Senior Manager Cybersecurity
Team: Cybersecurity
Activity: Full-time
Role grade: Senior Manager (7)
Direct reports: 3
Indirect reports: 0
Reporting to: Chief Finance & Business Services Officer
Role location: Riyadh, Saudi Arabia
Job Purpose: As the Senior Manager Cybersecurity, you will lead and oversee all cybersecurity domains across Governance, Risk & Compliance (GRC), Cybersecurity Operations, and Data Protection & Privacy. This role involves leading cybersecurity at the team or departmental level, ensuring that all strategic initiatives are translated into effective operational controls while maintaining alignment with the organization's business goals.
Duties and Responsibilities
Strategic Oversight:
Define and drive the overall cybersecurity strategy across GRC, Operations, and Data Protection functions.
Ensure alignment between cybersecurity initiatives and business objectives.
Governance, Risk & Compliance (GRC):
Oversee development and continuous improvement of cybersecurity policies and procedures aligned with NCA, ISO 27001, and NIST.
Ensure enterprise-wide risk management practices including risk assessments, risk registers, and treatment plans.
Monitor compliance posture and report cybersecurity KPIs and risks to executive management.
Cybersecurity Operations:
Oversee cybersecurity operations including SOC, incident response, vulnerability management, and threat intelligence.
Ensure effective detection, response, and recovery capabilities (MTTD, MTTR).
Direct handling of major incidents and ensure proper escalation and reporting to NCA.
Data Protection & Privacy (NDMO & PDPL):
Ensure compliance with NDMO Data Governance and PDPL regulations.
Oversee implementation of data classification, data protection, and data lifecycle management.
Ensure mechanisms for consent management, Data Subject Rights (DSR), and data retention policies are implemented.
Cross-Functional Integration:
Ensure alignment and integration between GRC, Operations, and Data functions.
Embed cybersecurity and data protection requirements into business processes, procurement, and digital initiatives (Secure by Design).
Third-Party & Supply Chain Security:
Oversee third-party risk management ensuring vendor compliance with NCA and data protection regulations.
Audit & Assurance:
Lead internal and external audits across cybersecurity and data protection domains.
Ensure timely remediation of findings and compliance gaps.
Business Continuity & Resilience
Ensure cybersecurity strategies and controls are fully integrated with the organization’s Business Continuity Planning (BCP).
Leadership & Resource Management
Lead and manage the three cybersecurity managers (GRC, Operations, Data).
Ensure effective resource allocation, performance management, and team development.
Awareness & Culture
Govern organization-wide cybersecurity and data privacy awareness programs.
Education and Experience
Bachelor’s degree in cybersecurity – master’s degree in Cybersecurity.
7+ years of experience in cybersecurity.
Knowledge, Skills, and Abilities
Deep knowledge of cybersecurity, data protection, and data governance regulations (NCA, NDMO, ISO and PDPL).
Expertise in Governance, Risk, and Compliance (GRC) methodologies.
High-level decision-making and strategic thinking.
Exceptional leadership and the ability to manage cross-functional teams under pressure.
Proficiency in developing and managing Cybersecurity Incident Response Plans (CIRP).
Strong expertise across GRC, Security Operations, and Data Privacy domains.
Proven ability to lead multi-functional cybersecurity teams.
Strong understanding of incident response, secure architecture, and data protection controls.
Ability to translate cybersecurity and data risks into business impact for executive leadership.
Bilingual proficiency in Arabic and English
Benefits
Relocation support
Transportation allowance
Competitive compensation
Housing allowance
VIP medical insurance
Opportunity to work on a new exciting project with a group of passionate professionals. You will get the freedom to excel and make a real impact
Diversity disclaimer
Our mission is to build a diverse organization where our members, regardless of background or identity, have a sense of belonging. We genuinely believe that thanks to creating a collaborative environment where different perspectives are valued, we can achieve more. Together, we want to reshape the boundaries of what is achievable in the esports domain.
Skills
As published by recruitee · 7 questions
Basics
Full name, Email, CV, Cover letter, Phone, Photo
Pick from a list (7)
- Do you or any of your immediate family members (including spouse or domestic partner, parents, children, or siblings) hold a financial interest—such as ownership or investment—in any entity that presently maintains a contract, partnership, vendor relationship, or active proposal with Esports Foundation?
- Are you currently serving as an officer, director, board member, employee, or consultant for any organization that has an active contract, partnership, vendor relationship, or proposal with Esports Foundation, even if you do not have any ownership in that organization?
- Do you or any of your immediate family members (including spouse or domestic partner, parents, children, or siblings) hold any ownership stake or financial interest in an esports team, esports organization, tournament operator, or game publisher, regardless of whether they have dealings with Esports Foundation?
- Do you have a family relationship (by blood, marriage, or adoption) with any Esports Foundation employee or anyone representing an entity that does business with Esports Foundation? Family relationships include spouse/domestic partner, parents, children, siblings, grandparents, grandchildren, aunts/uncles, nieces/nephews, cousins, in-laws, stepfamily members, and household members.
- Do you, or any of your immediate family members (including your spouse or domestic partner, parents, children, or siblings), have a personal connection to any vendor or supplier who is part of procurement, vendor selection, or contracting decisions?
- Have you received any gifts, hospitality, or benefits of significant value or that could be perceived as influencing your impartiality from any individual or entity doing business with Esports Foundation?
- Are you fluent in both English and Arabic (spoken and written)? optional