0 (Govern) COBIT 2019 PMI PMBOK PRINCE2 / MSP
Experience
5-10 total years Bachelor's in cybersecurity, IT, business or a related field Has designed or substantially updated a cybersecurity governance framework or policy suite (Senior); has written policies, procedures or SOPs (Mid) Proven PMO or programme management experience on large, multi-workstream programmes: planning, RAID, change control and status reporting Working knowledge of NCA ECC, ISO/IEC 27001 and NIST CSF 2.0 Strong stakeholder management and executive reporting Clear, concise written English Experience setting up and running steering committees in Saudi government or large private entities Experience with planning tools (MS Project, Primavera, Smartsheet) and Power BI dashboards Experience coordinating with service management (ITIL) functions Consulting background Arabic language is a plus. At least one preferred: PMP, CISM, CGEIT. Also valued: PgMP, PRINCE2 / MSP, ISO/IEC 27001 Lead Implementer, COBIT.
Ready to apply?
You are viewing this role on JobSphere AI. Continue on naukrigulf.com to apply.
Opens the original job posting in a new tab
Saved on this device. Log in to keep your saved jobs on all your devices.
Log in Create account- CompanyDeloitte
- LocationAl Madina Al Munawarah, Saudi Arabia
- CategoryProject Manager
- Listing sourceNaukrigulf
- Apply onnaukrigulf.com
- Listed18h ago