Head of Cybersecurity
- National Security Services Company (SAFE)
- Riyadh, Saudi Arabia
- SAR 400,000 – SAR 600,000
Role Summary:
Responsible for leading the development of SAFE’s cyber security program, advising and directing Corporate IT and Technology Solutions on implementing and operating cyber security measures and safeguards.
Main Responsibilities:
- Lead the development of SAFE’s cyber security program, including policies, procedures and protocols, regulations, standards, etc.
- Provide guidance and direction to Corporate IT and Technology Solutions regarding setting up and operating cyber security safeguards and measures.
- Understand and interact with related disciplines through committees to ensure the consistent application of policies and standards across all technology projects, systems, and services.
- Partner with business stakeholders across the company to raise awareness of cybersecurity risk management concerns.
Managerial Accountability:
Human Capital Development
- Foster a culture of cooperation, learning and development, and leadership.
- Deliver ongoing feedback and address performance issues.
- Attract, recruit, and retain a high-performance management team; provide mentoring as a cornerstone to the management career development program.
Required Qualifications:
- Minimum bachelor’s degree, Computer sciences, cybersecurity or another related field.
- +10 years of experience in various rules.
Leadership Competency:
Driving Success:
- Translates SAFE vision and goals into clear, specific, and achievable objectives. Takes control of projects, leading on key tasks and monitoring others to ensure they fulfill their roles effectively.
- Demonstrates belief in and personal commitment to SAFE vision and mission. Fulfils commitments while maintaining high levels of productivity and output for self and team.
Building Relationships:
- Builds an understanding of key stakeholders (including shareholders), their needs, drivers, and constraints. Develop common understanding across widely competing needs.
- Interacts well with others, quickly establishing rapport and maintaining useful relationships with internal and external stakeholders for the organization’s benefit.
Engaging Individuals:
- Creates a team identity and shared purpose among team members. Articulates the vision for the future to motivate others to action. Finds effective ways to empower individuals and help them succeed.
- Focuses on developing, coaching, and mentoring talent to enhance skills, knowledge, and abilities to improve individual and organizational performance.
Core Competency:
Dependability:
- Self-driven and takes action proactively.
- Pursues goals with persistence and stamina, works on tasks thoroughly, ensuring accuracy and meeting standards.
- Maintains high levels of quality and effectiveness of work outputs and achieves outstanding results.
Collaboration:
- Collaborates constructively with people at all levels across the organization.
- Helps colleagues, is always available to the team, and delivers on team commitments.
- Trusts the guidance and direction of colleagues and senior members of the team.
Analytical Thinking:
- Examines, evaluates, and analyses different types of information objectively.
- Spots trends and patterns, establishes key facts clearly and interprets numerical data effectively.
- Provides insights and identifies ways to improve things. Trusts intuition about which methods will work bestways to improve things. Trusts intuition about which methods will work best.
Effective Communication:
- Listens attentively and seeks to understand before being understood.
- Explains things clearly and articulates and presents information effectively and confidently.
- Challenges ideas effectively and presents persuasive arguments by presenting a strong case.
Functional Competency:
Threat Analysis
Knowledge of structure, approach, and strategy of exploitation tools (e.g., sniffers, keyloggers) and techniques (e.g., gaining backdoor access, collecting/exfiltrating data, conducting vulnerability analysis of other systems in the network). Skill in deeply analyzing captured malicious code (e.g., malware forensics).
Vulnerability Assessment
Ability to identify systemic security issues based on vulnerability and configuration data analysis.
Data Privacy and Protection
Demonstrates knowledge of data privacy and protection infrastructure, standards, and procedures and engages with stakeholders to raise organizational data privacy and protection capability and awareness.
Incident Management
Demonstrates knowledge of incident categories, incident responses, and timelines for responses.
Cyber Risk Management
Demonstrates knowledge of information technology (IT) supply chain security and supply chain risk management policies, requirements, and procedures to identify relevant threats and vulnerabilities, assess the potential threat’s impact, and develop mitigation plans.
Cyber Security Strategy & Governance
Leverage understanding of cybersecurity regulatory requirements, industry standards, and the national cybersecurity strategy to develop and enhance the SAFE cybersecurity strategy, governance model, and controls and ensure robust threat monitoring and incident management policies and procedures are in place.
Cyber Security Audit & Compliance
Ability to conduct security compliance audits to verify that information processes meet the security criteria (requirements or policy, standards, and procedures).
Data Analysis
Demonstrates knowledge of analytic tools and techniques for Network traffic, system artifacts, and infrastructure logs.
Skills
- Cybersecurity
- Information Security
- Risk Management
- Security Architecture
- Security Operations
- Compliance
- Leadership





