4 Grc Intern jobs in Bahrain

Senior Information Security Analyst - GRC

2355 Saar, Northern BHD70000 Annually WhatJobs

Posted 8 days ago

Job Viewed

Tap Again To Close

Job Description

full-time
Our client, a leading multinational corporation, is seeking a highly competent Senior Information Security Analyst specializing in Governance, Risk, and Compliance (GRC) to join their corporate security team in **Saar, Northern, BH**. This critical role will be responsible for developing, implementing, and managing the organization's information security policies, procedures, and compliance frameworks. The ideal candidate will have a strong understanding of risk management methodologies, regulatory requirements, and information security best practices, coupled with excellent analytical and communication skills.

Responsibilities:
  • Develop, implement, and maintain the organization's information security policies, standards, and procedures.
  • Conduct information security risk assessments, identify potential threats and vulnerabilities, and recommend mitigation strategies.
  • Ensure compliance with relevant industry regulations and standards (e.g., ISO 27001, NIST, GDPR, PCI DSS).
  • Manage and oversee security awareness training programs for employees.
  • Develop and maintain the information security risk register and track remediation efforts.
  • Conduct internal audits and assessments to evaluate the effectiveness of security controls.
  • Respond to and manage information security incidents, coordinating with relevant stakeholders.
  • Evaluate and recommend security technologies and solutions to enhance the organization's security posture.
  • Liaise with external auditors and regulatory bodies during compliance assessments.
  • Stay updated on the latest information security threats, trends, and best practices.
  • Contribute to the development and maintenance of the business continuity and disaster recovery plans.
  • Provide expert advice and guidance on information security matters to business units and project teams.
  • Prepare comprehensive reports on compliance status, risk posture, and security incidents for senior management.
Qualifications:
  • Bachelor's degree in Information Security, Computer Science, IT, or a related field.
  • Minimum of 5 years of experience in information security, with a focus on GRC.
  • In-depth knowledge of information security frameworks, standards, and regulations.
  • Proven experience in conducting risk assessments, vulnerability management, and compliance audits.
  • Familiarity with security technologies such as SIEM, vulnerability scanners, and DLP.
  • Strong understanding of cybersecurity principles, threat landscapes, and incident response.
  • Excellent analytical, problem-solving, and documentation skills.
  • Professional certifications such as CISSP, CISM, CRISC, or CISA are highly preferred.
  • Strong communication, presentation, and interpersonal skills.
  • Ability to manage multiple projects and priorities effectively.
This advertiser has chosen not to accept applicants from your region.

Senior Information Security Analyst (GRC)

23456 Busaiteen, Muharraq BHD8000 month WhatJobs

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

full-time
Our client is a prominent financial institution seeking a highly skilled and experienced Senior Information Security Analyst specializing in Governance, Risk, and Compliance (GRC) to join their robust security team in Busaiteen, Muharraq, BH . This role is essential for ensuring the organization's information assets are protected against evolving cyber threats through the implementation and management of comprehensive security policies, standards, and controls. You will play a key role in assessing risks, ensuring regulatory compliance, and driving security awareness across the organization. The ideal candidate will possess a deep understanding of information security frameworks, risk management methodologies, and compliance requirements.

Key responsibilities include:
  • Developing, implementing, and maintaining information security policies, standards, and procedures aligned with industry best practices and regulatory requirements (e.g., ISO 27001, NIST, PCI DSS).
  • Conducting regular information security risk assessments, identifying vulnerabilities, and recommending appropriate mitigation strategies.
  • Managing and executing internal and external security audits, ensuring compliance with established controls.
  • Developing and delivering security awareness training programs for employees across the organization.
  • Monitoring the security landscape for emerging threats and vulnerabilities and recommending proactive defense measures.
  • Responding to and investigating security incidents, performing root cause analysis, and implementing corrective actions.
  • Managing third-party risk assessments to ensure vendor compliance with security requirements.
  • Maintaining documentation related to GRC activities, including risk registers, audit findings, and policy exceptions.
  • Collaborating with IT, legal, and business units to integrate security considerations into business processes and projects.
  • Staying current with the latest security threats, technologies, and regulatory changes.

A Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field is required. Relevant professional certifications such as CISSP, CISM, CRISC, or CISA are highly preferred. A minimum of 7 years of experience in information security, with a strong focus on GRC functions, is essential. Proven experience in conducting risk assessments, managing audits, and developing security policies is mandatory. In-depth knowledge of information security frameworks and compliance standards is crucial. Excellent analytical, problem-solving, and communication skills are required. Ability to work independently and as part of a team, with strong project management capabilities. Join a leading organization and contribute to its cybersecurity resilience.
This advertiser has chosen not to accept applicants from your region.

Senior Information Security Analyst (GRC)

1060 Busaiteen, Muharraq BHD65000 Annually WhatJobs

Posted 11 days ago

Job Viewed

Tap Again To Close

Job Description

full-time
Our client is actively seeking a seasoned Senior Information Security Analyst with a specialization in Governance, Risk, and Compliance (GRC) to bolster our security posture from our headquarters in A'ali, Northern, BH . This critical role will involve developing, implementing, and managing our information security policies, procedures, and standards to ensure compliance with relevant regulations and mitigate potential risks. You will be instrumental in assessing security risks, conducting audits, and fostering a culture of security awareness throughout the organization.

Key Responsibilities:
  • Develop, implement, and maintain information security policies, standards, and procedures in alignment with best practices and regulatory requirements (e.g., ISO 27001, NIST).
  • Conduct risk assessments and vulnerability analyses to identify and prioritize security threats and weaknesses across the organization's IT infrastructure and systems.
  • Develop and manage the company's risk register, tracking identified risks and mitigation efforts.
  • Plan and execute internal and external security audits to assess compliance with policies and regulations.
  • Investigate security incidents, perform root cause analysis, and implement corrective actions to prevent recurrence.
  • Develop and deliver security awareness training programs for employees.
  • Manage third-party risk assessments to ensure vendor compliance with security requirements.
  • Stay abreast of evolving security threats, vulnerabilities, and regulatory changes, and update security controls accordingly.
  • Collaborate with IT, legal, and business units to ensure security requirements are integrated into system development lifecycle (SDLC) and business processes.
  • Prepare comprehensive reports on security posture, risk status, and compliance for senior management.
  • Contribute to the continuous improvement of the information security program.

The ideal candidate will hold a Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field. A Master's degree or relevant professional certifications such as CISSP, CISM, CRISC, or CISA are highly preferred. A minimum of 6 years of experience in information security, with a strong focus on GRC, risk management, and compliance, is required. Proven experience in developing and implementing information security frameworks and policies is essential. Strong understanding of security best practices, common security controls, and various regulatory frameworks is critical. Experience with GRC tools and technologies is highly desirable. Excellent analytical, problem-solving, and communication skills are necessary, along with the ability to articulate complex security concepts to both technical and non-technical audiences. Experience in conducting security audits and risk assessments is a must.
This advertiser has chosen not to accept applicants from your region.

GRC (Governance, Risk & Compliance) Consultant/ Senior Consultant

Grant Thornton International Ltd

Posted 10 days ago

Job Viewed

Tap Again To Close

Job Description

Job Number: GRC(Governance, Risk & Compliance)Consultant/ Senior Consultant

Location: Bahrain

Category: Technology Advisory

Grant Thornton Abdulaal Bahrain is expanding their IT GRC practice and look to hire candidate's forConsultant/ Senior Consultant roles. As an integral member of the IT Advisory team, reporting to the responsibility of the GRC team is to carry out the engagements related to policy compliance, security requirements governance, as well as risk management.

The ideal candidate will have knowledge of risk management, security and privacy practices and be an effective communicator, both written and verbal.

Responsibilities include:

  • Lead and/or execute GRC engagements and IT audits.
  • Review and/or prepare project deliverables.
  • Point of contact for the client during the engagement execution.
  • Develop and participate in implementation of client initiatives focused on the reduction of technology risk, governance and compliance to policies and external regulatory compliance.
  • Evaluate business and IT risks.
  • Audit IT organizations, IT processes and IT systems against regulations, standards and good practices such as COBIT and ITIL.
  • Develop IT security standards, procedures, and controls to manage risks. Improve clients security positioning through process improvement, policy, automation, and the continuous evolution of capabilities.
  • Evaluation information security threats and their impact clients IT environment.
  • Support the senior team members, assist with the analysis of requirements and design of clients information security posture, as well as Legal, Regulatory and Scheme security requirements.
  • Support the senior team members in delivery of work streams for clients in compliance standards such as PCI DSS, ISO27001, EU GDPR and Bahrain PDPL and incident management disciplines.
  • Perform and investigate internal and external information security risk and exceptions assessments.
  • Assessing incidents, vulnerability management, scans, patching status, secure baselines, penetration test result, phishing, and social engineering tests and attacks.
  • Document and reporting control failures and gaps to stakeholders. Provides remediation guidance and prepares management reports to track remediation activities.
  • Stay current on best practices and technological advancements and acts as a technical resource for security assessment and regulatory compliance.
  • Perform other related duties as assigned from time to time based on the business requirements.
  • Knowledge of virtualization and cloud computing would be essential.

Skills:

  • Understanding of ISO 27001, PCI DSS, ITIL, ITSM, COBIT, ISO 3100, NIST standards and frameworks preferred.
  • For GRC role hands on experience on VA tools e.g., Nessus, Qualys etc would be an advantage.
  • Experience of risk management principles and associated methodologies
  • Ideally will have a CEH/ ISO 27001 ISMS/ ISO 22301 BCMS/ CISA/ COBIT/ CISM qualification.
  • Proven ability to make sound pragmatic decisions and judgements under tight timelines.
  • Strong interpersonal and influencing skills with the ability to influence and drive change in a collaborative way both internally and externally.

Essential requirements:

  • Experience: 1 to 5+ years experience in IT Governance, Risk & Compliance.
  • Ability to work in a fast-paced, high-pressure atmosphere by being attentive and having a strong eye for details.
  • Strong leadership and personnel management skills.
  • Exceptional client service along with the ability to develop excellent client relationships.
  • Good at meeting deadlines and solving problems.
  • Good communication skills, both verbal and writteninEnglish language is mandatory (Arabic will be a plus)
#J-18808-Ljbffr
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Grc intern Jobs in Bahrain !

 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Grc Intern Jobs